Privacy Policy

1. Introduction

This Privacy Policy explains how AICertified (“we”, “us”, “our”) processes your personal data when you use our website www.becomeaicertified.com (“Site”) or participate in our online courses, certification programmes, or services (“Services”).

We are committed to protecting your privacy and complying with the General Data Protection Regulation (EU) 2016/679 (“GDPR”), the Data Protection Acts 1988–2018, and any other applicable Irish/EU privacy laws.

2. Data Controller

AICertified
Address: HSOC Marina House, Georges St, Dunlaoghaire, Dublin, Ireland

3. Data We Collect

We may collect and process the following categories of personal data:

3.1 Information You Provide

  • Name, email address, phone number
  • Account login details
  • Billing information, payment date/time (payment details processed by third-party processors such as Stripe/PayPal — full card data is not stored on our servers)
  • Course enrolment and progress
  • Support communications

3.2 Automatically Collected Data

  • IP address, browser type, device information
  • Interaction data (pages visited, click behaviour, time on page)
  • Cookies and tracking technologies (see Cookie Policy)

3.3 Special Category Data

We do not collect special category data (e.g., health, religion, biometric data).

4. Purposes & Legal Bases for Processing

We process your data on the following lawful grounds (Purpose/Legal Basis under GDPR)

Account creation & managing your access to courses/Contract (Art. 6(1)(b))

Processing payments/Contract (Art. 6(1)(b))

Communicating with you regarding services/Contract (Art. 6(1)(b)), Legitimate Interests (Art. 6(1)(f))

Sending marketing emails/newsletters/Consent (Art. 6(1)(a))

Improving and securing our Site/Legitimate Interests (Art. 6(1)(f))

Compliance with tax/legal obligations/Legal Obligation (Art. 6(1)(c))

5. How We Share Your Data

We may share your data with:

  • Payment processors (e.g., Stripe)
  • CRM platforms (e.g., HubSpot)
  • Web hosting providers
  • Analytics providers (e.g., Google Analytics, etc.)
  • Legal/regulatory authorities, where required

All third parties are subject to GDPR-compliant data processing agreements.

6. International Data Transfers

If your data is transferred outside the EEA, we ensure:

  • Adequacy decision, or
  • Standard Contractual Clauses (SCCs), plus
  • Additional safeguards where appropriate.

7. Retention Periods

We retain data only as long as necessary:

  • Account information: while your account is active
  • Course records: up to 6 years
  • Payment records: 6 years (legal obligation)
  • Marketing consent records: until withdrawn
  • Cookie identifiers: see Cookie Policy

8. Your GDPR Rights

You have the right to:

  • Access your data
  • Correct inaccurate data
  • Request deletion (where applicable)
  • Restrict or object to processing
  • Port your data
  • Withdraw consent at any time
  • Lodge a complaint with the Irish Data Protection Commission (DPC)

To exercise any right, email: [Insert Email]

9. Security Measures

We use encryption, pseudonymisation, access controls, and secure hosting to protect your data.

10. Automated Decision-Making

We do not use automated decision-making or profiling that has legal or significant effects.

11. Changes to This Policy

We will publish changes here and update the Last Updated date.