CourseDot

Privacy Policy

We value your privacy. This policy explains what we collect, why we collect it, how long we keep it, and how you can control it.

Last updated
We revise this policy to reflect product, legal, or security changes.
Support
We respond to privacy requests typically within 7 business days.
DPO hotline
For escalations and sensitive concerns.

Key Points

  • We collect basic account and usage data to operate and improve our courses.
  • We do not sell your personal data.
  • You can request access, correction, or deletion at any time.
  • We use cookies for authentication and preferences; analytics cookies are optional.

Data Map

An interactive view of what we collect and why. Use the search box to quickly find a category.

Categories
Account Data
Identity and credentials to access CourseDot.
Required
Examples
Name, email, hashed credentials, optional avatar, locale/timezone.
Purpose
Authentication, account communication, security notices, course access.
Retention
While your account is active. After deletion, we remove or anonymize within 30 days, unless legal obligations require longer.
Controls
Update profile in settings. Request export or deletion via [email protected].
Usage & Learning Data
Signals that help us deliver learning outcomes.
Required
Examples
Lesson completion, quiz results, timestamps, course progress, certificate status, feature interactions.
Purpose
Personalize your dashboard, unlock modules, generate certificates, improve content and UX.
Retention
Kept for the duration of your account. Aggregated metrics may be retained longer without identifying you.
Controls
You can request an export of your learning history or deletion where applicable.
Payments & Billing
Transaction metadata required for subscriptions and invoices.
Required
What we store
Transaction reference, status, plan name, country/region, invoice IDs. We do not store full card details.
Who processes card data
Payment providers process card/bank details and return a token or reference to us.
Retention
Billing records are kept as required by accounting and tax rules (commonly 5–10 years depending on jurisdiction).
Controls
Download invoices from your billing page (if available) or request copies via support.
Cookies & Device Storage
Sessions, preferences, and optional analytics cookies.
Mixed
Essential
Login/session cookies, CSRF protection, security flags, language and theme preference.
Optional
Analytics cookies to understand feature adoption and performance. Marketing cookies are disabled by default here.
Retention
Session cookies expire when you close your browser. Preference cookies can last up to 12 months unless you clear them.
Controls
Manage consent using the cookie banner or open preferences anytime with the button below.
Support & Communications
Messages you send us and operational notices we send you.
Optional
Examples
Support tickets, email threads, call notes (if you choose to share), feedback forms.
Purpose
Answer questions, troubleshoot, document resolutions, and improve support quality.
Retention
Usually 24 months, unless an issue requires longer retention for security or legal reasons.
Controls
Ask us to delete specific conversation records where feasible.
Security & Anti‑Fraud Logs
Helps protect accounts and maintain service reliability.
Required
Examples
IP address, approximate location (derived), device/browser info, login attempts, rate-limit events.
Purpose
Detect abuse, prevent fraud, secure accounts, and ensure platform availability.
Retention
Typically 90 days, extended if needed for investigations or compliance.
Controls
These logs are required for security; you can still request access where law allows.

How We Share Data

Service providers

Infrastructure, email delivery, payment processing, and customer support tools.

Legal & safety

If required by law, or to protect users, prevent fraud, and respond to lawful requests.

Business transfers

If we merge, acquire, or sell assets, data may transfer under confidentiality safeguards.

We don’t sell personal data.

We also avoid collecting sensitive data unless you explicitly provide it (for example, in a support message).

Your Rights

Depending on your location, you may have rights to access, correct, delete, restrict processing, object, or receive a portable copy of your data.

Make a request

Email us at [email protected]. Include your account email and the type of request (access, correction, deletion, export).

Need a structured form? Use the modal request flow.

Children’s Privacy

CourseDot is not intended for children under 13. If you believe a child has provided us personal data, contact us and we will take appropriate steps to delete it.