Privacy
Privacy Policy
Effective October 6, 2026
Recording responsibility: You must obtain permission and follow classroom, workplace, institutional, and local recording-consent rules. Varapax cannot determine whether recording is lawful in your situation.
Data we process
Varapax processes account details, classes, lecture recordings you choose to upload, transcripts, generated study material, academic calendar items, subscription state, and usage totals. Practice Exam Mode stores session and usage metadata by default, not exact questions or answers.
How we use data
We use this information to provide transcription, retrieval, study-material generation, academic reminders, account support, billing, abuse prevention, and service reliability. We do not sell personal information.
Storage and retention
Lecture audio is stored privately and is scheduled for deletion after seven days unless you delete it sooner. Transcripts and derived study material remain while account and subscription policy permits. The initial post-cancellation grace period is 30 days.
Security and providers
Traffic uses HTTPS/TLS. Backend storage uses the managed provider's encryption-at-rest controls. Private audio access requires authorization or a short-lived signed URL. AI, billing, and webhook secrets stay server-side and are not shipped in the app.
Your controls
You can delete raw audio, delete individual lectures and derived data, export your account data, or permanently delete your account from Data & Privacy in the app. You may also request help at support@varapax.com.
Children
Varapax is not directed to children under 13. Schools and guardians are responsible for any additional consent required for student use.
Changes and contact
We may update this policy as the service evolves. Material changes will be dated here. Questions and privacy requests may be sent to support@varapax.com.
