Privacy Policy

Last updated: March 25, 2026

1. Introduction

Organized Tutoring ("we", "us", "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and share your personal information when you use our tutoring management platform. We comply with the General Data Protection Regulation (GDPR) and other applicable data protection laws.

2. Data We Collect

We collect the following types of information:

  • Account information: Your name, email address, and password (hashed).
  • Student information: Student names, grades, subjects, and parent contact details that you enter into the platform.
  • Session data: Session dates, times, durations, notes, topics covered, performance observations, and ratings.
  • Educational records: Homework assignments, assessment scores, goals, and lesson plans you create.
  • File uploads: Documents and files you upload to sessions or homework assignments.
  • Billing information: Payment details are processed and stored securely by Stripe. We do not store your full credit card number.
  • Usage data: Basic analytics about how you interact with the Service to help us improve the platform.

3. How We Use Your Data

We use your data to:

  • Provide and maintain the Service, including student management, session tracking, and scheduling.
  • Power AI features (note polishing, parent summaries, progress reports, lesson suggestions) using Google Gemini. Your session notes and student data may be sent to Google Gemini for processing. Google does not use this data for model training.
  • Send transactional emails (account verification, password resets, parent notifications) via Resend.
  • Process payments and manage subscriptions via Stripe.
  • Improve the Service and develop new features.
  • Communicate important updates about the Service or your account.

4. Third-Party Services

We use the following third-party services to operate the platform:

  • Supabase: Database hosting, authentication, and file storage. Your data is stored securely in Supabase's infrastructure.
  • Stripe: Payment processing and subscription management. Stripe handles all payment data in compliance with PCI DSS standards.
  • Google Gemini: AI-powered features including note polishing, session summaries, progress reports, and lesson plan suggestions.
  • Resend: Transactional email delivery for account notifications and parent communications.
  • Vercel: Application hosting and deployment.

Each third-party service has its own privacy policy. We only share the minimum data necessary for each service to function.

5. Cookies

We use only essential cookies required for authentication and maintaining your session. We do not use advertising cookies, tracking cookies, or any third-party cookies for marketing purposes. The authentication cookie is set when you log in and is removed when you log out or it expires.

6. Data Retention

We retain your data for as long as your account is active. If you cancel your subscription, your data remains accessible until the end of your billing period. If you delete your account, we will delete your personal data within 30 days, except where we are required by law to retain certain information. Backups may contain your data for up to 90 days after deletion.

7. Your Rights

Under the GDPR and other applicable data protection laws, you have the following rights:

  • Right of access: You can request a copy of all personal data we hold about you.
  • Right to rectification: You can update or correct your data through your account settings.
  • Right to erasure: You can request deletion of your account and all associated data.
  • Right to data portability: You can request an export of your data in a machine-readable format.
  • Right to restrict processing: You can request that we limit how we use your data.
  • Right to object: You can object to the processing of your data for certain purposes.

To exercise any of these rights, contact us at support@organized-tutoring.com. We will respond to your request within 30 days.

8. Data Security

We implement appropriate technical and organizational measures to protect your data, including encryption in transit (TLS/SSL), encryption at rest, secure authentication with hashed passwords, and row-level security policies in our database. However, no method of transmission over the Internet is 100% secure, and we cannot guarantee absolute security.

9. Children's Privacy

The Service is designed for use by adult tutors. While tutors may enter information about their students (who may be minors), the Service is not directed at children. Tutors are responsible for obtaining any necessary consent from parents or guardians before entering student information into the platform.

10. Changes to This Policy

We may update this Privacy Policy from time to time. If we make material changes, we will notify you by email or through the Service. Your continued use of the Service after such changes constitutes acceptance of the updated Privacy Policy.

11. Contact

If you have questions about this Privacy Policy or our data practices, please contact us at support@organized-tutoring.com.