MathFig policies
Privacy Policy
Effective date: 2026-09-14T03:32:34-04:00 · Controller: MathFig LLC · Contact: support@mathfig.com
What stays in your browser
Figure labels, settings, SVG, and PNG output are produced in your browser and are not sent to or saved by MathFig. Editing and the marked preview require no account. Official Download and Copy actions require a fresh account check, but the figure itself stays in your browser. Your theme preference stays in your browser.
What we collect
- Clerk account and sign-in: Clerk is MathFig's managed identity and credential processor. Clerk processes your verified email address, encrypted password credentials, connected Google identity, and session and security metadata for registration, verification, sign-in, recovery, and account security. Clerk supplies the branded account screens and its default authentication emails. MathFig does not receive or store your plaintext password.
- MathFig identity and owner-granted access: MathFig derives a keyed, non-reversible account reference from the verified Clerk user. For owner-granted access, the service reads Clerk's verified primary email transiently and compares a separate keyed reference against a keyed allowlist; it does not add a readable-email account table. MathFig separately maintains the owner-provided list of readable work addresses needed to provision and revoke grants. A connected verified Google account identifier may be read transiently to migrate an existing Plus or owner-granted record without merging accounts by matching email text.
- MathFig Plus purchases: Link and Stripe collect payment and billing details. MathFig stores the resulting customer and subscription identifiers with the keyed MathFig account reference and reads the live subscription status when you export.
- Sessions and cookies: Clerk uses necessary cookies and short-lived tokens to maintain and secure sign-in. On Clerk Hobby, a MathFig session has a fixed maximum lifetime of seven days, after which you must sign in again. MathFig does not create a separate 24-hour login or Plus cookie and retires its former
mf_auth,mf_plus, andmf_flowcookies. Separately, the/studentsresource sets one necessarymf_student_accesscookie after the correct shared class access code is entered. It contains a signed expiration value, not a name or account identifier, and expires after at most eight hours. No advertising cookies are used. - Feedback and support: if you use the feedback page, MathFig sends your message, any optional contact email, and up to three submitted files through Cloudflare Email Service to MathFig's support mailbox in Gmail. If you email support directly, the mailbox receives your message and email address. MathFig does not save feedback content, contact email, or files in application storage.
- Hosting: Cloudflare processes IP addresses and standard request metadata to deliver and secure the Service. Cloudflare also processes submitted feedback to send it to Gmail, which processes and stores the support mailbox.
MathFig does not use analytics providers, advertising, or trackers, and does not sell personal information.
Student data
The editor and account features are designed for adult teachers. The account-free /students resource is intended only for students age 13 or older and does not accept student submissions. The Service is not directed to children under 13, and we do not knowingly collect children's information. Do not enter student names or other student personal information in labels, support messages, or screenshots.
Retention and deletion
MathFig does not offer self-service account deletion. Email support@mathfig.com if you need help with your account, including questions about deletion. If an account deletion was already in progress, MathFig may keep bounded coordinator state needed to complete or recover that operation, including the Clerk user reference. After completion, MathFig discards that reference and the operation details and retains only a completion state and timestamp. For owner-granted eligibility, if the address remains on the owner list, MathFig may retain only a keyed rebind_required state so a recreated account cannot silently regain the old grant. Stripe transaction records and provider security, backup, or legally required records may remain under their applicable retention rules; MathFig does not promise universal permanent erasure or an individual provider's backup-purge deadline.
Feedback and support messages are kept in the support mailbox while reasonably needed to review feedback or complete follow-up, then deleted. Deleted Gmail messages may remain in Trash for up to 30 days.
Changes
We post updates here with a new effective date.
Questions: support@mathfig.com. MathFig LLC, a New Jersey limited liability company.