Last Updated: November 20, 2024
Summary
We collect minimal data to provide our service. We never sell your information. Your Gemini API key stays on your device.
1. Information We Collect
We collect the following information:
- Account Information: Email address and encrypted password
- Subscription Information: Stripe customer ID, subscription status, trial dates
- Usage Information: Features used, error logs (anonymous)
We Do NOT Collect:
- Course content you analyze
- AI-generated responses
- Assignment submissions or grades
- Browsing history outside the extension
- Credit card numbers (handled by Stripe)
2. How We Use Your Information
We use your information to:
- Provide and maintain the Service
- Process payments and manage subscriptions
- Send service-related emails (trial reminders, payment confirmations)
- Improve our Service and fix bugs
- Prevent fraud and ensure security
3. How We Share Your Information
We share information only with trusted service providers:
- Supabase: Database and authentication (Privacy Policy: supabase.com/privacy)
- Stripe: Payment processing (Privacy Policy: stripe.com/privacy)
- Vercel: Website hosting (Privacy Policy: vercel.com/legal/privacy-policy)
We NEVER:
- Sell your personal information
- Share data with advertisers
- Provide data to educational institutions
- See or store content you analyze with AI
4. Data Security
We protect your data with:
- HTTPS/SSL encryption for all data transmission
- Passwords hashed with industry-standard bcrypt
- Database encrypted at rest
- API keys stored locally on your device with encryption
- Regular security audits and updates
5. Your Gemini API Key
Your Gemini API key is special:
- Stored locally: Only in your browser's storage, not on our servers
- Encrypted: Using Chrome's built-in encryption
- Never transmitted: We never see or receive your API key
- Your responsibility: Keep it secure and don't share it
6. Your Rights
You have the right to:
- Access: Request a copy of your data
- Correction: Update your email or password
- Deletion: Delete your account and data
- Opt-out: Unsubscribe from marketing emails
To exercise your rights, log into your dashboard or email privacy@solution.com
7. Data Retention
- Active accounts: Data retained while account is active
- Deleted accounts: Personal data deleted within 30 days
- Subscription records: Retained for 7 years (legal requirement)
- Usage logs: Retained for 90 days
8. Children's Privacy
Our Service is not intended for children under 13. We do not knowingly collect data from children under 13. If we learn we have such data, we delete it immediately.
If you are under 18, please obtain parent/guardian permission before using the Service.
9. International Users
Our data is stored in the United States. If you access from outside the US, your data may be transferred to US servers.
10. California Privacy Rights (CCPA)
California residents have the right to:
- Know what personal information we collect
- Request deletion of personal information
- Opt-out of data sales (we don't sell data)
- Not be discriminated against for exercising rights
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email. Continued use of the Service after changes constitutes acceptance.
12. Contact Us