Last updated: March 9, 2026
1. Information We Collect
We collect information you provide directly when you register, complete onboarding, or use platform features. This includes:
- Full name and email address (provided at registration)
- Institution affiliation, user type, and assigned role
- Profile biography, specialization, and profile image
- Curriculum, course, lesson, assessment, and resource content you create
- Uploaded files (PDFs, DOCX, PPTX, images, videos, SCORM packages)
- Learning path assignments and student progress records
- Usage data, feature interactions, and platform analytics
2. Profile Images & File Storage
Profile images are compressed and stored securely on our platform. Uploaded resource files (PDFs, documents, presentations, videos, etc.) are stored in our file storage system and are accessible only to you, your designated collaborators, and — where institution-wide sharing is enabled — members of your institution. Files you mark as community-shared become accessible to all registered platform users.
3. AI-Powered Features
KTM EduTech includes AI tools for generating course structures, lesson plans, assessments, learning path recommendations, and resource suggestions. When you use these features:
- Your prompts and relevant content context are submitted to third-party large language model (LLM) providers to generate responses.
- We do not store your prompts beyond what is needed to return the result.
- AI-generated content is returned to you and only stored if you explicitly save it.
- You are responsible for reviewing, editing, and validating all AI-generated content before use.
4. Google Integrations
The platform optionally integrates with Google Drive and Google Slides. When you authorize these integrations via OAuth:
- We request only the minimum scopes necessary (e.g.,
drive.file— access only to files created by this app). - We do not access, read, or modify any pre-existing files in your Google Drive.
- OAuth access tokens are used only server-side and are never exposed to the browser.
- You may revoke Google access at any time from your Google account settings.
5. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve platform services
- Manage user onboarding, approval workflows, and role assignments
- Enable collaboration features between users and institutions
- Power AI-based content generation and learning recommendations
- Send platform notifications, support messages, and approval status updates
- Analyze usage patterns to improve user experience
6. Information Sharing
We do not sell your personal information. We may share your information only in the following circumstances:
- With institution administrators when you are part of an institution (profile status, role, and content access)
- With collaborators you explicitly grant access to via the sharing controls
- With all platform users — but only for content you explicitly mark as community-shared
- With third-party AI providers, solely to process AI generation requests
- To comply with applicable laws and legal obligations
7. Community Library & Content Visibility
Curricula, courses, lessons, assessments, and resources can be individually toggled as community-shared. When enabled, the title, description, and content of that item become visible and browsable by all registered platform users in the Community Library. Only the original creator (or a platform admin) can modify or remove community-shared content. Disabling community sharing will remove the item from the Community Library.
8. Data Retention & Account Deletion
The platform distinguishes between the following account states, each with different data implications:
- Removed: A user unlinked from an institution. The account remains active and all personal content is retained.
- Suspended: Access is temporarily disabled. Data is fully retained and access can be restored.
- Deleted (soft-delete): The profile is hidden from all UI views and marked with a deletion timestamp. Underlying data is retained in our systems for a limited period before permanent purging.
To request permanent deletion of your data, please contact a platform administrator.
9. Data Security
We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, accidental loss, or destruction. Access to entity data is governed by row-level security rules scoped to user identity, role, and institution membership.
10. Your Rights
You have the right to:
- Access and update your profile information via the Settings page
- Export your curriculum data using the platform's export tools (PDF, Google Docs)
- Revoke Google integration access at any time
- Request restriction of processing or permanent data deletion
- Opt-out of non-essential communications
11. Contact Us
If you have questions about this Privacy Policy, please contact a platform administrator or reach out to your institution admin. For data deletion requests, contact us directly through official platform channels.
