Privacy
Privacy notice
What we hold about you, why we hold it, who else it reaches, and how to get it back or get rid of it.
In force from [effective date] · applies to [registered legal entity name], trading as LearnStatistics and as UpThink.
Last updated: 27 August 2026.
1. Who is responsible for your data
UpThink Inc, trading as LearnStatistics, of [registered address], decides what is collected here and why. Questions, requests and complaints go to support@learnstatistics.org, or through our contact page.
Whether a data protection officer or an EU/UK representative is required and appointed — [TO BE CONFIRMED]
2. What we store, and why
This is the complete list of what we hold about a student in our own records.
- Your account. Your name, your email address, and your password stored as a scrambled value we cannot read back. If you study at a partner university, we keep that and your student id there, because that is what credit is filed against. Most students have no partner, and that is normal. A phone number only if you give us one.
- Your registrations. Which course and start date you bought, when, and whether the place is held, paid or enrolled. Your name and email as they were on the day, so your receipt keeps matching what you saw.
- Your payments. The amount, the currency, the status, and the identifiers Stripe gives the transaction. We never see or store card numbers, expiry dates or security codes. Those are typed on Stripe’s own pages and never reach us.
- What buying a course set granted you. Which courses you own but have not yet scheduled, and which start date each was eventually spent on.
- Records of completion. When you finish a course we record your grade, the credit hours, the date, and whether it was reported to a university. It is a fixed record, not a copy of your gradebook, because we have to be able to show what was filed for credit and when.
- Waiting lists. If you ask to be told when a full or closed run reopens: your email, the run, and optionally your name.
- Support chat conversations. If you use the assistant, we keep the conversation, the date, and a shortened form of your internet address. If it passes your question to a person, we also keep your email address and a summary.
- Our administrators’ activity. We log which member of our staff opened or changed a student record, and when. The log records who looked, never what the record said. It is how we can answer “who has seen my file?”.
There is no advertising and no profiling here, and nothing on this site follows you to another one. Section 5 covers cookies and measurement in full, including the one optional thing and how to refuse it.
We also count how many people open a price page and how many stop at the sign-in step. Those counts carry no name, no address and nothing that could be traced back to you.
You do not have to give us any of this. But without it we cannot create your account, enroll you or send your receipt, so we cannot sell you a course.
3. Canvas, and what lives there instead
Teaching happens in Canvas, our learning management system. Canvas — not this store — holds your enrollment, your coursework, your submissions, your interactions with your instructor and your gradebook.
- You can sign in with a password held here, or through Canvas. Your password is stored only as a scrambled value that cannot be turned back into the password. If you sign in through Canvas, the key that gives us is used once to read your name and email, then thrown away.
- Your progress and grades on your account page are read from Canvas each time you look. We do not copy them into our records. The one exception is the completion record above, written once when a course ends.
Canvas is our own installation, run by us on Amazon Web Services in the United States. It is not operated by Instructure, so no data in it is shared with them.
4. Who else processes your data
- Stripe takes the payment and holds the card details we never see. Stripe keeps its own record of the transaction.
- Amazon SES sends our email — enrollment confirmations, receipts, password resets and waiting-list notices. It receives your name, your email address and the course title.
- Canvas holds the course itself, as described above.
- Google Cloud (Vertex AI) runs the support assistant. What you type is sent to Google, with the page you were reading and anything the assistant looks up to answer you: course titles, dates, your grades, and an order reference and amount. Your name, email address, phone number and card details are never sent. Nothing reaches Google unless you open the chat and send a message. It writes the reply; it is not used to train a model on you.
- Zoho Mail receives the email you send us. Our mailboxes at learnstatistics.org are hosted there, so any message you write to support — and whatever you chose to put in it — is stored on Zoho’s servers.
- Vercel runs the website and Neon runs the database, so both hold what is listed in section 2. The regions they run in — [hosting region] and [database region].
We do not sell your personal information, and we do not share it for advertising across other websites. Nobody above may use your data for their own purposes; they act only on our instructions.
One more recipient: if you study at a partner university, we file your completion — course, grade, credit hours and date — with that university so the credit counts toward your degree. If you have no partner university, which is the ordinary case, nothing is filed.
Whether data is transferred outside the US, and on what basis — [TO BE CONFIRMED]
6. Education records, FERPA and admin access
For students in the United States, coursework, grades and completion records may be education records under FERPA, the Family Educational Rights and Privacy Act. That law asks not only who changed a record but who read it, so we log both. Every member of staff has their own account, the log cannot be edited, and it is kept when someone leaves.
How FERPA obligations are divided between us and a partner university, for the minority of students who are working toward a degree at one, and the formal procedure for a student to inspect or challenge a record — [TO BE CONFIRMED]
7. How long we keep it
- Account, registration and payment records — [TO BE CONFIRMED], though financial records normally have to be kept for a statutory minimum.
- Completion records — kept as the evidence of what was reported for credit. [TO BE CONFIRMED — how long]
- Waiting list entries — [TO BE CONFIRMED]
- The administrator audit log — [TO BE CONFIRMED]
8. Your rights, and how to use them
Write to support@learnstatistics.org from the address on your account, or through the contact page, and say what you want. We will ask you to confirm it is you before we act on anything.
- See it. A copy of what we hold. Your own account page already shows most of it.
- Correct it. A wrong name or address in particular. Changing your details in Canvas does not change them here, so tell us too.
- Delete it. Use delete your account, or write to us if you cannot sign in. Section 9 explains what can and cannot be erased.
- Change your mind about cookies. Where we asked your permission, you can withdraw it at any time on the cookie settings page. Withdrawing is as easy as agreeing, and does not affect anything we did while you agreed.
- Object, or ask us to stop. Tell us and we will explain what we can do and what we are required to keep.
- Which statutory rights apply to you — GDPR, UK GDPR, CCPA/CPRA and others differ by where you live — [TO BE CONFIRMED]
- The regulator you may complain to, and how — [TO BE CONFIRMED]
Nothing here is decided about you by a computer alone. No automatic decision, and no profiling, affects your enrollment, your grade, your price or your credit. A person makes those decisions.
9. What deletion actually involves
Your data is not in one place. A deletion request has to be done separately in each system that holds it:
- Our database — the account, registrations, entitlements, waiting-list entries and completion records described in section 2.
- Canvas — your account there, your enrollments, your submitted work and your grades. It is a separate system with its own record of you.
- Stripe — the payment record. Financial law requires this to be kept, so it usually cannot be erased in full.
- Amazon SES, our mail provider — delivery logs of the messages sent to you.
Two things we cannot erase:
- A completion already reported to a university. It is part of your record there, and our forgetting it does not remove it from them.
- The staff access log. It exists so that we can show who read your file, and editing it would destroy that protection.
We will respond within 30 days and tell you what was deleted and what had to be kept. Nothing is erased the moment you ask — a person does the work. You get an email confirming the request straight away, so if somebody asks in your name you have time to stop it.
What is kept afterwards, beyond the payment records and reported completions described above, and for how long — [TO BE CONFIRMED]
10. How it is protected
- Our staff sign in individually, their sessions expire, and repeated failed sign-ins are locked out.
- Sign-in cookies cannot be read by scripts in your browser and carry no personal data.
- Passwords are never stored in a readable form, only as a scrambled value designed to be slow and expensive to attack.
- No system is perfectly secure. Our breach notification process — [TO BE CONFIRMED]
11. Children
These are university-level courses intended for adults. The minimum age we accept, and how it is checked — [TO BE CONFIRMED]
12. Changes to this notice
When this notice changes materially we will change the date at the top of the page, and tell registered students where the change affects them.