Privacy & Data Protection Policy
At LearnFlow, we are committed to protecting your privacy and ensuring the security of your personal data. This Privacy & Data Protection Policy explains how we collect, use, store, and safeguard your information when you use our online learning platform, mobile applications, and related services.
1. Introduction & Scope
LearnFlow ("we", "us", or "our") operates as an educational technology platform providing online courses, learning management services, and certification programs. This policy applies to all users, including students, instructors, administrators, and corporate clients, regardless of their location.
We adhere to international data protection standards, including the General Data Protection Regulation (GDPR), California Consumer Privacy Act (CCPA), and Children's Online Privacy Protection Act (COPPA) where applicable.
2. Information We Collect
We collect information to deliver, improve, and secure our educational services. The types of data we collect include:
- Account & Profile Data: Name, email address, username, password, profile photo, date of birth, and educational/professional background.
- Learning & Progress Data: Course enrollments, completion status, quiz scores, assessment results, time spent on lessons, and learning preferences.
- Payment & Billing Data: Transaction history, payment method details (processed securely by PCI-DSS compliant providers), subscription tier, and billing address.
- Device & Usage Data: IP address, browser type, operating system, device identifiers, access times, clickstream data, and referrer URLs.
- Communication Data: Support tickets, feedback, survey responses, email interactions, and live chat transcripts.
- Audio/Video & Biometric Data: If you use proctored exams or live classes, we may collect camera/microphone feeds and voice recordings strictly for assessment and security purposes, processed in accordance with explicit consent.
3. How We Use Your Information
We use your data solely for legitimate purposes related to our educational mission and platform operations:
- Creating and managing your account, personalizing your dashboard, and enabling course access.
- Processing payments, issuing receipts, and managing subscription renewals.
- Delivering course content, tracking progress, and issuing verified certificates.
- Improving platform functionality, debugging technical issues, and optimizing user experience through analytics.
- Communicating service updates, security alerts, and promotional content (with opt-in consent where required).
- Preventing fraud, enforcing terms of service, and complying with legal obligations.
- Providing instructor analytics and corporate client reporting (aggregated and anonymized where applicable).
4. Data Sharing & Disclosure
We do not sell, rent, or trade your personal information. We may share data only in the following circumstances:
- Service Providers: Trusted third parties for payment processing, cloud hosting, email delivery, analytics, and customer support, bound by strict data processing agreements.
- Instructors & Corporate Clients: Learning progress and assessment data shared only as permitted by your account settings or enterprise agreements.
- Legal Compliance: When required by law, court order, or governmental authority, or to protect the rights, property, and safety of LearnFlow and its users.
- Business Transfers: In the event of a merger, acquisition, or asset sale, user data may be transferred as a business asset, with continued commitment to privacy obligations.
5. Data Security Measures
We implement industry-standard technical and organizational safeguards to protect your data:
- End-to-end TLS 1.3 encryption for data in transit
- AES-256 encryption for sensitive data at rest
- Regular penetration testing and vulnerability assessments
- Strict role-based access controls and employee background checks
- Automated backups, disaster recovery protocols, and incident response planning
While we strive to protect your information, no system is completely immune to breaches. In the unlikely event of a data incident, we will notify affected users and regulatory authorities in accordance with applicable laws.
6. Your Rights & Choices
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Access & Portability: Request a copy of your data in a machine-readable format.
- Correction: Update or correct inaccurate profile or billing information.
- Deletion: Request erasure of your account and associated data, subject to legal retention requirements.
- Opt-Out: Unsubscribe from marketing communications or disable non-essential tracking.
- Restrict Processing: Limit how we use your data under specific circumstances.
- Lodge a Complaint: Contact your local data protection authority if you believe your rights have been violated.
To exercise these rights, use the privacy settings in your account dashboard or contact our Data Protection Officer directly.
7. Cookies & Tracking Technologies
We use cookies, pixels, and similar technologies to maintain session security, remember preferences, and analyze platform performance. Our Cookie Policy provides detailed categorization (Strictly Necessary, Performance, Functional, Advertising) and instructions for managing consent via your browser settings or our cookie preference center.
8. International Data Transfers
LearnFlow operates globally. Your data may be processed in countries outside your residence, including the United States and the European Union. We ensure adequate protection through Standard Contractual Clauses (SCCs), adequacy decisions, or equivalent safeguards as required by law.
9. Children's Privacy
LearnFlow is not intended for individuals under the age of 13 (or the applicable age of consent in your jurisdiction). We do not knowingly collect data from children. If we become aware of underage accounts, we will promptly delete the data and suspend access. Parents or guardians may request review or removal of data by contacting our support team.
10. Policy Updates
We may revise this policy to reflect changes in technology, regulation, or business practices. Material updates will be communicated via email, platform notifications, or prominent website banners. Continued use of LearnFlow after changes constitutes acceptance of the revised policy.
Contact Our Data Protection Team
For privacy inquiries, data requests, or security reports, please reach out: