Arcavelo legal
Privacy Policy
Last updated: September 26, 2026
Download PDF · All legal documents
The short version
Arcavelo keeps the academic information you give it so it can plan your semester for you. It never sells your data, never shows you ads, and never lets anyone train AI on it. Your data goes to outside services only when a feature needs it, and each of them is listed below. You can delete your account and everything in it from Settings at any time.
1. Who we are
Arcavelo (“the app,” “we,” “us”) is a personal academic planner operated by Jacob Knox, an individual residing in Illinois, doing business as “Arcavelo”. We are responsible for the personal information described in this policy. You can reach us at support@arcavelo.app.
This policy explains what information the app collects, why, where it is stored, who it is shared with, how long it is kept, and how you can see, change, or delete it. It applies to arcavelo.app, the Arcavelo web app, and any Arcavelo mobile app. It is part of our Terms of Service.
2. Information we collect
Account information, from Google Sign-In
- Your name, email address, and profile picture, to identify your account.
- OAuth access and refresh tokens for Google Calendar and Google Tasks (read/write): the credentials that let the app act on those two Google services on your behalf. Tokens are encrypted (AES-256-GCM) before they are ever written to the database and are never exposed to your browser.
Content you enter yourself
Classes, assignments, grades, semesters, degree plan, goals, clubs, habits, and Important Information entries (values in Important Information are also encrypted at rest). You may also save external links, such as a Google Drive folder URL; the app does not request Google Drive access and never opens, scans, or retrieves the contents of those links.
Files and images you upload
- Syllabus and schedule files you upload for import. These are deleted as soon as they have been read, and in any case within 7 days (see “AI features” below).
- Class banner images and dashboard background photos, if you choose to upload your own. They are stored privately and can only be viewed through the app by the account that uploaded them.
AI feature content
Your conversations with Arc, and the draft that syllabus import produces from a file you confirm, as described under “AI features” below.
Optional Arc personalization
If you choose to personalize Arc, the app stores the fixed-choice routine and planning preferences you answer, such as your usual wake and bedtime, breakfast habit, commute, regular activities, preferred study-block and transition lengths, best focus time, and how structured you like a plan. These answers are optional, can be changed or cleared from Arc at any time, and are used only to tailor Arc’s replies and plans.
Plan and payment information
If you buy a paid plan, payment is handled entirely by Stripe. You enter your card on Stripe’s own page, and we never receive or store your full card number or security code. We store your Stripe customer ID, your plan, your subscription status, and your billing-period dates, so the app knows which plan you have. Stripe may share limited details with us, such as the card brand, last four digits, and billing country, for receipts and support.
Usage counts
To enforce the allowances on each plan, the app counts how many syllabus imports and Arc messages your account has used in the current period, and records the cost of each AI request so it can stop requests that would exceed its monthly spending cap.
Feedback and support messages
If you send feedback through the in-app form, we store the reason you picked and your comment, linked to your account, so the developer can read it. If you email us, we keep the email for as long as needed to help you.
Automatically collected technical data
- Cookies and browser storage: a sign-in session cookie, a few short-lived security cookies used during Google sign-in, and two preference cookies (your device’s time zone and how you last viewed the Assignments page), plus display preferences stored only in your browser. There are no advertising, analytics, or third-party tracking cookies. See the Cookie Notice for the full list.
- Rate-limit records: to prevent abuse of public endpoints such as sign-in, the app stores an HMAC-SHA256 hash of your IP address combined with a secret key and the action being rate-limited. The raw IP address is never stored, and the hash cannot practically be reversed. These records are deleted automatically once they expire.
- Last active date: the most recent time you opened the app, stored as a single date on your account and updated at most once an hour. It is used only to count how many people use Arcavelo overall. No history of your visits is kept.
- Error reports: technical details about errors, such as a stack trace or the page you were on, sent to our error-monitoring provider (see below).
- Hosting logs: Vercel, our hosting provider, keeps its own standard request logs (for example IP address, time, and requested URL) as part of running the service. We do not separately collect or store these logs.
What we do not collect
We do not collect your precise location, contacts, biometric information, government ID numbers, or financial account numbers, and we do not buy information about you from anyone. Please do not store government ID numbers, passwords, or financial or health information in the app, including in Important Information.
3. How we use your information
We use your information only to:
- provide the app’s features to you: showing your schedule, syncing your calendar and tasks, calculating grades and GPA, importing syllabi, answering your questions in Arc, and similar features you ask the app to perform;
- manage your plan, process payments through Stripe, and enforce plan allowances;
- keep the app secure, prevent abuse, and find and fix bugs;
- respond to your support requests and feedback;
- send you messages about your account, such as security notices, billing receipts and renewal reminders, and notice of material changes to our terms (we do not send marketing email); and
- comply with the law and enforce our Terms of Service.
We never sell or rent your information, never share it for advertising, and never use it to train AI models, ours or anyone else’s.
If you are in a region whose law requires a legal basis for processing, we rely on performing our contract with you (running the features you use), our legitimate interests (security, abuse prevention, and fixing bugs), your consent (for example, connecting Google Calendar, which you can withdraw at any time), and legal obligations.
4. Google Workspace API Limited Use disclosure
Arcavelo’s use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Concretely: your Google Calendar and Tasks data is used only to power the Calendar/Tasks features you’ve enabled inside Arcavelo, including Arc reading your calendar events to answer your questions about your schedule and moving an event only after you review and confirm the change. It is never used for advertising, is never sold, and is never used to develop or train AI models. It is transferred to a third party only to provide those features to you, as described under “AI features” below, and is never read by a human except as needed for security, legal compliance, or with your explicit consent (for example, to help debug an issue you’ve reported).
Arcavelo’s optional AI features are not given access to your Google Tasks data. Arc, the advisor, can read your Google Calendar events, and only in the way described under “AI features” below, which sets out exactly what is sent and to whom.
5. AI features
Arcavelo has optional AI features. They run only when you choose to use them, and the model behind them is provided by Anthropic. Nothing is sent to Anthropic unless you use one of these features. The AI Supplementary Terms cover how you may use them.
Syllabus import
When you import a syllabus, the text of the file you upload — or, for a scanned document, the file itself — together with your semester’s name, dates, and breaks, is sent to Anthropic to produce a draft for you to review. Nothing from that draft reaches your classes until you confirm it. Arcavelo deletes the uploaded file as soon as it has been read, and in any case within 7 days. Once you confirm an import, the draft that was read from it (the course details, grading breakdown, and assignments it found — not the file) is kept with the class you saved it to, so you can add more assignments from it later without uploading it again. You can delete it from that class’s page at any time; it is also deleted when you delete the class, discard the import, or delete your account.
Arc, the advisor
When you ask Arc a question, your question and the parts of your Arcavelo data needed to answer it — your preferred name and Arc personalization (if set), classes, assignments, due dates, grades, class meeting times, and a saved syllabus extraction when you ask about that document — are sent to Anthropic. Arc can prepare a new Google Calendar event or a move of an existing writable timed event, a new assignment, or a change to a class’s information, but nothing is added or changed until you review it and confirm it in a popup where you can edit every field. Your conversations with Arc are stored in your account until you delete them, and are deleted with your account.
Arc and your Google Calendar
When a question involves your schedule, Arc can also read the events on your Google Calendar for the dates involved: each event’s title, time, and location, from every calendar you haven’t hidden in Settings. Those details are sent to Anthropic to answer that question, and only then. Arc never deletes calendar events. It can add an event or move an existing writable timed event only after you review and confirm that exact change. It cannot move read-only or all-day events. Event titles and locations can include details about your life outside school, so hide any calendar you don’t want Arc to see from Settings.
Arcavelo does not store a separate copy of calendar events Arc reads only to answer a question. If you ask Arc to move an event, the review proposal stored with the conversation includes the event title, calendar name, original and proposed times, and the internal Google identifiers needed to apply that exact move after confirmation. If Arc mentions an event in its answer, that answer is also saved with your conversation. You can delete the conversation at any time.
Arc and public web research
Arc may search the public web when you ask it to look something up or when current research would materially improve an academic-planning answer. Search queries are sent through Anthropic’s web-search tool. Arc is instructed to use general topic terms and never include your name, grades, assignment or event titles, private notes, or other personal records in a search query. Source links Arc relies on are shown in its answer. Arcavelo does not separately store the search results or query; the answer and its source links are stored with your conversation until you delete it.
What is never sent
Your Google account credentials, your Important Information entries, and any part of your data that the feature you are using does not need. Arcavelo’s AI features are not given access to your Google Tasks, and Arc reads your Google Calendar only as described above. If you previously turned a Google task into an assignment, that assignment is ordinary Arcavelo data from then on, and Arc can read it like any other assignment.
How Anthropic handles it
Anthropic processes this data on Arcavelo’s behalf under its commercial terms, which prohibit using it to train AI models. Anthropic deletes it within 30 days, except content flagged for violating its usage policies, which may be kept for up to 2 years, along with automated classification scores about that content for up to 7 years.
7. Where your data is stored and how it is protected
Your data is stored and processed in the United States. If you use the app from outside the United States, your information will be transferred to the United States, where data-protection law may differ from the law where you live.
