Privacy policy
What Grailwatch collects, why, and how to exercise your rights.
Last updated: September 21, 2026
Controller
Grailwatch is operated by Amaury Lavoine, who is responsible for personal information. For any question or request: support@grailwatch.io.
Information collected
- Account: email address and the identifier provided by Google or Discord at sign-in.
- Preferences: watched cards, alert thresholds, chosen alert channels and related consents.
- History: alerts sent, saved cards, version requests and referral invitations.
- Technical data: security and operational logs required to run the service.
Use
This information is used only to provide the service: signing you in, watching the cards you chose, sending the alerts you enabled, preventing abuse and providing support. Grailwatch does not sell or rent your information and shows no targeted advertising.
Service providers
Some providers process information on Grailwatch’s behalf and may host it outside Canada:
- Supabase: database and authentication.
- Vercel: website hosting.
- Brevo: alert emails.
- Discord and Google: sign-in and, for Discord, alert messages if you enable them.
Cookies
Grailwatch only uses a session cookie to keep you signed in and a language cookie. No audience measurement or advertising cookie is used.
Retention
Account data is kept while the account is active. Observed listings and their history are deleted after 30 days. Processed emails are removed from the sending queue after 30 days.
Your rights
You can request access to your information, its correction or the deletion of your account by writing to support@grailwatch.io. You can withdraw alert consents at any time in your settings. Requests are answered within 30 days.