Privacy notice
Your learning data, explained plainly.
Fail-closed rule: cohort email collection is disabled unless the operator identity, monitored privacy contact, notice version, retention setting, and hosted storage are configured. This draft requires qualified legal review for the markets served.
Free course without an account
Course progress, drafts, favorites, setup checks, checkpoints, and lesson notes stay in your browser’s local storage. API Camp does not receive that information unless optional account synchronization is separately enabled and you choose to sign in. You can clear local information through your browser settings or export progress before clearing it.
Optional research contact and cohort updates
When contact collection is active, you may separately choose a one-time invitation to a 15-minute API-learning research interview, the dated API Camp cohort offer, or both. API Camp stores your email address, each chosen purpose, source, consent or withdrawal times, status, and the active notice version. The research choice is used only to invite you to the stated interview; it does not add you to cohort marketing. The update choice is used only for the dated cohort offer. Neither choice reserves a seat or takes payment.
The contact-choice table does not store interview notes. If you later consent to interview notes, they belong in a separate pseudonymous private research register under a separately explained purpose. Your name, email, account details, and private narrative must not enter the public repository.
You can withdraw both choices through the same form. A minimal suppression record may be retained to honour the opt-out and meet legal obligations. Active records use the configured review period of 30 days; the operator must review whether they remain necessary. A lawyer must confirm the final retention and suppression schedule.
Optional account synchronization
If sign-in becomes available, Google or GitHub authenticates your identity and returns the account name, email address, provider identifier, and optional profile image needed to create your API Camp account. Better Auth runs inside the API Camp Cloudflare Worker, and D1 stores the session, linked account, and synchronized progress. API Camp does not receive your provider password. The sign-in control remains hidden until the provider configuration and access controls are tested.
Project Pack payment
If you purchase the Library Lab Project Pack, Stripe processes the checkout and card information under its own privacy terms. API Camp does not receive or store your full card number. To verify fulfillment and prevent duplicate delivery, API Camp stores the Stripe Checkout Session identifier, payment status, product identifier, active terms and refund versions, download count, and relevant timestamps. Payment support: Payment support is not configured; checkout is disabled.Payment support is not configured; checkout remains disabled.
Service providers and location
This static release uses WHC managed hosting. Optional account synchronization remains unavailable unless a separately deployed API Camp Worker, Better Auth, D1, and Google or GitHub OAuth are configured and disclosed. These providers may process information outside your province or country under their own service terms and safeguards.
No advertising profile
The current application does not use advertising cookies, sell personal information, or send browser progress to an analytics service. Normal hosting security logs may still include technical information such as IP address, request time, and user agent.
Your choices and requests
Contact Privacy contact is being finalized; no API Camp form collection is enabled in this static release. to request access, correction, deletion where applicable, or information about a privacy concern. The operator must verify requests proportionately and respond under applicable law. Do not send passwords, API keys, employer code, health data, government identifiers, or payment-card details.
The privacy contact channel is not yet configured. Data collection remains disabled, and privacy requests require owner review before launch. Do not send passwords, API keys, employer code, health data, government identifiers, or payment-card details.
Children and classroom use
API Camp is not designed to collect information from children who cannot legally consent in their location. A parent, school, or organization must obtain appropriate advice and authorization before directing minors to create accounts or submit information.
Changes
Material changes require a new notice version. A new purpose for collected information requires appropriate notice and consent; old consent is not silently expanded.