Clear terms. Shared expectations.
Privacy policy
Effective September 15, 2026 · CYDEAVOR LLC
This notice explains how CYDEAVOR LLC handles information in the Cydeavor learning platform, authenticated Learning and client support portals, and staff portal. We use information to provide your account, deliver your purchases, help you, and protect the service.
Where this notice applies
This notice applies to Cydeavor Learning, its associated account and administration services, and the authenticated Learning and client support portals that link to this notice. Another Cydeavor service is covered only when it expressly adopts this notice. The existing main marketing website or a separately operated product may use different features and its own privacy notice. Check the notice on the service you are using.
We explain new features and material changes in data use before they take effect, and obtain consent where required. This notice is not blanket permission to use your information for future products or marketing.
Information we handle
- Account information: your email address, account identifier, authentication and verification records, and any profile information you choose to provide. Our authentication provider handles password verification and two-step verification.
- Purchase records: the course purchased, amount, currency, payment status, transaction references, refund or dispute status, and records of checkout terms. Stripe collects payment and billing details directly. The learning application does not store full payment-card numbers or security codes.
- Learning activity: your course access, explicit lesson-completion records, last-opened lesson, and latest saved playback position and duration for each lesson, with update times and a temporary visit identifier used to prevent conflicting saves. These records help you return to the right place across devices. We keep the latest position rather than a detailed viewing history.
- Support communications: what you submit through an authenticated support portal or send to our support email. Portal records include the ticket subject and category, your messages, related course, organization, or project context, and the ticket's status and routing history. Portal tickets, messages, related context, and status and routing history are stored in our Supabase-backed database. Email records may also include a purchase reference and attachments you choose to provide. For an organization or project request, other authorized members of that organization may see the ticket and its customer-visible messages when their role permits.
- Operational and security information: network requests, IP addresses, browser or device information, timestamps, errors, and security or access events processed by the platform and its infrastructure providers.
- Staff content and actions: authorized course uploads, captions, resources, publishing changes, staff permissions, and audit records.
Please send only what is needed for your request. Do not send passwords, full card details, government identifiers, health information, confidential client files, or private credentials through a support portal or ordinary support email.
Why we use information
We use information to create and secure accounts, authenticate access, process purchases, deliver courses and downloads, show progress, route and respond to support requests, preserve the support conversation and ticket status for follow-up, investigate errors or payment issues, prevent fraud and abuse, maintain records, and comply with legal obligations.
Account and purchase notices are service communications. Buying a course or providing an email address does not by itself opt you into promotional texts or automated marketing calls. If we offer marketing messages, applicable choices and an opt-out method will be provided separately.
Where a law requires a legal basis, our purposes may rely on providing the service you request, meeting legal obligations, legitimate interests such as service security where those interests do not override your rights, or consent where required. You may withdraw consent for consent-based processing without affecting its earlier lawfulness.
Service providers and disclosures
We use providers to operate the service:
- Supabase: account authentication, database services for account, learning, and portal support records, and private storage for course media and resources.
- Google, if you choose Google sign-in: Google shares your account identifier, email and verification status, and basic profile information such as your name or profile image, according to the permissions shown. We use this information to create or sign you into your learning account. We do not receive your Google password or request access to Gmail or Google Drive. Google handles its sign-in service under its privacy policy.
- Cloudflare Turnstile: bot and abuse checks on sign-in, account-creation, invitation and password-recovery forms. Cloudflare processes technical browser and network signals for these checks under its privacy policy. Verification tokens are submitted to Supabase for authentication checks; the application does not keep them as learning records.
- Cloudflare Stream, where used for a lesson: private video delivery and player controls, including playback position events used to save your place.
- Render: application hosting, network delivery, and operational logs.
- Stripe: checkout, payment processing, fraud prevention, and payment records. Stripe also processes some information under its own privacy notice and legal obligations.
- Email providers: delivery of account messages and support correspondence.
