Trust & Privacy
This page is maintained by Gravadee to answer common security and privacy questions about URA. It describes how we handle renter data today and what controls are in place.
Verified at the source
Identity is confirmed through Stripe Identity and income/credit through consumer-permissioned connections. You authorize each check yourself.
Data minimization
We keep verified results, not raw source documents. For example, we don't retain your government ID images — only the verified outcome.
Encrypted, access-controlled storage
Renter records are stored in our managed backend with row-level security and are not exposed through public read access.
Server-side access only
Sensitive renter data (names, emails, phone numbers) is read only through trusted server-side functions, never queried directly from the browser.
You decide what's shared
When you share your profile, you choose exactly which fields each landlord sees. Nothing is shared without your action.
Deletion on request
You can request that we delete your profile and associated records by contacting the team below.
How verification works
Read what a URA verifies, what each verification designation means, and why every verification carries a date and reference number.
How Gravadee Verification WorksShared responsibility
URA runs on the Lovable Cloud platform, which provides managed hosting, authentication, and database infrastructure. Gravadee is responsible for how the application collects, stores, and shares your data. This page describes Gravadee's current practices and is not an independent security certification.
Security & privacy contact
Have a question, a privacy request, or want to report a potential vulnerability? Reach out and we'll respond as quickly as we can.
Contact us