Privacy Policy & Terms of Service

Last updated: March 2026 · Effective: March 5, 2026

1. Data Controller

Codearia ("we", "us", "our") operates the Codearia Academy platform at academy.codearia.com. For any privacy-related inquiries, contact us at contact@codearia.com.

2. Data We Collect

We collect the following categories of personal data:

  • Name and email address (during registration)
  • Payment information (processed securely by Stripe — we do not store card details)
  • Authentication data (via Google OAuth)
  • IP address and device information
  • Platform usage data (course progress, quiz results, lesson interactions)
  • Cookies and similar tracking technologies

3. Purpose of Processing

We process your personal data for the following purposes:

  • Account creation and management
  • Course delivery and progress tracking
  • Payment processing
  • Platform improvement and analytics
  • Communication about your account and courses
  • Compliance with legal obligations

4. Legal Basis for Processing

We process personal data under the following legal bases in accordance with the Israeli Privacy Protection Law (1981) and GDPR:

  • Contractual necessity — to deliver courses and manage your account
  • Consent — for marketing communications and cookies
  • Legitimate interest — for platform security, fraud prevention, and analytics
  • Legal obligation — for tax and regulatory compliance

5. Third-Party Services

We share data with the following third-party processors, each bound by data processing agreements:

  • Stripe — payment processing (PCI DSS compliant)
  • Google — authentication (OAuth)
  • Vercel — hosting and analytics
  • No personal data is sold to third parties

6. International Data Transfers

Your data may be processed in Israel and the United States. Israel has been granted an adequacy decision by the European Commission, ensuring an adequate level of data protection for EU users. Transfers to the US are covered by appropriate safeguards including standard contractual clauses.

7. Data Retention

We retain your personal data for as long as your account is active, plus 3 years after account deletion for legal and accounting purposes. Payment records are retained for 7 years as required by Israeli tax law. You may request deletion of your account at any time by contacting us.

8. Your Rights

Under the Israeli Privacy Protection Law and GDPR (where applicable), you have the right to:

  • Access your personal data and receive a copy
  • Correct inaccurate or incomplete data
  • Request deletion of your data (subject to legal retention requirements)
  • Restrict or object to processing
  • Data portability (receive your data in a structured format)
  • Withdraw consent at any time (without affecting prior processing)
  • Lodge a complaint with the Israeli Privacy Protection Authority or relevant EU supervisory authority

To exercise any of these rights, contact us at contact@codearia.com. We will respond within 30 days.

9. Cookies

We use the following types of cookies:

  • Essential cookies — required for platform functionality (authentication, session management)
  • Analytics cookies — to understand platform usage and improve our service
  • Preference cookies — to remember your language and display settings

You can manage cookies through your browser settings. Disabling essential cookies may affect platform functionality.

10. Age Requirement

Codearia Academy is intended for users aged 18 and older. Users under 18 may use the platform only with the consent and supervision of a parent or legal guardian. We do not knowingly collect personal data from individuals under 16. If we become aware that data has been collected from a child under 16 without parental consent, we will delete it promptly.

11. Security

We implement industry-standard security measures to protect your personal data, including encrypted connections (HTTPS/TLS), secure authentication, access controls, and regular security assessments. While no system is 100% secure, we are committed to protecting your data to the best of our ability.

12. Policy Updates

We may update this policy from time to time. Material changes will be communicated via email or a prominent notice on the platform. Continued use of the platform after changes constitutes acceptance of the updated policy.