1. Who we are
ClassArcade is a classroom rewards and motivation service operated by StakrLabs, a registered business in the Republic of Korea. For any privacy questions or requests, contact us at [email protected].
2. Our role: the academy is the controller
ClassArcade is provided to academies (hagwons) and teachers as a business service. The academy that enrolls a student is the data controller for that student's information: the academy decides what name is entered, obtains any consent required from parents or guardians as part of its enrollment process, and manages the student's participation. StakrLabs acts as a data processor, storing and processing that information only to provide the service to the academy.
3. What we collect
Academy staff (owners and teachers):
- Email address and password (managed by our authentication provider; passwords are stored only in hashed form and are never visible to us)
- Display name, if provided
Parents:
- Email address and password (same handling as above)
- Display name, if provided
Students:
- A name entered by the academy (this may be a nickname rather than a legal name — that choice belongs to the academy)
- A chosen avatar (a cartoon graphic — not a photo)
- Points, levels, badges, streaks, and reward history
- Comments written by teachers about classroom activity
Students sign in with a short login code on their device. We do not collect students' email addresses, phone numbers, photos, birthdates, or any government identifiers.
School data: academy name, logo, and theme settings uploaded by the academy owner.
4. What we do NOT do
- No advertising of any kind
- No analytics or behavioral tracking
- No third-party tracking cookies
- No third-party network requests of any kind — all fonts and assets are served from our own domain, and the app communicates only with our own backend
- We never sell, rent, or share personal information with third parties for their own purposes
The only browser storage we use is what is technically necessary to keep you signed in.
5. Where data is stored
Data is stored with Supabase in the Seoul region (Amazon Web Services, ap-northeast-2, Republic of Korea). The application itself is delivered via Cloudflare Pages. These providers act as our infrastructure subprocessors and do not use the data for their own purposes.
6. How data is used
Solely to provide the service: showing students their progress, letting teachers award points and write comments, letting parents view their own child's progress, and letting academy owners administer their school. Access is role-restricted — for example, parents can see only the child linked to their account, and teachers see only the classes assigned to them.
7. Retention and deletion
Data is retained while the academy's account is active. An academy owner can delete an individual student directly in the app at any time; doing so permanently removes that student's record, award and comment history, and any linked student and parent accounts. When an academy cancels its service entirely or requests deletion of the whole account, the academy contacts StakrLabs at [email protected] and the associated data is deleted. Parents and staff may also request deletion of their own account data through the same address. Requests are honored without undue delay.
8. Children's privacy
ClassArcade is designed so that the service can be used by students without collecting contact details or identifying information from them directly. Student records are created and controlled by the academy, which is responsible for obtaining any consent required under applicable law (including Korea's Personal Information Protection Act) from parents or legal guardians. If you believe information about a child is held in ClassArcade without proper authority, contact us and we will investigate and delete it where appropriate.
9. Security
All traffic is encrypted in transit (HTTPS). Access to data is restricted by per-school isolation and role-based permissions enforced at the database level. Passwords are hashed by our authentication provider and are never accessible to StakrLabs.
10. Changes to this policy
If this policy changes, the updated version will be posted at this address with a new "last updated" date. Material changes will be communicated to academy owners.
11. Contact
StakrLabs — [email protected]