Back to ScholarLog

Data Protection & Security

Last updated: July 2026

1. Encryption

Traffic between your device and ScholarLog is encrypted in transit (HTTPS/TLS). Passwords are never stored in plain text. They're hashed before being saved.

2. Account protection

You can add extra protection to your account:

  • Biometric app lock (Face ID / fingerprint) for this device.
  • Passkey sign-in, backed by your device's secure hardware.
  • Google Sign-In, if you prefer not to manage a separate password.

3. Offline data

To work without a connection, ScholarLog keeps a local copy of your data on your device. Enabling the app lock adds a layer of protection for that local copy if your device is shared or misplaced.

4. Access controls

Your journal, assignments, and courses are only ever visible to your account. Administrative access is limited to what's strictly needed for support and is logged.

5. Data retention

Your content is retained as long as your account is active. If you delete an entry, assignment, or your account entirely, it's removed from our active systems; backups are cycled out over time afterward.

6. Reporting a concern

If you believe you've found a security issue, please report it directly rather than sharing it publicly, so it can be addressed before wider disclosure.