Security
Last updated 5 October 2026
Sign-in and access
- Sign-in uses Google. We never see or store your Google password.
- Sessions are signed, HTTP-only cookies sent only over HTTPS.
- Each account’s projects are separated from other users. The service owner can view workspace content to operate and secure the service; every such view is recorded in an audit log.
- Accounts can be suspended immediately if misuse is detected.
Data protection
- All traffic is encrypted in transit with HTTPS (TLS).
- The application and its database run on Cloudflare’s infrastructure, which encrypts stored data at rest.
- Connection credentials are stored encrypted. Secrets are never placed in the website code.
- Requests are rate-limited, and suspicious activity is logged for review.
AI providers
Content you send for generation is processed by the AI providers listed in the privacy policy. The main model runs on Cloudflare. Free third-party models are used only when you choose them.
Reporting a security issue
If you believe you have found a vulnerability, email support@mylearningstudio.in with “Security” in the subject. Please give us reasonable time to fix it before disclosing it publicly, and do not access other people’s data while testing. We aim to acknowledge reports within 3 working days.