Legal
Privacy Policy
Last updated: September 13, 2026
Cereby (“Cereby,” “we,” “us,” or “our”) operates the Cereby web application at cereby.ai and the Cereby applications for iOS and Android (together, the “Service”). This Privacy Policy explains what information we collect, how we use it, how long we keep it, and the choices you have. By using the Service you agree to this policy.
1. Information we collect
We collect the following categories of information:
- Account information. When you sign up we receive your name, email address, and a unique account identifier from our authentication provider (Clerk). If you sign in with Google, we also receive your Google profile name, email, and avatar image. If you sign in with Apple, we receive the name and email address Apple shares with us, which can be a private relay address that Apple forwards to you.
- Content you create. Notes, documents, study materials, transcripts, chats, and uploaded files (PDFs, audio, video, images) that you create or import into the Service. We process this content to generate summaries, flashcards, study plans, and other study materials at your direction.
- Google user data (optional integration). If you choose to connect Google Calendar, we request the
https://www.googleapis.com/auth/calendar.readonlyscope. We read only the event fields we display: title, start and end time, status, and colour, so the Service can show your schedule alongside your study plan and suggest sessions in free time slots. We also read your primary calendar's address, name, and time zone — the address and name so you can see which Google account is connected, and the time zone so imported events appear on the correct day. We do not access attendee lists, attachments, locations, or event descriptions — these are excluded at the API request level, so they never leave Google's servers — and we never write to or delete events. - Social media accounts (admin-only integration). When an authorized Cereby operator connects Cereby's official YouTube, Instagram, or TikTok account through the admin-only Marketing Studio at cereby.ai/marketing-studio, we receive and store the account's unique identifier (e.g. TikTok
open_id, YouTube channel ID), display name, and OAuth tokens (encrypted at rest using AES-256-GCM). For TikTok specifically, we request theuser.info.basic,video.upload,video.publish, andvideo.listscopes to identify the connected account, upload Cereby-produced videos, publish them to the connected profile, and read post-level engagement metrics (views, likes, comments, shares) for our analytics dashboard. We do not collect TikTok user data from end-users of cereby.ai — this integration applies only to Cereby's own social media accounts. - Payment information. On the website, payment details are collected and processed by Stripe. In the iOS app, you pay through Apple In-App Purchase, and subscriptions bought in the mobile apps are managed by RevenueCat. We receive only the metadata needed to manage your subscription (plan, status, renewal date) — never your full card number.
- Usage and device data. We log standard request metadata (IP address, browser, OS, page paths, timestamps) and product analytics events to operate, debug, and improve the Service.
2. How we use your information
- To provide, maintain, and improve the Service.
- To generate study materials at your request (summaries, flashcards, quizzes, learning paths, transcripts, etc.) using AI models from Anthropic, OpenAI, and Google, with your permission (see section 2a).
- To suggest study sessions and surface upcoming deadlines based on calendar data you have connected.
- To process payments, manage subscriptions, and provide customer support.
- To detect, investigate, and prevent fraud, abuse, and security incidents.
- To comply with legal obligations and enforce our Terms of Service.
We do not sell your personal information. We do not use your content or Google user data to train, retrain, or improve generalized AI models.
2a. Third-party AI processing, and your permission
Cereby cannot generate study material without sending the content you submit to AI models operated by other companies. We ask for your permission before any of it is sent, when you create an account or first use an AI feature. The request names what is sent and who receives it, and offers Allow and Don't Allow. You can change your choice at any time in Settings → Data & AI. If you choose Don't Allow, AI features stay off and no content is sent to any AI provider; the rest of Cereby, including your notes, documents, folders and calendar, keeps working.
Specifically, when you use an AI feature we send:
- Text, notes and documents you submit, and the conversation history of that chat, to OpenAI, Anthropic, or Google, routed through Vercel AI Gateway. Which one depends on the model selected for that request. Whichever model is selected, each chat message and its context also go to Google (Gemini) to work out what you are asking and to notice things worth remembering, and to OpenAI to index messages for memory search, routed the same way.
