Privacy Policy

Last updated: September 25, 2026

Cramlio is an early-stage product built by a student. This page explains, in plain English, what Cramlio collects, what it saves, who helps run it, and what you can do about it. It describes how Cramlio works today — not how we hope it will work later.

The short version: you sign in with an email address and password. The Study Packs you make are saved to your account so you can come back to them. To build them, your study material is sent to Google's Gemini AI. We use PostHog analytics to understand how Cramlio is used — set up so your study material, what Cramlio generates from it, and your Helper messages aren't sent to it (details below). We don't run ads, and we don't sell your information. You can delete any Study Pack, or your whole account, yourself. Sharing a pack to Community is optional, and only happens when you choose it.

Your account

To use Cramlio you create an account with an email address and a password. Sign-in is handled by Supabase, our authentication and database provider. Your password goes from your browser straight to Supabase — Cramlio's own server never receives or stores it.

We don't ask for your name, your school, your age, your phone number or any payment information.

What Cramlio saves

Everything below is saved to your account in our Supabase database, so your work is there when you come back:

  • Your study material — the text you pasted, and the text Cramlio read out of your files, photos and scans. The original files and images themselves are not saved (see below).
  • What Cramlio makes from it — your Study Guide and study plan, Flashcards, Quizzes and their results, Weak Topics, Retests, and your conversations with Cramlio Helper.
  • Details about each pack — its title and subject, your test date, how long you can study each day, any extra notes you add (for example, "Teacher said chapters 4–6 matter most"), and your progress, such as which flashcards you've reviewed and your quiz scores.
  • Your settings — your grade level, how you'd like Helper to respond, Helper's tone, and your preferred quiz length.

Each account can only see its own Study Packs and settings. That's enforced in the database itself, not just in the app. The one exception is a copy you choose to share to Community, described next.

Community (optional)

Community lets you share a finished Study Pack with other signed-in Cramlio students. Nothing is shared unless you choose Send to Community on one of your packs, give it a name, and confirm.

  • What's shared: a copy of that pack's generated Study Guide, flashcards and practice quiz, the Community name you give it, and its subject. Anyone signed in to Cramlio can see and study it. Community packs don't show who shared them.
  • What isn't: your uploaded files and the text read from them, anything you pasted, file names, your extra notes, your test date and study plan, your Helper conversations, your quiz answers, scores, weak topics and progress, and your email or other account details.
  • It's a copy. Editing your own pack later doesn't change what's in Community. To share a newer version, remove it from Community and share it again.
  • Studying someone else's pack: your flashcard marks, quiz answers and results on it are saved to your account only — other students, including the one who shared it, can't see them. Helper works on Community packs the same way it does on yours, and uses your daily Helper messages.
  • Likes and dislikes: if you like or dislike a Community pack, your vote is saved with your account. Other students only see the totals — never who voted.

A generated Study Guide, flashcards and quiz can still reflect the material they were built from, so please only share a pack if you have permission to share that material — for example, not a teacher's handout they've asked you to keep to yourself.

You can remove a pack from Community at any time from the ••• menu on its card in My Packs — or, once your own copy has been removed after its test date (see below), from its card in Community. Deleting the pack yourself, or deleting your account, removes it from Community too. Once it's removed, other students can no longer open it, and their progress and votes on it are deleted.

Files, photos and scans

When you add a file, it's sent to Cramlio's server over a secure connection and the text is read out of it there.

  • PDFs, PowerPoint, Word and text files are read on our server.
  • Photos, screenshots and scanned documents are sent to Google's Gemini AI so it can read the text in them (this is often called OCR).

In both cases the file or image is held in memory only for that request. We don't save the original file or image — only the text that came out of it, which becomes part of your Study Pack.

How AI is used

Cramlio's Study Guides, Flashcards, Quizzes, Retests and Helper replies are written by an AI model. Right now that's Google's Gemini, used through its API. To do that, we send it the relevant parts of your study material and your Study Pack — for example, your material when a guide is built, the guide when a quiz is made, and your question plus a small, relevant slice of your pack when you ask Helper something. Your extra notes and your settings (like grade level) are sent along so the results fit you.

We can tell you what Cramlio does with your information, but we can't speak for what Google does with it — Google's own terms and privacy policy cover that. If that matters to you, read them before you upload anything.

