HayaPrep
Courses Pricing FAQ About
Sign In Get Started

Privacy Policy

Last Updated: March 15, 2026

Terms of Service Privacy Policy Refund Policy

1. Introduction

HayaPrep ("Company," "we," "us," or "our") is committed to protecting and respecting your privacy. This Privacy Policy ("Policy") describes how we collect, use, store, share, and protect your personal information when you visit our website, use our platform, purchase courses, or interact with our services in any way (collectively, the "Service").

This Policy applies to all users of our Service, including visitors, registered users, students, and purchasers. By accessing or using the Service, you acknowledge that you have read, understood, and agree to the collection and use of your information in accordance with this Privacy Policy. If you do not agree with this Policy, please do not access or use the Service.

We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. We will notify you of any material changes by posting the updated Policy on this page and updating the "Last Updated" date at the top of this Policy. We encourage you to review this Policy periodically to stay informed about how we are protecting your information. Your continued use of the Service after any changes to this Policy constitutes your acceptance of those changes.

2. Information We Collect

We collect information about you in various ways when you use our Service. The types of information we collect include the following:

2.1 Information You Provide Directly

When you register for an account, purchase a course, contact our support team, or otherwise interact with the Service, you may provide us with certain personal information, including but not limited to:

  • Account Information: Your full name, email address, and password when you create an account on our Platform.
  • Profile Information: Any additional information you choose to add to your profile, such as a profile picture, biographical details, educational background, or school name.
  • Payment Information: When you make a purchase, your payment details (such as credit card number, billing address, and related financial information) are collected and processed by our third-party payment processors (e.g., Gumroad, Stripe). We do not directly store your full credit card number on our servers.
  • Communication Information: Information contained in any communications you send to us, including emails, support requests, feedback, survey responses, or messages through our contact forms.
  • Course Progress Information: Data related to your learning activity, including lessons viewed, courses completed, quiz results, time spent on lessons, progress percentages, and completion status.
  • User-Generated Content: Any content you submit, post, or transmit through the Service, including comments, reviews, or feedback.

2.2 Information Collected Automatically

When you access or use our Service, we may automatically collect certain information about your device, browsing activity, and usage patterns, including:

  • Device Information: Information about the device you use to access the Service, including the type of device (desktop, laptop, tablet, smartphone), operating system and version, device identifiers, screen resolution, and browser type and version.
  • Log Data: Information that your browser or device automatically sends whenever you visit our Service, including your Internet Protocol (IP) address, access times and dates, referring and exit pages, pages viewed, links clicked, and the amount of time spent on each page.
  • Usage Data: Information about how you interact with the Service, including which features you use, which courses you access, how frequently you use the Service, and your navigation patterns within the Platform.
  • Location Data: General geographic location information derived from your IP address (such as city, state, and country). We do not collect precise GPS-based location data.
  • Cookies and Similar Technologies: We use cookies, web beacons, pixels, and similar tracking technologies to collect information about your browsing activity and preferences. For more details, please refer to Section 6 (Cookies and Tracking Technologies) below.

2.3 Information from Third Parties

We may receive information about you from third-party sources, including:

  • Authentication Providers: If you sign in to the Service using a third-party authentication service (such as Google Sign-In), we may receive information from that service, including your name, email address, and profile picture, as authorized by your settings with that service.
  • Payment Processors: Our payment processors may provide us with transaction information, including confirmation of payment, purchase amounts, and limited payment method details (such as the last four digits of your credit card) for record-keeping and customer service purposes.
  • Analytics Providers: We may receive aggregated analytics data from third-party analytics services that help us understand how our Service is being used.

3. How We Use Your Information

We use the information we collect for various purposes, including but not limited to the following:

Purpose Description
Providing the Service To create and manage your account, provide access to purchased courses, deliver educational content, track your learning progress, and maintain your course completion records.
Processing Transactions To process your purchases, send transaction confirmations, manage billing, and handle refund requests in accordance with our Refund Policy.
Communicating with You To send you important account-related information, such as registration confirmations, purchase receipts, course updates, security alerts, and support communications.
Improving the Service To analyze usage patterns, identify areas for improvement, develop new features, optimize course content, and enhance the overall user experience.
Personalization To personalize your experience on the Platform, recommend courses or content that may interest you, and tailor communications based on your preferences and activity.
Marketing and Promotions To send you promotional emails, newsletters, and information about new courses, features, or special offers. You may opt out of marketing communications at any time.
Safety and Security To detect, investigate, and prevent fraudulent activity, unauthorized access, and other illegal activities. To protect the rights, property, and safety of HayaPrep, our users, and the public.
Legal Compliance To comply with applicable laws, regulations, legal processes, or enforceable governmental requests.

