Legal

Privacy policy

How MathLab collects, uses and protects information across the app and alevel.gg.

Geroid McDonnell-Fletcher, trading as MathLab (“MathLab”, “we”, “us”), is the controller of the personal information described in this policy. This policy applies when you use the MathLab mobile application, visit alevel.gg or contact support. You can contact us at support@alevel.gg or at Flat 2, 73 Lansdowne Place, BN3 1FL, United Kingdom.

Information we collect

Account information

When you create an account, we receive identifiers needed to authenticate you, such as your email address, an authentication-provider identifier and a MathLab user identifier. You may also add your student email to your study profile so we can identify your college and connect your profile to our internal records. We do not send mail to your student email or use it for marketing. Authentication and profile storage are provided using Supabase.

Learning and app activity

We process your student email, target grade, exam board, exam sitting, worksheet progress, answers and submissions, correctness, completion status, XP, current learning path and related timestamps so that the app can provide and synchronise your learning experience. Some activity is stored locally on your device before it is synchronised.

Subscription information

Purchases are processed by Apple. RevenueCat helps us manage subscription status and entitlements. We may receive a customer identifier, product and entitlement information, purchase and renewal status, trial status and transaction metadata. We do not receive your full payment-card details.

Reliability and crash reports

We use Sentry to detect and diagnose application errors. A report may include a stack trace, error message, app version, device model, operating-system version, timestamps and related technical diagnostics. An IP address is necessarily processed while a report is transmitted, but Sentry is configured not to store it. We have enabled server-side data scrubbing and disabled Sentry’s default collection of personal information, session replay, screenshots, view hierarchy, logs, feedback, performance tracing and automatic session tracking. Please do not place personal information in error messages or support screenshots.

Product analytics

We use Amplitude to understand how people use MathLab, measure the journey from onboarding to learning and subscription, and improve the app. Amplitude assigns a device identifier and, after you sign in, we associate analytics activity with your MathLab user identifier. We do not send Amplitude your email address or the text of answers you submit as analytics event properties.

Analytics records may include session and event timestamps; app version; device, operating-system, language, network and approximate location information derived from an IP address; exam board, exam sitting and target grade; and interactions such as onboarding completion, questions viewed, whether an answer was correct and simplified, worksheets and lessons completed, and paywall views and outcomes. Events may include internal identifiers for the relevant question, worksheet, lesson or paywall placement.

On a sample of approximately 10% of mobile sessions, Amplitude Session Replay records the structure of screens, navigation, taps and similar interactions so we can investigate where users encounter difficulty. Replay is configured with conservative privacy masking intended to hide text and form-field content. We do not use replay to make decisions about individual learners or for advertising.

Advertising measurement

If you opt in, the app uses Meta advertising technology to measure which advertisements lead to installs and app launches. Meta may process a device or advertising identifier, IP address, app and device information, campaign interactions and limited conversion-event information. We do not send Meta your school, answers, lesson content, email address or MathLab account identifier.

With your advertising-measurement consent, the TikTok Business SDK records app installation, launch, onboarding completion and in-app purchase events and related device and app information so TikTok can measure and optimise advertising. On iOS, this SDK is not initialized unless you allow Apple’s tracking request. We do not currently use Google/Firebase, Reddit or OpenAI advertising SDKs in the app.

Apple may also provide ad networks with privacy-preserving, aggregated attribution reports through SKAdNetwork or AdAttributionKit. MathLab updates a limited conversion value for first open, onboarding completion, trial start and subscription purchase. Apple designs this system not to reveal an individual user or device to us or the ad network, and it operates independently of Apple’s tracking permission.

Advertising measurement is optional and the app works without it. On iOS, MathLab asks through Apple’s App Tracking Transparency system without showing a separate in-app pre-prompt. Refusing Apple’s prompt prevents the advertising SDKs from initializing on future launches. You can change your MathLab choice under Account → Privacy and change Apple’s permission under iOS Settings → Privacy & Security → Tracking.

Website and support

If you contact us, we process the information you submit, such as your email address and message. Our hosting and content-delivery providers receive technical information needed to serve the site, including IP address, requested URL, browser information and security logs. If you allow website advertising measurement, Meta, TikTok and Reddit pixels record page views and clicks on links to MathLab’s App Store listing, together with browser, device, network and advertising-cookie information those providers make available. The pixels remain off unless you consent.

