Trust & Privacy

This page is maintained by Gravadee to answer common security and privacy questions about URA. It describes how we handle renter data today and what controls are in place.

Verified at the source

Identity is confirmed through Stripe Identity and income/credit through consumer-permissioned connections. You authorize each check yourself.

Data minimization

We keep verified results, not raw source documents. For example, we don't retain your government ID images — only the verified outcome.

Encrypted, access-controlled storage

Renter records are stored in our managed backend with row-level security and are not exposed through public read access.

Server-side access only

Sensitive renter data (names, emails, phone numbers) is read only through trusted server-side functions, never queried directly from the browser.

You decide what's shared

When you share your profile, you choose exactly which fields each landlord sees. Nothing is shared without your action.

Deletion on request

You can request that we delete your profile and associated records by contacting the team below.

How verification works

Read what a URA verifies, what each verification designation means, and why every verification carries a date and reference number.

How Gravadee Verification Works

Shared responsibility

URA runs on the Lovable Cloud platform, which provides managed hosting, authentication, and database infrastructure. Gravadee is responsible for how the application collects, stores, and shares your data. This page describes Gravadee's current practices and is not an independent security certification.

Security & privacy contact

Have a question, a privacy request, or want to report a potential vulnerability? Reach out and we'll respond as quickly as we can.

Contact us