Privacy Policy

Last updated 1 June 2026

This policy explains what data Stadinet holds and how it is used. This is a summary document for a demonstration build and is not legal advice.

1. What we collect

Account details (name, email, institution and role memberships).

Learning content you create: portfolios, items, uploaded files and competency links.

Assessment records: requests, scores, feedback, validation and moderation history.

2. How we use it

To operate the platform: build portfolios, run assessments, and produce verifiable outcomes.

To notify you about assessment activity, export-ready files and institutional memos, batched to your preference.

3. Access & scoping

Access is driven by permission keys, not role names. Data is scoped per institution and per user on every request.

Regulators can access records only through the defined verification and submission flows.

4. Retention

Assessment records are retained for as long as required to support certification and audit. This is why records are archived rather than erased outright when an account is closed.

You may request a copy of the evidence you own at any time.

You may ask us to correct your personal data, or ask about deletion, subject to those retention rules.

5. What we do not do

We do not sell your personal data or use it for advertising.

Portfolios are private by default. You choose what to share and when to submit it for assessment.

6. Contact

For any privacy question, write to hello@stadinet.link, or contact your institution's administrator.