Privacy Policy

Effective August 12, 2026

Browser Alerts keep tracking data on your device. Discord Alerts store only the account and course information needed to synchronize your watchlist and send Discord notifications.

Scope

This policy covers the CourseSnag website, cloud service, and Discord application. CourseSnag is an independent personal project and is not operated by Cornell University or Discord.

Information CourseSnag handles

Browser data

For Browser Alerts, your watchlist, alert preferences, delivery choice, and recent course statuses are stored in your browser. This data is not uploaded to the CourseSnag service unless you connect Discord Alerts.

Discord account data

When you connect Discord, CourseSnag requests Discord's identify permission and asks you to install its bot and application commands in a server you select. The bot requests no server permissions. CourseSnag stores your Discord user ID, username, display name, avatar identifier, connection time, and recent activity time. It does not store the selected server ID or request your Discord email address or password.

Discord watchlist data

Discord Alerts store the courses you track, including the roster term, subject, course and section identifiers, title, meeting details, last observed enrollment status, and check timestamps. When Discord is connected, the server watchlist becomes the source of truth for that browser.

CourseSnag may publicly show the aggregate number of distinct Discord watchlists tracking a section. These watcher counts do not include Discord identities or identify individual users.

Security and operations data

CourseSnag creates short-lived authorization records, hashed session records, command cooldown records, service health metrics, and limited operational logs. Hosting providers may also process standard network information such as IP addresses, request times, browser details, and errors.

How information is used

CourseSnag uses information to:

  • authenticate your Discord account;
  • save and synchronize your Discord watchlist;
  • check Cornell course availability;
  • send connection, availability, and seasonal-status messages through Discord; and
  • operate, secure, troubleshoot, and measure the reliability of the service.

CourseSnag does not sell personal information, run advertising, or use watchlists to build advertising profiles.

Service providers and disclosures

CourseSnag relies on Cloudflare for website delivery, Amazon Web Services for cloud processing and storage, Discord for identity and direct messages, and Cornell Class Roster for course information. These providers process information under their own terms and privacy policies.

Information may also be disclosed when reasonably necessary to comply with law, protect users, investigate abuse, or defend CourseSnag's security. It is not otherwise shared for another party's marketing.

Retention

  • Discord OAuth state expires after approximately 10 minutes.
  • Single-use CourseSnag login codes expire after approximately 2 minutes.
  • Discord sessions expire after approximately 30 days or when you sign out.
  • Operational application logs are configured to expire after 7 days.
  • Discord profiles and watchlists remain stored until they are deleted at your request or the service is discontinued.
  • Browser data remains until you remove it or clear the browser's site data.

Signing out revokes the browser session but does not automatically delete the Discord watchlist.

Your choices

You can use Browser Alerts without connecting Discord. You can sign out, remove tracked courses, clear browser storage, or revoke CourseSnag from Discord's Authorized Apps settings. Revoking Discord authorization does not by itself erase records already stored by CourseSnag.

To request access to or deletion of your Discord profile and watchlist, contact the CourseSnag project operator through the shared CourseSnag Discord server used for alerts. Reasonable verification may be required.

Security and age

CourseSnag uses encrypted service connections, encrypted cloud storage, short-lived OAuth records, hashed session tokens, access controls, and limited log retention. No online service can guarantee absolute security.

CourseSnag is not directed to children under 13. Do not use Discord Alerts if you are not permitted to use Discord or provide the information described in this policy.

Changes and contact

This policy may be updated as CourseSnag changes. Material revisions will be shown with a new effective date. Questions and privacy requests can be directed to the CourseSnag project operator through the shared CourseSnag Discord server.