← Back to GradePilot

YOUR DATA

Privacy notice

GradePilot connects to your selected Home Access Center (HAC) on your behalf. It shows imported school information and lets you plan with it. GradePilot does not sell your information. This notice describes what the app handles when you use it.

HAC sign-in and grades

Your HAC username and password go to the GradePilot server for the sign-in request and then to the HAC site you selected. GradePilot does not save the password after that request. In the public deployment, it keeps the HAC session cookies and a recent copy of imported grades and school information encrypted in temporary server storage so you can refresh or reopen the app without signing in again. The GradePilot session expires after 30 minutes of inactivity. Disconnecting removes that server session.

Data on your device

Your browser can save appearance and profile choices, course display preferences, selected earlier-period category weights, planner tasks, reminder settings, and changed grade snapshots. Use Settings to download or clear this local information. Clearing it does not disconnect the HAC session; use Disconnect for that. Browser notifications are optional and depend on your device and browser permissions.

Optional planner sync

If you choose to link devices, GradePilot encrypts planner tasks in your browser before storing them remotely. The sync store receives encrypted data and an authorization digest, not your planner text or HAC password. The recovery link controls access; anyone with it may be able to link another device. You can unlink a device or delete the remote vault from the planner controls. Copies already saved on other devices must be cleared there.

Service providers and logs

The hosting service processes your request to GradePilot, the selected district HAC handles your school sign-in and records, and the shared storage service holds encrypted temporary sessions and optional encrypted planner vaults. When enabled, GradePilot's operation logs record outcomes and timing without usernames, passwords, student identifiers, grades, or session IDs. Hosting providers may separately handle request metadata under their own policies.

Vercel Web Analytics counts visits to GradePilot's pages without analytics cookies and may report aggregate referrer, location, browser, and device information. GradePilot removes query strings and link fragments from its page-view URLs and does not send grades, planner details, or custom analytics events.

Questions or a data concern

Contact the GradePilot operator at gradepilot@proton.me.