Privacy Policy
Effective Date: July 15, 2026
Last Updated: July 15, 2026
This Privacy Policy explains how [LEGAL ENTITY NAME], operator of the I Did The Hard Work website and certificate program ("I Did The Hard Work," "we," "us," or "our"), collects, uses, discloses, protects, and retains information when you use our website, assessments, coursework, and certificate services.
1. Our Privacy Approach
The I Did The Hard Work platform is designed to reduce unnecessary connections between a participant's identity and the participant's coursework and assessment responses.
We use separate internal identifiers and access controls so that assessment answers and program activity do not need to be displayed alongside billing information or other directly identifying information during ordinary platform use.
This process is more accurately described as pseudonymization or tokenization. Certain authorized systems or personnel may need to connect records for limited purposes such as:
- confirming payment and program access;
- restoring account access;
- preventing fraud or misuse;
- providing technical support;
- generating and delivering certificates;
- responding to legal obligations; or
- investigating security incidents.
We limit these connections to what is reasonably necessary to operate and protect the service.
2. Information We Collect
A. Account and Contact Information
When you register or purchase access, we may collect:
- your name;
- email address;
- login or account information;
- the name you choose to display on your certificate;
- confirmation that you accepted applicable terms, policies, and disclaimers;
- referral or promotional codes associated with your registration.
B. Payment and Transaction Information
Payments are processed through a third-party payment processor.
The payment processor may collect your payment-card information, billing address, name, email address, and other information required to complete the transaction.
We may receive and retain transaction-related information such as:
- payment status;
- transaction date and amount;
- payment-processor customer or transaction identifiers;
- refund, dispute, or chargeback information;
- limited billing and contact information provided by the processor.
We do not intend to receive or store complete payment-card numbers or card security codes on our own servers.
C. Coursework and Assessment Information
We collect the information necessary to provide and administer the certificate program, including:
- assessment and quiz answers;
- written reflection or essay responses;
- calculated scores and dimension results;
- Shadow Probe and Gold Standard response associations;
- module progress and completion status;
- submission dates and timestamps;
- time spent completing required activities;
- baseline and follow-up assessment attempts;
- certificate eligibility and completion records.
Assessment and reflection responses may reveal personal attitudes, beliefs, relationship experiences, preferences, or other information that you consider private or sensitive.
Individual assessment answers and written responses are not routinely read, reviewed, or manually evaluated by our employees, administrators, developers, or contractors. They are processed through automated platform functions that calculate results, track progress, generate program content, and provide the features requested by participants.
Authorized personnel might access an individual response only when reasonably necessary to investigate a technical or security issue, comply with a legal obligation, or respond to a support request initiated by the participant. Any such access will be limited to personnel with a legitimate need for access and restricted to the information reasonably necessary for that purpose.
We do not sell, publish, or disclose individual assessment answers or written responses to employers, dating platforms, potential partners, advertisers, or other unrelated third parties unless the participant specifically directs us to do so or disclosure is legally required.
D. Demographic and Research Information
We may request demographic or profile information such as:
- age range;
- sex or gender;
- education level;
- industry or occupation;
- other broad participant characteristics.
The platform will identify whether a requested field is required or optional.
We use this information to understand participant groups, evaluate program performance, and analyze learning or completion trends. Where practical, this information is analyzed using pseudonymous identifiers or in aggregated form rather than alongside names or billing details.
E. Technical and Usage Information
When you use the website, we and our service providers may automatically collect technical information such as:
- Internet Protocol address;
- browser and device type;
- operating system;
- pages or features accessed;
- request dates and times;
- session and authentication information;
- referring page or promotional source;
- error reports;
- security and activity logs.
This information is used to operate the website, maintain sessions, detect abuse, diagnose errors, and protect the platform.
F. Communications and Support Information
If you contact us, we may collect your name, email address, the contents of your message, and any information you provide while requesting assistance.