- Context about you that chat includes by default, routed the same way, so that it can answer questions about your schedule, progress and study material without you pasting them in: your calendar events and assignment details; the titles of your notes, quizzes, flashcards and learning paths, and their contents when chat looks them up to answer you; your study progress (quiz attempts and scores, weak topics, learning path progress and graded Canvas assignments); memories, both ones you save and facts Cereby notes from your chats; your profile preferences (nickname, occupation, what you tell Cereby about yourself, custom instructions and tone); short summaries of your recent chats; and basic session details (device type, browser and operating system, language, plan and coin balance).
- Photos and camera scans of pages to Google (Gemini), routed through Vercel AI Gateway, to read their contents.
- Audio and video you record or upload, directly to OpenAI (Whisper) for transcription.
- PDF files you attach to a chat or add as a resource are read on our own servers first. Pages of a scanned PDF are sent to Google (Gemini), routed through Vercel AI Gateway, to read them. A PDF our servers cannot open is not sent anywhere: we tell you it could not be opened.
- Files you save to Materials: text in PDF and Word files is read on our own servers, and photos are read by Google as described above. That text is then sent, routed through Vercel AI Gateway, to Google (Gemini) to summarize each page, and to OpenAI to index it so Cereby can search your materials.
- Text you have Cereby read aloud, or turn into a podcast or video narration, directly to OpenAI to generate the audio.
- Image requests, including a video's illustrations, directly to OpenAI to create the images. When you attach material to an image request, it is first sent to Google (Gemini), routed through Vercel AI Gateway, to write the image description.
We never send your password or your payment details to an AI provider. Two features work differently: our AI detector runs on infrastructure we operate, and dictation uses Apple's speech recognition on iPhone and iPad, or your browser's own speech service, so Cereby never receives your voice.
Each of these AI providers is a service provider that processes your content to return a result to you. We only share personal data with service providers that are required to protect it in a manner consistent with this Privacy Policy (see section 3).
3. How we share your information
We share data only with vetted subprocessors who help us operate the Service. These include:
- Clerk — authentication and user management.
- Supabase — primary database, file storage, and backend infrastructure.
- Stripe — payment processing and subscription billing on the website.
- Apple — In-App Purchase payments in the iOS app, and Sign in with Apple. You give your payment details to Apple directly; we receive only the subscription metadata described in section 1.
- Anthropic, OpenAI, Google — AI model providers that process your prompts and content to generate responses, as described in section 2a.
- Vercel AI Gateway — routes AI requests to the model providers above, including every request to Anthropic and Google. Transcription, text-to-speech, and image creation go to OpenAI directly (see section 2a).
- RevenueCat — subscription management for the iOS and Android apps, including purchases made with Apple In-App Purchase. It receives your Cereby account identifier and your purchase receipts.
- Vercel and DigitalOcean — application hosting and compute infrastructure.
- Resend — delivery of transactional email, such as student verification.
- Cloudflare — bot protection (Turnstile) on our free public tools.
- RapidAPI — a transcript service for YouTube videos you add. It receives only the ID of the video.
- Vercel Analytics — aggregate, cookieless traffic measurement on the website. It is not loaded in the mobile apps.
- Google Ads — conversion measurement on the website only. It is not loaded in the mobile apps, and we do not track you across other companies' apps or websites on any platform.
- Product analytics and error monitoring — first-party. Usage events and error reports are stored on our own infrastructure and are not shared with a third-party analytics provider.
We only share personal data with service providers that are required to protect it in a manner consistent with this Privacy Policy. That includes the AI providers in section 2a and every provider listed above.
We may also disclose information when required by law, to protect our rights, or in connection with a merger, acquisition, or sale of assets (in which case we will notify you).
4. Data retention and deletion
- Account data is retained for as long as your account is active.
- Content you create is retained until you delete it or close your account.
