Granite Open Granite

Privacy policy

Last updated: October 4, 2026

Granite is operated by [company legal name], [registered address] ("Granite", "we"). This policy explains what we collect when you use granite.md, the Granite apps, and the API, and what you can do about it. For workspaces, the workspace's organization decides what goes into it; for that content we act as its processor under our data processing agreement.

What we collect

We do not sell your data, show ads, or use your content to train AI models. The website uses no cookies or trackers; the app uses one cookie to keep you signed in.

Why we use it

Who processes it

Our service providers are listed on the sub-processors page. When you connect an AI tool or another app, it receives only what you allow, under its own terms.

How long we keep it

Your rights

You can access, correct, export, and delete your data at any time from the app (Settings → Your data), or ask us at privacy@granite.md. Depending on where you live, you may also object to or restrict some processing and complain to your data protection authority. We answer requests within 30 days.

International transfers

Your data is stored on our server in [server location] and backed up in the United States. Transfers outside the European Economic Area rely on the European Commission's standard contractual clauses.

Changes

We will tell you by email or in the app before material changes take effect.

Contact

[Company legal name], [registered address]. privacy@granite.md