Privacy Policy

Last updated June 23, 2026

In plain English: Phantom Grid reads your utility data — read-only, only what you authorize, for the shortest time needed — to verify your bill against the evidence behind it.

We never sell or share it. We take no commission and make no recommendations. You can revoke access any time, and you get a record of exactly what you granted. The detail follows below.

1. What we collect

Two kinds of data:

  • Account data — your email and sign-in identity, used only to authenticate you.
  • Utility data you authorize — read through your utility’s Green Button / ESPI interface: interval usage, billing statements, and (only if you opt in) account and service details.

2. How we use it

We use your utility data solely to reconstruct and verify how your usage interacts with billing mechanics, and to show you the results with their sources. We do not use it to build advertising profiles or to train models for unrelated purposes.

3. What we never do

We never sell your data and we never share it with installers, vendors, financiers, or data brokers. Phantom Grid takes no commission, so there is no incentive to. Your data is used to serve you, and for nothing else.

5. Revoking access

You can revoke Phantom Grid’s access at any time, from your account or directly with your utility. On revocation we stop reading new data; you may also ask us to delete the data we hold.

6. Retention

We keep your utility data for as long as needed to provide the verification you asked for, and delete or anonymize it on request or when an authorization ends, subject to any legal retention obligations.

7. Your rights and choices

You can ask us to access, correct, export, or delete the data we hold about you, and you can revoke utility-data access at any time. We don’t sell your data, so there is nothing to opt out of selling. To make a request, email admin@phantomgrid.io; we’ll verify it’s really you before acting, and we won’t penalize you for exercising these rights.

8. Service providers

We rely on a small set of infrastructure providers — including Google Firebase (authentication) and Google Cloud (hosting and processing) — bound to handle data only on our instructions. Your utility (e.g. ComEd) is the source of the energy data and governs its own systems. We do not add advertising or analytics trackers that sell your behavior.

9. Security

We protect data in transit and at rest and limit access to what is necessary to operate the service. No system is perfectly secure, but read-only, least-privilege access is our default posture.

10. Changes to this policy

If we change this policy materially, we will note the change rather than silently editing, and update the “last updated” date above.

11. Contact

Privacy questions or data requests: admin@phantomgrid.io.