ProctorPulse ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered certification exam preparation platform, including our website, mobile applications, and related services (collectively, the "Service").
1. Information We Collect
Account Data
When you create an account, we collect:
Name and email address
Password (stored securely via Supabase Auth using industry-standard hashing)
Account preferences and profile information
Role information (student, educator, administrator)
Usage Data
When you use our Service, we automatically collect:
Exam session data (questions answered, scores, time spent, domains studied)
Platform interaction data (pages visited, features used, navigation patterns)
Device information (browser type, operating system, screen resolution)
IP address and approximate geographic location
Referral source and landing pages
Payment Data
When you subscribe to a paid plan, payment processing is handled entirely by Stripe. We do not store your full credit card number, CVV, or other sensitive payment credentials on our servers. We receive and store only:
Stripe customer ID and subscription ID
Billing email address
Last four digits of your payment method (for your reference)
Subscription status and billing period
2. How We Use Your Information
We use the information we collect to:
Provide and maintain the Service — including account management, exam delivery, scoring, and progress tracking
Improve the platform — by analyzing usage patterns to enhance features, fix issues, and optimize performance
Generate analytics and insights — to help you understand your exam readiness and study progress
Process payments — and manage subscriptions through Stripe
Communicate with you — about account updates, new features, and support requests
Ensure security — by detecting and preventing fraud, abuse, and unauthorized access
Comply with legal obligations — including tax, regulatory, and law enforcement requirements
3. Data Sharing
We do not sell, rent, or trade your personal information to third parties.
We share data only with the following service providers, strictly to operate the Service:
Stripe — Payment processing and subscription management
Supabase — Database hosting, authentication, and file storage
Vercel — Web application hosting and delivery
Anthropic / OpenAI — AI-powered question generation (no personal user data is sent to AI providers)
We may also disclose information if required by law, regulation, legal process, or governmental request, or to protect the rights, property, or safety of ProctorPulse, our users, or others.
4. Cookies and Tracking
Essential Cookies
We use essential cookies to maintain your authentication session and remember your preferences. These cookies are necessary for the Service to function and cannot be disabled.
Analytics
We may use analytics tools to understand how visitors interact with our website. Analytics data is aggregated and does not personally identify individual users. You can opt out of analytics tracking through your browser settings or by using a browser extension that blocks analytics scripts.
5. Data Retention
Account data: Retained for as long as your account is active. Deleted within 30 days of account deletion request.
Exam session data: Retained for performance analytics and progress tracking. Anonymized aggregate data may be retained indefinitely for platform improvement.
Payment records: Retained as required by tax and financial regulations (typically 7 years).
Usage logs: Retained for up to 12 months for security and debugging purposes, then automatically purged.
6. Your Rights
Depending on your jurisdiction, you may have the following rights regarding your personal information:
Access: Request a copy of the personal data we hold about you
Deletion: Request that we delete your account and associated personal data
Export: Request a portable copy of your data in a machine-readable format
Correction: Request correction of inaccurate or incomplete personal data
Opt-out: Opt out of non-essential communications and analytics tracking
Restriction: Request that we limit processing of your personal data in certain circumstances
To exercise any of these rights, please contact us at privacy@proctorpulse.com. We will respond to your request within 30 days.
7. Children's Privacy
ProctorPulse offers K-12 educational features that may be used by students under the age of 13. We are committed to compliance with the Children's Online Privacy Protection Act (COPPA) and similar regulations:
For users under 13, we require verifiable parental or guardian consent before collecting personal information
K-12 accounts collect only the minimum information necessary for educational purposes
We do not serve targeted advertising to users under 13
Parents and guardians can review, modify, or request deletion of their child's information at any time
Educators using ProctorPulse for classroom purposes may provide consent on behalf of parents in accordance with COPPA school consent provisions
8. Security
We implement industry-standard security measures to protect your information:
All data transmitted between your device and our servers is encrypted using TLS/SSL
Passwords are hashed using secure, one-way hashing algorithms and are never stored in plaintext
Database access is controlled through Row-Level Security (RLS) policies ensuring tenant isolation
API keys and secrets are stored securely and rotated regularly
Payment data is handled exclusively by Stripe, a PCI DSS Level 1 certified payment processor
We conduct regular security reviews of our infrastructure and codebase
While we strive to protect your personal information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security but are committed to promptly addressing any security incidents.
9. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will notify you by updating the "Last updated" date at the top of this page and, where appropriate, by sending you an email notification or displaying a prominent notice on the Service. We encourage you to review this policy periodically.
10. Contact Information
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Email:privacy@proctorpulse.com
Website:https://proctorpulse.com
We will respond to all privacy-related inquiries within 30 days.