University Planner · Last updated 26 September 2026
University Planner is a study planner for university students. This policy describes what the app actually stores, where it is stored, and which other companies see any of it. It is written to match how the software behaves rather than to describe an ideal, and it includes the parts that are inconvenient to say.
The short version. Your planner is stored in Australia. There is no advertising, no tracking and no analytics of any kind, and nothing is sold or shared for marketing. Two things send anything overseas, and both only when you choose them. The AI features send what you gave them to use: a lecture you record, a piece of text you paste in or have already written, an essay draft you want feedback on, or photos of pages you are studying. A recording is deleted as soon as it has been transcribed, and text and photos you supply to them are never stored at all. And if you subscribe, your purchase goes through Apple or Google and is recorded for us by RevenueCat — that is your account id and what you bought, never your card. You can delete your account and everything in it at any time.
University Planner is an independent app operated from Australia. For anything in this policy, including access and deletion requests, contact privacy@uniplannerapp.com.
Nothing reaches us. Everything you type is stored in your own browser or device and never leaves it. You can use the whole planner this way.
Creating an account stores your email address and a
securely hashed password, handled by our authentication provider. We never
see your password. Accounts also carry a plan level (free, ai or
ai_max) and the date the account was created.
Once you have an account, your planner syncs so it follows you between devices. That is a single record holding what you have entered: courses, assignments, to-dos, readings, calendar events, notes, study cards, assessment marks and your study statistics.
One thing is stored beside it rather than inside it. The full text of a saved AI lecture note — the summary and any translation — is kept in a separate record, because those notes are large and the planner is sent in full every time it syncs. Your planner keeps the note's title, its course and week, and the first line or so for the list. It is the same data, held by us in the same place under the same protections, and it is yours on the same terms: it stays until you delete the note or delete your account. We mention it only because saying “your planner holds everything you write” would no longer be exactly true.
An archived semester is stored the same way. When you archive a finished semester, everything in it — the same kinds of content listed above — moves into its own record in your account so it stops taking up space on your devices. It is held by us in the same place under the same protections, and it is yours on the same terms: it stays until you restore it or delete it, and it is deleted with your account.
When the app itself breaks, it sends us an error report so we can fix the problem: the technical error message, where in our code it happened, which version of the app you were on, which screen you were on, and your browser version. An error report never contains what you have written — no notes, no recordings, no email address. Reports are capped and sent only when something actually goes wrong; if you are not signed in, the report is not linked to any account. Error reports linked to your account are deleted with it.
When one of our own servers breaks — a lecture that fails to transcribe, a purchase that fails to apply — we keep a record of the failure so we can fix it and so we notice it the next morning rather than the next month: which part of our system failed, at which step, and the technical error it produced. These records hold nothing you have written, nothing you have said, and no identifier for your account — they are our own diagnostics, they are not linked to you, and they are deleted after 30 days.
When you use an AI feature we also keep a record of what each AI request cost us, so we can check that what we charge in credits matches what the work really costs: which feature it was, how much text the AI read and wrote, what that cost, and how many credits it used. These records hold nothing you wrote and nothing the AI wrote back, and no identifier for your account — they are our own arithmetic, they are not linked to you, and they are deleted after 90 days.
If you subscribe, we keep a record of subscription events: that a purchase, renewal, cancellation or refund happened, which store it came from, what your plan changed from and to, and when. It never contains a receipt, a card number, or anything you have written — we never see your payment details at all, because the payment is taken by Apple, Google or Stripe and not by us. It is what lets us answer “what happened to my plan?”, and it is deleted with your account.
Alongside it we keep a note of which plan each app store or payment provider says you have, and when it runs out. It is one line per provider, and it is there so that a subscription ending in one place cannot take away a subscription you still have somewhere else. It holds no payment details and nothing you have written, and it is deleted with your account.
If you use essay feedback, we keep a record of how essay feedback did, so we can tell whether it points at the things markers care about. For each run it holds the kinds of problem the feedback raised (for example “the thesis is unclear”, never your essay), and whether you asked for an example rewrite. If you rate a run, it holds your rating and the reasons you ticked, and any comment you chose to send — a comment is only sent if you tick the box for it, it may quote your own essay if you type that in, and it trains nothing. When a mark comes back we ask once how the feedback compared; your mark and grade band are stored only if you tick to share them, and otherwise nothing about the mark leaves your planner. This record stays in our own database, is never sent to an AI provider, and is deleted with your account.
If you use AI lecture notes, we keep a record of how lecture notes did, so we can tell whether they are the right length and catch what matters. For each set of notes it holds only that a set came back and the course you filed it under — never the lecture, the notes or anything in them. If you rate a set, it holds your rating and the reasons you ticked (for example “too long”), and any comment you chose to send — a comment is only sent if you tick the box for it, it may quote the lecture if you type that in, and it trains nothing. This record stays in our own database, is never sent to an AI provider, and is deleted with your account.
All of these are optional, and none of them runs unless you choose it. You accept a separate consent screen before using any of them.
We record how much of your monthly AI allowance you have used, so it can be enforced. That is a running total, not a record of what you asked for.
