Privacy Policy

Last Updated: February 2025

Our Commitment to Privacy

Neural Path is committed to protecting your privacy and personal data. This policy explains how we collect, use, and safeguard your information when you use our website and data science training services. We comply with European data protection regulations including GDPR and Cyprus national data protection laws.

By using our services, you consent to the collection and use of your information as described in this policy. We may update this policy from time to time, and we will notify you of any significant changes.

1. Information We Collect

Personal Information You Provide

We collect information you voluntarily provide when using our services:

  • Contact Information: Name, email address, phone number, and postal address
  • Course Information: Course preferences, experience level, and learning goals
  • Communication Data: Messages sent through contact forms and email correspondence
  • Payment Information: Billing details and transaction records for course enrollment
  • Educational Background: Relevant skills, qualifications, and professional experience

Automatically Collected Information

We automatically collect certain information when you visit our website:

  • Usage Data: IP address, browser type, device information, and operating system
  • Website Analytics: Pages visited, time spent on site, and user journey patterns
  • Cookie Data: Preferences, session information, and website functionality settings
  • Technical Data: Referring websites, access times, and geographic location (general)

2. How We Use Your Information

Service Delivery and Communication

  • Process course enrollments and provide training services
  • Respond to inquiries and provide customer support
  • Send course updates, schedules, and important notifications
  • Facilitate communication between instructors and students
  • Issue certificates and track learning progress

Website Improvement and Analytics

  • Analyze website performance and user behavior patterns
  • Improve our services based on user feedback and usage data
  • Customize content and course recommendations
  • Optimize website functionality and user experience
  • Conduct research to enhance our training programs

Marketing and Communications (With Consent)

  • Send newsletters and course announcements (opt-in only)
  • Provide information about new programs and events
  • Share relevant data science industry insights
  • Alumni network communications and opportunities

3. Legal Basis for Processing

We process your personal data based on the following legal grounds:

  • Consent: For marketing communications and optional website features
  • Contract Performance: To provide requested training services and support
  • Legitimate Interest: For website analytics, service improvement, and business operations
  • Legal Obligation: For tax records, financial reporting, and regulatory compliance

4. Data Protection and Security

Security Measures

We implement comprehensive security measures to protect your personal data:

  • Encryption: All data transmitted and stored is encrypted using industry-standard protocols
  • Access Controls: Strict access limitations to personal data on a need-to-know basis
  • Secure Servers: Data stored on secure, regularly monitored servers in EU facilities
  • Regular Audits: Periodic security assessments and vulnerability testing
  • Staff Training: All team members trained in data protection principles and procedures

Data Breach Procedures

In the unlikely event of a data breach:

  • We will notify relevant authorities within 72 hours as required by GDPR
  • Affected individuals will be informed promptly if the breach poses high risk
  • Immediate steps will be taken to contain and remedy the breach
  • We will provide support and guidance to affected individuals

5. Data Retention

We retain your personal data only as long as necessary for the purposes outlined in this policy:

  • Contact Form Data: 3 years from submission date
  • Course Records: 5 years from course completion for certification purposes
  • Financial Records: 7 years as required by Cyprus tax law
  • Marketing Data: Until consent is withdrawn or contact becomes inactive
  • Website Analytics: Anonymized data retained for 26 months maximum

6. Data Sharing and Third Parties

Service Providers

We may share your data with trusted service providers who assist in delivering our services:

  • Email Services: For course communications and newsletters
  • Payment Processors: For secure transaction processing
  • Cloud Storage: For secure data hosting and backup
  • Analytics Services: For website performance analysis (anonymized data)

All service providers are bound by strict data protection agreements and GDPR compliance requirements.

We Do Not Sell Your Data

Neural Path does not sell, rent, or trade your personal information to third parties for marketing purposes. Your data is used solely to provide and improve our educational services.

7. Your Rights and Choices

Your Data Protection Rights

Under GDPR and Cyprus data protection law, you have the following rights:

  • Right of Access: Request copies of your personal data we hold
  • Right to Rectification: Request correction of inaccurate or incomplete data
  • Right to Erasure: Request deletion of your personal data in certain circumstances
  • Right to Restrict Processing: Request limitation of how we use your data
  • Right to Data Portability: Request transfer of your data in a portable format
  • Right to Object: Object to certain types of data processing
  • Right to Withdraw Consent: Withdraw consent for marketing communications at any time

How to Exercise Your Rights

To exercise any of these rights, please contact us using the information below. We will respond to your request within 30 days.

Data Protection Contact

For data protection inquiries and to exercise your rights:

privacy@domain.com

Please include "Data Protection Request" in your subject line and provide sufficient detail to verify your identity.

8. International Data Transfers

Your personal data is primarily stored and processed within the European Union. When we use service providers located outside the EU, we ensure appropriate safeguards are in place:

  • European Commission adequacy decisions for approved countries
  • Standard Contractual Clauses (SCCs) with service providers
  • Binding Corporate Rules for multinational service providers
  • Additional security measures for sensitive personal data

9. Children's Privacy

Our services are designed for adults and professionals. We do not knowingly collect personal information from children under 16 years of age. If we become aware that we have inadvertently collected personal data from a child under 16, we will take steps to delete such information promptly. Parents or guardians who believe their child has provided personal information should contact us immediately.

10. Contact Information and Complaints

Data Controller

Neural Path

15 Archbishop Kyprianou, 3036 Limassol, Cyprus

Email: privacy@domain.com

Phone: +357 25 368142

Supervisory Authority

If you are not satisfied with how we handle your personal data, you have the right to lodge a complaint with the Cyprus Data Protection Commissioner:

Office of the Commissioner for Personal Data Protection

1 Iasonos Street, 1082 Nicosia, Cyprus

Phone: +357 22 818 456

Website: dataprotection.gov.cy

11. Changes to This Privacy Policy

We may update this privacy policy from time to time to reflect changes in our practices, legal requirements, or service offerings. We will notify you of any material changes by posting the updated policy on this page and updating the "Last Updated" date. For significant changes that affect your rights, we will provide additional notice through email or prominent website notifications. We encourage you to review this policy periodically to stay informed about how we protect your personal data.