Privacy Policy
At Nexpilo, we take your privacy seriously and are committed to protecting your personal information. This policy explains how we collect, use, and safeguard your data when you use our mobile game monetization educational services.
Information We Collect
We collect information in several ways to provide you with the best possible educational experience and improve our services. This includes both information you provide directly and information we gather automatically through your interaction with our platform.
Personal Information You Provide
- Contact Information: Name, email address, phone number, and mailing address when you register for courses or contact us
- Professional Details: Current job title, company information, experience level in game development, and career goals
- Educational Records: Course progress, assignment submissions, quiz results, and certification achievements
- Payment Information: Billing details processed securely through our payment partners (we don't store complete credit card numbers)
- Communication Data: Messages sent through our platform, support tickets, and feedback submissions
Information Collected Automatically
- Usage Analytics: Pages visited, time spent on content, course completion rates, and learning patterns
- Device Information: Browser type, operating system, screen resolution, and device identifiers
- Technical Data: IP address, log files, cookies, and similar tracking technologies
- Performance Metrics: Platform response times, error reports, and feature usage statistics
How We Use Your Information
Your information helps us deliver personalized educational experiences and continuously improve our services. We use this data responsibly and only for legitimate business purposes that benefit your learning journey.
| Purpose | Information Used | Legal Basis (GDPR) |
|---|---|---|
| Course delivery and progress tracking | Personal and educational data | Contract performance |
| Customer support and communication | Contact information and support history | Contract performance |
| Platform improvement and personalization | Usage analytics and preferences | Legitimate interests |
| Marketing and course recommendations | Professional details and learning history | Consent or legitimate interests |
| Legal compliance and security | All collected information as needed | Legal obligation |
Information Sharing and Disclosure
We don't sell your personal information to third parties. However, we may share certain data with trusted partners and service providers who help us deliver our educational services effectively.
Service Providers and Partners
- Learning Management Systems: Technical providers who help deliver course content and track progress
- Payment Processors: Secure payment gateways that handle billing and subscription management
- Communication Tools: Email service providers and customer support platforms
- Analytics Services: Tools that help us understand how our platform is used and how to improve it
- Cloud Hosting: Secure data storage and content delivery network providers
Your Rights and Choices
Under Romanian data protection laws and GDPR, you have several rights regarding your personal information. We've made it easy for you to exercise these rights through your account dashboard or by contacting our support team.
How to Exercise Your Rights
You can manage most of these preferences directly through your account settings. For more complex requests or if you need assistance, contact our privacy team at privacy@nexpilo.com. We'll respond to your request within 30 days as required by law.
Data Security and Protection
We implement industry-standard security measures to protect your information from unauthorized access, alteration, disclosure, or destruction. Our security practices include both technical and organizational safeguards.
Technical Safeguards
- Encryption: All data is encrypted both in transit and at rest using AES-256 encryption standards
- Access Controls: Multi-factor authentication and role-based access for all team members
- Regular Monitoring: Continuous security monitoring and automated threat detection systems
- Secure Infrastructure: ISO 27001 certified data centers with physical security controls
- Regular Updates: Prompt security patches and system updates across all platforms
Organizational Measures
- Staff Training: Regular privacy and security awareness training for all employees
- Data Minimization: We only collect and retain data that's necessary for our services
- Incident Response: Established procedures for detecting, responding to, and reporting security incidents
- Third-Party Audits: Annual security assessments by independent cybersecurity firms
Data Retention and Deletion
We retain your personal information only as long as necessary to provide our services and comply with legal obligations. Different types of data have different retention periods based on their purpose and legal requirements.
| Data Type | Retention Period | Reason |
|---|---|---|
| Account Information | Active account + 2 years | Customer support and service delivery |
| Course Progress Data | Active account + 5 years | Certification verification and transcript requests |
| Financial Records | 7 years from last transaction | Romanian tax and accounting law requirements |
| Marketing Communications | Until consent withdrawn | Ongoing marketing permissions |
| Support Tickets | 3 years from resolution | Quality improvement and dispute resolution |
When retention periods expire, we securely delete or anonymize your information using industry-standard data destruction methods. You can request earlier deletion of most data types by contacting our support team.
International Data Transfers
While our primary operations are based in Romania (EU), some of our service providers may be located outside the European Economic Area. When we transfer your data internationally, we ensure appropriate safeguards are in place to protect your information.
Transfer Safeguards
- Adequacy Decisions: Transfers to countries recognized by the EU as having adequate data protection laws
- Standard Contractual Clauses: EU-approved contract terms that ensure data protection standards
- Certification Programs: Service providers with Privacy Shield successor frameworks or similar certifications
- Binding Corporate Rules: Internal policies that ensure consistent data protection across global operations
You can request more information about specific international transfers that affect your data by contacting our privacy team.
Cookies and Tracking Technologies
We use cookies and similar technologies to enhance your learning experience and analyze how our platform is used. You have control over most cookie settings through your browser preferences.
Types of Cookies We Use
- Essential Cookies: Required for basic platform functionality, login sessions, and security
- Performance Cookies: Help us understand how you use our platform to improve user experience
- Functional Cookies: Remember your preferences and personalize your learning dashboard
- Marketing Cookies: Track effectiveness of our promotional campaigns (with your consent)
You can manage cookie preferences through your account settings or browser controls. Disabling certain cookies may affect some platform features, but core educational content will remain accessible.
Updates to This Policy
We periodically update this privacy policy to reflect changes in our practices, technology, legal requirements, or other factors. When we make significant changes, we'll notify you through your registered email address and prominently display the updates on our platform.
Minor updates may be posted without additional notification, so we encourage you to review this policy periodically. The "Last Updated" date at the top of this page indicates when the most recent changes were made.
Privacy Questions or Concerns?
Our privacy team is here to help with any questions about your data or this policy.