These have genuinely different lifetimes, and conflating them would be misleading, so they are set out separately.
| What | Where it lives | How long |
|---|---|---|
| The recording | A private storage area only you can read | Deleted the moment transcription succeeds. It is never kept. If a recording fails before that point, it is deleted automatically within an hour. |
| Our copy of the transcript and generated notes | Our database, in Australia | 7 days, so you can recover them if something goes wrong mid-way. 30 days if we managed to transcribe your lecture but failed to write the summary — because that used your AI minutes, and the transcript is the only thing you have to show for it. |
| The notes saved into your planner | Your planner record and your device, with the full text of a saved lecture note in a separate record of your own (see “Your planner” above) | Yours. They stay until you delete them or delete your account. Deleting the note deletes both halves; deleting your account deletes all of it. |
Worth being explicit about. That second row means a complete second copy of every transcript and every generated summary sits on our server for 7 or 30 days, even though you think of the notes as living in your planner. It exists so a failed or interrupted recording can be recovered, and it is deleted automatically on the schedule above.
Your account, your planner, your saved AI lecture notes and our temporary copy of any AI
notes are stored with
Supabase in Sydney, Australia (ap-southeast-2). For an
Australian student that is the answer to the question most people mean: your notes are held
in Australia, under Australian law.
Storage is not the same as processing, and we would rather say so than let the sentence above imply otherwise. Two things do leave the country:
The AI features send two kinds of thing overseas. If you record a lecture, your recording goes to a transcription service and the resulting transcript text goes to a summarisation service. If you use an AI feature on text or photos you supply, what you chose — a note, some study cards, an explanation you typed, a section of a reading you pasted in, an essay draft and the marking criteria you pasted with it, or photos of pages you are studying — goes to the same summarisation service. An essay goes as written, including any name or student ID in it; we do not remove anything from it. It is relayed and not retained: unlike a lecture, where we keep the transcript for a short window so you can get it back, text and photos you supply have no server-side copy at any point.
The companies are named, here and on the screen the app shows you before your first AI action: Groq transcribes a recording, and OpenAI does the summarising, the translation, the study cards and the practice questions. Both are in the United States. There is more about each of them, and about how long they have anything, under Who else sees your data and Sending things overseas.
Every AI request reaches them from our own server: they never hear from your phone or your browser at all, and none of it happens unless you have agreed to it and then used an AI feature. (Buying a subscription is the one other thing that leaves the country, and it works the other way round: see Payments.)
Subscriptions are bought in the UniPlanner app on iPhone and Android, where the payment is taken by Apple or Google, and on the web, where it is taken by Stripe. We never see your card, and no part of this app ever handles a payment. On the desktop app you can see which plan you are on, and nothing can be bought.
Unlike the AI features, a purchase is made from your device — that is how the App Store and Google Play work, and there is no version of it that goes through our server instead. Two companies are involved:
This only ever happens after you have made an account and signed in. Without an account nothing about payments runs at all, and the app on its own contacts no payment service.
Cancelling is separate from deleting. Deleting your UniPlanner account removes everything we hold, but it does not cancel a subscription — that lives with Apple, Google or Stripe, and only they can end it. Cancel first, then delete, or you may keep being charged for an account that no longer exists. There is more about this on the deletion page.
Two things, both stored by your browser or the app itself, and neither of them sent anywhere except as described above.
Neither is a tracking mechanism, neither is readable by any other website, and clearing your browser's data for this site removes both.
| Company | What reaches them | Why | How long they have it |
|---|---|---|---|
| Supabase (Sydney, Australia) | Your email address, your planner, your saved AI lecture notes, our temporary copy of AI notes | They run our database, accounts and file storage. | For as long as your account exists. Deleting your account removes all of it; the temporary copies go on the schedule above. |
| Groq (United States) | The audio of a lecture you record, and the course name you filed it under as a spelling hint | They transcribe it. This is the transcription service currently in use. | For the length of the request. We send the audio, they return the text, and we ask them to keep nothing; we store nothing with them. Any short-term logging they do for their own abuse monitoring is governed by their API terms, which is why they are named here. |
| OpenAI (United States) | The text of a lecture transcript; text of your own that you asked an AI feature to work on, including an essay draft and its marking criteria; photographs of pages you are studying | They turn it into structured notes, translate it if you ask, summarise your own notes or a reading, generate practice questions and study cards, comment on an explanation you wrote, give feedback on an essay against its criteria, or show an example rewrite of one passage of it that you asked for. | For the length of the request, on the same basis as above. The copy kept for the windows described earlier on this page is ours, in Sydney, not theirs. |
| Cloudflare | Ordinary web request information, such as your IP address, when you load the site | They serve the website itself. | Their own standard, short-lived request logs. No planner content passes through them. |
If we ever change one of these companies, you will be asked again before anything is sent. The app records which companies you agreed to, and both the screen and our server check it: a recording is refused rather than sent to a company you were not told about. That is why this list names who actually receives your work rather than everyone we might one day use.
Some of the companies above are in the United States, so Australian privacy law asks us to take reasonable steps to see that your information is handled there to a standard comparable to the one it would get here. We are not relying on anybody else having decided that for us. What we actually rely on is this, and you can judge it:
We cannot promise that United States law gives your information the same protection Australian law does — nobody honestly can, and a policy that says otherwise is telling you something it does not know. What we can tell you is precisely what leaves, to whom, for how long, and how to stop it, which is the whole of what is above.
Account emails, such as confirming your address or resetting your password, are sent through our authentication provider's email service.
Both of these are true, neither is obvious from using the app, and we would rather you learned them here than assumed otherwise.
University Planner is intended for university students. It is not directed at children, it does not ask for your age, and nothing in it behaves differently depending on how old you are. We do not knowingly collect information from anyone under 13. If you believe a child has created an account, email us and we will delete it.
If this policy changes materially, the date at the top changes and — where the change affects AI lecture notes — you will be asked to read and accept the updated consent wording before recording again.