Keyset Privacy Policy
Effective date: July 20, 2026
This Privacy Policy explains how Key Understanding LLC (“Keyset,” “we,” “us,” or “our”) collects, uses, discloses, and protects information when people use the Keyset for Education website, web application, Chrome extension, and related services (collectively, the “Services”).
Keyset currently serves customers in the United States. Information may be stored and processed in the United States. Please read this policy carefully. If you do not agree with it, do not use the Services.
1. Who Keyset Is For
Keyset is designed for educators and education organizations. It is not intended for use by children under 13, and students do not need Keyset accounts.
Users must not save personally identifiable student information in Keyset keyboards, shared content, or AI prompts. This includes student names, email addresses, identification numbers, grades, disability or health information, and other information that identifies or could reasonably identify a student. Educators and organizations are responsible for following their own legal, contractual, and institutional privacy requirements when using Keyset.
2. Information We Collect
Account and profile information
When an account is created or administered, we may collect:
- Name and email address
- Password in securely hashed form
- Email-verification and password-reset information
- Account role, organization or district membership, and administrative permissions
- Subscription status and related account identifiers
- Communication preferences
If a user chooses Google authentication, Google may provide Keyset with account information such as the user’s name, email address, and authentication identifiers. Google’s handling of information is governed by Google’s own privacy terms.
User-created content
We store content that users intentionally create, import, save, or share through Keyset, including keyboard names and descriptions, comments, shortcuts, formatting, links, images or GIFs, folders, sharing permissions, and related settings.
Usage and technical information
We collect information needed to operate, secure, support, and understand use of the Services, which may include:
- Keyboard and shortcut counts
- Keyboard modification and shortcut creation activity
- Keyboard activation and shortcut-use counts, dates, and associated account identifiers
- Login, session, account, and subscription events
- Device, browser, IP address, diagnostic, security, and server-log information
- Website cookie and consent information
Payment information
Stripe processes subscription payments directly. Keyset does not store complete payment-card numbers. We may receive and retain information needed to manage subscriptions, such as a Stripe customer or subscription identifier, payment status, plan, renewal information, and transaction records.
Communications
If you contact us, we may retain your message, contact information, and related support records. We also process information needed to send account, verification, password-reset, service, and subscription communications.
3. Chrome Extension
The Keyset Chrome extension requires broad website access so it can detect an active typing or editing location and insert the Keyset content selected by the user. This permission allows the extension to work across supported websites; it is not used to collect the surrounding contents of webpages, documents, emails, or student work.
Saved Keyset keyboard content is stored on Keyset’s servers and synchronized to devices where the user signs in. The extension also caches account and keyboard information in Chrome’s local extension storage so the feature can operate efficiently.
During a paste operation, the extension may temporarily access and locally store the device’s current clipboard content, insert the selected Keyset content, and restore the previous clipboard. Keyset does not transmit the previous clipboard contents to its servers.
The extension may send limited usage events to Keyset, such as keyboard activations and shortcut identifiers or use counts. It does not send the surrounding webpage or document content.
4. Sharing and Organization Accounts
Keyboard sharing
Sharing is a core Keyset feature. A creator may share a keyboard with a specific Keyset user or provide a general sharing code that can be used by any signed-in Keyset user who has that code. Shared content may include keyboard names, descriptions, comments, formatting, links, images or GIFs, and shortcuts.
Users control their sharing choices and must only share material they are authorized to distribute. Users must not include personally identifiable student information in shared keyboards.
Organization and district administrators
For accounts provided through a school, district, or other organization, an authorized organization administrator may view identifiable account and activity information for users in that organization. This can include a teacher’s name, email address, total keyboards, keyboards modified during a selected period, total shortcuts, shortcuts created during a selected period, total activations, and activations during a selected period.
Organization administrators cannot view the actual contents of a user’s keyboards or comments unless the user separately shares that content with them.
5. Optional AI Feature
Keyset offers an optional AI feature that generates suggested keyboard or comment content. When a user uses this feature, the submitted text is sent to OpenAI to generate a response. Keyset stores the submitted text, generated response, user identifier, and associated keyboard identifier. These AI records currently do not have an automatic expiration and may remain until replaced by a later AI request for the same keyboard, deleted by Keyset, or removed as part of an eligible account-deletion request.
Users must not enter personally identifiable student information, confidential institutional information, or other sensitive personal information into the AI feature. AI-generated material may be inaccurate and should be reviewed before use.
6. How We Use Information
We use information to:
- Provide, maintain, synchronize, and improve the Services
- Create and manage accounts, subscriptions, and organization access
- Authenticate users and protect the security and integrity of Keyset
- Process payments and administer subscriptions
- Provide customer support and troubleshoot problems
- Send account, service, subscription, and other permitted communications
- Measure product adoption and usage, including identifying highly active users
- Conduct Keyset’s own customer outreach and marketing based on account and product-usage information
- Comply with law, enforce agreements, and protect users, Keyset, and others
Keyset does not display third-party advertising, sell personal information, or share personal information with outside advertisers for their own advertising purposes.
