Overview
Decster ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use the Decster Chrome extension.
Information We Collect
1. Authentication Data
- Google Account Information: When you sign in with Google, we collect your email address and basic profile information (name, profile picture) to authenticate your account
- Authentication Tokens: We securely store encrypted access tokens to maintain your login session
- Account Verification: We may collect information to verify your student status on Skool.com platforms
2. Learning Data
- Course Information: We access course titles, descriptions, and content from Skool.com to provide contextual AI assistance
- Lesson Content: We may process lesson materials to understand context and provide relevant help
- Learning Preferences: We store your learning preferences and settings to personalize your experience
3. Usage Data
- Extension Usage: We collect information about how you interact with the extension (features used, frequency of use)
- Performance Data: We may collect technical data to improve extension performance and reliability
- Error Reports: We collect error logs and crash reports to fix bugs and improve stability
4. Communication Data
- AI Conversations: We store your chat messages with the AI assistant to provide context and improve responses
- Support Communications: Any messages you send to our support team
How We Use Your Information
Primary Uses
- AI Learning Assistance: To provide personalized, contextual help with your coursework and learning materials
- Authentication: To verify your identity and maintain secure access to the extension
- Personalization: To customize your learning experience and provide relevant assistance
- Service Improvement: To enhance the extension's functionality and user experience
Secondary Uses
- Analytics: To understand how users interact with the extension and identify areas for improvement
- Security: To protect against fraud, abuse, and unauthorized access
- Compliance: To meet legal and regulatory requirements
Data Storage and Security
Security Measures
- Encryption: All sensitive data is encrypted both in transit and at rest
- Secure Authentication: We use industry-standard OAuth 2.0 for Google authentication
- Access Controls: Strict access controls limit who can view your personal information
- Regular Audits: We conduct regular security audits to ensure data protection
Data Retention
- Account Data: Retained while your account is active and for 30 days after deletion
- Learning Data: Retained for up to 2 years to provide personalized assistance
- Usage Data: Retained for up to 1 year for analytics and improvement purposes
- Communication Data: Retained for up to 3 years for support and legal purposes
Third-Party Services
Google Services
- Google OAuth: We use Google's authentication services to verify your identity
- Google APIs: We access your Google profile information (name, email, profile picture) for account setup
Supabase
- Database Services: We use Supabase for secure data storage and management
- Authentication: Supabase handles secure user authentication and session management
AI Services
- AI Processing: Your learning content and questions may be processed by AI services to provide assistance
- Context Analysis: Course content is analyzed to provide relevant, contextual help
Your Rights and Choices
Access and Control
- View Your Data: You can request a copy of all data we have about you
- Update Information: You can update your profile information through the extension settings
- Delete Account: You can request complete deletion of your account and associated data
Privacy Controls
- Data Sharing: You can control what data is shared with third-party services
- Communication Preferences: You can opt out of non-essential communications
- Learning Data: You can request that your learning data not be used for personalization
Children's Privacy
Decster is not intended for children under 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will take steps to delete such information.
International Users
If you are located outside the United States, please note that your information may be transferred to and processed in the United States. We ensure appropriate safeguards are in place for international data transfers.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by:
- Posting the updated policy on our website
- Sending an email notification to registered users
- Displaying a notice in the extension
Legal Basis for Processing (GDPR)
If you are in the European Union, our legal basis for processing your personal data includes:
- Consent: For optional features and communications
- Contract Performance: To provide the extension services you've requested
- Legitimate Interest: To improve our services and prevent fraud
- Legal Obligation: To comply with applicable laws and regulations
California Privacy Rights (CCPA)
If you are a California resident, you have the right to:
- Know what personal information we collect about you
- Know whether we sell or disclose your personal information
- Say no to the sale of your personal information
- Access your personal information
- Request deletion of your personal information
- Receive equal service and pricing even if you exercise your privacy rights
Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us at: