← Back to legal & support

Privacy Policy

Last updated: August 5, 2026

This policy describes what StudyAhead ("the app", "we") collects when you use it, why, and how you can remove it. It describes our actual data practices — nothing here is boilerplate. If a later version of the app changes what it collects, this page will be updated and the date above will change.

Account information

Creating an account is handled by our backend provider, Supabase. When you sign up with email, we collect the email address and password you provide (the password is stored by Supabase in hashed form; we never see or store it in plain text). You may also add an optional display name.

If you sign up with Sign in with Apple instead, Apple provides us with an identity token and, depending on the choice you make at sign-in, either your real email address or an Apple-generated private relay address. We never receive your Apple ID password.

Study data you create

The core of the app is the study plan you build, so we store what you enter to generate and track it:

This data is stored so your plan and history are available across your devices, and is protected by row-level security so only your account can read or write it.

Notifications

If you enable reminders, we store a push notification token issued by Expo for your device, tied to your account, plus your notification preferences (which reminder types are on, and your quiet hours) so we know when and whether to send you a reminder.

Subscriptions

If you subscribe to StudyAhead Pro, the purchase itself is handled entirely by the Apple App Store or Google Play — we never see or store your payment card details. Purchase and renewal events are relayed to us by our subscription infrastructure provider, RevenueCat, as the full billing event record RevenueCat sends: product, price and currency, transaction identifiers, event type, timestamp, and store environment. The only account identifier attached to it is your internal user id — we never send RevenueCat your email or name. This billing history is kept even if you later delete your account, but with your account identifier removed from it, so it can't be traced back to you.

Analytics

We use PostHog for product analytics, identified only by an internal account ID — never your email, name, or any text you write. Events we record include app opens, onboarding progress, exam creation (material load, confidence level, and how many days until the exam — never the exam's name or subject), study session activity (bucketed durations and completion outcomes), streaks, badges earned, and subscription/paywall interactions. Raw study notes, exam names, subjects, passwords, email addresses, full names, and any authentication or push token are never sent to analytics — this is enforced in code, not just policy.

Analytics is entirely optional infrastructure: if it isn't configured for a given build of the app, none of this collection happens at all.

Crash and error reporting

We use Sentry to capture crash reports and errors, so we can fix problems you run into. Sentry is associated only with your internal account ID — never your email or name — and we strip any personal information Sentry might otherwise try to infer automatically. Like analytics, this is optional infrastructure and produces no data at all if not configured for a given build.

Where your data lives

Provider What it's used for
Supabase Account authentication and all app data (exams, plans, sessions, progress).
RevenueCat Subscription/purchase status, linked to your account ID.
PostHog Product analytics, linked to your account ID only (optional).
Sentry Crash/error reporting, linked to your account ID only (optional).
Apple Sign in with Apple, and App Store purchase processing.
Expo Delivery of push notification reminders to your device.

We do not sell your personal data to anyone, for any purpose.

Deleting your data

You can delete your account at any time from Settings → Delete Account. This permanently deletes your exams, plans, tasks, sessions, progress, streaks, badges, and notification settings, then deletes your login itself. Subscription event history is kept for accounting purposes but is detached from your account, as described above.

Children

StudyAhead is not directed at children under 13, and we do not knowingly collect data from them.

Changes to this policy

If what we collect changes, we'll update this page and the "last updated" date at the top.

Contact

Questions about this policy? See Support.