What this covers
This policy describes the Campus macOS app and the Campus web app at campus.vin. Campus brings school schedules, homework, calendar events, club times and cafeteria information together. Connecting Google Classroom and importing from PowerSchool are optional.
Information kept on your device
Campus stores schedules, homework and notes, completion state, deleted items in Trash, calendar changes, club settings, preferences and cached cafeteria information locally. The Mac app uses its Application Support folder, including for Google OAuth tokens; the web app uses browser storage, including for Google OAuth tokens when you connect Google Classroom. Clearing browser storage or resetting the app removes locally stored data, but may not remove information held by third-party services.
Google Classroom
With your permission, Campus accesses your Classroom courses, coursework and submission information to show assignments and deadlines. The web and Mac versions use separate Google sign-ins. Campus does not submit work or change grades. OAuth exchange and refresh requests use kisj.pythonanywhere.com; the web version also requests Classroom homework through that service. Google authorization data is used only for the Classroom feature and is not included in app-to-web transfers. You can revoke access in your Google Account; the Mac app also offers Disconnect, while clearing Campus site data removes web tokens stored in the browser.
Campus's use of information received from Google APIs is intended to follow the Google API Services User Data Policy, including its Limited Use requirements. Campus does not sell Google user data or use it for advertising.
PowerSchool, calendar and cafeteria
On Mac, PowerSchool sync reads schedule pages through Chrome after you choose to sync; your PowerSchool password and Chrome cookies are not imported into Campus. On the web, PowerSchool import processes HTML you paste or select in your browser. Campus also requests school calendar and cafeteria data from their published endpoints. Those services may receive ordinary request information such as an IP address and request time.
Moving data from Mac to web
If you approve an app-to-web transfer, Campus encrypts a snapshot of schedules, homework, Trash, club and personal calendar data on your Mac and uploads the encrypted copy to Cloudflare Workers KV. The copy expires after five minutes, and deletion is requested when the web app retrieves it. The decryption key is placed in the browser URL fragment, not sent to the transfer server. Anyone who obtains that full transfer link before it is used may be able to read the data, so do not share it. After you confirm import, the data is stored in your browser. Google sign-in credentials and cached cafeteria images are not transferred; you must connect Google Classroom again in the web app.
Retention and security
Mac Trash entries are eligible for removal after 30 days when the app starts. Web Trash remains until you delete it or clear browser data. The transfer server keeps only temporary ciphertext as described above; Cloudflare may process technical request information to operate the service. Campus uses HTTPS for network transfer and AES-256-GCM for app-to-web payload encryption. Browser storage and any network service still carry risk, so protect your device and avoid sharing transfer links.
Contact and changes
For privacy questions, contact jay@kisj.space or jacob@kisj.space. We may update this policy if the service changes; the effective date above identifies the current version.