Privacy Policy
Effective date: September 17, 2026
GrantBear ("GrantBear", "we", "us") is operated by Slize Media LLC. GrantBear helps marketing agencies get access to their clients' advertising and analytics accounts (such as Meta and Google) through a single link. This policy explains what information we collect, how we use it, and the choices you have.
Who this policy applies to
- Agencies: businesses that create a GrantBear account and send access requests to their clients.
- Clients: people who open an agency's GrantBear link and choose to grant that agency access to their accounts.
Information we collect
From agencies: name, email address, business name, logo and brand color, billing information (processed by our payment provider; we do not store full card numbers), and the connections the agency makes to its own Meta and Google accounts.
From clients: when a client signs in with Meta or Google through a GrantBear link, the platform asks the client to approve specific permissions. With that approval we can see the list of business assets the client manages (for example ad accounts, Pages, Instagram accounts, pixels, Google Ads, Analytics, Tag Manager, Business Profile and Search Console properties) and grant the requesting agency access to the assets the client selects. We record which assets were shared, with which agency, and when.
Automatically: basic technical data needed to run the service securely, such as IP address, browser type and essential cookies.
How we use information
- To let clients grant agencies access to the assets they select.
- To show agencies the status of their access requests.
- To operate, secure and support the service, and to bill agencies.
- To send service emails (for example, when a request is completed).
We do not sell personal information, and we do not use data obtained from Meta or Google for advertising, profiling or any purpose other than providing the access-sharing features requested by the user.
Meta and Google platform data
- Client access tokens from Meta or Google are used only during the session to grant the requested access, and are not stored after the access has been granted.
- Access tokens for an agency's own connected accounts are stored encrypted and used only to provide the service to that agency.
- GrantBear's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
- Access granted to an agency can be removed at any time by the client directly in Meta Business Settings or in the relevant Google product.
Sharing
When a client grants access, the selected assets are shared with the agency that sent the request. We also use service providers to run GrantBear (hosting, database, payments and email delivery), who process data on our behalf under their own security and confidentiality obligations. We may disclose information if required by law.
Retention and deletion
We keep agency account data while the account is active and delete it within 30 days after the account is closed, unless we must keep it longer for legal or billing reasons. To request deletion of your data, including data received from Meta or Google, email [email protected] and we will confirm once it has been deleted.
Security
We use encryption in transit and at rest for sensitive data, restrict access to production systems, and never ask for your Meta or Google passwords.
Your choices and rights
Depending on where you live, you may have the right to access, correct, delete or export your personal information, or to object to its processing. Contact us at the email below to exercise these rights.
Children
GrantBear is a business service and is not intended for anyone under 18.
Changes
We may update this policy. We will change the effective date above and, for material changes, notify agencies by email.
Contact
Slize Media LLC · [email protected]