How Ledger handles your data
Ledger connects to your Canvas account so it can show your assignments and grades in one place. Here is everything it touches, and everything it can't.
What it stores
Your name, school, grad year, and, if you connect Canvas, your courses, grades, and assignments. It syncs those over so you don't have to open five tabs to see what's due. I don't ask for anything else, and I never will.
Your Canvas token is encrypted as soon as it reaches the server
It's encrypted (AES-256-GCM, feel free to google it) before it's ever written to disk, and even I can't read it back without your specific account context. Every time it's decrypted to talk to Canvas on your behalf, that action gets logged, so there's a permanent record of when your token was used and why. Every time that token gets touched, including by me, it leaves behind a record that Ledger itself has no ability to edit or erase.
No teachers, no parents, no school admins
Even if I wanted to, was bribed, or was forced by the school to toggle a switch, I still couldn't, because it doesn't exist. There's no login for faculty, no admin panel that shows student data, and no monitoring mode. If a school ever pressures me to add one, the answer is no. That kind of defeats the whole purpose of Ledger.
No ads, and no, I don't sell your data
Ledger is free right now. Later there'll be a paid tier with some extra study tools, and that's the only way it'll ever make money.
You can delete everything whenever you want
One button in Settings, and it's actually gone rather than deactivated: your account, your synced Canvas data, your posts, and everything tied to you. One thing survives, a single line saying an account was deleted on that date, with your identity stripped from it.
Built by one student at Dripping Springs. If something here is unclear or you think it's wrong, say so and I'll fix it.
Back to Ledger