Privacy Policy
Last updated: September 2026
Focusity ("the app", "we") is a study planner for students. This document explains what data we collect when you use the website or the app, why we collect it, and how you can delete it. We do not sell data to third parties and we do not show advertising.
What we collect
- Account details — your email address, and your first and last name if you registered with an email and password; or your name, email and profile picture if you registered with Google.
- Your study data — the courses, assignments, schedule, study sessions and preferences (calendar display and filters) that you create or import in the app.
- Files you import — timetable files (CSV/Excel) and calendar files (ICS) are processed directly in your browser and are never sent to our server. Exam-schedule PDFs are sent to our internal PDF processing service purely to extract the data, and are not retained after processing — only the structured data (course name, date, time) is saved to your account.
- Information about import attempts — so that we can fix file detection when it fails, we keep information about each import attempt: what kind of file it was, whether detection succeeded, how many rows were recognised, and the column labels in the header row (for example "course name", "day", "time"). We do not keep the contents of the rows themselves, the file name, or your course names and grades. Email addresses, phone numbers and ID numbers are stripped from the column labels automatically before anything is stored.
- A file you chose to share after a failed import (with your consent only) — if an import fails, the screen offers you a checkbox to send us the file itself so we can improve detection. This is entirely optional, the box is never pre-checked, and without checking it the file stays on your device. A file you do send is kept in private storage, used only to fix file detection, shared with nobody, and deleted automatically after 30 days (or immediately if you delete your account). Grade sheets are never sent — the option does not exist in the grades importer.
- Notifications — in the mobile app, the daily study reminder is scheduled and shown on the device only; it is not sent through a server and is not collected or stored by us.
- Landing-page reminder sign-up — if you left an email address in the "semester hasn't started yet?" form on the website, we store the address only, with no name and no other detail. It is used for one purpose: a single reminder on the day before the semester starts. This list is entirely separate from user accounts — no account is needed to join it, and we do not add it to any mailing list. After that one reminder, nothing further is sent to you. You can ask us to delete the address at any time using the contact details at the bottom of this page.
Why we use your data
- To run the app itself — to show your schedule, assignments and progress.
- To remember your preferences (calendar view, filters) across devices.
- For technical support, if you contact us.
- To send the start-of-semester reminder, only to people who explicitly asked for it on the landing page — one email, and no more.
We do not use your data to train artificial-intelligence models, and we do not run advertising tracking of any kind.
Where your data is stored
Account and study data are stored on Supabase (secure cloud infrastructure, with row-level access control so that only you can reach your own data). The website is hosted on Vercel.
Google Calendar connection and data protection
If you choose to connect your Google Calendar (Settings → two-way Google Calendar sync),
Focusity requests one permission only:
https://www.googleapis.com/auth/calendar.events. The connection is entirely
optional, happens only after your explicit consent, and can be disconnected at any time.
Focusity's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
What we read and write
- We access your primary calendar only, and only events in a rolling window from now to 90 days ahead.
- From each event we read only the title, start time and end time — so we know when you are busy, and the scheduling engine does not place a study block on top of an existing event.
- In the other direction we create, update and delete only events that Focusity itself created, and there too we send only a title and times.
- We do not read and do not store attendees, guest lists, event descriptions, attachments, past events, or any calendar other than the primary one.
How the data is protected
- Encryption in transit: all traffic to Google and to our servers uses HTTPS/TLS exclusively.
- Encryption at rest: the database is encrypted at rest on Supabase infrastructure.
- Credential isolation: the OAuth refresh token is stored in a dedicated table protected by Row Level Security with no client-facing access policy at all — meaning the browser and the app cannot read it. Only authorized server-side functions can access it.
- The OAuth secret never reaches the browser: the authorization-code exchange with Google happens entirely server-side.
- Separation between users: every row is tied to your user ID, and no user has access to another user's calendar data.
Retention and deletion
- Disconnecting the calendar (Settings → tap the sync row) immediately deletes the stored refresh token from our servers and stops all further syncing.
- Deleting your account permanently removes the connection and all associated data.
- We do not sell calendar data, do not use it for advertising, and do not use it to train artificial-intelligence or machine-learning models.
Sharing with third parties
We do not sell or rent your data. Data is shared only with the infrastructure providers that run the service (Supabase for storage, Vercel for hosting, and our internal PDF processing service), and only as far as is needed to operate the app.
Deleting your account and data
You can delete your account and all data associated with it at any time, via Settings → Delete account in the app. This permanently deletes all your courses, assignments, schedule and progress, and cannot be undone.
Children
Focusity is intended for students and is not directed at children under the age of 13.
Changes to this policy
If we make a material change to this policy, we will update the date at the top of this page.
Contact us
For privacy questions, you can reach us by email: meir.vaknin02@gmail.com