Data Protection Policy – Kwigatech

1. Purpose
The purpose of this Data Protection Policy is to outline how Kwigatech collects, stores, processes, and protects personal data in compliance with applicable data protection laws. This policy applies to all students, instructors, and other users of our e-learning platform.

2. Data We Collect
We collect and process:

  • Identification data (name, email, phone number).

  • Account credentials (username, password – securely encrypted).

  • Payment details for paid courses (processed by trusted third-party payment providers).

  • Learning activity data (courses enrolled, progress, completion status, access expiry date).

3. Legal Basis for Processing
We process personal data to:

  • Deliver free and paid learning services.

  • Fulfill contractual obligations when a course is purchased.

  • Comply with legal requirements.

  • Improve our learning services and platform performance.

4. Data Retention & Access Expiry

  • Personal data is stored only as long as necessary to fulfill the purposes stated in this policy.

  • Access to courses (credentials) may expire based on course type:

    1. Lifetime Access – No expiry unless account is terminated for policy violation.

    2. Fixed-Time Access – Credentials expire after the subscription or purchased time period ends.

    3. Course Completion Access – Credentials expire once the course is fully completed and certified.

  • Once access expires, your account may remain active for record purposes, but course content access will be restricted.

5. Data Protection Measures

  • Secure Socket Layer (SSL) encryption for all data in transit.

  • Encrypted storage for sensitive data at rest.

  • Passwords stored using strong hashing algorithms.

  • Access to personal data restricted to authorized personnel only.

  • Regular system backups and security audits.

6. Data Sharing
We do not sell or trade your personal data. Data may be shared with:

  • Payment processors for transaction purposes.

  • Legal authorities if required by law.

7. Your Rights
You have the right to:

  • Request access to your personal data.

  • Request corrections to inaccurate information.

  • Request deletion of your data, subject to legal and operational requirements.

8. Breach Notification
In the event of a data breach that risks your personal data, we will notify you and relevant authorities within the legally required timeframe.