Skip to content

Security and privacy

How we protect your family’s information, in plain words.

Families share wills, medical wishes and grief with us. This page explains how we protect that information, what we will never do and where we are on our compliance roadmap.

Our principles

Three promises

Your information is yours

You decide who sees it. You can export it or delete it. We never sell it.

Only what is needed

We collect what the service needs, and people at Gracekeeps see only what their role requires.

No surprises

We explain what we do in plain words, and we tell you before anything important changes.

Protections

How your information is protected

  • Encryption in transit

    Every connection to Gracekeeps is encrypted with TLS. Unencrypted connections are not accepted.

  • Encryption at rest

    Documents in the vault and sensitive notes are encrypted at rest, with keys managed separately from the data they protect.

  • Private file storage

    Files are never publicly reachable. Each download checks that you are allowed to see the file and uses a short-lived link.

  • Least privilege access

    Staff get only the access their role needs. A care specialist sees the cases they support, not everyone’s.

  • Two-person rule for sensitive access

    When staff need to open sensitive information, such as a vault document for a support request, a second person must approve it.

  • Audit logs

    Access to sensitive information is recorded: who, what and when. We review these records regularly.

  • Data ownership and deletion

    Export your information at any time. Ask us to delete your account and we will, except for anything the law requires us to keep.

  • We never sell data

    We do not sell or rent personal information, and we do not use it for advertising.

  • Aggregates only for organizations

    Employers, insurers and partners see anonymous, grouped numbers. Small groups are combined or hidden so no one can be singled out.

  • Your controls

    Choose what each family member can see, remove people from your circle and review who has access.

Who can see what

Access at a glance

This is how access works for a family using Gracekeeps through an employer or insurer.

Who can see each kind of information in Gracekeeps
InformationYouFamily you inviteYour care specialistEmployer or insurer
Your plan and tasksIncludedWhat you shareIncludedNot included
Vault documentsIncludedWhat you shareOnly when you ask for help with oneNot included
Messages with your care specialistIncludedNot includedIncludedNot included
Trackers and check-insIncludedWhat you shareIncludedNot included
Whether you use GracekeepsIncludedIf you invite themIncludedOnly inside a total

Gracekeeps engineers do not browse customer information. Access for support or safety needs a documented reason and a second approver.

Compliance roadmap

Where we are today, in plain terms

We are a young company. We will only claim a certification once we have it.

  1. In place today

    The protections on this page

    Encryption, private storage, least privilege access, the two-person rule and audit logs are part of how Gracekeeps is built and run.

  2. Next

    Independent penetration test

    An outside firm will test the app and our infrastructure. We will fix what they find and share a summary with customers under a confidentiality agreement.

  3. Planned

    SOC 2 Type II audit

    A SOC 2 Type II audit is planned. We will update this page when a report is available, and not before.

  4. Any time

    Your security review

    We answer security questionnaires and join calls with your security team as part of any organization’s review.

Responsible disclosure

Found a security issue? Tell us.

We welcome reports from security researchers and anyone who spots a problem. Email security@gracekeeps.com with the details and steps to reproduce it.

Please give us reasonable time to fix the issue before sharing it publicly, avoid accessing other people’s information and do not disrupt the service. We aim to acknowledge reports within three business days, and we will keep you updated as we work on a fix.

Questions

Security and privacy questions

Do you sell my information?

No. We do not sell or rent personal information, and we do not use it for advertising.

Can my employer read my messages or documents?

No. Employers and insurers see only anonymous totals across their program. They never see who uses Gracekeeps or what anyone shares.

Is Gracekeeps SOC 2 certified?

Not yet. A SOC 2 Type II audit is planned. We will update this page when a report is available.

How do I delete my account?

Ask in the app or contact us. We confirm the request with you and then delete your information, except anything the law requires us to keep.

What happens to shared documents if I leave?

When you delete your account, your documents are deleted too. Copies that you downloaded or sent to others are outside our control, so review your sharing before you leave.

Running a security review?

We are glad to walk your team through how Gracekeeps protects members.