Legal

Privacy Policy

What we collect, why we have it, who else touches it, and how to get it back or have it deleted — including the difference between your data and your customers’ data.

Last updated . GritCMS is operated from Kampala, Uganda.

Plain language, not legal advice

This page is written in everyday English so that a business owner can actually read it. It describes how we intend the agreement to work, but it is not legal advice and it is not a substitute for a lawyer. If you are relying on it commercially — on either side — have a qualified lawyer review it first.

1. Who we are

GritCMS is a hosted business platform operated from Kampala, Uganda. This policy explains what personal information passes through the platform, why, and what you can ask us to do about it. It covers both the people who run a GritCMS workspace and the people whose details end up inside one.

For anything in this policy, write to support@gritcms.com.

2. What we collect

  • Account details. The name, email address, phone number and business details you give us when we set your workspace up, plus the logins of any team members you add.
  • Workspace content. Everything you put into the platform: pages, posts, courses, products, emails, images, videos and files.
  • Contacts you upload. The names, email addresses, phone numbers, order history and notes belonging to your own customers and leads. This is your data about other people, and it is treated differently — see the next section.
  • Payment metadata. Which plan you are on, your invoices, and the identifiers your payment provider gives us so we can match a payment to an invoice. We never see or store full card numbers or CVV codes. Card details go directly to the payment provider, which is why the card form on a checkout is theirs, not ours.
  • Usage and security logs. Sign-in times, IP addresses, browser and device type, the pages requested and errors that occurred. We need these to keep accounts secure, spot abuse and debug problems.

3. Whose data is whose

Data-protection law splits responsibility into two roles. The controller is whoever decides why personal data is collected and what happens to it. The processor is whoever handles that data on the controller's instructions. GritCMS is one or the other depending on whose data we are talking about.

The short version

Your own account details are ours to answer for. We decided to collect your name, email and billing details in order to run your workspace, so for that data we are the controller and this policy is the whole answer.

The contacts you upload are yours to answer for. We did not choose to collect your customers' details — you did. We only store and process them because you asked us to. For that data you are the controller, we are simply the processor, and your own privacy policy is what governs it.

That distinction has a practical consequence: you are responsible for having permission to hold the contacts you put into GritCMS and for telling those people how you use their data. If one of your contacts asks us to delete their record, we will point them to you and let you know — because it is your record, not ours, and we act on your instruction.

Acting as your processor, we only use your contacts to provide the service to you: storing them, showing them to you, sending the emails you send. We do not market to them, we do not enrich them, and we do not mix them with any other customer's data.

4. Why we use your data

  • To run the service. Serving your site, delivering your email, storing your files, showing you your contacts.
  • To bill you. Generating invoices, recording payments, and calculating storage and email usage against your plan.
  • To support you. Answering your questions. When we need to look inside your workspace to help, we do it to solve the problem in front of us and nothing else.
  • To keep things secure. Detecting suspicious sign-ins, blocking abuse, investigating spam complaints, and keeping the platform standing up.
  • To email you about the product. Invoices, security notices and service changes are part of the service and cannot be switched off while you have an account. Anything promotional has an unsubscribe link and honours it.

We do not sell customer data. Not your account details, not your content, and not the contacts you upload — not to advertisers, not to data brokers, not to anyone. There is no version of our business model where that changes.

5. Who else handles the data

Running a platform means using a handful of specialist providers. In the language of the law these are sub-processors — companies that handle data on our behalf, the way we handle it on yours. Each one only receives what it needs for its job:

  • DGateway and Stripe — payment processing. They handle card and mobile-money details for your own payments to us, and for payments your buyers make to you. Card data goes to them directly and never through us.
  • Resend — email delivery. The company that actually sends the emails your workspace generates. It receives the recipient address and the message.
  • S3-compatible object storage — files and media. Where your images, videos, documents and other uploads are stored.
  • Hosting and infrastructure providers. The servers, databases and content delivery network the platform runs on.

We may also disclose data if the law requires it — a valid court order or a lawful request from an authority — or where it is necessary to protect the platform or someone's safety.

Data may be processed outside Uganda. These providers operate globally, so your data and your contacts' data may be stored or processed in other countries. We choose providers that offer recognised safeguards for handling personal data across borders.

6. Cookies, browser storage and link statistics

We keep this simple, because most of what makes cookie banners miserable is advertising technology we do not use.

  • Session. When you sign in, your browser holds a token that keeps you signed in until you sign out or it expires. Without it you would have to log in on every click.
  • Theme preference. Whether you chose light or dark, stored in your own browser so the page does not flash the wrong colours on load. It never leaves your device.
  • Short link clicks. When someone clicks a short link generated by a workspace, we record the click and three coarse details: the referring site, the type of device, and the country. That is what makes click statistics possible.

What we do not do: we do not run third-party advertising trackers, we do not build profiles of people across other websites, and we do not sell audience data. Short-link statistics are coarse by design — a country and a device type, not an identity.

7. How long we keep things

While your account is open we keep your data for as long as you keep it — your workspace is your working system of record, and deleting things behind your back would be unhelpful. You can delete individual contacts, files and content yourself at any time.

When an account is closed we keep everything for 30 days so you can ask for a copy or change your mind, then delete it from our live systems. Encrypted backups age out on their own schedule shortly afterwards. Logs are kept for a limited period for security and debugging. Invoices and payment records are kept for as long as tax and accounting law requires, because we are not allowed to delete those on request.

8. Your rights

You can ask us to:

  • Show you what personal data we hold about you.
  • Correct anything that is wrong or out of date.
  • Export your data in a standard format you can take elsewhere — most of which you can do yourself from inside your workspace, at any time.
  • Delete your data, subject to the records we are legally required to keep.
  • Stop promotional email, either through the unsubscribe link or by telling us.

Email support@gritcms.com and we will respond within 30 days. We may ask you to confirm who you are first, so that nobody can use a request like this to get at someone else's data.

If you are a customer of a business that uses GritCMS and you want your details changed or removed, please contact that business directly. They control their contact list; we only hold it for them.

9. How we protect data

  • Encryption in transit. Every connection to the platform and to your published site runs over HTTPS.
  • Encrypted payment credentials. The keys connecting your DGateway or Stripe account are stored encrypted, not as readable text.
  • Passwords are hashed. They are stored in a form that cannot be reversed, so nobody — including us — can read your password.
  • Access controls. Every workspace is separated from every other at the data layer, team members only see what their role allows, and staff access is limited to those who need it for support or operations.
  • Backups. Taken regularly and stored encrypted, so an accident is recoverable.

We will not pretend to more than that. No system is perfectly secure, ours included. We work to reduce the risk and we will tell you promptly if a breach affects your data. Choosing a strong, unique password and not sharing logins does more for your security than anything else you can control.

10. Children

GritCMS is a business tool and is not directed at anyone under 18. We do not knowingly create accounts for children. If you believe a child has given us personal information, tell us and we will delete it.

If your own business sells to young people, the responsibility for handling their data appropriately sits with you as the controller of that data.

11. Changes to this policy

We will update this policy when the platform changes or the law does. The “last updated” date at the top of the page always reflects the current version, and we will email you before a material change — one that meaningfully affects how your data is handled — takes effect.

12. Contact us

Email support@gritcms.com or message +256 762 063 160 on WhatsApp. We are in Kampala, Uganda. The terms of service cover the rest of the agreement.

Questions about this page?

Ask a real person. Email support@gritcms.com, message +256 762 063 160 on WhatsApp, or use the contact page. We answer in plain English too.

See also: Terms of Service · Privacy Policy · Refunds & Cancellation