Privacy
This is a plain description of what the software does. It is not legal advice and does not by itself guarantee compliance with any law.
What we collect
- Guests: practice sessions are stored on the server under a random identifier so answers can be scored, and a list of those identifiers is kept in your browser. Guest sessions are deleted after a retention period set by the maintainers (30 days by default).
- Accounts: you sign in with Google. We store your email address and Google’s account identifier, a random display name (changeable; use a pseudonym), and your practice history and bookmarks. We discard the real name and profile photo Google provides, we do not store a password, and we do not collect student numbers or grades. We request only the basic sign-in permissions (email and profile) and never post to your Google account. Google learns that you use OpenFrame, under Google’s own privacy policy. The tokens Google issues are stored encrypted and are not otherwise used.
- Contributions: the question text and metadata you submit, your attestation, and review records. Public attribution is optional and off by default.
- Reports and course requests: the text you send. For anonymous reports we store a keyed hash of your network address, only to limit spam and duplicate reports; the address itself is not stored.
- Cookies: a session cookie when you sign in. Browser storage keeps guest history on your device. No advertising or tracking cookies are used.
What we do not do
No ads, no analytics sold to anyone, no sale or sharing of user data. We do not fetch links contributors provide.
Your data
- Clear this device: “Clear history on this device” on the Saved & history page removes local history and deletes those guest sessions.
- Delete your account: from the Account page. This removes your sign-in, history, bookmarks, drafts and unpublished submissions. Published questions remain in the bank under the content license, detached from your account and without attribution. Reports you filed keep their text without your link.
- Moderation records: restricted audit events (what action, on which question, when) are kept for moderation. They hold no private reviewer notes or personal data beyond a reference to the acting moderator’s account, which is removed when that account is deleted.
Security
The maintainers have not configured a security contact yet. See SECURITY.md in the repository.