Skip to content
Gramoday
Last updated: April 14, 2026

Privacy Policy

Your privacy matters. This policy explains in plain language what data Gramoday collects, why we collect it, and how you stay in control. We are committed to transparency — no legalese, no hidden clauses.

At a glance
Minimal collection
We only collect what we need to run the service.
Never sold
Your personal data is never sold to anyone.
Full transparency
You can request, correct, or delete your data at any time.
Cookie control
Only essential cookies by default. Analytics are opt-in.

Information you provide

When you use the contact form, subscribe to updates, or interact with our services, you voluntarily share information such as your name, email address, and message content. We store this data securely and only use it to respond to your inquiry or deliver the requested service.

Automatically collected data

When you visit Gramoday, our servers automatically record standard log data: your IP address (anonymized after 30 days), browser type and version, operating system, referring URL, pages visited, and timestamps. This helps us understand traffic patterns and fix technical issues.

Listening telemetry

Our streaming server (RadioBoss Cloud) collects aggregate listener counts, session duration, and geographic region at the country level. This data is not linked to individual identities and is used solely to improve programming and report to content partners.

Service operation

To deliver the live radio stream, serve web pages, handle contact form submissions, and ensure the website operates correctly across devices and browsers.

Communication

To respond to your inquiries submitted through the contact form, send service-related announcements (e.g., scheduled maintenance), and deliver opt-in newsletters if you have subscribed.

Analytics & improvement

To understand how visitors use Gramoday so we can improve the listener experience, optimize page performance, and guide programming decisions. All analytics data is aggregated and anonymized.

Legal compliance

To comply with applicable laws, regulations, or legal processes, and to protect the rights, property, and safety of Gramoday and its users.

Essential cookies

These are strictly necessary for the website to function. They include the Laravel session cookie (encrypted, HTTP-only), the XSRF protection token, and the language preference stored in your browser's local storage. These cannot be disabled without breaking core functionality.

Analytics cookies (opt-in)

If you consent, we use Google Analytics 4 to measure traffic. GA4 data is anonymized (IP anonymization enabled), and we do not enable Google advertising features. You can withdraw consent at any time through your browser settings or by clearing cookies.

Social media pixels

We may load the Meta (Facebook) Pixel for audience measurement if you have consented to analytics. This pixel does not track you across other websites when loaded from Gramoday. No advertising retargeting is configured.

Local storage

We store your language preference and radio volume setting in browser local storage. These are not cookies and are never transmitted to our servers — they stay entirely on your device.

Hosting & infrastructure

Gramoday is hosted on SiteGround (Google Cloud infrastructure). SiteGround processes server logs and may temporarily store request data as part of their hosting services. Their privacy policy governs that processing.

Streaming provider

Our live radio stream is delivered by RadioBoss Cloud (c40.radioboss.fm). They receive your IP address when you connect to the stream and collect aggregate listener statistics.

Analytics

Google Analytics 4 (opt-in only) processes anonymized browsing data. We have a Data Processing Agreement with Google and have disabled data sharing for advertising.

Email

Contact form submissions may be forwarded via our email provider. We do not use email marketing platforms or share email addresses with third parties.

Server logs

Raw server logs (including IP addresses) are retained for 30 days and then automatically purged. Anonymized aggregate statistics derived from logs may be kept indefinitely.

Contact submissions

Messages submitted through the contact form are retained for up to 12 months after the last correspondence, then deleted. You may request earlier deletion at any time.

Analytics data

Google Analytics data is configured with a 14-month retention period, after which it is automatically deleted by Google.

Listener statistics

Aggregate listener counts and session data from the streaming provider are retained indefinitely for historical reporting but contain no personal identifiers.

Encryption in transit

All connections to gramoday.com are encrypted via TLS 1.2+ (HTTPS). HSTS headers ensure your browser always connects securely. The audio stream is also served over HTTPS.

Encryption at rest

Database contents are stored on encrypted volumes provided by our hosting infrastructure. Session cookies are signed and encrypted by Laravel using AES-256-CBC.

Access controls

Administrative access is restricted to authorized personnel using strong credentials and two-factor authentication. We follow the principle of least privilege.

Incident response

In the unlikely event of a data breach, we will notify affected users within 72 hours and report to relevant authorities as required by applicable law.

Gramoday does not knowingly collect personal information from children under 13 (or the applicable age in your jurisdiction). Our service is a general-audience radio broadcast. If we become aware that we have inadvertently collected personal data from a child, we will delete it promptly. If you believe a child has provided us with personal information, please contact us immediately.

Access & portability

You have the right to request a copy of any personal data we hold about you, provided in a structured, machine-readable format.

Rectification

If any data we hold is inaccurate or incomplete, you may request that we correct or update it.

Erasure

You may request the deletion of your personal data. We will comply unless we are legally required to retain it (e.g., for tax or compliance purposes).

Restriction & objection

You may request that we restrict processing of your data or object to certain types of processing, including profiling (which we do not perform).

Withdraw consent

Where processing is based on your consent (e.g., analytics cookies), you may withdraw consent at any time without affecting the lawfulness of prior processing.

Lodge a complaint

You have the right to lodge a complaint with your local data protection authority if you believe your data has been mishandled.

Gramoday is operated from India. If you access the website from outside India, your data may be transferred to and processed in India or other jurisdictions where our service providers operate (e.g., Google Cloud data centers). We ensure adequate safeguards are in place, including Standard Contractual Clauses where applicable, to protect your data in compliance with relevant privacy regulations.

We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. When we make material changes, we will update the "Last updated" date at the top of this page and, for significant changes, display a notice on the website for at least 30 days. We encourage you to review this policy periodically.

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please reach out via our Contact page. We aim to respond to all privacy-related inquiries within 7 business days.

LIVE