7. Cookies and Similar Technologies
The Website and web application use cookies and similar technologies for functions such as authentication, security, preferences, operation, and consent management. Cookiebot by Usercentrics provides the cookie-consent interface and allows visitors to accept or reject nonessential cookies where applicable. Essential technologies required for login, security, and basic operation may still be used.
Visitors can review or change available cookie choices through the Cookiebot consent controls. Browser settings may also allow users to block or delete cookies, although doing so may prevent parts of the Services from functioning correctly.
The web application currently uses Google Analytics and Google Tag Manager to measure visits and interactions. These services may receive information such as IP address, browser or device information, page paths, referring information, cookie or similar identifiers, and interaction events. Keyset uses this information to understand and improve the Services and for its own customer outreach and marketing; Keyset does not sell it or provide it to outside advertisers for their own advertising purposes. Google Fonts may also receive technical request information, including IP address and browser information, when font resources are loaded.
8. How We Disclose Information
We disclose information only as reasonably necessary for the purposes described in this policy, including:
- To service providers that help us host, operate, secure, support, communicate, process payments, analyze usage, and provide the Services. These include DigitalOcean for application hosting; Flywheel for WordPress website hosting and storage of website form submissions; MongoDB Atlas for database hosting; Stripe for payment processing; ActiveCampaign for email communications; Mailgun for transactional email; Cookiebot by Usercentrics for consent management; OpenAI for the optional AI feature; Google for Analytics, Tag Manager, authentication, and externally loaded fonts; and TinyMCE for content-editor technology.
- To an organization administrator for the identifiable account and usage reporting described above
- To other Keyset users when a user chooses to share content with them
- To comply with applicable law, legal process, or lawful government requests
- To investigate fraud, abuse, security incidents, or violations of our agreements and to protect the rights, property, or safety of Keyset, our users, or others
- In connection with a merger, financing, acquisition, reorganization, bankruptcy, or sale of some or all of our business or assets, subject to appropriate protections
- With the user’s direction or consent
Service providers may process information only for the functions they perform for Keyset, subject to their agreements and applicable law. Their own privacy terms may also apply when users interact directly with their services.
9. Access by Keyset Personnel
Authorized Keyset personnel may access saved keyboard content, AI-related records, account information, and usage records when reasonably necessary for customer support, security, abuse prevention, legal compliance, or system administration. Access should be limited to personnel who need the information for those purposes.
10. Data Retention and Deletion
We retain information for as long as reasonably necessary to provide the Services, maintain accounts and subscriptions, meet legal and accounting obligations, resolve disputes, enforce agreements, protect security, and support legitimate business operations.
Users may request complete account deletion by contacting support@keyunderstanding.com. After verifying the request, Keyset will delete the account and privately owned Keyset content, subject to information that must be retained for billing, fraud prevention, security, legal obligations, backups, or other legitimate purposes. Content already copied by or shared with other users may remain in those users’ accounts. Backup copies may remain for a limited period until overwritten or deleted in the ordinary backup cycle.
Organization administrators may also control or request changes to organization-sponsored accounts. Users with organization-sponsored accounts may need to contact both Keyset and their organization regarding account or reporting information.
11. User Choices and Privacy Rights
Subject to applicable law and appropriate identity verification, users may request to:
- Access information associated with their account
- Correct inaccurate account information
- Receive an export of their Keyset account data
- Delete their account and eligible personal information
- Withdraw consent where processing is based on consent
- Opt out of nonessential communications or use available unsubscribe controls
- Review or change nonessential cookie choices
Requests may be sent to support@keyunderstanding.com. We may retain information when permitted or required by law. We will not discriminate against a user for exercising applicable privacy rights.
Keyset does not sell personal information or share it with outside advertisers for cross-context behavioral advertising. If our practices change, we will update this policy and provide any choices required by law.
12. Data Security
We use reasonable administrative, technical, and organizational safeguards designed to protect information from unauthorized access, loss, misuse, alteration, or disclosure. Passwords are stored in hashed form, and payment-card processing is handled by Stripe. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
Users are responsible for protecting their credentials, controlling sharing links and codes, and avoiding student-identifying or other sensitive information in keyboards and AI prompts. Please notify us promptly if you suspect unauthorized account access.
13. Children’s and Student Privacy
Keyset is intended for educators and education organizations, not children under 13. We do not knowingly allow children under 13 to create accounts or provide personal information through the Services. If we learn that we collected personal information directly from a child under 13 without appropriate authorization, we will take reasonable steps to delete it.
Keyset does not require student accounts. Users are prohibited from storing personally identifiable student information in keyboards, shared content, or AI prompts. If you believe student or child information has been submitted improperly, contact us at support@keyunderstanding.com.
14. Changes to This Policy
We may update this Privacy Policy to reflect changes in the Services, our practices, or applicable requirements. We will post the revised policy and update its effective date. When changes are material, we will provide additional notice when required by law or when reasonably appropriate.
15. Contact Us
For privacy questions, requests, or complaints, contact:
Key Understanding LLC
Attention: Legal
2058 N. Mills Ave.
P.O. Box 710
Claremont, CA 91711
909-206-2648
support@keyunderstanding.com

