📋 Overview
Welcome to PyLernen. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our platform and use our services.
We are committed to protecting your personal information and your right to privacy. If you have any questions or concerns about this policy or our practices, please contact us.
⚡ Short version: We collect only what's necessary to run the platform, we never sell your data, and you can request deletion at any time.
📦 What We Collect
We collect information in two ways: information you provide directly, and information collected automatically.
Information you provide:
- Full name and email address when creating an account
- Password (stored as an encrypted hash — we never see your plain-text password)
- Payment information (processed by third-party providers — we do not store card details)
- Code you write and save in lessons or the playground
Automatically collected:
- Browser type and version
- Device type and operating system
- IP address (anonymised after 30 days)
- Pages visited and time spent on the platform
- Lesson progress and completion timestamps
- Exam scores and certificate data
🎓 Education Data
When you use PyLernen Education, we may process additional information needed to operate teacher and student workspaces:
- Teacher and student role information and class memberships
- Class names, invite codes, assignment titles, descriptions, languages, and due dates
- Projects, files, code drafts, assignment submissions, grades, and teacher feedback
- Submission status and timestamps used to show progress and support review
Education data is used to connect learners with their classes, deliver assignments, save work, support code testing, and allow authorised teachers to review and grade submissions. Students should not include passwords, private keys, health information, or other sensitive personal information in code, comments, filenames, or submissions.
⚙️ How We Use Your Information
We use the information we collect for the following purposes:
- Creating and managing your PyLernen account
- Saving and syncing your lesson progress across devices
- Generating and storing completion certificates
- Sending transactional emails (verification, password resets)
- Processing payments and recording coupon usage
- Improving our platform, curriculum, and features
- Detecting and preventing fraud or abuse
- Complying with legal obligations
We do not use your data for advertising profiling, sell it to third parties, or use it for any purpose unrelated to the PyLernen service.
🤝 Sharing Your Information
We only share your information in the following limited circumstances:
- Supabase — our database and authentication provider, used to store account data, Education classes, code, submissions, grades, and feedback securely
- Education users — authorised teachers can see submissions, grades, and feedback for their classes; students can see their own work and feedback
- Payment processors — Selar.co handles payment transactions; we do not store your card number
- Legal requirements — if required by law, court order, or to protect the rights and safety of users
- Business transfers — in the event of a merger or acquisition, with advance notice to you
🔒 We never sell your personal data. Period.
🛡️ What We Do Not Expose
We limit access to information based on the account role and feature that requires it. Unless disclosure is required by law or needed to protect the platform, we do not expose:
- Plain-text passwords, password-reset secrets, session tokens, private API keys, or database credentials
- Payment card numbers or full payment credentials handled by our payment providers
- A student's private drafts, projects, or submissions to other students or unrelated classes
- One teacher's class records or submissions to another teacher without appropriate authorisation
- Private account, profile, or contact information to advertisers or data brokers
- Internal security logs, access controls, or infrastructure details that could help someone compromise an account
Teachers and school administrators may have access to student Education records connected to their classes. We cannot guarantee that information a user intentionally publishes, shares, or includes in publicly accessible code will remain private.
💾 Data Storage & Security
Your data is stored on Supabase-managed infrastructure with the following protections in place:
- All data is encrypted at rest and in transit (TLS 1.2+)
- Passwords are hashed using industry-standard algorithms
- Access to the database is role-restricted and audited
- Lesson progress is also cached in your browser's localstorage for offline use
We retain your data as long as your account is active. If you request deletion, we will remove your data within 30 days.
✅ Your Rights
You have the following rights regarding your personal information:
- Access — request a copy of all data we hold about you
- Correction — update inaccurate or incomplete data
- Deletion — request that your account and all associated data be permanently deleted
- Portability — export your progress data (use the "Save Backup File" button on the dashboard)
- Objection — object to certain uses of your data
To exercise any of these rights, contact us at the address below. We will respond within 30 days.
👦 Children's Privacy
PyLernen is designed to be suitable for learners of all ages, including children. However, our platform requires account registration, and we therefore ask that:
- Users under 13 have verifiable parental or guardian consent before registering
- Parents may contact us to review, update, or delete their child's data
- We do not knowingly collect sensitive information from children under 13 without consent
If you believe a child under 13 has registered without consent, please contact us immediately and we will remove the account.
🔄 Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will:
- Update the "Last updated" date at the top of this page
- Notify registered users by email for material changes
- Post a notice on the PyLernen homepage for 30 days
We encourage you to review this page periodically. Your continued use of PyLernen after changes become effective constitutes your acceptance of the new policy.
📬 Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please reach out:
- Visit our Contact Page
- Email: team@pylernen.org