LearnEra Academy

Privacy Policy

Last updated: August 18, 2026

LearnEra Academy is a platform tutors and coaching institutes use to run classes, track students, and communicate with parents. Because a meaningful share of the people whose data passes through it are minors, this policy is written to be specific about what we collect, why, and who — if anyone — it is shared with, rather than generic boilerplate.

Who this applies to

This policy covers everyone with a LearnEra Academy account: tutors and institute staff running a workspace, students enrolled in one, and parents/guardians linked to a student. Each tenant workspace (a tutor or institute) is the entity you have a direct relationship with for the classes you take or teach; LearnEra Academy is the platform they run that workspace on.

What we collect

Account data: name, email, password (stored as a salted hash, never in plain text), role, and — where relevant — phone number, date of birth, school name, and roll number.

Academic data: enrollments, attendance, homework and test submissions (including uploaded files, handwritten-work photos, and PDFs), exam answers and scores, chapter-by-chapter mastery scores, and syllabus progress.

Class recordings: for tutors/institutes that record live classes, we store the video/audio and an automated transcript. Transcripts are used, with the workspace's configuration, to ground the AI tutor's answers in what was actually taught — the AI tutor never answers from general knowledge alone, and tells a student plainly when no recording exists to ground an answer rather than guessing.

Communication: messages between teachers, students, and parents sent through the platform; doubt threads; broadcast announcements.

Payment records: invoices, payment status, and transaction references. We do not store card or bank account numbers ourselves — online payments are processed by our payment gateway partner, which handles that data directly (see "Third parties" below).

Exam-integrity signals: during a proctored online test, we record tab-switch, copy/paste, and fullscreen-exit events tied to that attempt, used only to flag the attempt for the teacher's review.

Technical data: login timestamps and basic request metadata needed to keep accounts secure and the service reliable.

Children's data and guardian consent

Many students on LearnEra Academy are under 18. A parent/guardian account only gains access to a specific child's data — attendance, results, mastery scores — after that link is established by the teacher and the guardian explicitly grants consent inside the app. Consent can be withdrawn at any time, which immediately re-blocks access to that child's data through the guardian's account. A guardian invited without portal access (a "contact only" record a teacher adds for reference) never receives login credentials at all.

We do not knowingly sell or use a minor's data for advertising, and the AI tutor applies age-appropriate handling based on the student's recorded date of birth where available.

How we use this data

  • To operate the core product: classes, homework, tests, messaging, fees, and reporting.
  • To compute mastery scores and performance analytics for students and their teachers/guardians.
  • To power optional AI features (exam-draft generation, grading assistance, the student AI tutor) — only for workspaces that have configured an AI provider, and only ever grounded in that workspace's own content.
  • To send account, billing, and academic notifications (in-app, and email/SMS where a workspace has connected a provider).
  • To detect abuse, secure accounts, and investigate exam-integrity flags a teacher raises.

Tenant isolation

Every tutor and institute workspace on LearnEra Academy is enforced as a genuinely separate tenant at the database level, not just hidden behind a login screen — a teacher at one institute cannot query, export, or otherwise reach another institute's students, staff, or records, by design and not merely by convention.

Third parties

We share data with the following categories of third party, and no others:

  • Payment gateway (Razorpay): when a workspace has payments configured, checkout and payment-collection details are handled directly by the gateway. We receive confirmation of payment status, not card/bank details.
  • AI provider (Anthropic): only for workspaces that have configured an API key, and only the specific content needed for that request (e.g. a lecture transcript, a set of exam chapters) — never a student's full record.
  • Email delivery: only for workspaces that have connected an SMTP provider, to send the notifications that workspace has enabled.
  • Live classes: our video infrastructure is self-hosted — live class video/audio is not routed through or stored by any third-party video vendor.

We do not sell personal data to anyone, for any purpose.

Data retention

We retain account and academic data for as long as the account is active, plus a reasonable period after closure to satisfy legal, tax, and dispute-resolution obligations. A workspace owner can request deletion of their workspace's data, subject to records we're required to retain by law (for example, financial transaction records).

Your rights

Depending on your role, you can access, correct, or request export/deletion of your personal data by contacting your tutor/institute directly (they control their own workspace's records) or by reaching us at the contact below for platform-level account data. Guardians can grant or withdraw consent to a child's data at any time from their own account.

Security

Passwords are hashed, never stored in plain text. Privileged accounts (teachers, institute staff, platform administrators) require multi-factor authentication. Data in transit is encrypted. Access to any tenant's data is scoped and enforced at the database layer, not just the application layer.

Changes to this policy

If we make a material change to how we handle data, we'll update the date at the top of this page and, where the change is significant, notify workspace owners directly.

Contact

Questions about this policy, or a request relating to your data, can be sent to privacy@learnera.example (placeholder address — replace with a real support mailbox before launch).