Privacy policy

What we know about you.

The honest version: we know your email, the assignments your school publishes to its LMS, and which device is yours. That's it. Below is the long version, in plain language. No clauses you'd need a lawyer to translate.

Last updated · January 2026

The shortest list we can stand behind.

Margin only collects what's needed for the device to show you what's due. Anything that isn't strictly necessary, we don't collect. Here's the full accounting:

What we collect

  • Your email address (for waitlist + account)
  • Assignment titles & due dates from your LMS
  • Course names & codes
  • Calendar event titles & times (if you connect a calendar)
  • A unique device ID so the right data goes to the right device

What we don't collect

  • Your LMS password — ever
  • Grades, scores, or feedback on assignments
  • Submission contents, files, or attachments
  • Browsing history outside your LMS
  • Location, contacts, or anything from other apps
  • Analytics, telemetry, or usage tracking on the device

The browser plugin reads your already-authenticated session with Canvas, Blackboard, or D2L — the same way you read it. We never see your university password and we never log you in. If your school's session expires, the plugin stops reading until you log in again, on your own.

One purpose. The device.

Your data is used for one thing: showing your assignments and schedule on your Margin device. That's the whole purpose. We don't use it for advertising, recommendations, training models, market research, or any other secondary purpose.

Specifically, we never:

These aren't aspirations — they're commitments. If we ever wanted to do any of these things, we would need to update this policy and notify you first, and we believe we never will.

Two places, both named.

Your data lives in exactly two places:

Three other services are involved when you choose to connect them, and your data flows through them only because you asked it to:

That's the complete list. There are no other third parties. No marketing pixels, no analytics scripts, no chat widgets, no data brokers.

Specific durations, not "as long as needed."

Real numbers:

What you can ask us to do.

You can:

These rights apply to everyone, regardless of where you live — not just users in California or the EU. We don't think basic data rights should depend on jurisdiction.

What we actually do.

Practical measures, not promises:

What we don't claim: that we're impervious to breach. No company can honestly claim that. If a security incident affects your data, we'll tell you what happened, what we know, and what we're doing about it — within 72 hours of confirming the breach. Not "as soon as practicable." Not "in due course." Within 72 hours.

Margin is for users 13 and older.

We don't knowingly collect data from anyone under 13. If you're a parent or guardian and you believe your child has registered for Margin, email us and we'll delete the account and all associated data, no questions asked.

This policy aligns with COPPA (the U.S. Children's Online Privacy Protection Act). Schools and districts that wish to provide Margin to students under 13 should contact us first — we don't currently support that use case.

The world is bigger than the U.S.

Margin is operated from the United States. If you use Margin from outside the U.S., your data will be transferred to and stored on servers in the United States. By using Margin, you consent to this transfer.

For users in the European Economic Area, the United Kingdom, or Switzerland: we process your data on the legal basis of performing the contract you've entered into with us (i.e., you bought a Margin device and we make it work). You have the rights described in section 05, plus the right to lodge a complaint with your local data protection authority.

For California residents: the rights in section 05 satisfy the requirements of the CCPA / CPRA. We don't sell your data and we don't "share" it for cross-context behavioral advertising — there is no advertising on Margin.

How you'll know we changed something.

If we update this policy in any meaningful way — adding a new third party, changing what we collect, changing how long we keep it — we'll email every active user at least 30 days before the change takes effect. The email will say what changed, in plain language, and link to a diff of the old and new policies.

Cosmetic edits (typos, clarifications, link fixes) don't count and won't trigger an email. The "last updated" date at the top of this page reflects every change, cosmetic or otherwise.

Questions, requests, or concerns? Email us.

Privacy questions, data export requests, deletion requests, or "I think something's wrong" — all go to the same address:

privacy@margin.computer

We aim to respond within three business days and to complete data export or deletion requests within seven days. A real human reads every email; you won't get a ticket number.

Margin LLC, [Mailing address — to be added before public launch]
This policy is governed by the laws of the State of [Illinois], United States.