Overview
Pipo is an independent macOS utility for LPU Cavite students. It connects directly to the LPU Cavite Moodle service and keeps its working data on your Mac. Pipo does not operate an account or cloud-sync service.
LMS access
Pipo sends your sign-in credentials to https://lms.lpucavite.edu.ph only to obtain an LMS access token. Your password is discarded after that exchange. Pipo then uses the token for read-only Moodle requests.
Pipo can retrieve your identity, enrolled courses, assignments, due dates, schedules, announcements, message metadata, grade feedback, submission status, and course resources when available from the LMS. Pipo does not submit assignments, send messages, mark LMS items read, or upload content.
Data on your Mac
- Your LMS token and cache-encryption key are stored in macOS Keychain.
- An encrypted local database stores the latest dashboard snapshot and local state such as seen items, snoozes, pinned courses, and hidden courses.
- Refresh, notification, reminder, and quiet-hour preferences are stored in macOS user defaults.
Website data
The Pipo website stores a visit count in your browser’s local storage and a session flag in session storage. It uses Vercel Web Analytics to measure aggregate page views and website usage.
Clicking “Send feedback” sends your message to Resend for delivery to the Pipo maintainer’s feedback address. The form does not ask for your identity or email address. The hosting provider and Resend may process standard request data under their own terms.
Other services
Pipo interacts with LPU Cavite Moodle, macOS Keychain, Notifications, Calendar, GitHub Releases, GitHub Issues, GitHub-hosted update feeds, Vercel Web Analytics, and Resend only for the functions described above. Those services apply their own privacy practices.
Deletion
Signing out removes Pipo’s LMS token, encrypted dashboard cache, encrypted local state, and Pipo notifications from your Mac. App preferences may remain until you remove Pipo’s app data. Removing Pipo does not delete data held by your school, GitHub, Apple, hosting providers, or device backups.
Diagnostics and support
Pipo can create a diagnostic report when you choose to export one. Reports are designed to redact credentials and sensitive LMS content, but review any report before sharing it.
For policy questions, use GitHub Issues without posting credentials or private LMS data. Report security problems through GitHub’s private vulnerability reporting when available.
Changes
This policy may change when Pipo’s features or data practices change. The effective date above identifies the current version.