Privacy Policy

Effective date: 2025-05-15

Last updated:

Do Not Track:

We collect minimal data necessary to deliver our services. We avoid unnecessary tracking and never sell your data.

Information we collect tap to toggle
  • Account data you provide (name, email).
  • Course progress and preferences stored locally in your browser.
  • Payment processing handled by secure third parties (we do not store card data).
Cookies & local storage tap to toggle

We use cookies for essential functionality. Preferences like theme, currency, and favorites are stored locally on your device.

  • Essential: session continuity, security state.
  • Preferences: theme mode, language, accessibility.
  • Analytics (optional): aggregated usage insights when explicitly enabled.

Your current local footprint:

Your rights tap to toggle

You can request access, correction, or deletion of your personal data by contacting [email protected].

  • Access your data and receive a copy.
  • Rectify inaccurate or incomplete data.
  • Erase data where applicable (“right to be forgotten”).
  • Restrict or object to certain processing.
  • Data portability when technically feasible.
  • Lodge a complaint with a supervisory authority.

If you initiated an erasure request, estimated completion by: ( remaining).

To simulate a deletion timeline locally, append “#erase” to the URL. No information is sent to our servers by this simulation.

Data retention tap to toggle

We retain account data only as long as needed to provide services or comply with legal obligations.

  • Account details: stored for the duration of your account and up to 12 months after closure.
  • Support communications: 24 months for audit and quality.
  • Payment records: up to 7 years to meet tax and accounting laws.
  • Client-side preferences: until you clear your browser storage.
Lawful bases for processing tap to toggle
  • Contract: to provide purchased courses and features.
  • Consent: for optional analytics and marketing.
  • Legitimate interests: improving reliability and security.
  • Legal obligation: tax, fraud prevention, and compliance.
Subprocessors & recipients tap to toggle
  • Payment processors: PCI DSS–compliant providers (we never store card numbers).
  • Cloud hosting and CDN providers in reputable jurisdictions.
  • Customer support tooling with strict access controls.

We conduct data protection assessments and rely on appropriate transfer mechanisms where required.

International transfers tap to toggle

When data leaves your region, we implement safeguards like Standard Contractual Clauses, transfer impact assessments, and regional data hosting where possible.

Security measures tap to toggle
  • Encryption in transit and at rest for server-side data.
  • Strict role-based access control and audit logging.
  • Regular backups, integrity checks, and disaster recovery planning.
  • Vulnerability management and secure development lifecycle practices.
Children’s privacy tap to toggle

Our services are not directed to children under 13 (or the relevant age of digital consent in your region). We do not knowingly collect personal data from children.

Automated decision-making tap to toggle

We do not engage in profiling or automated decision-making that produces legal or similarly significant effects.

Changes to this policy tap to toggle

We may update this policy to reflect operational or legal changes. Material updates will be clearly signposted within the product.

Contact & DPO tap to toggle

We aim to respond to verified requests within 30 days, subject to extension where permitted.