Privacy Policy
Your privacy is important to us. This policy explains how we collect, use, and protect your information.
Personal Initiative Notice
This platform is operated as a personal initiative, independent of any commercial entity or employer. Data handling practices reflect this individual, community-focused approach.
Information We Collect
Account Information
- Email address and name (when you create an account)
- Password (encrypted and stored securely)
- Profile information you choose to provide
Assessment Data
- Assessment responses and scores
- Organization information (if provided)
- Progress and completion data
- Generated reports and insights
Technical Information
- IP address and browser information
- Usage patterns and platform interactions
- Session data and preferences
How We Use Your Information
- Platform Functionality: To provide assessment services, generate reports, and maintain your account
- Improvement: To improve the platform and develop new features
- Communication: To send important updates about the platform (if opted in)
- Security: To protect against fraud and maintain platform security
Data Sharing
We do not sell, rent, or share your personal data with third parties. As a personal initiative focused on community benefit, your data is used solely for:
- Providing the assessment platform services
- Generating aggregated, anonymized insights for platform improvement
- Complying with legal requirements if necessary
Data Security
- All data is encrypted in transit and at rest
- Access controls limit data access to essential platform operations
- Regular security assessments and updates
- Secure hosting infrastructure with industry-standard protections
Guest Assessments
Guest assessments allow users to complete evaluations without creating an account. For guest assessments:
- Only assessment responses and optional organization information are collected
- Data is associated with a unique access token, not personal identifiers
- Reports can be downloaded immediately without registration
- Guest assessment data is retained for 30 days unless deleted earlier
Your Rights
- Access: Request a copy of your personal data
- Correction: Update or correct your information
- Deletion: Request deletion of your account and data
- Portability: Export your assessment data
- Opt-out: Unsubscribe from communications
Data Retention
- Account data: Retained until account deletion
- Assessment data: Retained for historical comparison and improvement
- Guest assessments: Automatically deleted after 30 days
- Analytics data: Anonymized and aggregated for platform improvement
Cookies and Tracking
We use minimal tracking:
- Essential cookies for platform functionality
- Session management for logged-in users
- Basic analytics to understand platform usage
- No third-party advertising or tracking cookies
Children's Privacy
This platform is not intended for children under 13. We do not knowingly collect personal information from children under 13.
AI Assessment Limitations & Data Use
Important: Understanding how your data is used in AI-powered assessments.
How AI Is Used in This Platform
- Scoring and Analysis: Your assessment responses are processed by algorithms to calculate maturity scores and generate insights. These are rule-based systems, not machine learning models trained on your data.
- Recommendations: Recommendations are generated based on your scores and pre-defined best practices, not by training AI on your specific inputs.
- Benchmarking: Industry benchmarks are derived from aggregated, anonymized data. Your individual responses are never identifiable in benchmark data.
What We Do NOT Do
- We do NOT train machine learning models on your individual assessment data
- We do NOT share your assessment responses with third-party AI providers
- We do NOT use your data for purposes beyond providing this assessment service
- We do NOT sell or license your data to other companies
Assessment Limitations
The maturity assessments and recommendations provided are for informational purposes only. They:
- Are based on self-reported information and may not reflect actual capabilities
- Should not be the sole basis for business decisions
- Do not constitute professional advice (legal, technical, or otherwise)
- May not account for industry-specific nuances or regulatory requirements
International Privacy Rights (GDPR/CCPA)
Depending on your location, you may have additional privacy rights under regulations such as the EU General Data Protection Regulation (GDPR) or the California Consumer Privacy Act (CCPA).
For EU/EEA Users (GDPR)
- Legal Basis: We process your data based on your consent (account creation) and legitimate interests (platform improvement)
- Data Subject Rights: You have rights to access, rectify, erase, restrict processing, and data portability
- Data Protection Officer: Contact us for DPO inquiries
- Cross-border Transfers: Data is transferred to the US with appropriate safeguards
For California Residents (CCPA)
- Right to Know: You can request information about data collection practices
- Right to Delete: You can request deletion of personal information
- Right to Opt-Out: We do not sell personal information
- Non-Discrimination: You will not be discriminated against for exercising privacy rights
International Users
The platform is operated from the United States. By using the platform, you consent to the transfer and processing of your information in the United States.
Changes to This Policy
We may update this privacy policy to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will notify users of significant changes via email or platform announcement.
Contact Us
If you have questions about this privacy policy or our data practices, please contact us through the platform contact form or via email.
Last updated: February 13, 2026
Effective date: February 13, 2026