Security and privacy
How we protect your family’s information, in plain words.
Families share wills, medical wishes and grief with us. This page explains how we protect that information, what we will never do and where we are on our compliance roadmap.
Our principles
Three promises
Your information is yours
You decide who sees it. You can export it or delete it. We never sell it.
Only what is needed
We collect what the service needs, and people at Gracekeeps see only what their role requires.
No surprises
We explain what we do in plain words, and we tell you before anything important changes.
Protections
How your information is protected
Encryption in transit
Every connection to Gracekeeps is encrypted with TLS. Unencrypted connections are not accepted.
Encryption at rest
Documents in the vault and sensitive notes are encrypted at rest, with keys managed separately from the data they protect.
Private file storage
Files are never publicly reachable. Each download checks that you are allowed to see the file and uses a short-lived link.
Least privilege access
Staff get only the access their role needs. A care specialist sees the cases they support, not everyone’s.
Two-person rule for sensitive access
When staff need to open sensitive information, such as a vault document for a support request, a second person must approve it.
Audit logs
Access to sensitive information is recorded: who, what and when. We review these records regularly.
Data ownership and deletion
Export your information at any time. Ask us to delete your account and we will, except for anything the law requires us to keep.
We never sell data
We do not sell or rent personal information, and we do not use it for advertising.
Aggregates only for organizations
Employers, insurers and partners see anonymous, grouped numbers. Small groups are combined or hidden so no one can be singled out.
Your controls
Choose what each family member can see, remove people from your circle and review who has access.
Who can see what
Access at a glance
This is how access works for a family using Gracekeeps through an employer or insurer.
| Information | You | Family you invite | Your care specialist | Employer or insurer |
|---|---|---|---|---|
| Your plan and tasks | Included | What you share | Included | Not included |
| Vault documents | Included | What you share | Only when you ask for help with one | Not included |
| Messages with your care specialist | Included | Not included | Included | Not included |
| Trackers and check-ins | Included | What you share | Included | Not included |
| Whether you use Gracekeeps | Included | If you invite them | Included | Only inside a total |
Gracekeeps engineers do not browse customer information. Access for support or safety needs a documented reason and a second approver.
Compliance roadmap
Where we are today, in plain terms
We are a young company. We will only claim a certification once we have it.
In place today
The protections on this page
Encryption, private storage, least privilege access, the two-person rule and audit logs are part of how Gracekeeps is built and run.
Next
Independent penetration test
An outside firm will test the app and our infrastructure. We will fix what they find and share a summary with customers under a confidentiality agreement.
Planned
SOC 2 Type II audit
A SOC 2 Type II audit is planned. We will update this page when a report is available, and not before.
Any time
Your security review
We answer security questionnaires and join calls with your security team as part of any organization’s review.
Responsible disclosure
Found a security issue? Tell us.
We welcome reports from security researchers and anyone who spots a problem. Email security@gracekeeps.com with the details and steps to reproduce it.
Please give us reasonable time to fix the issue before sharing it publicly, avoid accessing other people’s information and do not disrupt the service. We aim to acknowledge reports within three business days, and we will keep you updated as we work on a fix.
Questions
Security and privacy questions
Do you sell my information?
No. We do not sell or rent personal information, and we do not use it for advertising.
Can my employer read my messages or documents?
No. Employers and insurers see only anonymous totals across their program. They never see who uses Gracekeeps or what anyone shares.
Is Gracekeeps SOC 2 certified?
Not yet. A SOC 2 Type II audit is planned. We will update this page when a report is available.
How do I delete my account?
Ask in the app or contact us. We confirm the request with you and then delete your information, except anything the law requires us to keep.
What happens to shared documents if I leave?
When you delete your account, your documents are deleted too. Copies that you downloaded or sent to others are outside our control, so review your sharing before you leave.
Running a security review?
We are glad to walk your team through how Gracekeeps protects members.