Privacy Policy
Last updated: 2026-07-30
Gig Grid ("we") provides a planning tool for arranging desktop synthesizers in gig cases. This page explains what data we collect when you use giggrid.net, how it's used, and the choices you have.
What we collect
- Account details: the email address and username you provide at signup, plus your hashed password (handled by Supabase Auth — we never see the plaintext).
- Your rigs: the layouts, gear placements, custom designs, and case settings you create. These are stored under your account so you can return to them.
- Usage analytics (only if you allow it):via PostHog (hosted in the EU) we record which pages you visit and which features you use, so we can improve the product. Nothing is collected, and nothing is stored on your device, until you choose "Allow analytics" on the banner shown on your first visit. Declining costs you nothing, and we don't ask again. We also respect the browser's Do Not Track setting.
- Session recordings (optional): only if you opt in — a separate, unticked choice at signup or anytime in your Account settings — PostHog records a randomly sampled subset (about 69%) of your sessions. A recording reconstructs what was on your screen: the pages you saw, and your mouse movement, clicks and scrolling across them. Text you type into form fields is masked before it leaves your browser, and account, admin and password-reset pages are excluded entirely. It is off unless you turn it on, and you can turn it off again at any time. Anonymous visitors are never session-recorded.
- IP address: recorded when you view a public rig, submit feedback, or accept one of our agreements. It is used for spam and abuse protection, for rate limiting, and to evidence that an agreement was accepted. View-recording IPs are deleted after 30 days and feedback IPs after 90 days; the IP attached to an agreement acceptance is kept as part of that record.
- Feedback you send us:the category, subject and message you write, your email address, and the page you were on, along with your browser's user-agent string and window size. If you use the screenshot tool, the image you capture is stored as well. Only administrators can read these.
- Approximate location:when a gear list is displayed, we ask our hosting provider which country the request came from, so we can show the most relevant affiliate links. This is country-level only — not your address or precise location — and we don't store it.
- Error reports: uncaught errors are sent to PostHog so we can fix bugs.
Where your data lives
- Supabase — our database, authentication, and file storage provider.
- PostHog (EU) — product analytics and session recordings.
- Resend — sends signup confirmation and password reset emails.
- Vercel — hosts the website. Its server logs record incoming requests, including IP addresses.
- Vercel BotID — bot detection. It runs on every page and checks whether requests to our feedback and view-counting endpoints come from a person or an automated script.
- Cloudflare Turnstile — runs the bot-protection challenge on the signup, sign-in, and forgotten-password forms.
Public content
Any rig you mark as public becomes visible to anyone with its share link — name, gear placements, dimensions, and your username are shown. View, like, and remix counts are aggregated and shown alongside.
Your choices
- Turn session recording on or off anytime from your Account settings. It stays off unless you opt in.
- Turn analytics on or offat any time using the control below. Analytics stays off until you allow it, and turning it off stops collection immediately. Setting your browser's Do Not Track flag also keeps it off.
- Delete your account from the Account page. Your profile, saved gear, and likes are removed. Public rigs you've published survive in anonymised form so they remain available for other users who have remixed them; your username is replaced with a sentinel placeholder.
- Make a rig private at any time from its editor. Past view counts on a rig that was previously public are kept.
Contact
Questions, requests, or complaints about data handling go to privacy@giggrid.net.
See also our Terms of Service.