Skip to main content

Product guide

Account & privacy

Managing your account and your data - your profile, appearance and notifications, security, and the privacy tools your institution offers: downloading a copy of your data, asking to correct your record, and requesting erasure.

Profile

Your Profile page sets your display name, timezone, and avatar initial. These are used across the app - for example, dates show in your timezone, and your name appears on things you submit or share.

Your email is fixed

Your sign-in email is shown read-only and can’t be changed here - contact support if it ever needs to change, since it’s how your account is identified.

Appearance & notifications

Appearance (in Settings) switches between Light, Dark, and System, applied instantly - there’s also a quick sun/moon toggle in the top bar.

A bell in the top bar shows your notifications. On the notifications Preferences page you decide, per type, whether each notification reaches you in the in-app bell, by email, or both - so you get exactly the alerts you want and nothing you don’t. Settings also has coarse email switches (account activity, course updates, weekly digest).

Security

DevAcademia is passwordless (you sign in with your email - see the Getting-started guide). Under Settings → Security you can:

  • Add, name, or remove passkeys - Touch ID, Face ID, Windows Hello, or a hardware key - for faster sign-ins. This section appears only if your browser/device supports passkeys.
  • Sign out of all devices - end every active session at once (it tells you how many were ended). Useful after using a shared or lost device; you’ll sign in again everywhere.

Download a copy of your data

Where your institution offers it, you can download a copy of your own data from your dashboard - labelled “FERPA § 99.10 - right to inspect and review”. What’s included is listed for you: your profile, institution memberships, notifications, actions you took, your assignment submissions, your quiz and activity attempts, your course enrolments, and your notification preferences. It never includes another student’s data.

  • The export is prepared in the background - the page updates on its own and the download starts when it’s ready (usually seconds to about a minute); you also get a bell and email notification.
  • The file is cryptographically signed with a SHA-256 fingerprint you can verify against the filename, so you (or an auditor) know it wasn’t altered.
  • You can re-download it free for 24 hours, after which the copy is cleaned up.
  • There’s a limit of 3 exports per hour, and every request is recorded on the audit log as proof the right was served.

These tools help you exercise your rights

These features give you a direct way to use privacy rights your institution administers. Some steps need your institution’s decision - for example, approving a correction or an erasure request - and you’re shown the outcome each time.

Ask to correct your record

If you believe a record about you is inaccurate or misleading, you can file an amendment request - labelled “FERPA § 99.20 - right to request amendment” - from your dashboard: name the record, describe the change you want, and optionally add your reasoning. EU/EEA/UK learners can also tick a box to restrict processing of that record while it’s reviewed (GDPR Article 18). You can withdraw the request while it’s pending.

The institution has up to 45 days to respond (a live countdown shows the deadline), and you’re notified of the decision. If it’s accepted, the record is corrected; if it’s rejected, you see the written reason plus a hearing-rights notice (§ 99.20(c)) explaining your next options.

Request erasure (right to be forgotten)

Where offered, you can request erasure of your personal data - the GDPR “right to be forgotten” (Article 17) - from your dashboard, describing the scope and your reason. You can withdraw the request while it’s pending.

Some data may be kept for a lawful reason

If a request is rejected, the institution must cite one of the permitted legal exceptions (Article 17(3)) - for example, records it’s legally required to keep - and that reason is shown to you. Accepted requests are scheduled for deletion, typically within 30 days.

Related guides