Privacy Policy
Last updated: December 2, 2025
1. Introduction
Welcome to LearnIA ("we", "our", "us"). We are committed to protecting your personal data and respecting your privacy in accordance with the General Data Protection Regulation (GDPR/RGPD) and applicable French data protection laws.
This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website https://learnia.lkdigital.fr and use our AI prompting learning platform.
2. Data Controller
The data controller responsible for your personal data is:
LearnIA1 impasse Saint Laurent
38200 Vienne, France
Email: lauren_d@outlook.fr
3. Data We Collect
We collect the following categories of personal data:
3.1 Account Information
- Email address (required for account creation)
- Password (encrypted and securely stored)
- Account creation date
3.2 Payment Information
Payment processing is handled entirely by Stripe, our trusted payment processor. We do not store your credit card numbers, bank account details, or other sensitive payment information on our servers. Stripe processes your payment data in accordance with PCI-DSS standards.
We only receive from Stripe:
- Confirmation of successful payment
- Transaction ID for reference
- Last 4 digits of your card (for your reference only)
3.3 Usage Data
- Course progress and completion status
- Quiz and exercise results
- Learning analytics (time spent, modules accessed)
3.4 Technical Data (with consent)
With your consent, we may collect:
- IP address
- Browser type and version
- Device information
- Pages visited and navigation patterns (via Google Analytics)
4. How We Use Your Data
We use your personal data for the following purposes:
- Account Management: To create and manage your user account
- Service Delivery: To provide access to our AI prompting courses and track your progress
- Payment Processing: To process your one-time payment of €20 for Modules 1-9
- Communication: To send you important updates about your account or our service
- Analytics: To understand how users interact with our platform and improve our content (with consent)
- Legal Compliance: To comply with applicable laws and regulations
Legal bases for processing (GDPR Article 6):
- Contract performance (account, service delivery, payments)
- Consent (analytics, marketing communications)
- Legal obligation (tax records, fraud prevention)
- Legitimate interest (security, service improvement)
5. Data Sharing
We do not sell your personal data. We share your data only with:
5.1 Stripe (Payment Processing)
Stripe processes payments on our behalf under a Data Processing Agreement (DPA) that ensures GDPR compliance. Stripe is certified under the EU-US Data Privacy Framework. Learn more: Stripe Privacy Policy
5.2 Google Analytics (with consent)
If you consent to analytics cookies, we use Google Analytics to understand website usage. We have configured Google Analytics to anonymize IP addresses and respect Do Not Track signals. Learn more: Google Privacy Policy
5.3 Supabase (Database Hosting)
Your account data is securely stored on Supabase infrastructure with encryption at rest and in transit.
We may also disclose your data if required by law, court order, or to protect our legal rights.
6. Data Retention
We retain your personal data for the following periods:
- Account data: For the duration of your account, plus 3 years after account deletion (legal requirement)
- Payment records: 10 years (French tax law requirement)
- Course progress: For the duration of your account
- Analytics data: 26 months (Google Analytics default)
After these periods, your data is securely deleted or anonymized.
7. Your Rights (GDPR)
Under the GDPR, you have the following rights regarding your personal data:
- Right of Access: Request a copy of your personal data
- Right to Rectification: Request correction of inaccurate data
- Right to Erasure: Request deletion of your data ("right to be forgotten")
- Right to Restrict Processing: Limit how we use your data
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to processing based on legitimate interest
- Right to Withdraw Consent: Withdraw consent at any time (does not affect prior processing)
To exercise any of these rights, please contact us at lauren_d@outlook.fr. We will respond within 30 days.
If you believe your rights have been violated, you have the right to lodge a complaint with the French data protection authority (CNIL): www.cnil.fr
8. Cookies
We use cookies to enhance your experience on our platform:
Essential Cookies (always active)
- Authentication and session management
- Security features
- Cookie consent preferences
Analytics Cookies (with consent)
- Google Analytics (_ga, _gid, _gat) - to understand website usage
You can manage your cookie preferences at any time by clicking "Cookie Settings" in the footer.
9. Data Security
We implement appropriate technical and organizational measures to protect your personal data:
- HTTPS encryption for all data transmission
- Encrypted password storage (bcrypt hashing)
- Regular security audits
- Access controls and authentication
- Secure hosting infrastructure (Supabase, Vercel)
While we strive to protect your data, no method of transmission over the Internet is 100% secure.
10. International Transfers
Some of our service providers may process data outside the European Economic Area (EEA). In such cases, we ensure appropriate safeguards are in place:
- EU-US Data Privacy Framework certification (Stripe, Google)
- Standard Contractual Clauses (SCCs) where applicable
11. Children's Privacy
Our service is open to users of all ages. However, if you are under 16 years old, you should review this policy with a parent or guardian. We do not knowingly collect personal data from children under 13 without parental consent.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date.
We encourage you to review this Privacy Policy periodically.
13. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
LearnIA - Data Protection1 impasse Saint Laurent
38200 Vienne, France
Email: lauren_d@outlook.fr