Why we use information

We use information to provide and secure MathLab; authenticate accounts; save and synchronise progress; identify a student's college from their student email; maintain internal profile records; mark supported answers; manage subscriptions; respond to requests; prevent abuse; diagnose errors; understand feature use and conversion; improve the learning experience; send requested launch or product communications; comply with law; and, where a user consents, measure advertising conversions. We do not use MathLab learning activity, product analytics or student emails to build targeted advertising audiences.

Our legal bases

Where UK data-protection law applies, we rely on performance of our contract to provide account, learning and subscription features; legitimate interests to secure, maintain, measure and improve the service where those interests are not overridden by your rights; consent for marketing communications, advertising measurement and non-essential storage or access where consent is required; and legal obligations where we must retain or disclose information. Our legitimate interest in product analytics is understanding whether MathLab works as intended and where users encounter difficulty. You may object to processing based on legitimate interests by contacting us.

Service providers and sharing

We use Supabase for authentication, database and backend infrastructure; Apple for app distribution and purchases; RevenueCat for subscription entitlement management; Amplitude for product analytics and sampled Session Replay; Sentry for error monitoring; Amazon Web Services and related content-delivery services for hosting; and Meta, TikTok and Reddit for consented advertising measurement. They process information under contracts, data-protection terms and their own privacy commitments. We may also disclose information when required by law, to protect users or the service, or as part of a corporate transaction with appropriate safeguards.

We do not sell personal information for money. Some privacy laws define advertising measurement as “sale”, “sharing” or targeted advertising; where relevant, we provide the controls required by those laws.

Cookies and similar technologies

The website may use essential storage for security and consent preferences. Non-essential analytics and advertising cookies, pixels or similar technologies will only be used after the required consent. You can reject non-essential technologies and later change your choice. The mobile app stores authentication, answers, pending submissions, preferences, consent choice and subscription state locally. Amplitude also uses local storage in the app to maintain a device identifier, session information and a queue of analytics events awaiting transmission.

International transfers

Amplitude analytics and Session Replay data are currently sent to Amplitude's United States data centre. Amplitude and some other providers may process information in the United States or other countries outside the United Kingdom. Where required, transfers rely on UK adequacy regulations or approved contractual safeguards such as the UK International Data Transfer Addendum. You may contact us for further information about the safeguard used for a particular provider.

Retention

We keep account and learning information while your account is active and normally delete or anonymise it within 30 days after a verified account-deletion request, except where a longer period is required for security, legal obligations or dispute resolution. Subscription transaction records may be retained for up to seven years where required for accounting or tax purposes. We keep Amplitude analytics events and user profiles only for as long as reasonably needed to analyse use of the app and improve the service, and delete or de-identify them when they are no longer needed. Session Replay recordings are kept for a shorter period under Amplitude's configured replay-retention controls. Sentry error events are retained for no longer than 90 days. Advertising platforms retain event data under their applicable business-data terms and configured retention controls. Support messages and security logs are normally retained for up to 12 months unless needed for an active issue.

Your choices and rights

Depending on where you live, you may ask to access, correct, delete, restrict or export your information, or object to certain processing. You may object to product analytics by contacting us at support@alevel.gg. You can unsubscribe from marketing using the link in an email, manage website pixels on our privacy choices page, withhold or withdraw app advertising-measurement consent under Account → Privacy, and manage relevant iOS permissions in Settings. Withdrawing consent does not affect earlier lawful processing and takes full effect for the TikTok SDK after the app is restarted.

You can request account deletion from within MathLab or follow the instructions on our account-deletion page. Our privacy choices page explains these controls. You may also complain to the UK Information Commissioner’s Office or your local supervisory authority.

Young people

MathLab supports A-level learners and is not directed to children under 13. Advertising measurement is optional, and on iOS it remains off unless the user allows Apple’s system tracking request. We do not use young people’s learning activity for targeted advertising.

Security

We use technical and organisational measures intended to protect information. No online service can guarantee absolute security, so please use a secure account and contact us if you believe it has been compromised.

Contact and changes

Questions and privacy requests can be sent to support@alevel.gg or by post to Geroid McDonnell-Fletcher, Flat 2, 73 Lansdowne Place, BN3 1FL, United Kingdom. We may update this policy as MathLab develops. Material changes will be identified by a new effective date and, where appropriate, communicated in the app or by email.

Make practice feel purposeful.Continue in MathLab for iPhone.
Open in the App Store