Privacy Policy
Last updated 2026-01-22
Third parties and processors
We rely on a small set of processors to host the learning environment, send transactional email, and store backups. Contracts require purpose limitation, confidentiality, and deletion assistance at cohort end unless a longer retention category applies below.
We do not sell personal information. If we add a processor that materially changes risk, we update this page and, where required, seek refreshed consent for non-essential processing.
Your rights
Depending on your location, you may have rights to access, correct, delete, or restrict processing of your personal data, and to object to certain processing. Korean residents may exercise rights under the Personal Information Protection Act through the contact channel below; we respond within statutory timelines.
You may lodge a complaint with your local supervisory authority where applicable. We prefer you contact us first so we can resolve issues quickly.
Data we collect
We collect account details (name, email, employer if supplied), billing references handled by our payment partners, attendance metadata, assignment uploads you choose to submit, and support messages. Technical logs include IP address, device type, and coarse location derived for fraud prevention.
Community forums, if enabled for a cohort, store posts you author under your chosen display name.
Contact for privacy requests
Send privacy requests to team@archiveportal.one with subject line "Privacy request" and enough detail to verify identity without oversharing government identifiers in the initial email. We may ask for a quick verification step before exporting or deleting records tied to payments.
If you are represented by an agent, include signed authorization or we cannot process the request.
Retention
Account and billing records are retained for seven years where tax and audit rules require. Learning artifacts such as submitted tickets may be deleted ninety days after cohort completion unless you request earlier deletion and no conflicting obligation exists.
Marketing preferences are stored until withdrawn; logs for security investigations may be kept longer in a restricted archive.
Scope of this policy
This policy covers data processed by DeskForge Academy for its own sites and cohort workspaces. It does not cover employer systems you connect to during exercises, which remain governed by your employer notices.
Children under fourteen are not targeted; if we learn we collected a child's data without guardian consent, we delete it promptly after verification.
Use of data and legal bases
We process data to perform contracts with you, comply with law, protect security, and improve course clarity where we rely on legitimate interests balanced against your rights. Optional analytics, when used, rely on consent you can withdraw through the cookie layer without degrading essential access.
We do not use automated decision-making that produces legal effects about you.