Privacy

Privacy Policy

Effective date: June 3, 2026

Scholar Feed (“we”, “us”), operated by Yang Gao, an individual based in California, USA, provides the website at scholarfeed.org, the API at api.scholarfeed.org, and the scholar-feed-mcp client. This policy explains what we collect, why, and your choices.

The short version

What we collect

Account data (accounts only). Your email address and authentication details, your subscription tier and billing status, and the API keys you generate.

Content you create (accounts only). Saved papers, collections, likes, and watches, which power your personalized feed and the email digest.

Usage and request data. For each API call we log request metadata: the tool called, whether the call was anonymous or keyed, your account identifier (if any), the response status, a derived client identifier used for anonymous rate limiting, and a per-session identifier (see below). For some tools we also log the request content, such as the text of a search query or the arXiv identifier of a paper you fetch, so we can operate the service, debug it, measure which features are used, and improve relevance. Raw request logs are retained for up to 90 days; aggregated, de-identified usage counts are retained longer.

Session identifier. The scholar-feed-mcp client generates a random identifier once per running process and sends it with each request (the X-SF-Sessionheader) so we can group one assistant session's calls together. It is random, contains no personal or device information, and is not linked to your identity unless you are using an API key.

Installation source and client name. When you install the Scholar Feed connector from a directory or listing, the install link may carry a short label naming that listing (for example ?src=smithery), and your MCP client reports the name of the software making the request (for example Claude Desktop). We store both with each request so we can tell which listings and which clients people actually use. Neither identifies you: the label names a website, not a person, and the client name is the name of a program. Version numbers are discarded.

Payment data.Subscription payments are handled by our payment processor, Stripe. We do not store full card numbers; we receive only the subscription status needed to grant access. Stripe's handling of your payment information is governed by Stripe's own privacy policy.

What the MCP client sends

scholar-feed-mcp runs locally on your machine. It transmits your requests to api.scholarfeed.org, attaching your SF_API_KEY(if you set one) and the random session identifier above. Your API key is stored in your own MCP client's local configuration file, not by us beyond what is needed to authenticate the key. The client sends no other telemetry.

How we use data

Sharing and processors

We share data only with service providers that help us run the product, under agreements that limit their use of it:

Paper metadata originates from public sources including arXiv. We do not sell your personal information. We may disclose data if required by law or to protect the service and its users.

Retention

Raw API request logs are retained for up to 90 days, then deleted. Aggregated usage statistics, your account, and the content you create are retained for as long as your account is active or as needed to provide the service. You can delete your saved content at any time through the API or the website.

Enforcing usage limits needs one number per caller per month — a running count, with no request content, no raw IP address and no record of which calls were made. For anonymous callers it is keyed to the derived client identifier described above rather than to you. These counters are deleted after six months.

Your choices and rights

Children

The service is not directed to children under 13, and we do not knowingly collect their personal information.

Changes

We may update this policy. Material changes will be noted on this page with a new effective date.

Contact

Questions or requests: yang@mail.scholarfeed.org.