Authorized personnel and providers receive information needed for their functions, subject to appropriate controls. We may also disclose information when required by law, to establish or defend legal claims, to protect people and systems, or in a business transfer subject to applicable safeguards and notice requirements.
We do not sell learning-platform personal information or share it for cross-context behavioral advertising. We do not use the course questionnaire or student work to create advertising audiences.
Your questionnaire and external AI tools
The current course does not include a custom GPT or an embedded AI chat service. You download the questionnaire and template, then choose whether to upload them into your own ChatGPT or Claude conversation.
Cydeavor does not automatically receive those completed files or your private AI conversations. If you choose to send them to our support team, we will receive what you send. The AI provider’s terms, privacy notice, and account settings govern information you submit there.
Review those settings and obtain any needed permission before submitting another person’s information or client materials. Avoid uploading sensitive or confidential information merely because a prompt asks for more context.
Cookies and browser storage
The learning platform uses necessary cookies and related storage for sign-in, security, session continuity, and form operation. Blocking them can prevent login or course access. Payment pages may use Stripe’s own cookies and fraud-prevention technologies.
When you choose an appearance, a cookie remembers System, Light, or Dark in this browser for up to one year. You can change it in the Appearance control or clear it with your site cookies. A short-lived checkout cookie can preserve your intended lesson when you return from payment.
Cydeavor Learning does not use Google Analytics, Meta Pixel, or advertising retargeting scripts. Other Cydeavor websites may have different practices, explained in their own notices. We will update this notice and provide any required choices before adding non-essential tracking to this platform.
Retention and security
We keep information for as long as needed for its purpose, including providing purchased access, maintaining transaction and tax records, resolving disputes, and preventing abuse. Portal support tickets, messages, and status and routing history are retained while needed to answer and follow up on the request, maintain appropriate service and audit records, resolve disputes, protect the service, and meet legal obligations. Closing or resolving a ticket does not itself delete that history.
Retention depends on the type of record, account status, legal requirements, and whether a dispute or security investigation is ongoing. Support records may remain after account closure while one of those needs applies. Backups and provider logs may remain for a limited additional period under the relevant retention process.
We use measures including encrypted connections, account protections, restricted staff access, and private media delivery. No online service can guarantee absolute security. Contact us if you believe your account or information is at risk.
Account deletion may affect access to purchased courses. When you request it, we will explain the implications and retain only information still needed for a lawful purpose. Deletion is not a refund request and does not by itself create refund eligibility.
Your privacy choices and requests
Email help@cydeavor.com to request access, correction, a copy, or deletion of personal information, or to ask a privacy question. Depending on applicable law, you may also have rights to restrict or object to processing, withdraw consent, appeal a decision, or complain to a competent regulator.
We may need to verify that a request comes from the correct person or authorized representative. We will request information proportionate to that need, respond within applicable legal deadlines, and explain any lawful reason we cannot fulfill part of a request. We will not unlawfully discriminate against you for exercising a privacy right.
You can manage your account security through your account page and control browser storage through your browser. Choices about external AI providers and Stripe are managed through their respective settings and notices.
Location and age
Cydeavor is based in the United States. Providers may process information in the United States or other countries where they operate. Contact us to ask where your information is processed and about any applicable transfer safeguards. Nothing in this notice waives protections required by the law that applies to you.
Purchases and accounts are intended for adults able to enter an agreement. We do not knowingly solicit personal information from children under 13. If you believe a child has provided information, contact us so we can investigate and take appropriate action.
Changes to this notice
We will update the effective date when this notice changes. For material changes, we will provide appropriate notice and obtain consent where the law requires it. A new feature does not authorize an unrelated use of existing information without an appropriate basis.
For a service operated on behalf of a business client, a separate written data-processing agreement or service-specific notice may explain additional responsibilities.
Questions? We’re here to help.
CYDEAVOR LLC · PO Box 95 · Ninety Six, SC 29666 · United States
