GrekSignal early access
Privacy and data handling in early access
This operational notice describes current data handling by GrekSignal, developed by GrekTech LLC. The owner must review and finalize legal notices before general availability; this page does not assert regulatory certification.
01
Data used by the workspace
The application uses account identity, organization membership, project domains, saved business context, uploaded media and retained observations to provide workspace features. Authentication uses Firebase and a secure server session cookie; browser authentication state supports sign-in continuity. Public scans collect unauthenticated website observations and retain temporary results with expiry.
02
When providers receive data
Explicit connected operations send necessary requests to configured Google, AI, SERP, Meta or billing providers. AI operations use bounded context; optional business knowledge inclusion is a user choice. Social publication sends approved text and selected media only after current authorization. Customer webhooks send supported event/project/entity identifiers to explicitly configured endpoints.
03
Access, retention and review
Organization roles and server project boundaries control access. Curated clients see selected active report snapshots rather than the whole organization. Provider tokens are encrypted server-side and API keys are hashed; credentials are excluded from reports and compact AI context. Temporary records expire, while retained project records and activity do not currently have a universal deletion schedule. Disconnecting a provider stops supported future access but does not erase every historical observation. Contact GrekTech through its current business channel for a data-handling request; legal rights, retention periods and subprocessors need owner review.
Practical questions
Is business knowledge automatically sent to Copilot?
Optional business description/services context requires opt-in. Credentials and uploaded asset bodies are excluded from the compact request.
Can a client read organization-wide content?
A curated client identity receives selected active reports only and no organization membership.
Start with observable evidence
Run the bounded public scan on the homepage, then save a project when you are ready. Connected measurements need real authorization and available quota.