GDPR

GDPR & Privacy Policy

Qyliora·FL·Academy values your privacy. This page describes how we collect, use and protect your personal data in accordance with the EU General Data Protection Regulation (GDPR).

Data Controller

Qyliora·FL·Academy is the controller of personal data processed on this platform. Contact: fred.larsson739@gmail.com.

Data we process

We process data you provide (name, email, hashed password), test answers and results, payment data via Stripe, and technical data (IP address, device, browser, cookies).

Purpose and legal basis

Data is used to provide the test and reports (contract), manage your account, billing and support (contract/legitimate interest), improve the service and comply with legal obligations. Marketing only with consent.

Retention

We retain data while your account is active or as required by law (e.g. accounting law, 7 years). You can request deletion of your account at any time.

Sharing of data

We share data with processors that help us deliver the service: Supabase (database and auth), Stripe (payments) and AI providers for analysis. We never sell your data.

Your rights

You have the right to access, rectification, erasure, restriction, data portability and objection. You may also lodge a complaint with your national data protection authority.

Cookies

We use strictly necessary cookies for login and session management. Analytics cookies are set only with your consent.

Security

Data is encrypted in transit (TLS) and at rest. Access is protected by Row Level Security and limited to authorised personnel.

Contact

Questions about GDPR or your rights? Email fred.larsson739@gmail.com and we will respond within 30 days.

Last updated: 2026-05-11