1. Who we are
GroviOS is an AI growth operating system operated by JLM Solutions ("GroviOS", "we", "us"). This policy explains how we handle personal information collected through getgrovios.com and the GroviOS platform.
Contact for privacy questions: privacy@getgrovios.com.
2. Information we collect
- Account data: name, work email, company, role, password hash, authentication tokens.
- Lead and CRM data you import or generate: contact details, meeting notes, lead scoring inputs, attribution metadata.
- Content data: blog posts, social variants, knowledge sources, widget configurations.
- Usage and device data: pages viewed, features used, IP address, browser, OS, referrer, UTM parameters.
- Connector data: tokens and metadata you authorize us to store from third-party services (e.g. LinkedIn, Meta, Google) solely to perform the actions you request.
- Billing data: processed by Stripe; we store customer/subscription identifiers but never card numbers.
3. How we use it
- Provide, secure, and improve the GroviOS platform.
- Publish content on your behalf to channels you authorize.
- Send transactional email (auth, billing, product updates).
- Generate analytics so you can measure your growth funnel.
- Comply with legal obligations and enforce our Terms.
We do not sell personal information and we do not use it to train third-party AI models.
4. Third-party processors
We use a small set of vetted sub-processors:
- Supabase / Lovable Cloud — database, auth, storage, edge functions
- Cloudflare — hosting and CDN
- Stripe — payments
- Resend — transactional email
- LinkedIn, Meta, X (Twitter), Google — only when you connect them
5. LinkedIn integration
When you connect LinkedIn, we receive an OAuth access token and refresh token tied to the LinkedIn member you authorize. We use these tokens solely to:
- Read your basic profile (name, email) to confirm the authorized identity.
- List Company Pages where you are an ADMINISTRATOR.
- Publish posts to the Company Page you select.
We never post to a LinkedIn personal profile. You can revoke access at any time from Settings → Connectors → Disconnect, which deletes the stored tokens from our database.
6. Cookies
We use first-party cookies and local storage for authentication, session state, and attribution (anonymous visitor / session IDs). We do not use third-party advertising cookies on GroviOS-operated properties.
7. Data retention
We retain account and CRM data for the life of your subscription and for up to 90 days after cancellation, after which it is permanently deleted unless we are required to retain it for legal reasons.
8. Your rights
Depending on your jurisdiction (GDPR, CCPA, PIPEDA), you may have rights to access, correct, export, or delete your personal data. Email privacy@getgrovios.com and we will respond within 30 days.
9. Security
Data in transit is encrypted with TLS 1.2+. Data at rest is encrypted via our cloud providers. Access to production data is restricted to authorized JLM Solutions personnel and audit-logged.
10. Children
GroviOS is not directed to children under 16 and we do not knowingly collect data from them.
11. Changes
We will post material changes here and update the "Last updated" date. Continued use after a change constitutes acceptance.
12. Contact
JLM Solutions · privacy@getgrovios.com