Privacy Policy

Last updated: 2026-07-22

This policy explains what data RestedTeacher.com (operated by Keypair Software LLC) collects, why, and how we protect it. The short version: we collect what we need to run your account and generate your lessons, we don't sell it, and we ask you not to put student personally identifiable information ("PII") into the Service.

1.Who we are

RestedTeacher.com is a service of Keypair Software LLC, a Florida single-member limited liability company. Contact: domains@keypairsoftware.com.

2.What we collect

We collect the following categories of data:

  • Account data: email address, display name, password (stored only as a salted hash by our auth provider), and your school or district name if you choose to provide it.
  • Course and schedule data: the courses you teach, your meeting schedule, calendar holidays, your tenant configuration.
  • Lesson and pacing data: the lesson plans the AI generates for you, your edits, your mark-taught history, your sub-plans, and any written feedback you submit through the regenerate flow.
  • Billing data: billing email, subscription status, and payment-method tokens via Stripe. We do not store full credit card numbers — Stripe handles that.
  • Operational data: server logs, IP address, browser user-agent, approximate location derived from IP, and timing of requests, for security and service reliability.
  • Anti-abuse signals: at signup we compute a device and browser fingerprint (characteristics such as your browser, operating system, screen, timezone, and a rendering test) and store it only as a one-way hash. We use it, alongside a hash of your email address, to detect and prevent the same person repeatedly claiming the free trial. We do not use it for advertising or tracking across other sites.

3.What we do NOT collect

We do not collect student PII as a routine part of the Service. The lesson generator operates at the course and standard level — it does not need student names, identifiers, grades, or contact information to function. Please do not paste student PII into regenerate-feedback fields, inline edits, or notes. If you do, we treat it as inadvertently disclosed and will purge it on request. See Terms § 5 for the FERPA / district-policy implications.

4.How we use your data

We use your data to:

  • Authenticate you and operate your account.
  • Generate and serve your lesson plans and pacing.
  • Process subscription billing.
  • Send transactional email (verification, billing, security alerts).
  • Improve the Service — debug issues, measure feature use in aggregate, refine prompts.
  • Comply with legal obligations and enforce our Terms.

We do not sell or rent your personal data. We do not use your data to train external AI models — see § 5 on vendors.

5.Third-party vendors (sub-processors)

We rely on the following vendors to run the Service. Each is contractually bound not to use your data for their own purposes:

  • Supabase — database hosting, authentication, file storage.
  • Anthropic — the underlying large-language model that powers lesson generation. Per Anthropic's commercial API terms, prompts and outputs are not used to train Anthropic's models.
  • Stability AI — the image model that generates the optional illustrations a teacher can choose to add to a slide deck. We send it only the teacher's written description of the image they want. We never send student data. Generated images are copied to our own storage before use.
  • Vercel — application hosting and edge compute.
  • Cloudflare — DNS, domain registrar, and email routing.
  • Stripe — payment processing.
  • Expo (Expo, Inc.) — push-notification delivery for the Rested Teacher mobile app, and through it Apple Push Notification service and Google Firebase Cloud Messaging. Used to deliver app notifications you turn on (for example, a short heads-up about your upcoming classes) and to alert our administrators when a new teacher signs up, which can include that teacher's email address and the class name they entered. No student data is ever sent through push.
  • Google Analytics 4 (Google LLC) — website analytics on our marketing and app pages. We use it to understand how visitors find and use the Service and to measure whether our advertising works. IP addresses are anonymized and we do not send Google any student PII. See § 8 for how to opt out.

To illustrate lessons, the Service also pulls royalty-free photos from third-party image libraries, Pexels, Openverse, and Wikimedia Commons. These are content sources, not data processors. We send them only a lesson-topic search term, never your name, your students, or any personal data. Images are copied to our own storage before use, and a person reviews each image before it can appear in a lesson.

A limited feature available only to Board of Content reviewers and platform administrators can generate a downloadable PowerPoint file for a lesson, pulling gap-fill images from the same three libraries listed above when the app's own artwork does not cover a slide. Every image is checked against a licensing rule before it is used, and images that do not clearly allow this use are skipped. This feature is not available to teacher accounts.