- Google Calendar data is imported on a schedule and stored in your account until you disconnect the integration, clear your calendar data, or close your account. Disconnecting deletes the imported events and revokes our access with Google immediately; OAuth refresh tokens are stored encrypted at rest until then.
- Social media OAuth tokens (TikTok, YouTube, Instagram) are stored encrypted at rest (AES-256-GCM) and used only by the Marketing Studio's publish and analytics jobs. These are operator accounts, not accounts belonging to users of the Service. Stored tokens are deleted when the connection is removed, and an operator can revoke Cereby's access at any time from the provider's own account settings.
- Logs and analytics are retained for up to 90 days, then deleted or anonymized.
- Backups may persist deleted data for up to 30 days before being purged on the standard backup rotation.
You can delete your account yourself, at any time, from inside Cereby: Settings → Security → Delete Account. Deletion takes effect immediately and cannot be undone — it cancels any active subscription, removes your account identity, and deletes the notes, documents, chats, and study materials stored under it. Files you uploaded or generated, and any copies held in backups, are purged on the rotation described above, within 30 days.
If you cannot reach that control — for example, you have lost access to your account — email us at privacy@cereby.ai and we will delete the account for you within 30 days.
5. Your rights
Depending on where you live, you may have the right to access, correct, export, or delete your personal information, and to withdraw consent for processing. To exercise any of these rights, email privacy@cereby.ai. You can also revoke Cereby's access to your Google account at any time at myaccount.google.com/permissions.
6. Security
We use TLS in transit, encryption at rest for sensitive fields (including OAuth tokens), short-lived signed URLs for file access, and least-privilege access controls. No system is perfectly secure, but we work hard to protect your data and notify you promptly in the event of a breach affecting your information.
7. Children's privacy
Cereby is intended for users aged 13 and older. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, please contact us and we will delete it.
8. Google API Services User Data Policy
Cereby's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Specifically, we affirm the following Limited Use commitments:
- We only use access to Google user data to provide or improve user-facing features that are prominent in the Service's user interface.
- We do not transfer Google user data to third parties except as necessary to provide or improve user-facing features, comply with applicable law, or as part of a merger, acquisition, or sale of assets with user notice.
- We do not use Google user data for serving advertisements, including retargeting, personalized, or interest-based advertising.
- We do not allow humans to read Google user data unless we have the user's affirmative agreement for specific messages, doing so is necessary for security purposes (such as investigating abuse), to comply with applicable law, or for internal operations where the data has been aggregated and anonymized.
- We do not use Google user data to train or fine-tune generalized or non-personalized AI or machine-learning models.
9. TikTok integration
Cereby uses TikTok's Login Kit and Content Posting API to publish Cereby-produced promotional videos to Cereby's own TikTok account from the admin-only Marketing Studio. Cereby's use of TikTok user data complies with TikTok's Developer Terms of Service and Community Guidelines. We affirm that:
- We only access TikTok user data for Cereby's own connected TikTok account, authorized by Cereby's administrator. We do not request, store, or share TikTok user data on behalf of cereby.ai end-users.
- We do not sell, share, or transfer TikTok user data to advertising networks, data brokers, or any third party.
- We do not use TikTok user data to train or fine-tune AI or machine-learning models.
- TikTok OAuth tokens are stored encrypted at rest (AES-256-GCM) and revoked when the operator disconnects the account.
- The Cereby administrator may revoke Cereby's access to TikTok at any time by disconnecting the account in the Marketing Studio Connections tab, or directly from TikTok's settings at tiktok.com/setting/connected-apps.
10. International transfers
We are based in the United States. By using the Service, you understand that your information may be transferred to and processed in the United States and other countries where our subprocessors operate. We rely on Standard Contractual Clauses or other valid transfer mechanisms where required.
11. Changes to this policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you by email or through the Service before the changes take effect, and update the “Last updated” date above.
12. Contact us
Questions or requests? Email us at privacy@cereby.ai.
