Privacy Policy

Last updated: August 2025

Our Privacy-First Commitment

SchoolChatter is built with privacy-first principles to protect your email data while providing valuable AI-powered insights. We automatically delete non-school emails and remove email content after processing, ensuring your privacy is protected at every step.

🔒 Key Privacy Guarantees

  • Non-school emails are never stored
  • Email bodies are deleted after AI processing - only sender and subject information are stored
  • Minimal data retention - only what's needed for digest generation
  • Complete transparency - see exactly what's stored in your privacy dashboard

What Data We Collect

Gmail Access (Read-Only)

We connect to your Gmail account with read-only access to identify and process school-related emails. We never modify or send emails from your account.

School Email Content (Temporary)

Email content from confirmed school senders is temporarily processed for AI analysis and then automatically deleted.

Profile Information

Your name, children's details, and preferences to personalize your school communication digests.

How We Process Your Data

Our Privacy-First Data Flow:

  1. 1. Gmail Sync → Connect to your Gmail with read-only access
  2. 2. Sender Classification → Identify school vs. non-school emails
  3. 3. Email Body Content Sync → Non-school emails are never synced
  4. 4. AI Processing → School emails are analyzed for content and meaning
  5. 5. Content Cleanup → Original email text is securely deleted
  6. 6. Secure Storage → Only metadata remain

Important: Email content is shared with AI providers (Google Gemini, Anthropic Claude, OpenAI) only during processing and is immediately deleted from our systems afterward. We cannot read your emails directly in our database.

Data Classification and Protection Levels

We classify all sensitive data into protection levels to ensure appropriate security measures:

Level 1 (High): Student names, grades, schools, email content

Includes: Student personal information, school names, grade levels, email message content

Protection: Student information stored for digest accuracy

Encryption: Highest-level encryption standards with immediate cleanup for emails

Retention: Student information retained for service operation

Level 2 (Medium): Email metadata (sender, subject, dates)

Includes: Sender addresses, email subjects, timestamps, thread information

Protection: Stored for functionality with restricted access controls

Encryption: Standard encryption with access logging

Retention: Retained for service operation and historical digest generation

Level 3 (Low): User preferences, AI settings

Includes: Display preferences, notification settings, AI model choices

Protection: Stored for user experience optimization

Encryption: Basic security measures with user control

Retention: Maintained until account deletion or user modification

Data Storage by Classification Level

Data storage follows our classification system to ensure appropriate protection:

Level 1 Data

Student names, grades, and email content are temporarily processed and immediately deleted

Level 2 Data

Email metadata (senders, subjects, dates) is encrypted and stored for digest generation

Level 3 Data

User preferences and settings are maintained for service personalization

Security Tokens

OAuth tokens are encrypted and stored securely using industry-standard methods

Generated Content

AI-generated digests are stored for your viewing history with metadata protection

❌ What We DON'T Store

  • • Non-school email content
  • • Original email bodies after processing
  • • Personal email conversations
  • • Sensitive attachments

✓ What We DO Store

  • • School sender information (Level 2)
  • • Email subjects and timestamps (Level 2)
  • • Encrypted AI representations (Level 2)
  • • User preferences (Level 3)

Your Privacy Rights

1

Transparency

View exactly what data is stored through your privacy dashboard

2

Control

Revoke Gmail access anytime through your Google account settings

3

Deletion

Delete your account and all associated data at any time

4

Export

Request a copy of your data in standard formats

Data Security

We implement graduated security measures based on data classification levels:

  • All data encrypted in transit and at rest according to classification level
  • OAuth tokens stored using industry-standard encryption
  • Graduated security controls based on data sensitivity
  • Regular security audits verify that all sensitive data is identified and classified appropriately
  • Automatic security cleanup tracking and verification

Data Sharing

⚠️ Limited AI Processing

Email content is temporarily shared with AI providers (Anthropic, OpenAI, Google) for classification and summarization only. This content is processed and immediately discarded - it is not stored by these providers.

We do not:

  • Sell or share your personal data with third parties
  • Use your data for advertising or marketing
  • Store your data with AI providers long-term

We may share anonymized, aggregated statistics for research and service improvement, but this never includes identifiable personal information.

Policy Updates

We may update this privacy policy as our service evolves. We will notify users of any significant changes via email and update the "Last updated" date above. Continued use of our service after changes constitutes acceptance of the updated policy.

Contact Us

For privacy questions, concerns, or to exercise your rights, contact us at:

Email: privacy@schoolchatter.app

Privacy Dashboard: View your data transparency report in your account settings

This privacy policy is effective as of August 2025 and applies to all users of SchoolChatter services.

Privacy Policy - How We Protect Your Data | SchoolChatter | SchoolChatter