4. How We Share Your Information

We do not sell, rent, or trade your personal information to third parties for their commercial purposes. However, we may share your information in the following limited circumstances:

4.1 Service Providers

We may share your information with trusted third-party service providers who perform services on our behalf, such as payment processing, data hosting, email delivery, analytics, customer support, and marketing assistance. These service providers are contractually obligated to use your information only as necessary to perform services for us and are required to maintain the confidentiality and security of your information.

4.2 Authentication Services

We use Supabase for authentication and data management. When you create an account or sign in, your authentication data (including email address and encrypted password) is processed and stored by Supabase in accordance with their privacy practices. We encourage you to review Supabase's privacy policy for more information about how they handle your data.

4.3 Payment Processors

When you make a purchase, your payment information is processed by our third-party payment processors (such as Gumroad and Stripe). These processors have their own privacy policies governing how they collect, use, and protect your payment information. We do not have access to your full payment card details.

4.4 Legal Requirements

We may disclose your information if required to do so by law, or in the good faith belief that such action is necessary to:

  • Comply with a legal obligation, court order, subpoena, or other legal process;
  • Protect and defend the rights or property of HayaPrep;
  • Prevent or investigate possible wrongdoing in connection with the Service;
  • Protect the personal safety of users of the Service or the public;
  • Protect against legal liability.

4.5 Business Transfers

In the event that HayaPrep is involved in a merger, acquisition, reorganization, bankruptcy, dissolution, sale of assets, or similar transaction, your personal information may be transferred as part of that transaction. We will notify you via email and/or a prominent notice on our Service of any change in ownership or uses of your personal information, as well as any choices you may have regarding your personal information.

4.6 Aggregated and De-Identified Data

We may share aggregated, anonymized, or de-identified data that cannot reasonably be used to identify you with third parties for research, analytics, marketing, or other purposes. Such data does not constitute personal information under applicable privacy laws.

5. Data Storage and Security

We take the security of your personal information seriously and implement reasonable administrative, technical, and physical safeguards designed to protect your information against unauthorized access, alteration, disclosure, or destruction. Our security measures include, but are not limited to:

  • Encryption: We use industry-standard encryption protocols (such as TLS/SSL) to protect data transmitted between your browser and our servers.
  • Secure Authentication: User passwords are securely hashed and salted using industry-standard algorithms. We never store plain-text passwords.
  • Access Controls: Access to personal information is restricted to authorized personnel who need the information to perform their duties. All personnel with access to personal data are bound by confidentiality obligations.
  • Regular Monitoring: We regularly monitor our systems for potential vulnerabilities, security breaches, and unauthorized access attempts.
  • Third-Party Security: Our third-party service providers, including Supabase and our payment processors, maintain their own security measures and are required to protect your information in accordance with industry standards.

While we strive to protect your personal information, no method of transmission over the Internet or method of electronic storage is 100% secure. Therefore, while we use commercially reasonable efforts to protect your personal information, we cannot guarantee its absolute security. You are responsible for maintaining the confidentiality of your account credentials and for any activity that occurs under your account.

5.1 Data Retention

We retain your personal information for as long as your account is active or as needed to provide you with the Service. We may also retain and use your information as necessary to comply with our legal obligations, resolve disputes, enforce our agreements, and for legitimate business purposes. When your personal information is no longer needed for the purposes outlined in this Policy, we will securely delete or anonymize it in accordance with our data retention policies and applicable laws.

Specifically:

  • Account data is retained for the duration of your account and for up to two (2) years after account deletion or inactivity.
  • Transaction records are retained for a minimum of seven (7) years to comply with financial and tax regulations.
  • Course progress data is retained for the duration of your account and may be deleted upon your request or account termination.
  • Communication records (support emails, feedback) are retained for up to three (3) years after the last interaction.
  • Analytics and usage data may be retained in aggregated, anonymized form indefinitely for research and improvement purposes.

6. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to collect and store information about your interactions with our Service. Cookies are small text files that are placed on your device by websites you visit. They are widely used to make websites work more efficiently, provide a better browsing experience, and report useful information to website owners.

6.1 Types of Cookies We Use

  • Essential Cookies: These cookies are strictly necessary for the operation of the Service. They include, for example, cookies that enable you to log into secure areas of the Platform, maintain your session, and remember your preferences. Without these cookies, the Service cannot function properly, and they cannot be disabled.
  • Performance and Analytics Cookies: These cookies allow us to recognize and count the number of visitors, see how visitors move around the Platform, and understand which pages are most and least popular. This helps us improve the way the Platform works. These cookies collect aggregated, anonymized information and do not identify individual visitors.
  • Functionality Cookies: These cookies are used to recognize you when you return to the Platform. They enable us to personalize our content for you, remember your preferences (such as language, region, or display settings), and provide enhanced, more personal features.
  • Marketing Cookies: These cookies may be set by us or third-party partners to build a profile of your interests and show you relevant content or advertisements on other sites. They work by uniquely identifying your browser and device. If you do not allow these cookies, you will still see advertisements, but they may be less relevant to you.

