Privacy Policy
Effective Date: January 1, 2025
Introduction
This Privacy Policy explains how Grid Getter ("we," "our," or "us") collects, uses, stores, and protects information from users and via connected third-party services (e.g., Tesla). By using our platform, you agree to this Privacy Policy.
1. Information We Collect
User-Provided Data: When you register for an account, we collect your email and profile details such as name.
Linked Data: When you authorize your Tesla account, we collect related energy, battery, solar, and site data for comparison and auditing—you control how long we retain it.
Technical & Auth Data: We collect IP addresses, authentication tokens, and logs solely for security and audit purposes. This data is never shared or sold.
2. How Data Is Collected
All data is collected directly from you, through forms or OAuth-based third-party connections. We use only essential cookies for session security and functionality—not for tracking or marketing.
3. Legal Basis & Purpose of Processing
We process your data to deliver services like grid comparisons, automations, and notifications. Where applicable, processing is based on consent or necessity to fulfill our service.
4. Data Retention
We retain your account and Tesla-linked data only as long as your account is active or as required by law. You may request early deletion at any time.
5. Data Security
We host on AWS and protect your data with encryption at rest and in transit, strict access controls, logging, and periodic security audits.
6. Third-Party Services
We use third-party providers to deliver our service:
- Tesla API for energy data access (with your consent).
 - AWS Cognito for user authentication and session management.
 - Hosting & Infrastructure via AWS.
 - Google reCAPTCHA to prevent spam.
 - Email service for essential notifications.
 
No third-party service receives your data for marketing or profiling.
7. User Rights
You have the right to access, correct, or delete your data. You can also revoke Tesla access at any time. Submit requests via support@gridgetter.com—we aim to respond within 30 days.
8. International Data Transfers
While we operate in the U.S., your data may reside on global cloud infrastructure. Transfers comply with applicable laws and safeguards.
9. Privacy by Design
Our platform follows a "privacy by design" approach—collecting only necessary data, implementing strong data protection, and putting your privacy as a priority throughout the system.
10. Refunds and Cancellation
All fees paid are non-refundable except as required by applicable law. Any changes in your subscription (such as upgrades, downgrades, or cancellations) may result in proration credits—but these credits are not cash refunds.
This policy applies to all subscriptions and services provided and is prominently displayed at check-out and in your account dashboard.
11. Changes to This Policy
We may update this policy. Major changes will be communicated via email and updated here with an updated effective date.