PrettyCanvas Privacy Policy
Last updated: August 13, 2026
PrettyCanvas is a browser extension that improves the appearance and functionality of Canvas LMS. This policy explains what information the extension accesses, how it is used, and where it is stored.
Information PrettyCanvas Handles
To provide its features, PrettyCanvas may access information available through the user’s existing Canvas LMS session, including:
Name, email address, profile information, and Canvas user ID
Courses, enrollments, assignments, grades, submissions, and due dates
Announcements, discussions, inbox messages, and submission comments
Calendar events, files, modules, pages, and other Canvas course content
User preferences, custom themes, course colors, layout settings, and approved Canvas domains
PrettyCanvas uses this information only to display and operate its redesigned Canvas interface. It does not access or store the user’s Canvas password.
Local Storage
Preferences and temporarily cached Canvas information are stored locally on the user’s device using browser extension storage. PrettyCanvas does not operate developer-controlled servers and does not transmit this information to the developer.
Locally stored information can be removed by clearing the extension’s storage or uninstalling PrettyCanvas.
Google Calendar Integration
Connecting Google Calendar is optional and requires an explicit action by the user.
When enabled, PrettyCanvas:
Stores Google OAuth access and refresh tokens locally on the user’s device
Reads the user’s calendar list and PrettyCanvas-created calendar events
Sends selected Canvas event information directly to Google Calendar, including course names, assignment titles, due dates, Canvas links, points, and event identifiers
Creates, updates, or deletes Google Calendar events according to the user’s synchronization settings
This information is transmitted directly between the user’s browser and Google over HTTPS. It is not sent to the PrettyCanvas developer.
Users can disconnect Google Calendar within PrettyCanvas or revoke access through their Google Account permissions. Events already created in Google Calendar may remain until the user deletes them.
Sharing and Selling Information
PrettyCanvas does not:
Sell user information
Use user information for advertising
Use analytics or tracking services
Build advertising profiles
Allow the developer or other humans to read user information
Transfer user information for purposes unrelated to PrettyCanvas features
Information is shared only with the user’s Canvas LMS provider and, when the optional Calendar integration is enabled, Google, as necessary to provide the requested features.
Google API Limited Use
PrettyCanvas’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy and the Chrome Web Store User Data Policy, including the Limited Use requirements.
Data Security
PrettyCanvas uses HTTPS when communicating with Canvas LMS and Google APIs. Authentication tokens and preferences are stored locally through the browser’s extension-storage system.
Changes to This Policy
This policy may be updated when PrettyCanvas features or data practices change. Updates will be published on this page with a revised date.
Contact
For privacy questions, contact: prettycanvas.app@gmail.com