Privacy Policy
Last Updated: January 1, 2025
Your privacy is important to us. This Privacy Policy explains how we ("Platform", "we", "us", "our") collect, use, disclose, and protect your personal information when you use our AI Course Platform.
By using our Platform, you consent to the data practices described in this policy.
1. Information We Collect
1.1 Information You Provide Directly
When you use our Platform, you may provide us with:
Account Information (via OAuth):
- Name
- Email address
- Profile picture
- OAuth provider (Google or Microsoft)
Enrollment Information:
- Selected courses and batches
- Enrollment dates
- Payment information (processed by Razorpay - see Section 3)
Communication Data:
- Refund request reasons
- Support inquiries
- Feedback and testimonials
- Messages in course forums or groups
Optional Information:
- Phone number (for WhatsApp group access)
- Additional profile details you choose to share
1.2 Information Collected Automatically
When you use our Platform, we automatically collect:
Technical Information:
- IP address
- Browser type and version
- Device type (mobile, tablet, desktop)
- Operating system
- Referring website
- Pages visited and time spent
- Click patterns and navigation paths
Session Information:
- Login timestamps
- Last activity
- Session duration
Cookies and Similar Technologies:
- We use cookies to maintain your login session
- We use analytics cookies to understand Platform usage
- You can disable cookies in your browser settings (may affect functionality)
1.3 Information from Third-Party Services
OAuth Providers (Google, Microsoft):
- We receive basic profile information when you log in
- We do not have access to your password
- We only request necessary permissions
Payment Information (Razorpay):
- Payment success/failure status
- Order IDs and payment IDs
- We do NOT store your full credit card numbers or CVV
Zoom:
- Attendance information (if tracking is enabled)
- We do not record sessions without explicit notice
2. How We Use Your Information
We use your information for the following purposes:
2.1 Service Delivery
✅ Create and manage your account ✅ Process enrollments and payments ✅ Provide access to courses and materials ✅ Send batch schedules and Zoom links ✅ Facilitate communication with instructors and peers
2.2 Communication
✅ Send enrollment confirmations ✅ Send payment receipts ✅ Notify you of course updates and schedule changes ✅ Respond to your support inquiries ✅ Send important Platform announcements
2.3 Improvement and Analytics
✅ Understand how users interact with our Platform ✅ Identify technical issues and bugs ✅ Improve course content and user experience ✅ Analyze enrollment trends and course popularity ✅ Develop new features and services
2.4 Marketing (with your consent)
✅ Send promotional emails about new courses ✅ Share relevant blog posts and resources ✅ Notify you of special offers or discounts
You can opt out of marketing emails at any time by clicking "Unsubscribe" in any email or contacting us.
2.5 Legal and Security
✅ Prevent fraud and abuse ✅ Enforce our Terms and Conditions ✅ Comply with legal obligations ✅ Protect the rights and safety of our users ✅ Respond to law enforcement requests
3. How We Share Your Information
We do NOT sell your personal information to third parties. We only share your information in the following limited circumstances:
3.1 Service Providers
We share information with trusted third-party service providers who help us operate the Platform:
Supabase (Database Hosting)
- Stores user accounts, enrollments, and payments
- Located in: [Data center region]
- Privacy Policy: https://supabase.com/privacy
Razorpay (Payment Processing)
- Processes payments securely
- PCI-DSS compliant
- Privacy Policy: https://razorpay.com/privacy/
Resend (Email Delivery)
- Sends transactional and marketing emails
- Privacy Policy: https://resend.com/legal/privacy-policy
Zoom (Live Session Hosting)
- Hosts live course sessions
- Privacy Policy: https://zoom.us/privacy
Google Analytics (Analytics - if enabled)
- Tracks Platform usage and traffic
- Anonymized data
- Privacy Policy: https://policies.google.com/privacy
OAuth Providers (Google, Microsoft)
- Authenticates your login
- We only receive basic profile information
- Google Privacy: https://policies.google.com/privacy
- Microsoft Privacy: https://privacy.microsoft.com/
3.2 Legal Requirements
We may disclose your information if required by law, such as:
- In response to a subpoena or court order
- To comply with legal processes
- To protect our rights, property, or safety
- To prevent fraud or security threats
3.3 Business Transfers
If we are acquired by or merged with another company, your information may be transferred as part of that transaction. We will notify you via email of any such change in ownership.
3.4 With Your Consent
We may share your information for other purposes with your explicit consent (e.g., featuring your testimonial on our website).
4. Data Security
We take data security seriously and implement industry-standard measures to protect your information:
4.1 Technical Safeguards
🔒 Encryption: All data transmitted between your browser and our servers is encrypted using SSL/TLS 🔒 Secure Hosting: Our database is hosted on Supabase with enterprise-grade security 🔒 Access Controls: Limited access to personal data (only authorized personnel) 🔒 Regular Backups: Automated backups to prevent data loss
4.2 Payment Security
💳 PCI Compliance: Razorpay is PCI-DSS certified 💳 No Card Storage: We do NOT store full credit card numbers 💳 Tokenization: Payment details are tokenized by Razorpay 💳 Secure Checkout: Payments processed on Razorpay's secure servers
4.3 Limitations
⚠️ No System is 100% Secure: While we use best practices, we cannot guarantee absolute security ⚠️ Your Responsibility: Keep your account credentials confidential ⚠️ Report Breaches: Notify us immediately if you suspect unauthorized access
5. Data Retention
5.1 How Long We Keep Your Data
Active Accounts:
- We retain your data while your account is active
- Enrollment records kept indefinitely for legal and tax purposes
Inactive Accounts:
- If you don't log in for 3 years, we may delete your account after notice
Deleted Accounts:
- If you request account deletion, we delete most personal data within 30 days
- Some data may be retained for legal compliance (e.g., payment records for tax purposes)
Legal Requirements:
- Payment records: Retained for 7 years (tax law compliance)
- Enrollment records: Retained indefinitely (for certificate verification, if applicable)
5.2 Backups
Deleted data may remain in backups for up to 90 days before permanent deletion.
