.
Who We Are
This Privacy Policy explains how our website: https://science-learning-academy-limited.systeme.io (“we”, “our”, or “us”) collects, uses, and protects your personal information when you use our website, online courses, and related services (collectively, the “Services”).
We are the data controller responsible for your personal data.
2. What Information We Collect
We collect the following categories of information when you use our Services:
3. Information You Provide Directly
Account Information: Name, email address, password, and contact details.
Payment Information: Billing address and payment method details (processed securely via third-party payment processors; we do not store your full card details).
Course Activity: Enrolments, progress, and course completion data.
Communications: Emails or messages you send to us, including support requests and feedback.
4. How We Use Your Information
We use your personal information to:
We do not sell, rent or provide your data to third parties.
5. Lawful Bases for Processing
Under the UK GDPR, we rely on the following lawful bases to process your data:
Purpose Lawful Basis
To provide courses and Services for the Performance of a contract
To process payments, Performance of a contract
To send administrative emails, Legitimate interests
To send marketing emails, Consent
To comply with legal or tax obligations
6. How We Share Your Data
We share your data only with trusted third parties that help us deliver our Services, such as:
Payment processors (e.g., Stripe, PayPal)
Learning management systems or website platforms
All third-party service providers are required by contract to protect your data and adhere to UK data protection laws
7. Data Retention
We retain your personal data only for as long as necessary to fulfil the purposes outlined in this Policy or to comply with legal obligations.
For example:
Account and course data: kept while your account is active.
Transaction records: kept for 6 years for tax and accounting compliance.
When data is no longer required, it will be securely deleted or anonymised.
8. Data Security
We use appropriate technical and organisational measures to protect your personal data from unauthorised access, loss, misuse, or alteration.
Examples include:
SSL encryption for data transmission
Secure password storage
Restricted access to user data by authorised personnel only
9. Children’s Privacy
Our Services are not directed to children under 16 years of age.
If we learn that we have collected personal information from a child under 16 without parental consent, we will delete that information promptly.
10. Changes to This Privacy Policy
We may update this policy periodically to reflect changes in legal, technical, or business practices. When updates are made, we will revise the "Last Updated" date at the top of this page. We encourage you to review this policy regularly.