Privacy Policy
Last updated: March 30, 2026
1. Information We Collect
We collect information you provide directly:
- Account information (name, email address) from your chosen sign-in provider; we do not store a password when you use social login
- Questions and content you submit for AI analysis
- Uploaded images and documents
- Payment information (processed securely by our payment provider)
We also automatically collect:
- Device and browser information
- IP address and approximate location
- Usage patterns and feature interactions
- Performance and error data
2. How We Use Your Information
We use collected information to:
- Provide, maintain, and improve the Service
- Generate AI-powered answers to your questions
- Personalize your learning experience
- Process payments and manage subscriptions
- Send service-related communications
- Detect and prevent fraud, abuse, and security threats
- Comply with legal obligations
3. Data Storage & Infrastructure
Your data is stored on Cloudflare's global infrastructure, including Cloudflare D1 (database), R2 (file storage), and Workers (compute). Cloudflare provides enterprise-grade security, encryption at rest and in transit, and compliance with major data protection standards. Data is replicated across Cloudflare's network for reliability and performance.
4. Cookies & Tracking
We use cookies and similar technologies for:
- Essential cookies: Authentication tokens and session management (required)
- Functional cookies: Preferences and settings you choose
- Analytics cookies: Understanding how you use the Service to improve it
You can control cookie preferences through your browser settings. Disabling essential cookies may affect Service functionality.
5. Third-Party Services
We share data with trusted third parties only as needed:
- OpenAI:Question content is sent to OpenAI's API for AI-powered answers. OpenAI processes this data under their data processing agreement.
- Cloudflare: Infrastructure provider for hosting, CDN, and security.
- Payment processors: For handling subscription billing securely.
- OAuth providers: Google, GitHub, Discord, Microsoft, and Apple for sign-in (only profile information you authorize).
6. Data Retention
We retain your account data for as long as your account is active. Question history is retained for 12 months to enable review and continued learning. After account deletion, we remove personal data within 30 days, except where retention is required by law or for legitimate business purposes (e.g., fraud prevention).
7. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Export your data in a portable format
- Object to or restrict certain processing
- Withdraw consent where processing is based on consent
To exercise these rights, contact us at the email below. We will respond within 30 days.
8. Children's Privacy
Academic Luminary is not directed at children under 13. We do not knowingly collect personal information from children under 13. If we discover that a child under 13 has provided us with personal data, we will delete it promptly. If you believe a child under 13 has shared data with us, please contact us immediately.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page and updating the "Last updated" date. For significant changes, we may also send an email notification. Your continued use of the Service after changes constitutes acceptance of the updated policy.
10. Contact
For privacy-related questions or to exercise your data rights, contact us at helloacemy@gmail.com.