Single Purpose
The Decster student extension has a single purpose: to guide members of Skool communities that use Decster through their community's learning program, from inside Skool. It shows your community's roadmap, tasks and quizzes, lets you submit your work and see your progress, and gives you an AI lesson assistant that answers questions about the lesson you are on. It works only on skool.com.
Who We Are
Decster ("we," "our," or "us") operates the Decster student extension and the Decster platform at decster.ai. Your community's owner uses Decster to build the program you follow. This policy explains what data the extension handles, why, who can see it, and the choices you have. Decster is independent and is not affiliated with or endorsed by Skool.
Information We Collect
1. Account & sign-in
- Email address. You sign in with a one-time code sent to your email, or with Google. Before sending a code we check that the email belongs to a student of a Decster community.
- Google sign-in. If you choose Google, Google shares your email address, name and profile picture with our authentication provider to create your sign-in.
- Session. Your sign-in session (access and refresh tokens, your account ID and email) is stored in your browser so you stay signed in.
2. Your Skool account and community
- Linking your Skool account. The extension reads, from the Skool page you are on, your Skool user ID, username, display name and profile picture, and sends them to Decster so your Decster account is matched to the right Skool member.
- Which community you are in. The extension reads the community from the page address to show that community's program.
- Level and points. The extension reads your Skool level, points and your community's level rewards from Skool's own pages to display them. This stays in your browser and is not sent to Decster.
- Lessons. On a Skool lesson page, the extension sends that lesson's address to Decster to find the matching lesson in your program.
3. Your learning activity
- Task submissions: text answers, links, and files or images you upload (images are compressed in your browser before upload).
- Quizzes: your answers and results, including written answers.
- Progress: tasks, steps and roadmaps you complete, the coins and streak days you earn, and whether you completed or skipped the in-extension guide.
- Your time zone (for example, "Europe/London"), stored with your account so streak days follow your local calendar. We do not collect your location.
- Profile answers you give about your goals and background, used to personalize the lesson assistant.
4. Lesson assistant conversations
Messages you send to the lesson assistant, and its replies, are stored so you can see your conversation history for each lesson.
5. Checking Skool posts and comments
Some tasks ask you to post or comment in your Skool community. To confirm the task, Decster checks your post or comment in that community using the community owner's own connection to Skool, and, for posts, the link to your post. The extension may pre-fill a suggested text in Skool's post box; you decide whether to publish it. The extension does not read the content of Skool pages you visit to do this.
6. Help reports and diagnostics
- Reports you send from the Help screen: the category, title and description you write, together with your account email, your Skool name, and your browser's user-agent (its name and version). No screenshots are attached.
- Automatic diagnostics. If a part of a Skool page the extension relies on stops matching (usually after a Skool update), the extension sends a short technical report: the name of that part, the address of the Skool page you were on, and the extension version. It is linked to your account and sent at most once a day per issue.
7. Stored in your browser
The extension keeps a small amount of data in your browser's extension storage: your sign-in session, your list of communities (refreshed at least daily), your linked Skool identity, the panel width you chose, your place in the guide, the streaks already celebrated, and short-lived markers (from one minute to one hour) that let a task continue after Skool loads a new page.
What We Do Not Collect
- Anything from websites other than skool.com. The extension runs only on skool.com.
- The content of Skool pages you browse, beyond what is listed above.
- Your Skool password or login cookies. When you choose to sign out of Skool from the extension, it asks Skool to end your Skool session directly; nothing from that request is sent to Decster.
- Payment details, precise location, or health information.
- Analytics or advertising trackers. The extension contains none.
Browser Permissions & Why We Need Them
- identity — to open the Google sign-in window.
- storage — to keep your session and the settings listed above in your browser.
- skool.com — to show the Decster panel inside Skool and read the Skool data described above.
- decster.ai — to load your program and save your progress with Decster.
- supabase.co — our authentication provider, for sign-in and keeping your session valid.
How We Use Your Information
- To sign you in and confirm you are a student of a Decster community.
- To show your community's program, check your tasks and quizzes, and track your progress, coins and streaks.
