Privacy Policy
Last updated 19 September 2026
- We collect what it takes to run your account and your instance, and nothing else.
- No ads, no analytics, no trackers. We never sell your data.
- We never train AI models on your data.
- Your transcripts go to the AI provider you picked, on your own key.
- Delete your account and your data is gone within 30 days.
Who we are
The hosted Parcourse service at parcourse.study is run by Deepansh Khurana, an individual based in India ("we", "us"). Dimwit Labs is the label Deepansh publishes work under, not a company, and it isn't a party to anything here. Write to privacy@parcourse.study about anything in this policy.
This policy covers only the hosted service at parcourse.study. Parcourse is open source, and if you use an instance someone else hosts, that person decides what happens to your data. We receive nothing from it.
What we collect
- Your account: Your email, name and date of birth, and your password, which we store only as a one-way hash. We ask for your date of birth to check you're 18 or over, and keep it with a record of when that check passed. If you sign in with Google, we get your email, your name and your Google account ID.
- Your instance: What you make and do in it: courses, notes, quiz answers, progress, your knowledge graph, and the YouTube videos you turn into courses. It also holds the names and emails of people you invite.
- Your AI provider key: We encrypt it and use it only to call that provider for you.
- Billing: Your plan, payment status and invoices. Your card details go straight to our payment processor; we never see or store them.
- The waitlist: If you leave your email on the home page, we keep it to send one email when sign-ups open.
- Server logs: Your IP address, the page requested and the time. We keep these briefly, to keep the service secure and fix problems.
Cookies
We use a cookie to keep you signed in, and one to remember your light or dark theme across parcourse.study. That's all. There are no advertising or analytics cookies, so there's nothing to consent to.
How we use it
- To run your account and your instance, and to sign you and the people you invite in.
- To make courses: we fetch the video's public captions and details from YouTube, then send them to your AI provider.
- To bill you, and to email you about your account, your bill or changes to these policies.
- To keep the service secure and working.
We don't sell your data, show you ads, profile you, or use your data to train AI models.
Your AI provider
Parcourse uses the AI provider you connect, such as OpenAI, Anthropic or Google, on your own key. When it makes a course or marks an answer, it sends that provider the transcript and your content. That provider's terms and privacy policy apply to what it receives, so check them, especially whether it trains on API data.
Who else handles it
| Provider | What for | Where |
|---|---|---|
| Supabase | The database for accounts and every instance | Japan |
| Fly.io | Runs each instance | Japan |
| DigitalOcean | Runs the account app, and our DNS | Singapore |
| Sign-in, only if you choose it | Global | |
| Your AI provider | Making courses and marking answers | Depends on the provider |
| Our payment processor | Taking payments | Named at checkout |
| Resend | Sending account emails | Japan |
| Oxylabs | A network we route YouTube requests through when needed. It never sees your account. | Global |
Your data is stored outside India. We only use providers that protect it at least as well as we do, and we'll update this list before adding one.
The browser extension
The extension stores one thing, your instance's address, in your browser's synced storage. It reads the YouTube page you're on only when you send that video to Parcourse, and it sends the video only to your own instance.
How long we keep it
- While your account is open, we keep your data so the service works.
- When you delete your account or instance, we remove it from live systems straight away. It's gone from backups within 30 days.
- Invoices we keep for as long as Indian tax law requires.
Your rights
Wherever you live, you can ask us to:
- show you the data we hold about you, or give you a copy of it
- correct it
- delete it
- stop using it, where we rely on your consent
Email privacy@parcourse.study and we'll reply within 30 days.
If you signed in to an instance someone else owns, that owner manages the data inside it, so ask them.
Security
Every connection is encrypted. Passwords are hashed and AI keys are encrypted. Each instance runs on its own machine and keeps its data in its own database schema. No system is perfectly secure. If a breach affects your data, we'll tell you and the authorities as the law requires.
Age
You need to be 18 or over to create an account. People aged 13 to 17 can use Parcourse only when an instance owner invites them. We trust owners to get a parent's or guardian's consent first, and owners are responsible for doing so. We don't knowingly hold data about anyone under 13. If you think we do, tell us and we'll delete it.
If we turn someone away for being under 18, we keep a scrambled copy of their email for 30 days, so a different date of birth from the same address gets a second look.
Changes
If we change this policy in a way that matters, we'll email you at least 14 days before it takes effect. The date at the top always shows the latest version.
Grievance officer
Deepansh Khurana, privacy@parcourse.study. We acknowledge complaints within 48 hours and resolve them within 30 days.