Effective Date: March 2026
This Privacy Policy explains how Phantom ("we," "us," or "our") collects, uses, discloses, and protects your personal data when you use the Phantom Chrome Extension ("Extension"). By using our Extension, you agree to the practices outlined in this Policy.
Account Information: Email address and password used to create and authenticate your Phantom account. A unique User ID is generated upon account creation.
Subscription & Payment Data: Your subscription plan status (free, monthly, or lifetime) is stored securely. Payment transactions are processed exclusively through Whop. We do not collect, store, or have access to credit card numbers or banking details.
Feature Usage Data: The on/off state of your enabled features (Answer Saver, API Blocker, Kiosk Mode) is stored locally on your device to preserve your preferences across sessions.
Canvas Quiz Content: When the Answer Saver feature is active, text content from Canvas quiz questions and your submitted answers are saved locally on your device. This data is never transmitted to our servers.
Authentication Tokens: Temporary session credentials (access and refresh tokens) are stored locally on your device to keep you logged in between sessions.
Technical Data: Basic technical information such as your IP address and browser information may be logged incidentally by our backend infrastructure provider (Supabase) as part of standard server operations.
We use the information we collect to: • Authenticate your identity and manage your account • Verify and maintain your subscription status • Enable and sync your feature preferences • Process payments and manage subscription access through Whop • Ensure the security and integrity of the Extension • Comply with legal and regulatory obligations
We do not sell or rent your personal information. We may share your information only with:
Service Providers: • Supabase — our authentication and database infrastructure provider (receives: email, user ID, subscription status) • Whop — our payment processor (receives: email and user ID for subscription management)
Legal Authorities: If required by applicable law, court order, or governmental authority.
Business Transfers: In the event of a merger, acquisition, or sale of assets, your data may be transferred as part of that transaction.
Canvas Quiz Content: Quiz answers and question content saved by the Answer Saver feature are stored exclusively on your local device and are never shared with any third party, including educational institutions.
Local Device Storage: Feature toggles, quiz answers, course/quiz identifiers, and session tokens are stored in your browser's local Chrome storage. This data remains entirely on your device and is automatically deleted when you uninstall the Extension.
Our Servers (Supabase): Your email address, user ID, and subscription status are stored securely on our servers. All data is encrypted in transit (HTTPS) and encrypted at rest. We retain your account data for as long as your account is active. Upon account deletion, server-side data is permanently deleted within 7 days.