Privacy Policy
Last Updated: January 24, 2026
SmartStudy AI ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our mobile application. We designed this app with a "Privacy-First" architecture, giving you control over whether your data stays on your device or syncs to the cloud.
1. Information We Collect
We collect information in two ways, depending on how you use the app:
A. Local Mode (Default)
- Data Stored: Study notes, subject grades, exam numbers, school name, and your Gemini API Key.
- Storage Location: All data is stored locally on your device using your phone's internal storage.
- Access: We have zero access to this data. It never leaves your phone.
B. Cloud Mode (Optional)
If you choose to create an account to sync data across devices, we collect:
- Personal Information: Email address (for authentication) and Profile Name.
- App Data: Study sessions, subject lists, grades, and syllabus progress.
- Storage Location: This data is stored securely on our encrypted servers (hosted by Supabase in the EU/US).
C. Information We DO NOT Collect
- AI API Keys: Your Google Gemini API Key is never sent to our servers. It is stored exclusively on your local device. When you use the AI Tutor, your device communicates directly with Google's servers.
- Payment Information: We do not currently process payments or collect credit card details.
2. How We Use Your Information
We use your data solely to provide the app's core functionality:
- To generate personalized study schedules and reports.
- To allow you to sync your progress across multiple devices (Cloud Mode only).
- To facilitate the AI Tutor feature (sending your questions to Google's AI model).
3. AI Features & Third-Party Services
Our app facilitates interaction with Artificial Intelligence (AI) to help you study.
- Google Gemini API: When you ask the AI Tutor a question, your text prompt and relevant study context are sent directly from your device to Google's API. Google's use of this data is governed by the Google Generative AI Terms of Service.
- Supabase: We use Supabase to host our database and authentication services. They adhere to strict GDPR and data security standards.
4. Data Security
- Encryption: All data synced to the cloud is encrypted in transit (HTTPS/TLS) and at rest.
- Row Level Security (RLS): Our database uses strict Row Level Security, ensuring that your data is cryptographically restricted so that only you can access it.
- Local Storage: Sensitive credentials (like your API Key) remain in your device's secure local storage.
5. Children’s Privacy
Our app is an educational tool intended for students (Junior Cycle and Leaving Certificate).
- Under 13s: We do not knowingly collect personal data from children under 13 without parental consent. If you are under 13, please use the app in "Local Mode" only, which prevents any data transmission to our servers.
- Parental Rights: Parents may request the deletion of their child's Cloud account at any time by contacting us.
6. Data Retention & Deletion
- Retention: We retain your Cloud data as long as your account is active.
- Deletion: You can delete your account and all associated data instantly from within the app settings (Profile > Danger Zone > Delete Account). This action is irreversible and wipes your data from our servers immediately.
7. Contact Us
If you have questions about this privacy policy, please contact us at:
support@somict.com