Last updated 19 September 2026
Grabbit is built to hold as little as possible. There are no accounts, no tracking scripts, and no permanent library of what you download.
There is no sign-up, so Grabbit never asks for a name, an email address or a password. It does not run analytics, advertising or third-party tracking scripts, and it does not build a profile of you.
Only what is needed to hand you a file, and only briefly.
Once a file has been delivered it is removed on a short retention timer. Jobs that fail or are cancelled have their partial files deleted immediately. Abandoned jobs and any orphaned files are swept away by a cleanup routine, so nothing accumulates indefinitely.
To download media, Grabbit contacts the platform you pasted a link for. That platform will see the request and applies its own privacy policy. Grabbit does not send your link, your files or your preferences anywhere else.
Logs are written in a structured form and deliberately redact sensitive values. Error messages returned to the browser are sanitised so they never expose server file paths, environment variables or internal command lines.
You can clear temporary files at any time from Settings. Theme choice is stored in your own browser and clearing site data removes it. If you run your own instance of Grabbit, every retention and storage limit is yours to configure.
Grabbit is operated by whoever hosts this instance. Questions about the data held on a particular deployment should go to the person or team running it.