Open to UofT students. Institutional review.
Where we stand. Cadenza opens the first week of September with paid plans. Course data is only ever read with your consent, through a read-only Quercus token you generate and can revoke yourself. We are separately working with the University of Toronto and Instructure (Canvas) on institutional single sign on, which will replace the token step. Everything below is how we handle your data.

Privacy.

The short version. This is how we handle your data.

What Cadenza stores

Your email, the school and program you give us at signup, your Quercus course data pulled via a read-only API token you generate yourself, and the notes and plans Cadenza builds from that data. That is all.

What we never do

We never sell your data. We never use your coursework to train outside models. We never share anything with anyone outside Cadenza without your explicit permission. If you ask us to export or delete your account, we do both.

Where it lives

Everything is encrypted at rest in Supabase, hosted in Canada. Your Quercus token is revocable by you at any time from inside Quercus, and the moment you revoke it, Cadenza loses all future access.

What your professors see

Nothing. Cadenza only reads your course materials. It never writes, submits, or signals activity back to Quercus. Your use of Cadenza leaves no trace on your UofT account.

Your controls

Export or delete all your data any time by emailing [email protected]. We respond within two business days.

Questions or a proper policy

The plain-English summary above is how we operate, and it is binding on us. A longer formal policy will follow as our institutional agreements come together. If anything here is unclear, or you want specifics we have not covered, write to [email protected].

Last updated April 2026