Attunica

Product notice

Current data handling

Version 2026-08-12.1 · Repository snapshot dated August 12, 2026 · Engineering snapshot; counsel review pending


This page describes behavior visible in the current product repository. It is not a final privacy policy or a legal-compliance attestation. Do not submit real client information or other identifiable sensitive information to this development-stage product.

Information the prototype may collect

Browser storage and sign-in cookies

The application uses cookies for access and refresh tokens, role and tutorial state, temporary Google OAuth state, and a separate temporary Google OAuth continuation-destination cookie that stores the requested post-sign-in path. Both temporary OAuth cookies are set for up to ten minutes. The current code does not read or write the retired research-prompt local-storage flag; a value from an earlier build may remain in an existing browser until it is cleared, but the current application ignores it. These mechanisms are product state, not evidence that a final cookie or consent policy has been approved.

AI-assisted authoring, previews, voice, providers, and media

AI-assisted module and avatar authoring and preview-script generation can send instructor-entered module or avatar context to external language-model providers. Configured avatar, render, and voice paths may send scripts, media, avatar or voice identifiers, and related context to external providers; the current standalone avatar preview path can return a script-only preview rather than rendered video. A live practice path can send the LiveKit room and agent context described above, microphone audio, text, and generated output through providers for real-time transport, language-model processing, avatar rendering, hosting, and databases. The repository also contains a local-development audio-recording path. Production capture scope, provider retention, object storage, backups, and deletion behavior have not been approved. This notice therefore does not promise that audio or video is never stored.

Site analytics and error telemetry

Vercel Analytics is mounted across the application for automatic page and route analytics. Sentry client code is present, but error and performance export and browser replay sampling are code-level disabled in the current browser, server, and edge configurations; deployment configuration alone cannot enable them. No custom Vercel event payload is configured in the root layout. Exact provider-collected fields, deployed state, retention, and contractual terms have not been established by this repository review.

Access is not yet production-attested

The intended product boundary gives students access to their own work, gives a System Admin an explicit global-read capability, and limits an instructor to the instructor's exact institution and assigned class. The current implementation has not passed the required instructor-scope or sensitive-read audit gates. Service operators and providers may also process data to operate the product. Do not rely on a narrower access or complete access-logging guarantee today.

Research use is not approved

Historical research-consent records may remain and can include a consent-record identifier, the linked account or user identifier, the selected tier and notice version, grant and revocation times, active or revoked status, a pseudonymous user identifier when present, and the request IP address and user agent captured by earlier behavior. The current application does not offer new research enrollment or consent grants. An authenticated grant request is rejected, while an existing active consent record can be read or revoked. Revocation updates its status and time and records the actor, resource, outcome, and whether a row changed; it does not newly collect IP-address or user-agent data for that action. The current runtime exposes no research extraction, export, anonymization, or derived-metric implementation. Existing records and fields do not authorize research use. This page makes no anonymity, de-identification, research-participation, or publication guarantee.

Retention, deletion, and contact are unresolved

No retention schedule, deletion service level, backup treatment, or end-to-end verified self-service erasure flow has been approved. The current product cannot promise that a Settings action erases every transcript, evaluation, clip, derived output, provider copy, or backup. A canonical legal entity and verified public privacy contact also remain owner- and counsel-gated, so this page does not publish a personal or unapproved address in their place.

No compliance claim

This engineering notice does not claim FERPA, HIPAA, GDPR, IRB, WCAG, or other legal or regulatory compliance. Counsel, institutional review, and behavior-specific validation remain separate external gates.