For a plain-language explanation of how lessons are generated and where our state standards are sourced, see our How it works page.

6.Community lesson library (opt-in)

If you opt your tenant into the community lesson library, lessons that meet quality criteria may be served to other RestedTeacher.com users teaching the same standard. Only the lesson content is shared — your name, school, class titles, and personal notes are not. You can opt out at any time from your settings; doing so stops new lessons from entering the pool but does not retract previously-shared lessons.

7.Optional Claude connector (you initiate)

You can optionally connect your own Claude account (for example, Anthropic's Claude for Teachers) to RestedTeacher.com using a personal connector token you create in your settings. This is entirely opt-in and off by default. When you connect it and ask Claude to act, Claude reads or generates only your own classes, pacing days, and generated lessons through our connector, never any student PII, and the data travels from RestedTeacher.com to your own Claude as a transient pass-through, an egress you start and control.

Two things follow from that. First, a connector token can only reach your own tenant's data, never another teacher's, and you can revoke it at any time from Settings → Connectors, which stops it working right away. On our side we store only a one-way hash of the token, never the token itself. Your connector tokens and their usage records are deleted together with the rest of your account data if you delete your account, on the schedule described in Section 9. Second, once you send your lesson data to your own Claude, that copy is governed by your agreement with Anthropic (or whichever assistant you connect), not by this policy. As always, do not put student PII into the Service, and do not ask a connected assistant to pull it.

Questions about the connector or your privacy can go to support@restedteacher.com.

8.Cookies and similar technologies

We use strictly necessary cookies to keep you signed in (Supabase auth session) and to keep CSRF protections honest.

We also use Google Analytics 4 to understand how visitors find and use the Service and to measure the effectiveness of our advertising. Google Analytics sets its own cookies, and when we run ad campaigns it may use this data to help us measure conversions (for example, that a visitor started a trial) and reach similar audiences. IP addresses are anonymized, and we do not send student PII to Google. You can opt out of Google Analytics on every site by installing Google's browser opt-out add-on, or by blocking analytics cookies in your browser settings.

We do not sell your personal data, and we do not build cross-site advertising profiles beyond the conversion and audience measurement described above.

9.Data retention

We retain account, course, and lesson data for as long as your account is active. If you delete your account, we delete or anonymize your personal data within 30 days, except where retention is required by law (e.g., financial records under U.S. tax law) or by our legitimate interest in fraud prevention. Server logs are retained for up to 90 days.

To prevent the same person from repeatedly claiming the free trial, we keep one-way cryptographic hashes of your normalized email address and of your device fingerprint even after your account is deleted. These hashes cannot be reversed to recover your email or re-identify your device. We use them only to check whether an address or device has already started a free trial.

10.Your rights

You can:

  • Access your account data from within the Service or by request.
  • Correct inaccurate data via your account settings or by request.
  • Export your lessons in a portable format (planned; available on request in the meantime).
  • Delete your account at any time.
  • Object to processing or restrict it where applicable law (e.g., GDPR for EU residents) gives you those rights. Email domains@keypairsoftware.com to exercise any of the above.

11.Children's data

The Service is for adult educators. We do not knowingly collect personal data from anyone under 13. If you believe we have inadvertently collected such data, contact us and we will delete it. We expect teachers using the Service to follow FERPA and their district's data policies, and not to enter student data into the Service.

12.Security

We use industry-standard practices: TLS in transit, encryption at rest (via Supabase), row-level security so a teacher can only access their own tenant's data, password hashing (handled by our auth provider), and routine dependency vulnerability scanning. No system is perfectly secure; we will notify affected users in the event of a breach as required by applicable law.

13.International users

We operate the Service from the United States. If you access it from outside the U.S., you consent to the transfer of your data to and processing in the U.S., where data protection laws may differ from those in your country.

14.Changes to this policy

We may update this policy from time to time. We will post the revised policy with an updated "Last updated" date and, for material changes, notify active subscribers by email.

15.Contact

Keypair Software LLC
7027 W Broward Blvd #703
Plantation, FL 33317-2208
Email: domains@keypairsoftware.com