Last updated September 15, 2024

Piora Math Privacy Policy

This Privacy Policy explains how Piora Math, Inc. ("Piora Math," "we," or "us") collects, uses, shares, and safeguards information when families use our frontend applications and FastAPI backend routes for authentication, guest assessments, AI chat tutoring, curriculum, dashboards, billing, and analytics (the "Services"). It is part of our Terms of Service.

1. Information we collect

2. How we use information

3. Legal bases

Where required by law (e.g., in the EU/UK), we rely on the following bases: performance of a contract (providing the Services), legitimate interests (maintaining security, improving curriculum), compliance with legal obligations, and consent (parental approval for child participation and marketing communications, if any).

4. How we share information

We do not sell personal information or use it for targeted advertising. We share data only as needed to run Piora Math:

Each vendor is bound by contractual obligations to protect the data and may not use it for their own marketing.

5. COPPA & child privacy commitments

Piora Math is intentionally built for child learners, so we require a verifiable parent or guardian to complete the registration flow. When you sign up you confirm that you are the adult responsible for the child and consent to our collection of the limited data needed to deliver instruction. We only request what we need: the child’s first name, grade, activity history, and performance. Parents may review, correct, or delete a child’s information at any time by emailing privacy@pioramath.com. If we discover that a child’s information was provided without the necessary adult authorization we will delete it promptly.

6. Data retention

We retain account and learning records while your subscription remains active so that dashboards, session logs, and mastery snapshots remain accurate. After you cancel we keep limited information (such as invoices, audit logs, and aggregated analytics) for as long as necessary to comply with tax, safety, and backup requirements, typically no longer than three years unless a longer retention period is legally required. Guest assessment data that is never linked to an account may be purged sooner.

7. Security practices

We implement administrative, technical, and physical safeguards appropriate for an education platform, including TLS encryption in transit, Supabase Row Level Security, restricted API keys, audit logging with per-request IDs, access controls for production data, and continuous monitoring via Betterstack. No system is perfectly secure, so please notify us immediately at privacy@pioramath.com if you suspect unauthorized access.

8. Your rights & controls

To exercise these rights, email privacy@pioramath.com or use the in-app feedback tool. We may need to re-authenticate you via the OTP flow before fulfilling a request.

9. International data transfers

We store data primarily in U.S.-based Supabase infrastructure and may transfer it to the United States or other jurisdictions where our vendors operate. When data moves across borders we rely on standard contractual clauses or similar safeguards as permitted by applicable law.

10. Cookies and similar technologies

Our frontend stores only essential cookies and local storage values necessary to authenticate sessions, keep track of the free trial state, and remember theme preferences. We currently do not use third-party advertising pixels. You can clear cookies in your browser, but doing so may sign you out or reset progress indicators.

11. Updates to this policy

We may update this Privacy Policy when we ship new features (for example, additional curriculum modules, analytics cards, or chat agents referenced in the repository). Material changes will be announced in-app or via email. The "Last updated" date will always reflect the most recent revision.

12. Contact

You can reach our privacy team at privacy@pioramath.com. If we cannot resolve your concern you may have the right to contact the relevant data protection authority in your region.