Stays on the iPhone
Full conversations, source capsules, profile bodies, private personal knowledge, the task ledger, agent orchestration, and device-permission state.
PRIVACY BY SEPARATION
PRISMSAI reduces backend access to student content through an on-device runtime, a separately deployed model data plane, and an isolated school control plane.
WHAT GOES WHERE
Full conversations, source capsules, profile bodies, private personal knowledge, the task ledger, agent orchestration, and device-permission state.
The bounded model request and response needed for one inference pass through relay memory without a relay database or content log.
Authentication, agent and skill versions, structured knowledge locators, knowledge gaps, and anonymous technical diagnostics that exclude prompt and output bodies.
THE PRECISE PROMISE
The relay can process plaintext while forwarding, and the selected model provider receives inference content. PRISMSAI’s promise is narrower and verifiable: the relay does not persist content, the management backend does not receive it, content logging is disabled, and student identity is not forwarded to the model provider.
Encryption in transit protects network transport. It does not prevent the chosen cloud model provider from receiving the request it must process.
USER CONTROL
Calendar, location, Health, camera, photos, speech, and files follow explicit student intent and iOS authorization.
PRISMSAI may use current coarse location for a requested task but does not build a continuous location trail. Health access is read-only for authorized step and sleep summaries.
Personal memory, private knowledge, and task bodies do not currently synchronize across devices. Future continuity requires explicit opt-in, encryption, revocation, and auditability.
APP STORE PRIVACY DISCLOSURE
PRISMSAI declares the following data types for App Functionality. It does not use them for third-party advertising or cross-company tracking.
Email address, user ID, device ID, and other diagnostic data may be associated with the signed-in account or device session for authentication, runtime delivery, reliability, and support.
Health, fitness, and coarse location are processed only after the student enables the corresponding iOS permission and are not linked to the student identity in the App Store disclosure.
Other user content includes questions and student-selected text, links, photos, camera captures, and files needed for a requested task. It is not used for tracking.
RETENTION, PROVIDERS & CHOICES
The stateless relay processes the bounded request and response in memory and does not persist prompt or answer bodies. The selected cloud model provider receives the content required for inference and applies its own service terms and retention controls.
Local conversations, memory, personal knowledge, task history, and selected imports remain until the student deletes them or removes the App. iOS permissions can be revoked in Settings at any time.
Account records, runtime versions, knowledge operations, gaps, and privacy-safe diagnostics may be retained to operate and repair the service. They exclude full prompt and model-output bodies.
For privacy, access, correction, or deletion requests, email support@prismsai.org. Include only the account email and the request needed for us to locate the relevant account record.
PRISMSAI does not sell personal data, does not serve behaviorally targeted advertising, and does not track students across other companies’ apps or websites. Last updated: August 16, 2026.