Campus is designed to keep your school information on your Mac. This policy explains what the application handles, why it handles it, and when information is sent to another service.
1. Information stored on your Mac
Campus stores the information needed to provide its features in your local Application Support folder. This can include:
- A/B schedules, custom days, club settings, and rotation information;
- homework titles, subjects, due dates, completion state, links, and notes;
- school calendar events and notes;
- cached cafeteria menu content and application preferences; and
- Google OAuth access and refresh tokens when you connect Google Classroom.
OAuth token files are stored with user-only file permissions. Campus does not use the macOS Keychain.
2. Google Classroom
Connecting Google Classroom is optional. If you connect it, Campus requests access to view your courses and the coursework and submission state associated with your account. Campus uses this information to display active homework and deadlines. It does not submit coursework or change grades.
The Google authorization code and refresh token are sent to the Campus token-exchange service at kisj.pythonanywhere.com so Google tokens can be issued or refreshed. Access tokens are then used to request Classroom data directly from Google's API.
Campus's use and transfer of information received from Google APIs complies with the Google API Services User Data Policy, including its Limited Use requirements.
3. PowerSchool schedule sync
PowerSchool sync is optional. With your permission, Campus asks Google Chrome to save the currently open PowerSchool My Schedule page, reads the schedule, date, and A/B rotation from that temporary HTML file, and then deletes the file.
Campus does not request or read your PowerSchool password or Chrome cookies. You sign in directly through Chrome.
4. Cafeteria information
Campus requests cafeteria menu information and images from kisj.kr and stores a cached copy on your Mac. As with any internet request, the server and its hosting provider may receive standard technical information such as your IP address and request time.
5. Sharing and advertising
Campus does not include advertising or third-party analytics, and we do not sell personal information. Information is sent only to services needed for the features you choose to use, including Google, the Campus token-exchange service, and the cafeteria content server described above.
6. Retention and deletion
Locally stored data remains on your Mac until you remove it. Disconnecting Google Classroom removes the locally stored Classroom tokens. The Reset Campus function removes locally stored Campus data. You can also remove the Campus Application Support folder manually.
You can revoke Campus's Google access at any time from your Google Account's third-party access settings.
7. Security
Campus uses HTTPS for its network requests and OAuth with PKCE for Google sign-in. No method of storage or transmission is completely secure, so keep your Mac account protected and install Campus only from a source you trust.
8. Changes to this policy
We may update this policy when Campus or its integrations change. The effective date at the top of the page will identify the latest revision.
9. Contact
Privacy questions can be sent to jay@kisj.space or jacob@kisj.space.