Please don't upload sensitive personal information

Cramlio is meant for class notes, slides, handouts and study guides. Please don't upload things like ID documents, medical or financial records, passwords, or other people's personal information. If a photo of your notes happens to include something personal, crop it out first. Anything you add is saved to your pack and sent to the AI provider.

Who helps run Cramlio

  • Supabase — sign-in, and the database where your account, Study Packs and settings are saved.
  • Google (Gemini API) — the AI that reads photos and scans and writes your study material.
  • Vercel — hosts the Cramlio website and server.
  • PostHog — product analytics: how Cramlio's pages and features are used, and how its AI requests perform (see "Analytics" below).

They process your information to provide these services to Cramlio. We don't sell your information, and we don't share it with anyone for advertising.

Cookies, local storage and tracking

To keep you signed in, your browser stores your login session in its local storage, the same way many apps do. That's essential for Cramlio to work, and it's cleared when you log out.

Cramlio's analytics (PostHog, below) store a random identifier in a cookie and in your browser's local storage, so visits from the same browser can be counted together. Cramlio doesn't use advertising cookies or tracking pixels.

Analytics

Cramlio uses PostHog to understand how people use it — which pages and features get used, where people get stuck, and how well the AI features perform — so we can improve it. It runs on every Cramlio page, including before you sign in. Here's how it's set up:

  • Who you are: once you sign in, your analytics are linked to your account's internal ID (a random string from Supabase) — never your email address.
  • Page views and clicks: PostHog records which pages you visit and which buttons and links you click, including where on the page you click. The words on the page and the contents of fields are masked, so they aren't sent. Page titles are removed, and web addresses are trimmed to the page itself — anything after a ? or # (which can hold sign-in tokens from an email link) is removed first.
  • Events Cramlio sends: things like "a Study Pack was created", "the flashcards were finished", "a quiz was completed" or "a pack was rated", with only small details such as counts, yes/no flags, which settings were changed (not what they were changed to), a quiz score as a percentage, or like/dislike.
  • What's not sent: your study material, uploaded files and their names, text read from photos or scans, anything you paste, your Study Guides, flashcards and quiz questions, your Helper messages and replies, and your email address.
  • Off entirely: session recording (screen replay) and automatic error reporting.
  • AI requests: for each request Cramlio makes to Gemini, the server can record operational details — which model, how long it took, how many tokens it used (from which PostHog estimates the cost), whether it succeeded, and if it failed, the error the AI service returned — linked to your account's internal ID. The prompts and the AI's answers aren't included.
  • Server status: the server also sends a couple of routine messages, such as "server started", that contain nothing about you.

Like most web services, PostHog receives your IP address and basic browser details when your browser sends it data, and may use them to estimate a rough location. PostHog processes this data on Cramlio's behalf; its own terms and privacy policy apply to how it handles it.

Server logs

Like any website, the services that host Cramlio record ordinary request information — things like your IP address, the time, and which page or endpoint was requested. How long that's kept is up to the host.

When something goes wrong, our server also writes an error to its log. That can include the name of a file that couldn't be read, or the type of error that happened. These logs are designed to leave out the contents of your material and your Helper questions.

Deleting your information

  • A Study Pack: delete it from your dashboard with the ••• menu on its card. That permanently removes the pack and everything saved with it — its material, Study Guide, Flashcards, quiz results, Helper conversations and progress.
  • Finished Study Packs, automatically: a Study Pack with a test date is removed the same way once the test is more than 7 days past (counted in Pacific time). Packs without a test date stay until you delete them. If you had shared the pack to Community, the Community copy isn't removed with it — it stays until you remove it from Community.
  • Your whole account: on your dashboard, click your email address at the top and choose Delete account. That permanently deletes your account, along with all of its Study Packs and settings, anything you shared to Community, and your progress and votes on other students' Community packs.
  • Anything else: you can also email us to ask what we hold about you, to correct something, or to raise a privacy concern. You don't need to give a reason.

Contact: REPLACE_WITH_YOUR_EMAIL

Age

Cramlio is built for students in middle school, high school and college. If you're under 13, please only use Cramlio with a parent or guardian's permission. If you believe a child has given us personal information without that permission, contact us and we'll remove it.

Changes to this policy

Cramlio is early and will change. When we change what we collect or who we share it with, we'll update this page and the date at the top before the change goes live — not after.

What this page isn't

This is a plain-English policy written for an early-stage project. It isn't legal advice, and it doesn't claim certification or compliance with any particular regulation. If you have a specific question about your information, email us and ask.

Back to Cramlio