Sync

Privacy notice

Effective

Who operates Sync

Sync is operated by Yeira, Inc., a Delaware corporation, at 651 N Broad St, Suite 201, Middletown, DE 19709, United States. For privacy questions or requests, contact hello@yeira.io.

This notice covers accounts, agent connections, hosted learning experiences and learning records. The person or organization running an experience chooses its content, what participants submit and which results are shared. For questions about a particular class, contact its organizer. You can also contact Yeira about your information or account.

Information we keep

An account contains your email address, sign-in details and connected-agent permissions. Google sign-in also supplies a Google account identifier. We record account visits, authorized management and classroom activity to distinguish used accounts from abandoned ones. Request-derived identifiers help prevent abuse and enforce creation limits.

Experiences contain authored pages, files and settings. Depending on the experience, learning records include answers, votes, posts, scores, participation, timing, session identifiers and teacher actions. Reports can contain evaluations and generated analysis. Personal information may appear in authored content, uploaded files and free-text responses.

Learners can participate with a browser identifier. An experience or connected learning system may also supply a name, email address or external identifier. A browser identifier does not verify a person's identity.

License administration keeps account-email bindings, payment-provider references, subscription status and sponsored or beta license details. Stripe processes payment information; Sync does not store full card details or complete payment webhook payloads.

How we use it

We use this information to serve experiences, synchronize changes, record participation, provide results and reports, manage access, deliver sign-in codes, administer licenses and prevent abuse.

Access and service providers

Library owners and agents they authorize can access content and results within their permissions. Teacher links grant access to their associated experience or session until revoked. What learners can see depends on how the experience shares results. Content, reports and downloads may disclose information to their recipients.

Convex hosts Sync's data and files. Brevo delivers account email, Google supports Google sign-in, and Stripe processes payments and subscription management. Authored content can be sent to the configured Jev/TypeSafe service for publication review.

When hosted report insights are used, selected response text and report context are sent to the configured model provider. Explicit learner identity fields are excluded from that input, but a free-text response can still contain personal information. An authorized connected agent may retrieve information and process it through its own services.

Experiences may load declared external resources, whose providers receive requests from your browser. If an organizer configures forwarding to an external learning-record service, Sync sends records to that destination. Information already downloaded or delivered to another service is subject to that recipient's handling.

Browser storage

Sync uses cookies for account sessions and request protection. A session renews with use and expires after 30 days without a visit. Experience pages retain a learner key in browser storage, with session-storage or URL-fragment fallbacks, and may save preferences. Clearing browser storage can break continuity with earlier activity; it does not delete records held by Sync.

Retention

New licensed activity details are retained for 90 days from the activity. Grades can remain as compact numeric results after answer text, evidence and associated detailed evaluations are removed. Ordinary activity and control records outside this licensed policy default to expiry after 30 days. Records awaiting external delivery may remain longer while delivery is pending. Scores and other records marked as retained outcomes, learner identities, authored content and files have separate lifecycles; the 30-day activity rule does not delete all information about a learner or class.

When the final license ends, hosted files and personal learning results enter a 90-day renewal/export grace period. Renewal within that period cancels their planned removal, without restoring details that already expired. Removal requires advance notice and export access; a late notice extends the deadline. Ownership, authored content and nonpersonal session history remain. Existing activity expiry dates and imported history are not retroactively shortened.

Unclaimed spaces default to removal after 21 days of inactivity. Saving an experience to a licensed library changes that lifecycle. These are the current shared-development durations.

Dormant accounts

If your account has no active paid, sponsored, beta or institutional license and has had no meaningful activity for 180 days, we may consider it for removal. We will email you before removal. You will have at least 30 days after that notice is sent to sign in, use your account, export your library or renew your license. Account visits, authorized agent management and actual classroom participation count as activity. Activity or renewed eligibility cancels pending removal until removal begins.

Once removal begins, account access ends and your owned experiences, their learning records, reports and unshared hosted files are deleted. Shared files and data belonging to other accounts are preserved. Billing and license-administration records follow their separate retention policy. Returning or renewing after removal begins does not restore deleted content. Existing backups and the recovery journal follow the retention described above.

Export and deletion

Library owners can export their content and registered files, optionally including available learning records and evaluations. Cached model insight text is excluded from this package. Export access remains available after a license lapses, until account removal begins. Expired response details cannot be recovered through export.

Authorized authors can export or delete an individual learner's stored activity in an experience's space. An experience may expose these controls to the learner identified by that browser. Deletion also removes related local evaluations, delivery work and saved analysis as applicable. A shared learner identity remains while another record uses it. Contact the organizer or Yeira about information in authored content or files that these controls do not remove.

Information deleted from the live service can remain in existing backup snapshots until they expire. The current development service uses a seven-day rolling backup history. A separate recovery journal retains limited account or experience identifiers and deletion or revocation times so restoring a backup can reapply those changes. Journal entries currently have no automatic expiry. Exported copies and information already held by other services are outside Sync's deletion process.