Privacy should be easy to understand.
Math is designed so even its maker cannot connect a real Google profile with learning progress.
What Google shares during sign-in
Google sends a signed credential so Math can confirm that the same account has returned. That credential can contain profile information, but Math selects only Google’s stable account subject. It does not save your Google name, email address, or profile photo.
How the account stays anonymous
The Google subject is immediately transformed with a private server HMAC key. The database keeps only that one-way key, a separate internal learner ID, and a random public nickname and abstract avatar.
What Math saves
Math saves lesson progress, answer correctness, hint use, review timing, stars, XP, rewards, boss clears, streaks, privacy preferences, and secure session records. Raw written answers are not retained after checking. Feedback posts receive a new random name and are stored without a learner or account ID.
What becomes public
Only learners who opt in appear in the weekly league. The public row contains a random nickname, abstract avatar, weekly XP, and rank. There are no public profiles, searches, grades, accuracy scores, lesson histories, or archived leagues.
Analytics and advertising
Math does not use advertising, third-party behavioral analytics, session replay, or data sales. Operational logs must exclude credentials, Google profile claims, raw account subjects, and answer text.
Your controls
You may leave the public league at any time. Account deletion requires fresh Google verification and removes active learning records and sessions. Hosted backup retention may still follow the infrastructure provider’s documented security schedule.
Age boundary
The current service is intended for learners age 13 or older. It does not collect birth dates. A future version for younger learners will require a separate parental-consent and child-privacy design.