01
Scope
VTG Vault is operated by Gray Tecknologies LLC. This policy covers two different things: the marketing site at vtgvault.com and the VTG Vault application that a paying customer logs into. They collect different data, so this page keeps them separate.
02
What the site collects
The marketing site collects only two things: an email address through POST /api/subscribe, and a name plus an email address through POST /api/founder-circle. Both go into MongoDB. Neither form creates an account.
03
What the app stores
The app stores inventory records, cost basis, sale records, hauls, and locations. For Shop customers, it also stores staff user accounts with a role and permissions for each person.
No. VTG Vault does not sell your data or use it to train anything. You own the data you put into VTG Vault.
04
Payments
Stripe processes subscription payments. Stripe Payment Links handle checkout on Stripe's own checkout page. Card details are entered there and never reach VTG Vault.
Subscriptions are monthly or annual. The founding rate is a recurring annual subscription that keeps its rate on renewal. Email hello@vtgvault.com to cancel. The subscription stops at the end of the period you have already paid for and does not renew. The refund policy explains the money back guarantee, which lasts 30 days.
05
Square
Square is optional. If a seller connects it, the app stores an OAuth credential and uses it to take card payments on that seller's behalf.
Cash App and Venmo are payment requests and QR codes. They are not stored account connections.
06
Analytics and cookies
Two analytics tools run on the live site: Umami and Google Analytics 4. Umami is cookieless. Google Analytics 4 sets cookies. They run only on vtgvault.com and www.vtgvault.com, not on a preview deploy or a local build.
No other trackers run. There is no advertising pixel, session recorder, or chat widget.
The VTG Vault app runs Umami too, also cookieless, on its own domain, kept separate from the site numbers. It records which app pages are opened and a few milestone events: purchase confirmed, account created, piece added, labels printed.
07
Marketing email
Marketing email goes only to the address you provide. Every email links to /unsubscribe.
Unsubscribing marks the Email record as unsubscribed, sets subscribed to false and stores the date in unsubscribedAt. It does not delete the record. Email hello@vtgvault.com to ask for the Email record to be deleted.
08
Who else touches the data
These outside services touch the data described on this page:
- Stripe for payments.
- MongoDB for storage.
- Umami and Google Analytics 4 for site analytics, and Umami separately for app analytics.
- The email delivery service used for marketing email.
09
Retention, copies and deletion
- While your account is active, your account and inventory data are kept so the app works.
- If you cancel, your data is kept for 90 days so you can come back or ask for an export, then deleted from the live database.
- Payment and billing records are kept as long as tax and accounting law requires. Stripe also keeps its own records under its own policy.
- The Email record for marketing email is kept until you ask for it to be deleted. Unsubscribing stops the email but keeps the record, so you are not added again by mistake.
- Database backups can hold a copy for a limited time after deletion and age out on their own.
Email hello@vtgvault.com to ask for a copy of your data or to have it deleted. Unsubscribing from marketing email does not delete the Email record.
10
Children and changes
The site and app are for sellers and their businesses, not children. Email hello@vtgvault.com with any question about information connected to a child.
This policy changes when the business, site, or app changes. The new version replaces this page and updates the date above.
11
How to reach a human
Email hello@vtgvault.com. That is the only contact address for this policy.