IYKYK Education AI Inc. (“we,” “us,” or “our”) is committed to respecting and protecting the privacy of all individuals whose information we process. This Privacy Policy outlines how we collect, use, disclose, and secure your information in compliance with privacy laws such as:
- General Data Protection Regulation (GDPR) (EU/EEA).
- California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA) (U.S.).
- Family Educational Rights and Privacy Act (FERPA) (U.S.).
- Children’s Online Privacy Protection Act (COPPA) (U.S.).
- Health Insurance Portability and Accountability Act (HIPAA) (if applicable).
This policy also reflects best practices in privacy and transparency to protect our users’ rights globally.
- Scope of This Policy
This Privacy Policy applies to all users, including:
- Individuals: Students, educators, and administrators.
- Institutional Clients: Schools, districts, and corporations subscribing to our services.
- Visitors: Users of our website or other digital services.
- Key Definitions
- Personal Information (PI): Any information relating to an identified or identifiable individual.
- Data Controller: IYKYK Education AI Inc. when determining the purposes and means of processing your data.
- Data Processor: IYKYK Education AI Inc. when processing data on behalf of institutional clients.
- Sensitive Personal Data: Special categories of data (e.g., racial/ethnic origin, biometric data) subject to stricter controls under laws like GDPR.
- Information We Collect
We collect the following categories of data:
- Personal Information
- Full name, email address, phone number, postal address, account credentials.
- Identifiers such as student/employee IDs or national IDs (where required).
- Educational Data
- Learning progress, course enrollments, assignment submissions, grades, feedback.
- Engagement metrics, usage patterns, and content preferences.
- Technical and Device Data
- IP addresses, browser types, operating systems, and device identifiers.
- Session logs, error reports, and interaction analytics.
- Payment Information
- Billing details, payment methods, and transaction records. (All processed via PCI-DSS-compliant third parties.)
- Cookies and Tracking Data
- Functional, analytical, and marketing cookies to enhance user experience.
- Tracking data collected via pixels or web beacons for analytics purposes.
- Special Categories of Data (If Applicable)
- Accessibility requirements or accommodations.
- Sensitive personal data processed with explicit consent and under strict legal safeguards.
- Lawful Grounds for Data Processing
We process your data under the following legal bases:
- GDPR (EU/EEA Users)
- Consent: For marketing, optional data collection, or sensitive data.
- Contractual Necessity: For service delivery (e.g., LMS access).
- Legal Obligation: Compliance with laws (e.g., FERPA, tax obligations).
- Legitimate Interests: Improving platform functionality, fraud prevention.
- CCPA/CPRA (California Users)
- Right to know, delete, or opt out of data sharing.
- No sale of personal data; we share information only with service providers under contractual obligations.
- FERPA (U.S. Educational Institutions)
- Processing is conducted with strict compliance, ensuring student records are accessible only to authorized parties.
- How We Use Your Information
Your data is used for the following purposes:
- Core Services: Delivering educational content, tracking progress, providing certifications.
- Personalization: AI-driven recommendations for a tailored learning experience.
- Communications: Administrative notifications, service updates, user support.
- Research and Analytics: Improving platform usability, identifying learning trends.
- Legal Compliance: Meeting legal and regulatory obligations.
- Fraud Prevention and Security: Monitoring access, preventing unauthorized activities.
- Sharing Your Information
We share your information under limited circumstances:
- Service Providers
- Third parties assisting with hosting, analytics, payment processing, communication tools.
- Bound by strict confidentiality agreements and data protection clauses.
- Institutional Clients
- Data shared with schools, districts, or corporations to fulfill contractual obligations.
- Legal Obligations
- Disclosure in response to valid legal requests, subpoenas, or regulatory compliance needs.
- Mergers or Acquisitions
- Data may be transferred to the successor entity with prior user notification.
8. Data Security
We use advanced security measures to protect your information:
- Encryption: AES-256 for data at rest, TLS for data in transit.
- Access Controls: Multi-factor authentication, role-based access.
- Incident Response: Breach notification protocols and user alerts as required by law.
- Regular Audits: Periodic penetration testing and compliance reviews.
9. Data Retention
We retain your data for as long as necessary:
- Active Accounts: Data retained for the duration of service usage.
- Inactive Accounts: Retention per legal requirements (e.g., FERPA, tax laws).
- Anonymized Data: Retained indefinitely for research purposes.
You can request data deletion under applicable laws.
10. International Data Transfers
We ensure compliance with global privacy standards when transferring data:
- Standard Contractual Clauses (SCCs): For data transfers outside the EU/EEA.
- Binding Corporate Rules (BCRs): For internal data flows.
- Privacy Shield alternatives or local laws for U.S. and other regions.
11. Your Rights
Under GDPR:
- Access, correct, or delete your data.
- Object to processing or restrict data use.
- Request data portability.
- Users will be notified of a breach within 72 hours.
Under CCPA:
- Right to know what data is collected and shared.
Additional Rights:
- Parental consent for children’s data under COPPA.
- FERPA rights for access to and correction of student records.
- Request deletion or opt out of data sharing.
- Request opting out of marketing emails, AI personalization, and third-party data sharing.
12. Children’s Privacy
We comply with all relevant laws regarding minors:
- Data for children under 13 processed only with verifiable parental consent.
- Institutional agreements ensure compliance with FERPA and COPPA.
13. Cookies and Tracking
Cookies and tracking technologies enhance functionality:
- Essential Cookies: Necessary for platform operation.
- Analytical Cookies: User behavior analysis for improvement.
- Marketing Cookies: Only enabled with user consent.
You can manage cookie preferences through browser settings or opt-out options provided.
14. Policy Updates
This Privacy Policy will be reviewed and updated regularly to reflect changes in laws, practices, or services. Significant changes will be communicated through email or service notifications.
15. Contact Us
If you have questions or concerns about this policy or your privacy rights, contact us:
Email: education-support@iykyknow.ai
Version History
Effective Date: 12-19-2024
Last Updated: 3-20-2025