The app protects your data in the following ways:
- All traffic between your browser and the app is encrypted in transit (HTTPS).
- The database is encrypted at rest by its provider, and Google tokens and Important Information values are encrypted again by the app before they are stored.
- Every database query is scoped to the signed-in account, so one user’s data cannot be read by another user’s session.
- Uploaded files are stored privately and served only after checking that the requester owns them.
- Error reports have request bodies, cookies, authorization headers, and IP addresses removed before they are sent.
No system is perfectly secure. If a security breach affects your personal information, we will notify you and any authorities as required by law, without unreasonable delay.
8. How long we keep your data
- Your account and content: for as long as your account exists, until you delete it.
- Uploaded syllabus and schedule files: deleted once read, and within 7 days at most.
- Arc conversations, personalization, and saved import drafts: until you clear or delete them, or delete your account.
- Rate-limit records: deleted automatically, generally within a day.
- Database backups: a rolling backup history of about 6 hours.
- Billing records: Stripe keeps payment and invoice records for as long as tax and accounting laws require, which is typically up to 7 years.
- Support emails: for as long as needed to resolve your request.
- Inactive accounts: if an account has not been used for more than 24 months, we may delete it after emailing the account’s address at least 30 days in advance.
9. Deleting your account
You can permanently delete your account and its data yourself at any time from Settings → Danger Zone, or by emailing us. If you have a paid plan, cancel it in Settings first. Deleting your account:
- Immediately and permanently deletes every row of app data tied to your account from the live database, including classes, assignments, grades, goals, clubs, habits, Important Information, Arc conversations, Arc personalization, import drafts, feedback, and your encrypted Google OAuth tokens.
- Revokes Arcavelo’s Google OAuth grant, so it no longer appears under your Google Account’s “Third-party access” list.
- Makes any class banner or dashboard background images you uploaded inaccessible immediately, since they can only be served to your account. The stored image files themselves are then removed from storage; that step is currently done by hand and can take up to 30 days.
- Clears the device-local display and timer preferences from the browser you delete the account from.
- Gives you an explicit, optional choice to also delete the “School” calendar and “Arcavelo” task list that Arcavelo created in your Google account, including every event and task inside them. If you don’t choose this, that calendar, task list, and everything already synced to them remain in your Google account untouched. Arcavelo simply no longer has access to modify them once its OAuth grant is revoked. This choice never affects your primary Google Calendar or any other Google data outside those two app-created items.
What deletion does not do instantly: a copy of your data may persist in the database’s rolling backup history for up to about 6 hours after deletion, even though it is immediately gone from the live app and from any query the app can run. After that window it is not recoverable by anyone, including us. Billing records held by Stripe, and data already held by Anthropic under the retention described above, are kept for the periods stated in this policy.
You can also disconnect the app from your Google account at any time, without deleting your Arcavelo account, from Google’s Third-party access settings. This immediately revokes the app’s ability to read or write your Calendar or Tasks.
10. Your choices and rights
Wherever you live, you can:
- see and edit the data you’ve entered directly in the app;
- ask us for a copy of your data, in a common machine-readable format;
- ask us to correct information you cannot correct yourself;
- delete your account and data as described above;
- hide calendars from Arc, delete Arc conversations, and delete import drafts;
- revoke Google’s connection to Arcavelo independently of the above; and
- object to or ask us to restrict a particular use of your information.
To make a request, email support@arcavelo.app from the address on your Arcavelo account, so we can confirm it is you. We will respond within 30 days, and we will not charge you or treat you differently for making a request. If we cannot do what you ask, we will explain why. If you are in the European Economic Area, the United Kingdom, or Switzerland, you also have the right to complain to your local data-protection authority. If you live in a U.S. state with a consumer privacy law, you may appeal a decision on your request by replying to our response with the word “appeal.”
Because we do not sell or share personal information for targeted advertising, there is nothing to opt out of in that respect. We do not track you across other websites, so we treat browser signals such as Global Privacy Control as consistent with how the app already works.
11. Age requirement
Arcavelo is only for people who are 18 or older, and is not directed at children. We do not knowingly collect information from anyone under 18. If we learn that an account belongs to someone under 18, we will delete the account and its data. If you believe a minor is using Arcavelo, please tell us at support@arcavelo.app.
12. Changes to this policy
When this policy changes, we update the “Last updated” date at the top. If a change materially affects how we use information we already hold, we will tell you in the app or by email at least 14 days before it takes effect, and where the law requires your consent, we will ask for it.
13. Contact
Questions about this policy, your data, or an access or deletion request can be sent to support@arcavelo.app.