This policy applies to the website meet-grace.com and the Grace product by Vantura Studios. Grace is built local-first: your Mac stays the center of the system unless you deliberately choose an external provider or a hosted option.
We collect personal data only to the extent necessary to provide our website. When you visit this website, technical access data (server log files) is automatically processed: IP address, date and time of access, URL accessed, browser, and operating system. This data is used solely for technical provision and security of the website and is not merged with other data. Legal basis: Art. 6(1)(f) GDPR.
This website is hosted via GitHub Pages (GitHub, Inc., USA). When you access the site, GitHub processes the connection data mentioned in section 2 to deliver content. Data transfer to the USA is based on the EU-U.S. Data Privacy Framework or standard contractual clauses pursuant to Art. 46 GDPR. See GitHub's privacy policy for details.
When you contact us by email, the data you provide (name, email address, message content) is stored and processed to handle your inquiry and follow-up questions. Data is not shared with third parties. Legal basis: Art. 6(1)(b) GDPR.
This website uses no cookies, no tracking services, and no analytics tools. No visitor profiles are created.
Grace Personal is a self-hosted workspace for Mac. Chats, runs, files, settings and workspace state are processed and stored locally on your device by default. There is no requirement to transfer your content to a central chat cloud operated by Vantura Studios.
You can back up or delete the local workspace folder at any time. Device management and restore flows remain under your control.
When you connect external agents or providers (for example Claude, Codex, Cursor, Hermes, OpenRouter or similar), prompts, files and tool results you send may leave your device and be processed under that provider’s terms. Grace orchestrates the connection and aims to make the data path visible; it does not replace the provider’s privacy policy.
Where you supply your own API keys (BYOK), those keys are stored in your local Grace configuration on your machine (or in the environment you operate). Vantura does not need your provider keys to run the local product core.
If you later enable an optional hosted Grace Cloud or “hosted free” style service operated for your account, additional processing may occur on servers you choose or that we operate for that product mode (for example account login, sync or managed model access). Those modes are optional and are not required for Grace Local / Personal. Where offered, we will describe storage location, retention and deletion in the product and, if needed, in an updated policy section.
Until you opt in, the default remains: no mandatory Vantura chat cloud.
Grace Enterprise uses the same product core with deployment options aimed at company control:
Enterprise features such as SSO, roles, audit logs and provider policies help governance. Local or private operation supports privacy; it does not automatically create legal certification. Compliance still depends on your configuration, contracts, retention rules, access controls and the models you allow. See also Grace Enterprise.
The iOS companion communicates preferably via LAN or Tailscale with your Mac workspace. Push notifications are registered for your local workspace; that is not central cloud storage of chat content by Vantura Studios. There is no requirement to use a central Grace chat server operated by us for day-to-day companion use.
Grace is designed so you can see when work stays on-device and when an external provider is involved, and so tool use and sensitive actions can require approval (strict mode, budgets, permission prompts). You remain responsible for which providers and tools you enable.
Under the GDPR you have the right to access (Art. 15), rectification (Art. 16), erasure (Art. 17), restriction of processing (Art. 18), and data portability (Art. 20), as well as the right to object (Art. 21). To exercise your rights, contact: jk@vantura-studios.com
You have the right to lodge a complaint with a data protection supervisory authority. For Schleswig-Holstein, the competent authority is the Independent Centre for Privacy Protection (ULD), www.datenschutzzentrum.de.
This privacy policy is current as of 24 July 2026. It may be updated when our website, the Grace product, or legal requirements change.