3. How We Use Information
We use collected information to:
- create and administer participant accounts;
- process payments and confirm program access;
- provide assessments, coursework, and module activities;
- save and restore program progress;
- calculate scores and comparisons;
- determine certificate eligibility;
- generate and deliver certificates;
- provide account recovery and customer support;
- detect fraud, abuse, unauthorized access, or security incidents;
- maintain and improve the website and program;
- evaluate question performance and program-completion trends;
- administer referral or promotional programs;
- comply with accounting, tax, legal, and regulatory obligations;
- enforce our terms, policies, and program requirements.
We do not use individual assessment responses for targeted advertising.
We do not sell individual assessment responses or provide them to employers, dating platforms, potential partners, or other third parties unless you direct us to do so or disclosure is required by law.
Automated and AI-Assisted Analysis
We may introduce optional automated or artificial-intelligence-assisted features that analyze assessment answers or written responses to provide participants with more personalized feedback, comparisons, explanations, or program content.
When such a feature is offered, responses will be processed using pseudonymous program identifiers where reasonably practical, and direct identifiers such as the participant's name, billing information, and email address will not be provided to the analysis system unless they are technically necessary for the requested feature and this is clearly disclosed.
Automated or AI-assisted analysis does not involve routine human evaluation of a participant's answers. However, limited access by authorized personnel may occur when reasonably necessary to operate, secure, test, or troubleshoot the feature, comply with law, or respond to a participant's request.
We will provide additional notice and obtain consent when required before introducing a materially different use of previously collected responses. Unless we clearly disclose otherwise and obtain any required authorization, individual assessment answers and essays will not be used to train general-purpose artificial intelligence models.
Any third-party provider used to perform automated analysis will be required to process the information only for authorized platform purposes and to apply appropriate privacy and security protections.
4. Program Identifiers and Tokenization
The platform may assign each participant a randomly generated program identifier or access token. This identifier allows the system to associate coursework, progress, assessment attempts, and certificate status without displaying the participant's name or billing information in ordinary coursework records.
The existence of a program identifier does not make the associated information completely anonymous. A limited internal association may be maintained when necessary to:
- confirm that program access was purchased;
- restore lost access;
- resolve payment or fraud issues;
- deliver a certificate;
- respond to a verified privacy request;
- meet legal and recordkeeping obligations.
Access tokens and account credentials should be treated as confidential. Anyone who obtains valid credentials may be able to access the associated account or program records.
5. Cookies and Browser Storage
We may use cookies and limited browser storage for functions such as:
- authenticating users;
- preserving secure sessions;
- saving preferences;
- restoring program progress;
- preventing fraud;
- maintaining website security.
These technologies are not intended for cross-site advertising or third-party behavioral profiling.
Disabling necessary cookies or clearing browser storage may end an active session or require you to sign in again. Server-side program records are not necessarily deleted when browser data is cleared.
6. How We Disclose Information
We may disclose information to service providers that help us operate the platform, including providers of:
- payment processing;
- cloud hosting and database services;
- website security, content delivery, and traffic protection;
- transactional email delivery;
- file or certificate storage;
- technical support;
- error logging and monitoring;
- accounting, legal, or compliance services.
These providers receive only the information reasonably needed to perform their services. Some providers, particularly payment processors, may also process information for their own fraud-prevention, regulatory, security, or service-improvement purposes under their own privacy policies.
We may also disclose information:
- when required by law, subpoena, court order, or valid governmental request;
- when reasonably necessary to protect users, the platform, or others from fraud, abuse, or security threats;
- in connection with a merger, financing, acquisition, reorganization, or sale of some or all of the business or its assets;
- with your direction or consent.
We do not sell personal information for monetary compensation.
7. Aggregate Analytics and Program Research
We may analyze assessment performance, module completion, timing, and participant characteristics to understand and improve the program.
