Privacy Policy

How Stadinet collects, uses and protects your personal data.

Last updated

This is a provisional template that has not yet been reviewed by Stadinet's legal counsel. It describes intended practice and is published for transparency, but it is not a final legal document.

1. Who is responsible for your data

Your institution decides why and how your personal data is processed on this platform. Stadinet operates the platform on the institution's behalf. Requests about your data are normally handled by your institution in the first instance.

2. What we collect

We collect the following categories of data:

  • Identity and contact details: name, email address, phone number, national identification number where required for admission.
  • Admission and enrolment records: applications, supporting documents, education history, guardian details.
  • Academic records: course registrations, submissions, grades, attendance, certificates.
  • Financial records: fee assessments, payments and receipts.
  • Technical data: IP address, device and browser information, and audit logs of significant actions.
  • Proctoring data, where an assessment is proctored and you have been told so in advance.

3. Why we use it

We use your data to run your admission and enrolment, deliver teaching and assessment, issue certificates, administer fees, keep the platform secure, and meet legal and regulatory obligations placed on your institution.

4. Who we share it with

We share data with your institution and its authorised staff, with examination and awarding bodies where your programme requires it, and with service providers who process data on our instructions (for example payment providers and email delivery). We do not sell your personal data.

5. How long we keep it

Academic records are retained for as long as your institution's retention schedule and regulatory obligations require, which is typically well beyond the end of your studies. Technical logs are kept for a shorter period. Where a retention period has expired, data is deleted or anonymised.

6. Your rights

Subject to local law, you may request access to your data, correction of inaccurate data, deletion where there is no continuing obligation to retain it, restriction of processing, and a copy of data you provided in a portable form. You may also object to certain processing.

Some corrections are restricted after enrolment because the record has academic or legal significance; in those cases the change is made by your institution's registrar rather than directly by you.

7. Security

Access is controlled by role and permission, authentication tokens are held in HTTP-only cookies, transport is encrypted, and significant actions are recorded in an audit log. No system is perfectly secure, but we work to keep risk proportionate to the sensitivity of the data.

8. Contact

To exercise a right or raise a concern, contact legal@stadilms.com. You also have the right to complain to your local data protection authority.