Last updated: September 10, 2026
This Privacy Policy applies to the Mategora webapp at mategora.com and to the Mategora iOS and Android apps.
Mategora is the platform and app through which we provide math materials and exercises. The data controller is:
OROSZ ANDRÁS ÎNTREPRINDERE INDIVIDUALĂ (sole trader / individual enterprise, Romania)
Tax ID (CUI): 54491101
Trade register no.: F2026020133009 (EUID: ROONRC.F2026020133009)
Registered office: recorded with the Trade Register at the Harghita Tribunal; full address available on request.
Email: contact@mategora.com
For any privacy questions you can contact us at contact@mategora.com.
This policy applies to:
We only collect the data we need to provide our services. The main categories are:
Email address, username and password (stored only as a bcrypt hash).
Session cookie (mategora.sid), CSRF token and, for administrator accounts, an optional 2FA code (TOTP).
Exercise results, statistics, XP, levels and daily progress.
Classes you create, class members, homework and teacher-led sessions.
Room codes, presence, answers and real-time scoreboards.
Messages sent to support@mategora.com or contact@mategora.com and our replies.
IP address, user agent and request logs (used for security and abuse prevention).
An essential session cookie, your language preference and, where applicable, the locally stored list of solved exercises.
Usage events collected via PostHog, if enabled in production.
When you use AI features, the relevant content may be sent to the AI provider.
Only if you choose to photograph an exercise or attach an image. The image is sent to our server to process the exercise. We do not access your gallery in the background.
Device model, operating system version, app version and the technical details of the error, when the app crashes or runs slowly.
Subscription status and purchase history. Payment is handled by the App Store, Google Play or Stripe — card details never reach us.
We use the data to:
We process personal data on the following legal bases, in line with the GDPR:
Mategora is intended to support school students. Parents and legal guardians may contact Mategora about a child's account, data or privacy. Teachers and schools that use the classroom features may see the progress of students within their own classes. We handle children's data carefully and apply minimum-age and parental-consent rules in line with applicable law.
To run the service we rely on categories of providers that may process data on our behalf:
To run the webapp and related services.
To store account, progress and classroom data.
For real-time features, including live quizzes and presence.
For AI-powered features (exercise text), when used. They do not use the data to train their models.
For AI-powered features (exercise text), when used. They do not use the data to train their models.
For product usage analytics, only with your consent.
For transactional email such as verification codes (sender noreply@mategora.com).
When you use the Mategora iOS app.
When you use the Mategora Android app.
For crash reports and performance measurements from the mobile apps, so we can fix defects. Reports contain technical details about the device and the error, not the content of exercises.
For subscription management in the mobile apps. It receives subscription status, never card details.
For payments started in the web app. Card details are entered directly with Stripe; we never see or store them.
Mategora uses AI to help generate, explain and check educational content (math exercises), and for certain administrative tools. The AI providers we use are OpenAI and Anthropic.
What is sent: only the exercise and problem texts — educational content authored by teachers and shown to students. No personal data (names, email, account data) is sent to the AI providers.
Training: the providers do NOT use content sent via the API to train their models.
Retention: content sent via the API may be retained by the providers for a limited period, solely for abuse prevention, in line with their policies, after which it is deleted. Transfers outside the EEA rely on appropriate safeguards (Standard Contractual Clauses).
We use a small number of cookies and local-storage items needed to operate the service and to remember your preferences.
We handle personal data responsibly. In short:
Some providers may process data outside Romania or the European Economic Area. In such cases, transfers rely on appropriate safeguards, such as adequacy decisions of the European Commission or Standard Contractual Clauses (SCCs), where required.
We keep data only for as long as needed for the purposes for which it was collected.
Under the GDPR, you have the following rights:
To exercise your rights, please write to contact@mategora.com.
In Romania, the competent authority is the National Supervisory Authority for Personal Data Processing (ANSPDCP). Users in other EU member states may also contact their local supervisory authority.
We apply reasonable technical and organisational measures to protect your data:
You can delete your account directly in the app, immediately and permanently: open your account page (your username or the profile icon in the top bar) and press “Delete account permanently”. Alternatively, you can send us a deletion request by email.
You can contact us at the following email addresses:
We may update this policy from time to time. The last-updated date will change accordingly. Material changes may be communicated in the app or by email where appropriate.