Kreen — Privacy Policy
Last updated: 2026-08-31
Kreen is a Chrome extension that helps medical students turn practice questions into study
notes and Anki flashcards. This policy explains what data
Kreen handles and why.
What we collect
- Account info: your email and password, to create and sign in to your account. Passwords are handled by our auth provider (Supabase) and stored hashed — we never see your plaintext password.
- Question content you act on: when you click Generate, make an Exam-style or Cloze card, or click Get a hint, the text you selected or the question text on the current page is sent to our server to draft study material or provide a hint.
- Images you act on: screenshots or exhibit images you paste, upload, or capture with Grab open are sent to our server when you ask Kreen to generate notes/cards from them. Images you save with a study item are stored in your account.
- Saved study material: notes and cards you choose to save are stored in your account.
- Analyze imports (optional): if you run Analyze, the attempt data you choose to import (which questions you answered, your selected answers, right/wrong outcomes, and timing) is stored in your account to build your performance report, and the finished report PDF is stored privately in your account.
- Usage counts: the number of notes you generate, to enforce plan limits.
What we do NOT collect
- No general browsing history. Kreen reads page content only when you explicitly use a capture/generation action.
- For Coursology import, Kreen uses the authenticated session already visible in your browser. Kreen does not ask for, collect, store, or transmit your Coursology password, cookies, session tokens, or other authentication tokens.
- We do not sell or rent your data, and never use your content for advertising.
How your data is used
- To generate notes/cards or hints, the question text and any images you submit are sent to OpenAI via our server. Per OpenAI's API terms, API content is not used to train their models.
- Saved notes/cards are stored in Supabase under row-level and storage access controls that restrict each record to your own account.
- Anki export runs locally via the AnkiConnect add-on — cards go from your browser to your local Anki app, not through our servers.
- Telegram recap (optional): if you link a Telegram account to Kreen with a one-time code, our study bot can read the study items saved in your account (notes, tags, and right/wrong outcomes) to send you recaps in Telegram. Nothing is shared until you link, and you can unlink at any time from the bot.
Third parties
| Provider | Purpose | Data shared |
| Supabase | Auth, database + private file storage | email, saved study content, usage counts |
| OpenAI | Note/card/hint/report generation | content you submit |
| Telegram (our study bot) | Optional recap messages after you link | your saved notes, tags, and outcomes |
Data retention & deletion
Saved content remains until you delete it in Kreen or ask us to delete
it. Email
mymainemailken@gmail.com to delete your account and all associated data.
Security
Data is transmitted over HTTPS. Database access is protected by row-level security.
The AI provider key is stored on our server and never shipped in the extension.
Kreen's use of user data complies with the Chrome Web Store User Data Policy,
including the Limited Use requirements.
Contact
mymainemailken@gmail.com