6. Your Rights and Choices
You have the following rights regarding your personal information:
6.1 Access
📋 Right to Access: You can request a copy of the personal information we hold about you
6.2 Correction
✏️ Right to Correct: You can update inaccurate or incomplete information in your account settings
6.3 Deletion
🗑️ Right to Delete: You can request deletion of your account and personal data
How to exercise: Email us at support@yourplatform.com
Note: Some information may be retained for legal compliance (e.g., payment records)
6.4 Data Portability
📦 Right to Export: You can request a machine-readable copy of your data
6.5 Object to Processing
🚫 Right to Object: You can object to certain uses of your data (e.g., marketing emails)
6.6 Withdraw Consent
↩️ Right to Withdraw: You can withdraw consent for data processing at any time (may limit Platform functionality)
6.7 Complaint
⚖️ Right to Complain: If you believe we've mishandled your data, you can file a complaint with your local data protection authority
7. Cookies and Tracking Technologies
7.1 What Are Cookies?
Cookies are small text files stored on your device to remember your preferences and improve your experience.
7.2 Cookies We Use
Essential Cookies (Required):
- Session cookies to keep you logged in
- Security cookies to prevent fraud
- These cannot be disabled without affecting functionality
Analytics Cookies (Optional):
- Google Analytics (if enabled) to understand Platform usage
- Helps us improve user experience
- You can opt out via browser settings or Google Analytics Opt-out Browser Add-on
No Advertising Cookies:
- We do NOT use cookies for targeted advertising
7.3 Managing Cookies
You can control cookies through your browser settings:
- Chrome: Settings → Privacy and Security → Cookies
- Firefox: Options → Privacy & Security → Cookies and Site Data
- Safari: Preferences → Privacy → Cookies
Note: Disabling cookies may affect Platform functionality (e.g., you may need to log in repeatedly).
8. Third-Party Websites
Our Platform may contain links to external websites (e.g., blog references, resource links). We are not responsible for the privacy practices of these third-party sites.
Recommendation: Review the privacy policies of any external sites you visit.
9. Children's Privacy
Our Platform is not intended for users under 18 without parental consent.
- We do not knowingly collect personal information from children under 18 without parental consent
- If you believe we have collected information from a child, please contact us immediately
- We will delete such information promptly
10. International Data Transfers
Our Platform is primarily intended for users in India. If you access our Platform from outside India, please be aware that:
- Your information may be transferred to and processed in India
- Data protection laws may differ from your country
- By using our Platform, you consent to this transfer
11. Changes to This Privacy Policy
11.1 Updates
We may update this Privacy Policy from time to time to reflect:
- Changes in our practices
- Legal or regulatory requirements
- New features or services
11.2 Notification
- Material Changes: We will notify you via email
- Minor Changes: Will be posted on this page with an updated "Last Updated" date
- Your Continued Use: Constitutes acceptance of the updated policy
11.3 Review
We encourage you to review this Privacy Policy periodically.
12. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or your personal information, please contact us:
📧 Email: support@yourplatform.com 📧 Subject Line: "Privacy Inquiry" ⏰ Response Time: Within 48 hours
Data Protection Officer (if applicable): 📧 Email: dpo@yourplatform.com
13. Specific Disclosures
13.1 For Indian Users
This Platform complies with:
- Information Technology Act, 2000
- Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011
Grievance Officer: Name: [Your Name] Email: grievance@yourplatform.com Address: [Your Business Address] Response Time: 30 days
13.2 For EU/EEA Users (GDPR)
If you are located in the European Union or European Economic Area, you have additional rights under the General Data Protection Regulation (GDPR):
Legal Basis for Processing:
- Contractual Necessity: To provide our services
- Legitimate Interest: To improve our Platform
- Consent: For marketing communications (which you can withdraw)
Data Controller: [Your Company Name] [Your Business Address] Email: dpo@yourplatform.com
Representative in the EU (if required): [Name and contact details]
Right to Lodge a Complaint: You have the right to lodge a complaint with your local supervisory authority.
14. Summary
What we collect: Email, name, profile picture (via OAuth), enrollment data, payment status, usage data Why we collect it: To provide courses, process payments, improve our Platform Who we share with: Service providers (Razorpay, Zoom, Supabase, Resend) - never sold to third parties Your rights: Access, correct, delete, export your data Security: Encryption, secure hosting, limited access Cookies: Essential cookies required, analytics cookies optional Questions: Contact support@yourplatform.com
15. Acknowledgment
By using our Platform, you acknowledge that:
✅ You have read and understood this Privacy Policy ✅ You consent to the collection, use, and sharing of your information as described ✅ You understand your rights and how to exercise them ✅ You agree to the use of cookies as described
Thank you for trusting us with your information. Your privacy matters to us! 🔒
Privacy Policy Version 1.0 Last Updated: January 1, 2025 Effective Date: January 1, 2025