Privacy Policy

    Your privacy matters. Here's how we protect and respect your personal information.

    Effective: October 13, 2025Last Updated: October 13, 2025

    OUR PRIVACY COMMITMENT

    We NEVER sell your personal information. Your data is used solely to provide our training services and improve your experience.

    1
    INTRODUCTION

    IEC Tech Inc. ("we," "us," "our") respects your privacy. This Privacy Policy explains our data practices for our training services and platform. For questions about our terms of service, please see our Terms of Service.

    2
    INFORMATION WE COLLECT

    2.1 Information You Provide

    • Account Information: First name, last name, email, phone (optional), company
    • Payment Information: Billing details (processed by Stripe - we don't store card numbers)
    • Course Data: Enrollments, progress, attendance, assessments, feedback
    • Communications: Support requests, inquiries

    2.2 Third-Party Authentication

    When using Google or Microsoft sign-in:

    • We receive basic profile information (name, email)
    • We DO NOT receive or store your Google/Microsoft passwords
    • OAuth tokens are encrypted and secured

    2.3 Password Accounts

    • Passwords are hashed using bcrypt or similar
    • We cannot access or recover passwords - only reset them
    • Email verification required

    2.4 Automatic Collection

    • Usage Data: Pages visited, features used, course progress
    • Device Information: IP address, browser, operating system
    • Cookies: Essential for authentication and security
    • Location: Approximate location from IP address

    3
    HOW WE USE INFORMATION

    3.1 Service Delivery

    • Account creation and management
    • Payment processing via Stripe
    • Course delivery and progress tracking
    • Certificate generation using your name
    • Technical support

    3.2 Communications

    • Transactional emails (confirmations, receipts, reminders)
    • Course updates and schedule changes
    • Limited marketing (with opt-out)
    • SMS for two-factor authentication (when enabled)

    3.3 SMS Text Messaging & Two-Factor Authentication

    When you choose to enable two-factor authentication (2FA), we collect your phone number to send one-time passcodes (OTPs) that verify your identity. We do not use phone numbers collected for 2FA for marketing or promotional messages.

    • Purpose: OTP messages are used solely for account security, such as login, enrollment, and sensitive account changes.
    • Message Frequency: Messages are sent only when you initiate an action that requires verification (e.g., logging in, setting up, or resetting 2FA). No recurring marketing blasts.
    • Consent: You must explicitly opt in by checking the consent box during 2FA enrollment. You may withdraw consent at any time by replying STOP.
    • Costs: IEC Tech Inc. does not charge for these messages, but your carrier's standard message and data rates may apply.
    • Opt-Out & Support: Reply STOP to stop receiving OTP texts, or HELP for assistance. You can re-enable messages by replying START and re-enrolling in 2FA.
    • Third-Party Provider: We use Twilio, a trusted communications provider, to deliver OTP messages securely.

    If you opt out of OTP messages, you may not be able to access portions of the platform that require 2FA. For help, contact support@iectechinc.com.

    4
    INFORMATION SHARING

    4.1 No Sale of Data

    We NEVER sell your personal information.

    4.2 Service Providers

    We share necessary data with:

    • Payment Processing: Stripe
    • Infrastructure: Supabase, Vercel
    • Authentication: Google, Microsoft (OAuth only)
    • Communications: Email and SMS providers (Twilio when approved)

    5
    DATA SECURITY

    5.1 Security Measures

    • HTTPS/TLS encryption in transit
    • Encrypted storage for sensitive data
    • Password hashing (bcrypt)
    • Row-level security (RLS)
    • Regular security audits
    • Limited administrative access

    5.2 Your Responsibilities

    • Use strong, unique passwords
    • Enable multi-factor authentication
    • Report suspicious activity immediately
    • Maintain account confidentiality

    6
    DATA RETENTION

    • Active Accounts: Retained while account is active
    • Course Records: 7 years for certificates and transcripts
    • Inactive Accounts: Deleted after 3 years of inactivity
    • Legal Holds: As required by law

    7
    YOUR RIGHTS

    7.1 Access and Correction

    • View and update account information
    • Request copy of your data

    7.2 Deletion

    7.3 Marketing

    • Opt-out anytime
    • Transactional emails continue

    7.4 California Residents (CCPA)

    Additional rights including data portability and non-discrimination.

    7.5 EU/UK Residents (GDPR)

    Where applicable, rights include access, rectification, erasure, restriction, portability, and objection.

    8
    COOKIES

    8.1 Essential Cookies

    Required for:

    • Authentication
    • Session management
    • Security (CSRF protection)

    8.2 Analytics

    • Aggregated usage metrics
    • No advertising cookies
    • No third-party tracking

    9
    CHILDREN'S PRIVACY

    Services not intended for children under 13. We do not knowingly collect data from children under 13. Users 13-17 require parental consent.

    10
    INTERNATIONAL TRANSFERS

    Data processed in the United States. By using our services, you consent to transfer to the U.S.

    11
    CHANGES TO POLICY

    We may update this policy. Check "Last Updated" date. Material changes communicated via email.

    12
    CONTACT

    Email only: support@iectechinc.com

    By using our services, you acknowledge and agree to this Privacy Policy.

    Related Legal Documents

    Make sure to review our Terms of Service to understand the legal terms governing our training services.