Privacy Policy

Last updated: 2 May 2026

1. Introduction

Grabbit ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website (grabbitapp.com) and Chrome extension (collectively, the "Service").

We comply with applicable data protection laws and, where applicable, the General Data Protection Regulation (GDPR) for users in the European Economic Area.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Email address and password when you create an account
  • Saved Items: Product data you save using our extension (title, price, details, images, listing URL)
  • Payment Information: If you subscribe to Pro, payment is processed by Stripe. We do not store your full credit card details.

2.2 Automatically Collected Information

  • Usage Data: Pages visited, features used, and interaction patterns
  • Device Information: Browser type, operating system, and device identifiers
  • Log Data: IP address, access times, and referring URLs

2.3 Chrome Extension Data

Our Chrome extension includes a lightweight detection script that checks whether the page you are viewing appears to be a product page. This check uses only the page URL and standard HTML meta tags — it does not read the full page content, and no data is sent to our servers during this check.

If a product page is detected, basic product information (title, price, and thumbnail) is saved locally in your browser as a "recently viewed" list (up to 50 items). This data never leaves your device unless you explicitly choose to sync it.

Full product extraction only happens when you actively interact with the extension — by clicking the Grabbit icon, pressing "Save", or using the refresh button. Only then does the extension read product details from the page.

The extension cannot access your passwords, payment information, cookies, or account data on any website. It operates in the browser's isolated content script environment and can only read publicly visible page content (what you see on screen). It does not track your general browsing history or collect data from non-product pages.

3. How We Use Your Information

We use collected information for the following purposes:

  • Provide, maintain, and improve the Service
  • Store and display your saved products
  • Process payments and manage purchases
  • Send service-related emails (account verification, password reset)
  • Respond to your inquiries and support requests
  • Detect and prevent fraud or abuse
  • Analyse usage patterns to improve user experience

4. Data Sharing and Disclosure

We do not sell your personal information. We may share your data with:

  • Service Providers: Third parties that help us operate the Service (hosting, analytics, payment processing)
  • Legal Requirements: When required by law or to protect our rights and safety
  • Business Transfers: In connection with a merger, acquisition, or sale of assets

5. Data Retention

We retain your personal information for as long as your account is active or as needed to provide you the Service. You can delete your account at any time through the Settings page. Upon account deletion, we will delete your personal data within 30 days, except where retention is required for legal or legitimate business purposes.

6. Data Security

We implement appropriate technical and organisational measures to protect your personal information, including encryption in transit (TLS/SSL), secure cloud infrastructure, and access controls. However, no method of transmission over the internet is 100% secure.

7. Your Rights (GDPR and NZ Privacy Act)

Depending on your location, you may have the following rights:

  • Access: Request a copy of your personal data
  • Rectification: Request correction of inaccurate data
  • Erasure: Request deletion of your personal data
  • Data Portability: Request your data in a machine-readable format
  • Objection: Object to processing of your personal data
  • Restriction: Request restriction of processing

To exercise these rights, contact us at [email protected]. We will respond within 30 days in accordance with applicable laws.

8. Cookies

We use essential cookies for authentication and session management. We may also use analytics cookies to understand how users interact with our Service. You can control cookies through your browser settings, but disabling essential cookies may affect Service functionality.

9. International Data Transfers

Your data may be transferred to and processed in countries worldwide. We ensure appropriate safeguards are in place for such transfers, including standard contractual clauses approved by relevant authorities.

10. Children's Privacy

The Service is not intended for children under 16. We do not knowingly collect personal information from children. If you believe we have collected data from a child, please contact us immediately.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by email or through the Service. Your continued use of the Service after changes constitutes acceptance of the updated policy.

12. Contact Us

If you have questions about this Privacy Policy or our data practices, contact us at:

Grabbit
Email: [email protected]

For complaints about how we handle your personal information, you may contact your local data protection authority as applicable under GDPR or your region's privacy laws.