YOUR DATA, YOUR SPACE

Privacy controls.

Study Grove is an early public test. Email registration is available. Confirmation and password recovery emails are sent through Supabase using Resend. This page describes the current controls; a complete privacy notice is being prepared.

What the app uses

Your account identifier, display name, avatar colour, friend connections, subject, timer records, reflections and work photos support the study experience. Supabase manages email accounts and passwords. Study records are held in Cloudflare D1, and work photos in private R2 storage. The Supabase project is located in Sydney, Australia; this does not mean all site data is stored there.

Who can see what

Accepted friends can see your display name, animal avatar, outfit colour, current subject and current session duration while you study. Joining a study group explicitly shares completed study-time summaries with its members. Joining a classroom shares those summaries with the classroom owner; other students cannot view them. New classroom creation requires a self-declared teacher position and an approved staff email domain. This does not independently verify teaching qualifications. You can leave a group or classroom to stop this sharing. Reflections stay private. Work photos stay private unless you explicitly share a completed-session photo with accepted friends; removing the friendship stops their access through the app. Photos document effort, not proof of learning. Avoid photographing faces, full names, contact information or school details.

Classroom homework and schedules

Homework answers and optional PDF or processed image files are shared only with you and the owner of the classroom you joined. Private journal photos and reflections are not shared with teachers. Leaving removes the classroom owner’s access to your submissions through the app; your stored submissions remain. PDFs may contain metadata. Schedules are private to your account, or browser-local in guest mode. Browser reminders require the website open and notification permission. Calendar export shares the selected plan with whichever calendar you import it into. No closed-app browser push service is configured.

Guest mode

Guest reflections stay in your browser. Guest photos are not uploaded. Clearing browser storage removes guest progress. Signed-in photos are resized and re-encoded before upload; the server strips optional metadata chunks. Photos are not checked for study relevance.

Your introduction, weather and practice

Your self-declared student or teacher position controls who can create classrooms. New classroom creation also requires an approved staff email domain. Country, time zone and season region are private preferences. Optional regional weather sends the chosen preset city to Open-Meteo through our server, never your precise location. Model forecasts may differ from actual conditions. Quiz PDFs and notes are read on your device. Optional on-device AI downloads model assets from Hugging Face and runs locally; lesson text is not sent to an AI provider. Practice sets remain in this browser until cleared. Browser-local storage and model caches can remain on shared devices.

Deleting photos

Open Progress and choose Delete photo. This removes the active stored photo; the reflection stays in your journal. Photos and homework files older than 90 days are removed on your next authenticated visit; this is not a continuously running deletion service. More → Privacy & data lets you export your text records or permanently clear study records, files, plans and friend connections. Your Supabase sign-in identity is retained; full account deletion still needs operator assistance.

Next steps before wider signup

We are finalising a receiving support email, full sign-in account deletion and the approach to younger students’ consent. These controls are still unfinished. Registration being available does not mean this early test is ready for a school-wide rollout.