What data GRANI needs and why.
Updated September 29, 2026. Website billing applies only after its launch.
1. Controller and contact
ИП Тамаев Раиль Наилевич. support@granilink.com.
2. Data categories
| Category | Data | Purpose | Where |
|---|---|---|---|
| Account | Email, sign-in provider, verification state | Authentication and access | PostgreSQL |
| Device | ID, fingerprint, model, OS, app version, IP/country | Device limit, security, support | PostgreSQL |
| VPN session | Server, protocol, states, timing, bytes, errors | Connection operation and diagnostics | PostgreSQL and infrastructure logs |
| Analytics | Firebase app/session ID, user ID, app events | Android product analytics | Firebase/GA4 and backend queue |
| Purchase | Plan, amount, currency, order and payment identifiers; Google Play purchase token where applicable | Purchase verification, access, and refunds | PostgreSQL; Google Play or, once website payments launch, WATA and the fiscal data operator |
| Diagnostics | Runtime state, trace/session ID, errors, network checks | Support after explicit user action | Backend and support channel |
3. Traffic content
GRANI does not build a browsing-history profile. VPN servers technically process packets in transit; API, reverse proxy, and VPN nodes create operational logs.
4. Firebase and GA4
The Android app sends usage and funnel events to Firebase Analytics/GA4. The backend adds verified server-side events.
5. Billing
Google Play processes purchases in the Android app. Once website checkout launches, WATA will process SBP payments, and the connected fiscalization provider and fiscal data operator will process electronic receipt data. GRANI stores the plan, amount, currency, order and payment identifiers, status, and customer email needed for access, support, and the receipt. GRANI does not receive full bank-card details.
6. Diagnostic report
The user submits a report explicitly. It may contain versions, server, protocol, VPN state, errors, network checks, and correlation identifiers.
7. Recipients
Hosting providers, Google Firebase/GA4, Google Play, email/identity providers, and the user-selected support channel process data for their roles. After website checkout launches, WATA, the online cash-register provider, and the fiscal data operator will also receive the data needed for their roles.
8. Retention
Retention depends on category, security, support, accounting duties, and infrastructure rotation. One automated period for every database and log is not currently established.
9. Deletion and rights
Request access, correction, or deletion from the account email through support@granilink.com. Self-service deletion is not currently available; certain records may be retained for law or dispute handling.
10. International processing and changes
Providers may process data in other countries with applicable contractual and legal safeguards. Material policy changes are published with a new date.