Skip to content

Privacy Policy

Last updated: September 10, 2026

MapGrid is operated by MCP Capital LLC ("MCP Capital", "we", "us"). This policy explains how we collect, use, and protect your information.

1. Information We Collect

Account information: name, email address, company name, professional role. Provided during registration.

Usage data: pages viewed, features used, map interactions, search queries, export activity. Collected automatically to improve the Service and enforce tier limits.

Payment information: processed and stored by Stripe. We store only your Stripe customer ID, not credit card details.

Private tax-sale research: documents you provide are processed once for your account or team. We keep normalized rows, document names and fingerprints, parcel matches, scoring profiles, underwriting snapshots, and your diligence notes. Original documents are discarded after parsing and cannot be downloaded from MapGrid. Unconfirmed normalized previews expire after one hour.

2. How We Use Your Information

  • To provide and maintain the Service
  • To process subscriptions and billing
  • To send transactional emails (account, alerts, exports)
  • To enforce usage limits per subscription tier
  • To improve the Service based on aggregate usage patterns

3. What We Do Not Do

  • We do not sell your personal information to third parties
  • We do not share your private research outside your account or the team features you use
  • We do not use your data for advertising
  • We do not store or redistribute property owner names redacted under Daniel's Law

Customer uploads never enter our global tax-sale dataset, public search, map tiles, public project links, coverage statistics, or recurring tax-sale alerts. Uploading does not create source refresh jobs or provider monitoring.

4. Data Storage and Security

Your data is stored in a PostgreSQL database on our cloud infrastructure with encryption at rest. All data in transit is encrypted via TLS 1.3. Access is restricted by account and team membership. Team-owned tax-sale cases are shared with authorized team members; personally owned cases remain private, including after a billing change.

5. Cookies and Tracking

Cookies: We do not use advertising, tracking, or marketing cookies. To keep you signed in, we store a session token in your browser's local storage, which is required for the Service to function.

Single sign-on: if you choose to sign in with Google or Microsoft, two short-lived cookies are set on that sign-in only: one binds the request to your browser to prevent cross-site request forgery, and one carries your session token for the single redirect back to MapGrid, where it is moved into local storage and the cookie is deleted. Both expire within minutes and neither is used for tracking, advertising, or analytics.

Analytics: We use Cloudflare Web Analytics to count page views and measure site performance. It is cookieless, collects no personal data, and does not track individuals across sites or build a profile of you.

Error monitoring: We use Sentry to detect and fix software errors. Sentry may receive technical information about your browser, device, and the error context (e.g., URL, stack trace). This data is used solely for debugging and is retained for 90 days.

6. Third-Party Services

  • Oracle Cloud - Cloud infrastructure and database hosting
  • Stripe - Payment processing
  • Cloudflare - CDN, tile hosting, and cookieless web analytics
  • Resend - Transactional email
  • Sentry - Error monitoring and crash reporting
  • OpenFreeMap - Street and topographic basemap tiles (the default basemap)
  • USGS National Map - Satellite/aerial imagery basemap tiles
  • CARTO - Dark basemap tiles
  • NJ Office of GIS - Historical aerial imagery for New Jersey, loaded only if you turn that layer on
  • Fonts - Self-hosted via our servers (no third-party font delivery requests)

About basemap tiles: the four tile providers above are contacted directly by your browser whenever the corresponding basemap is displayed, so they receive your IP address and the coordinates of the tiles you view. We do not send them your account, search terms, or any parcel you look up — but the tiles you request do indicate the area you are viewing. Only the provider for the basemap you have selected is contacted.

7. Data Retention

Account identity and authentication data are removed or anonymized within 30 days of account deletion. Anonymized usage statistics may be retained for analytics.

Derived tax-sale case records and provenance are retained. Deleting a personal account removes customer access to its personal cases and moves them to restricted operator retention. Team-owned cases remain with the team if an uploading member leaves or deletes their account; deleting the team moves its cases to restricted operator retention. Closed or archived items retain their history without consuming active tracking slots.

Generated tax-sale dossier files expire after 30 days and are deleted by scheduled cleanup. Their metadata and underwriting snapshots remain. Normalized CSV export files expire after seven days. No original uploaded document is included in these exports.

8. Your Rights

You can request access to, correction of, or deletion of your personal data at any time by contacting privacy@mapgrid.us or through your account settings. You can also download account and saved-research data from Settings > Security > Download my data. Private tax-case exports are available through the case workspace on eligible plans; contact us for an access or deletion request concerning retained case records.

9. Contact

For privacy-related questions: privacy@mapgrid.us