Privacy Policy
1. Introduction
This Privacy Policy explains how AICertified (“we”, “us”, “our”) processes your personal data when you use our website www.becomeaicertified.com (“Site”) or participate in our online courses, certification programmes, or services (“Services”).
We are committed to protecting your privacy and complying with the General Data Protection Regulation (EU) 2016/679 (“GDPR”), the Data Protection Acts 1988–2018, and any other applicable Irish/EU privacy laws.
2. Data Controller
AICertified
Address: HSOC Marina House, Georges St, Dunlaoghaire, Dublin, Ireland
3. Data We Collect
We may collect and process the following categories of personal data:
3.1 Information You Provide
- Name, email address, phone number
- Account login details
- Billing information, payment date/time (payment details processed by third-party processors such as Stripe/PayPal — full card data is not stored on our servers)
- Course enrolment and progress
- Support communications
3.2 Automatically Collected Data
- IP address, browser type, device information
- Interaction data (pages visited, click behaviour, time on page)
- Cookies and tracking technologies (see Cookie Policy)
3.3 Special Category Data
We do not collect special category data (e.g., health, religion, biometric data).
4. Purposes & Legal Bases for Processing
We process your data on the following lawful grounds (Purpose/Legal Basis under GDPR)
Account creation & managing your access to courses/Contract (Art. 6(1)(b))
Processing payments/Contract (Art. 6(1)(b))
Communicating with you regarding services/Contract (Art. 6(1)(b)), Legitimate Interests (Art. 6(1)(f))
Sending marketing emails/newsletters/Consent (Art. 6(1)(a))
Improving and securing our Site/Legitimate Interests (Art. 6(1)(f))
Compliance with tax/legal obligations/Legal Obligation (Art. 6(1)(c))
5. How We Share Your Data
We may share your data with:
- Payment processors (e.g., Stripe)
- CRM platforms (e.g., HubSpot)
- Web hosting providers
- Analytics providers (e.g., Google Analytics, etc.)
- Legal/regulatory authorities, where required
All third parties are subject to GDPR-compliant data processing agreements.
6. International Data Transfers
If your data is transferred outside the EEA, we ensure:
- Adequacy decision, or
- Standard Contractual Clauses (SCCs), plus
- Additional safeguards where appropriate.
7. Retention Periods
We retain data only as long as necessary:
- Account information: while your account is active
- Course records: up to 6 years
- Payment records: 6 years (legal obligation)
- Marketing consent records: until withdrawn
- Cookie identifiers: see Cookie Policy
8. Your GDPR Rights
You have the right to:
- Access your data
- Correct inaccurate data
- Request deletion (where applicable)
- Restrict or object to processing
- Port your data
- Withdraw consent at any time
- Lodge a complaint with the Irish Data Protection Commission (DPC)
To exercise any right, email: [Insert Email]
9. Security Measures
We use encryption, pseudonymisation, access controls, and secure hosting to protect your data.
10. Automated Decision-Making
We do not use automated decision-making or profiling that has legal or significant effects.
11. Changes to This Policy
We will publish changes here and update the Last Updated date.