6.2 Managing Cookies

Most web browsers allow you to control cookies through their settings preferences. You can set your browser to refuse all or some cookies, or to alert you when cookies are being sent. However, if you disable or refuse cookies, some parts of the Service may not function properly or may become inaccessible.

You can learn more about cookies and how to manage them at www.allaboutcookies.org.

6.3 Local Storage

In addition to cookies, we may use local storage technologies (such as HTML5 localStorage) to store information about your preferences and activity on the Service. This includes, for example, your course progress data, theme preferences, and session information. Local storage data is stored on your device and is not transmitted to our servers unless explicitly required for Service functionality.

7. Your Rights and Choices

Depending on your location and applicable laws, you may have certain rights regarding your personal information. These rights may include:

7.1 Access and Portability

You have the right to request access to the personal information we hold about you. You may also have the right to request a copy of your personal information in a structured, commonly used, and machine-readable format (data portability). To exercise this right, please contact us using the information provided in Section 11 below.

7.2 Correction

You have the right to request that we correct any inaccurate or incomplete personal information we hold about you. You can update certain information directly through your account settings, or you can contact us to request corrections.

7.3 Deletion

You have the right to request that we delete your personal information, subject to certain exceptions. We may retain certain information as required by law or for legitimate business purposes, such as maintaining transaction records for tax compliance. To request deletion of your account and personal data, please contact us using the information provided in Section 11 below.

7.4 Opt-Out of Marketing

You may opt out of receiving promotional or marketing communications from us at any time by clicking the "unsubscribe" link in any marketing email we send you, or by contacting us directly. Please note that even if you opt out of marketing communications, we may still send you non-promotional messages, such as account-related notices, security alerts, and transactional communications related to your purchases.

7.5 Restriction of Processing

In certain circumstances, you may have the right to request that we restrict the processing of your personal information. This means that we will store your information but will not process it further, except as necessary for legal claims, the protection of another person's rights, or for important public interest reasons.

7.6 Objection to Processing

You may have the right to object to the processing of your personal information in certain circumstances, particularly where we process your information based on our legitimate interests. If you object, we will cease processing your information unless we can demonstrate compelling legitimate grounds for the processing that override your interests, rights, and freedoms.

8. Children's Privacy

Our Service is not directed to children under the age of thirteen (13). We do not knowingly collect personal information from children under thirteen (13). If you are a parent or guardian and you are aware that your child has provided us with personal information without your consent, please contact us immediately. If we become aware that we have collected personal information from a child under the age of thirteen (13) without verification of parental consent, we will take steps to remove that information from our servers as promptly as possible.

For users between the ages of thirteen (13) and seventeen (17), parental or legal guardian consent is required to use the Service. We encourage parents and guardians to be involved in their children's online activities and to review this Privacy Policy together with their children.

9. International Data Transfers

Your information may be transferred to, and maintained on, computers and servers located outside of your state, province, country, or other governmental jurisdiction where the data protection laws may differ from those of your jurisdiction. If you are located outside the country where our servers are hosted and choose to provide information to us, please note that we transfer the data to the applicable jurisdictions and process it there.

We take appropriate measures to ensure that your personal information receives an adequate level of protection in the jurisdictions in which we process it, including through the use of standard contractual clauses, data processing agreements, and other appropriate safeguards as required by applicable law.

10. Changes to This Privacy Policy

We reserve the right to modify this Privacy Policy at any time. If we make material changes to this Policy, we will notify you by updating the "Last Updated" date at the top of this page and, where appropriate, sending you an email notification or displaying a prominent notice on the Service. We encourage you to review this Privacy Policy periodically for any changes.

Changes to this Privacy Policy are effective when they are posted on this page. Your continued use of the Service after any modifications to this Policy constitutes your acknowledgment and acceptance of the modified Policy.

11. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy, or if you wish to exercise any of your rights as described above, please contact us at:

HayaPrep
Email: support@hayaprep.com
Website: www.hayaprep.com

We will make every effort to respond to your inquiry within thirty (30) days of receipt. If you are not satisfied with our response, you may have the right to lodge a complaint with a supervisory authority in your jurisdiction.

Home Courses Pricing Terms of Service Privacy Policy Refund Policy

© 2026 HayaPrep. All rights reserved.