Examples include determining:
- how frequently a question is answered a particular way;
- which modules have lower completion rates;
- average time needed to complete an activity; or
- broad differences between participant groups.
Whenever reasonably practical, research and reporting use aggregated or de-identified information rather than information that directly identifies individual participants.
We may retain aggregated or de-identified statistics that cannot reasonably be connected to an identifiable participant.
8. Certificates and Sharing
A generated certificate may include:
- the participant-selected certificate name;
- the program or certificate title;
- the completion date;
- a certificate identifier;
- other information shown on the approved certificate design.
Certificates are delivered to the email address associated with the participant's account or made available through the participant dashboard.
You control whether you share your certificate with another person, an employer, a dating platform, or the public. Once you share or publish a certificate outside our platform, we cannot control how other people use, copy, store, or redistribute it.
The current version of the platform does not provide public certificate verification through a certificate-verification page. If a materially different public-verification system is introduced later, this policy will be updated.
9. Data Retention
We retain information only for as long as reasonably necessary for the purposes described in this policy, including operating the program, providing account recovery, delivering certificates, resolving disputes, maintaining security, and satisfying legal, tax, accounting, and contractual requirements.
The intended retention periods are:
- Account and contact records: For as long as the account remains active and for three years after program completion, program expiration, or account closure.
- Coursework, assessment, and program-progress records: For as long as the account remains active and for two years after program completion or expiration.
- Certificate records: For seven years after certificate issuance.
- Payment and transaction records: For seven years after the applicable transaction, or longer when required by tax, accounting, or other legal obligations.
- Routine security and server logs: For up to 12 months.
- Customer-support communications: For three years after the applicable support matter is closed.
- Backup copies: Deleted information may remain in encrypted system backups for up to 90 days before those backups expire or are overwritten.
- Aggregated or de-identified statistics: May be retained indefinitely when they can no longer reasonably be associated with an identifiable participant.
Information may be retained longer when reasonably necessary to investigate fraud, respond to a legal claim, preserve evidence, enforce an agreement, or comply with law.
10. Security
We use reasonable administrative, technical, and organizational safeguards intended to protect information against unauthorized access, alteration, disclosure, loss, or misuse.
These safeguards may include encryption, access restrictions, separate internal identifiers, secure authentication, logging, backups, and limits on administrative access.
No website, database, transmission method, or storage system can be guaranteed to be completely secure. You are responsible for protecting your login credentials and notifying us if you believe your account or token has been compromised.
11. Your Privacy Rights
Depending on where you live and which laws apply, you may have the right to request:
- access to personal information we maintain about you;
- correction of inaccurate information;
- deletion of certain information;
- a copy of information you provided;
- restriction of or objection to certain processing;
- withdrawal of consent where processing is based on consent;
- information about how personal information is used or disclosed.
These rights are not absolute. We may retain information when permitted or required for transaction records, fraud prevention, security, legal compliance, dispute resolution, or other lawful purposes.
To submit a request, contact [PRIVACY EMAIL ADDRESS]. We may need to verify your identity or confirm control of the relevant account or program identifier before completing the request.
We will not discriminate against you for exercising an applicable privacy right.
12. Children's Privacy
The I Did The Hard Work certificate program is intended for adults and is not directed to children under 18.
We do not knowingly collect personal information from anyone under 18. If we learn that a minor has provided personal information, we will take reasonable steps to delete it, subject to applicable legal obligations.
13. Changes to This Policy
We may update this Privacy Policy when our services, technology, vendors, or legal obligations change.
The updated policy will be posted with a revised "Last Updated" date. When required, we will provide additional notice or obtain consent before applying a material change to information already collected.
14. Contact Us
Questions, concerns, and privacy requests may be directed to:
[LEGAL ENTITY NAME]
Operator of I Did The Hard Work
Email: [PRIVACY EMAIL ADDRESS]
Mailing Address: [BUSINESS MAILING ADDRESS]