Privacy
What we store, and what we never do with it.
Short on purpose. If something here is unclear, ask and we will fix the wording.
Draft for counsel review. This page describes how the service is built and operated today; it has not yet been reviewed by a lawyer. Last updated .
Who we are
GetFunded (https://getfunded.ai) is operated by Morton Labs, the steward of the open-source project. This page covers the hosted service. If you self-install, you are the operator and this page does not apply to your copy.
What we store
- Your name, your email address and the time you last signed in. There is no password.
- Your organization profile, if you fill it in: mission, state, counties, program areas, budget, who you serve.
- What you create in your workspace: saved funders, stages, tasks, notes, approved facts, outreach drafts, contacts you add, your suppression list, and the verdicts you give on AI output.
- A usage ledger: which AI tool ran, when, how many tokens it used and how many credits it cost. We keep it to enforce plan limits and to show you your own usage.
- If you connect Gmail: an encrypted token that lets the app send mail as you. Never your Google password.
- If you subscribe: a Stripe customer id. Your card details are held by Stripe, not by us.
- Product telemetry: event names such as “search run” with a workspace id, kept for 12 months.
What we do not store
- The content of your email inbox. The Gmail connection sends; it does not read.
- Your browsing history on other sites.
- Anything about people who have not signed up, beyond the public filing data on funder pages.
Cookies
We use cookies for your session only: one set from Supabase Auth that keeps you signed in, and one that remembers which workspace you have open. We do not use advertising cookies or third-party trackers. Your theme choice is kept in your browser’s local storage, not sent to us.
We do not sell your data
We do not sell, rent or share your workspace data with anyone. We do not sell contact lists. Public filing data on funder pages is already public and is published under CC BY 4.0; nothing you add to your workspace is ever part of that dataset.
AI processing
When you use an AI tool, we send a request to Anthropic’s API. The request contains the funder’s public record, your organization profile, your approved facts and your question. We do not send your contacts, your messages or your activity log. The output is stored in your workspace, labelled as AI, with a fingerprint of its inputs. We do not use your data to train models.
Who else handles data
- Supabase: authentication and the database.
- Vercel: hosting.
- Anthropic: language-model requests, as described above.
- Stripe: payments.
- Google: only if you connect Gmail, and only to send mail you approved.
Security
The database itself checks every request. You can only read rows that belong to a workspace you are a member of, even if the app had a bug. The app’s database account cannot change the public filing data. The token that connects your Gmail is stored encrypted. Details are on the security and privacy guide.
Retention and deletion
We keep your data while your account exists. To delete your account, email support@getfunded.ai from the address on your account. We delete your user record, your personal workspace and everything in it. Shared workspaces that other members own are not deleted. Usage ledger rows are kept in aggregate for billing records with the user id removed. Backups age out within 30 days.
Your rights
You can see and export your workspace data from the app at any time. You can ask us to correct or delete your personal data. If you are in a jurisdiction that grants additional rights, we will honor them; tell us where you are when you write.
Children
The service is for organizations and their staff. It is not directed at children under 16.
Changes
When this page changes, the date at the top changes and the change is listed in the project’s changelog. Because the project is open source, the history of this page is public.
Contact
Privacy questions: support@getfunded.ai. Security reports: security@mortonlabs.ai.