← Insightus Calendar

Privacy Policy

Effective 12 July 2026

Important: This policy is tailored for the current Insightus Calendar prototype and production plan. It should be reviewed by a qualified lawyer before public launch, especially because the service may be used by students and minors.

1. Who we are

Insightus Calendar / Insight Us is operated by Insight Us, part of the Insight branch, based in Beijing, China. The public website is expected to be available at insightus-calendar.versa.app or another Insight Us deployment domain. For privacy, legal, or data-rights requests, contact 27christianh@lab.edu.

2. Who the service is for

The service is designed for students, schools, teachers, parents, creators, and professionals who want to manage calendars, tasks, resources, feeds, subscriptions, and related planning data. Users under 18 may use the service only with appropriate parent, guardian, school, or organizational permission where required. Users under 13 may not self-register. For users under 14 in mainland China, parent or guardian consent is required before processing children’s personal information.

3. Information we collect or process

Depending on how the app is used, we may process: name, email address, age or age range, authentication identifiers, calendar events, tasks, notes, linked resources, feed preferences, calendar subscription URLs, people/contacts manually added by the user, room/resource details, event locations, voice transcripts, import/export files, app settings, device/browser information, IP address, error/security logs, and support messages.

We do not require a profile photo, school/company name, or precise home address for ordinary use. If users type this information into events, notes, contacts, or resources, it may be stored as user content.

4. Voice and speech features

Voice input is optional. When a user presses the Speak or microphone control, the browser or device speech-recognition service may process the audio to produce a transcript. Insightus Calendar stores the resulting transcript or structured event draft only if the user saves it, or if the app stores recent spoken drafts locally for review. We do not intentionally store raw voice audio in this build.

5. Why we use information

We use information to provide the calendar, create and edit events, support feeds/subscriptions, enable account sign-in and recovery, synchronize data where Supabase is configured, provide import/export, improve reliability, prevent abuse, secure the service, comply with legal obligations, and respond to user requests. Optional features such as microphone access, feeds, calendar subscriptions, maps, and future Google login are used only when enabled or initiated by the user.

6. Local storage and cloud sync

Local-only mode stores data in the user’s browser using local storage and related essential browser storage. Signed-in mode may also store user data in Supabase so the calendar can sync across devices. Supabase authentication may use session storage/cookies needed to keep users signed in and to recover accounts. Users can export or erase local data from the app settings. Cloud deletion requires a configured account and verified request.

7. Feeds, articles, recipes, YouTube, and public calendars

The app may retrieve titles, links, dates, source names, summaries/excerpts where available, and metadata from RSS/Atom feeds, YouTube channel feeds, recipe feeds, public calendars, sports calendars, school calendars, and custom URLs provided by users. The app should not be used to bypass paywalls or copy full copyrighted articles. Users open original content on the publisher’s site and are responsible for respecting the publisher’s terms.

8. Third-party services

The service may use or connect to Supabase, Vercel, browser speech APIs, Google OAuth in the future, Google Maps links, Apple Maps links, public RSS/Atom feed providers, YouTube RSS feeds, and public calendar providers. These services may process data under their own terms and privacy notices. We do not control third-party websites, maps, calendars, feeds, or content accuracy.

9. Sharing

We do not sell personal information. We share data only with service providers needed to operate the service, third-party services the user chooses to connect or open, schools/organizations where the user joins through an institutional setup, professional advisers if needed, or authorities where required by law. Calendar invites or shared links are sent only when the user chooses to share them.

10. Retention

Local browser data remains until the user clears it or deletes it through the app. Cloud account data is kept while the account is active and for a reasonable period needed for backups, security, legal compliance, and dispute resolution. We aim to delete or de-identify cloud calendar data after a verified deletion request unless retention is legally required.

11. User rights and controls

Users can export calendar data, erase local browser data, revoke microphone permission through browser settings, sign out, and request correction or deletion of account data. Depending on location, users may have rights to access, correct, delete, restrict, object to processing, withdraw consent, portability, and complain to a regulator.

12. Security

We plan to use encrypted transport, Supabase row-level security, account authentication, access controls, and data minimization. No system is perfectly secure. Users should protect their account credentials and avoid storing highly sensitive information in calendar notes unless necessary.

13. International use

Because the operator is based in Beijing, China and service providers may process data in other countries, user data may be processed outside the user’s country. Where required, appropriate safeguards should be implemented before public deployment, especially for EU/UK users and school deployments.

14. Changes

We may update this policy as the product, legal entity, domain, service providers, or features change. Material changes should be communicated through the app or website where appropriate.