grypioBack to site

Legal

Privacy Policy

Last updated 4 August 2026

Privacy summary Grypio collects information needed to provide accounts, purchases, learning, referrals, support, security and communications. We limit use to legitimate purposes, use service providers where necessary and provide privacy choices and rights subject to applicable law.

1. Scope and controller

This Privacy Policy explains how Grypio Technologies processes personal information in connection with grypio.com, the Grypio learning platform, the AI Skills Quiz, Refer & Earn and related services. For the processing described here, Grypio Technologies is the organisation responsible for deciding why and how personal information is used, except where a third party acts independently under its own policy.

2. Information we collect

The information we collect depends on how you interact with Grypio. Identity and contact information, such as name, email address, country and account identifiers. Account and security information, including authentication records, settings and security events. Quiz and lead information, including answers, results, score, identified gaps and related engagement. Purchase and access information, including offer, amount, currency, payment status, access dates and transaction references. We generally do not store complete card details. Learning information, such as progress, completion, certificates, saved items, feedback and feature activity. Referral information, such as referral identifiers, attribution, Referrer status, Referral Country, rewards, payout status and programme compliance records. Payout information provided by Referrers, such as payout country, selected method, account details, verification information and transaction references. Communications, including support requests, feedback, survey responses and emails. Device and usage information, such as IP address, browser, device type, pages, events, timestamps, referral source and cookie identifiers. Fraud, compliance and risk information derived from account, payment, referral and technical signals.

3. How we collect information

We collect information directly from you, automatically through the Service, from people who refer you, and from service providers that support payments, security, analytics, communications and payouts. We may also receive campaign and attribution information from advertising or analytics partners where permitted.

4. Why we use personal information

We process personal information for the following purposes: create, authenticate and manage accounts; process purchases, verify payments and provide purchased access; deliver learning content, progress features, certificates and personalised service functions; operate the AI Skills Quiz and associated communications; operate Refer & Earn, calculate rewards, administer thresholds and payouts, and prevent misuse; send transactional, service and programme communications; send marketing communications where permitted and provide opt-out choices; measure performance, attribution, conversion and product usage; improve content, usability, reliability and support; protect accounts, investigate abuse and prevent fraud; comply with legal, tax, accounting, regulatory and dispute obligations; establish, exercise or defend legal claims.

5. Legal bases

Depending on the context and applicable law, Grypio relies on one or more lawful grounds: performance of a contract; steps requested before entering a contract; legitimate interests in operating, securing and improving the Service; compliance with legal obligations; consent; and the establishment, exercise or defence of legal claims. Where we rely on consent, you may withdraw it at any time. Withdrawal does not affect processing already carried out lawfully.

6. How we share information

We share information only as reasonably necessary with: hosting, database, authentication and infrastructure providers; payment processors, merchant-of-record services and financial institutions; communications, email and customer-support providers; analytics, measurement and advertising providers, subject to applicable choices and consent; payout, verification and fraud-prevention providers; professional advisers, auditors, insurers and prospective transaction counterparties under confidentiality protections; regulators, authorities, courts or other parties where required by law or necessary to protect rights, safety and security.

7. International processing

Grypio and its service providers may process information in countries other than your own. Where required, we use appropriate contractual, organisational or legal safeguards for international transfers. The protections and rights available in another country may differ, but we continue to handle information according to this Policy and applicable law.

8. Data retention

We retain personal information only for as long as reasonably necessary for the purposes described in this Policy, including account operation, access delivery, security, fraud prevention, financial records, tax, disputes and legal compliance. Retention periods vary by data type. Account deletion does not require deletion of records that must be retained or are reasonably necessary for legal, security, financial or fraud-prevention purposes. Where possible, information may be de-identified instead.

9. Security

We use technical and organisational measures designed to protect personal information, including access controls, authentication, logging, encryption where appropriate, separation of privileges and security monitoring. No system is completely secure. You must protect your credentials and notify us promptly of suspected account compromise.

10. Your privacy rights

Subject to applicable law, you may have rights to request access, correction, deletion, restriction, portability or objection; withdraw consent; and complain to an appropriate data-protection authority. We may need to verify your identity and may decline or limit a request where permitted by law, including where it would affect another person’s rights, security, fraud prevention or required record retention. Requests may be sent to hello@grypio.com.

11. Automated decisions and profiling

Grypio may use automated rules to support quiz results, access administration, communications, referral attribution, security and fraud screening. We do not intend to make solely automated decisions producing legal or similarly significant effects without appropriate safeguards where required by law.

12. Marketing communications

We may send service communications that are necessary for your account, purchase, access or referral activity. Promotional communications may be sent where permitted. You can unsubscribe using the link in the message or contact us. Unsubscribing from marketing does not stop essential service communications.

13. Cookies and similar technologies

We use cookies and similar technologies as described in the Cookie Policy. Where required, optional analytics or advertising technologies are used only after an appropriate choice or consent.

14. Third-party sites and services

Third-party websites and services have their own privacy practices. Grypio is not responsible for processing independently controlled by those third parties.

15. Changes to this Policy

We may update this Policy as the Service, law or our processing changes. The effective date will be updated, and material changes will be communicated where appropriate.

16. Contact

Privacy questions and requests may be sent to hello@grypio.com.