Privacy Policy
Last updated: August 2026
What GrantScope is
GrantScope is a tool for matching a company's profile against public funding opportunities. Each account is tied to one company's data, kept separate from every other account. Anyone can create an account through the public signup form; new accounts start in a pending state and are reviewed before activation. See the Terms of Service for the full agreement governing your use of GrantScope.
Accounts and sessions
- Your password is never stored in plain text. It is hashed (scrypt, a standard one-way function) before it touches the database, so even the operator cannot read your original password back out.
- Logging in sets a single session cookie containing a random session ID, marked
httpOnlyso page scripts cannot read it. It is used only to keep you signed in, never for tracking or advertising. - Sessions are stored server-side and expire automatically after 30 days, or immediately when you log out.
- Repeated failed login attempts from the same source are temporarily throttled.
What information is stored
When you use GrantScope, the following is stored in a database on the machine running it, scoped to your account:
- Your login email, password hash, and personal name.
- Company profile information you enter: name, website, NAICS code, industry tags, revenue range, employee count, state, entity type, certifications, founded year, and stage.
- Federal application reference information you enter: legal address, EIN, UEI, and authorized representative contact details. This exists only to help you fill out real government forms yourself; GrantScope never submits anything to a government agency on your behalf.
- Budget worksheet entries and pitch deck answers you type in.
- A list of accelerators, VCs, or other funding opportunities you add or edit.
- Cached copies of public federal grant opportunity data (titles, agencies, deadlines, eligibility text) fetched from Grants.gov and SBIR.gov, shared read-only across all accounts on the instance.
None of the above is transmitted to any analytics or advertising service. There is no analytics or tracking of any kind built into the app.
Third-party services this tool talks to
- Grants.gov and SBIR.gov: public government APIs, queried to pull in real grant listings. No personal or company data is sent to these services; only public search queries.
- Anthropic's API: used only for optional AI features (drafting application text), and only if the operator has supplied an API key for the instance. If no key is configured, no data is ever sent here. When it is used, the relevant company profile and grant details are sent to Anthropic to generate a response, governed by Anthropic's own terms, not this policy.
Cookies and tracking
GrantScope sets exactly one cookie: the session cookie described above, used solely to keep you logged in. It does not use local storage for tracking or run any third-party analytics or advertising scripts.
Your control over this data
You can request to export, correct, or permanently delete your account and company data at any time through the support form inside GrantScope, or by canceling your membership from the Account page. Logging out invalidates your session immediately on the server, not just in your browser.
Children's privacy
GrantScope is a business tool intended for use by founders and companies. It is not directed at children, and no information is knowingly collected from anyone under 13.
Changes to this policy
If GrantScope's data handling changes, including new billing or third-party integrations, this page will be updated to reflect that, with the date above revised accordingly.
Contact
Questions about this policy can be directed to the support form inside GrantScope, or to k127email@gmail.com.