- To answer your questions in the lesson assistant, using your lesson's content and your profile answers.
- To respond to your help reports and to keep the extension working when Skool changes.
- To protect the service, including limits on how many assistant messages can be sent.
Who Can See Your Data
- Your community's owner and admins. They run the program you follow, so they can see your name, email, Skool name and profile picture; the other Decster communities you belong to; your progress; your task submissions, including uploaded files, and quiz scores; and your profile answers. They can add reviews and notes to your submissions. They can see how often you use the lesson assistant, but not what you write to it.
- Decster staff, only as needed to provide support, investigate problems, and keep the service secure.
Service Providers
We share data only with providers that help us run the service, and only for that purpose:
- Supabase — sign-in, database, and storage of files you upload.
- Anthropic — generates the lesson assistant's replies and grades written quiz answers. It receives your messages, recent conversation history, the lesson's content and, when relevant to your question, your name and profile answers. Written quiz answers are sent without your name. If your community's owner uses Decster's AI assistant for creators, your progress and submissions may also be sent to it to answer their questions about their members.
- OpenAI — turns your messages into search data to find the relevant parts of your lesson, titles your conversations, checks messages for sensitive topics, suggests updates to your profile answers, and answers in the assistant's place if Anthropic is unavailable. Your messages, and for profile suggestions your profile answers, are sent to it for these purposes.
- Vercel — hosts decster.ai.
- Upstash — counts assistant messages to apply usage limits.
- Skool — the platform your community runs on. Using the community owner's own connection, Decster checks your tasks as described above, looks up your membership plan in the community with your Skool user ID, and, if your community has it turned on, searches the community's posts with keywords taken from your question.
We do not sell or rent your personal information, and we do not transfer it to third parties for their own purposes. We may disclose information if required by law or to protect the safety, rights, or property of Decster, our users, or the public. Data sent to Anthropic and OpenAI through their business APIs is not used by them to train their models under their API terms.
Limited Use of Data
Our use of information received from the extension adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements. We only collect and use the data described above to provide and improve the extension's user-facing features; we do not sell this data; we do not use or transfer it for serving ads; we do not use it to determine creditworthiness or for lending; and we do not use or transfer it for any purpose unrelated to the extension's single purpose, except as necessary to provide the service, comply with the law, or with your consent.
Data Retention & Security
- Your account, progress, submissions and conversations are kept for as long as your account exists, so you and your community can see your history. We delete them when you ask us to (see below).
- Server logs kept by our hosting provider for a limited time may include short excerpts of assistant messages, used only to operate and debug the service.
- In your browser: signing out removes your session, community list and linked Skool identity from the extension. Uninstalling the extension removes everything it stored in your browser.
- Uploaded files are shown only to you and your community's owner and admins, through links that expire after 15 minutes.
- All traffic uses HTTPS. Your sign-in tokens are held by the extension's background process and are never exposed to Skool pages. No system is perfectly secure, but we use industry-standard measures to protect your data.
Your Rights & Choices
- Access — request a copy of the data we hold about you.
- Correction — correct your profile answers in the extension, or ask us to fix anything else.
- Deletion — request deletion of your account and its data.
- Stop at any time — sign out, or uninstall the extension.
To exercise any of these, email support@decster.ai.
GDPR & CCPA
If you are in the EU or UK, our legal bases for processing are: performance of a contract (to provide the learning program you joined), legitimate interests (to secure, support and improve the service), your consent where we ask for it, and legal obligations. You have the rights of access, rectification, erasure, restriction, portability and objection. Your data may be processed in the United States, where our providers operate.
If you are a California resident, you have the right to know what we collect, to access and delete your information, and not to be discriminated against for exercising these rights. We do not sell or share personal information for advertising.
Children's Privacy
The extension is not directed to children under 13 (or the minimum age in your jurisdiction). We do not knowingly collect personal information from children under that age. If you believe a child has given us personal information, contact support@decster.ai and we will delete it.
Changes to This Policy
We will update this policy when the extension changes what it collects or how it uses data, and revise the "Last updated" date. Material changes will be made prominent.