Privacy Policy
Welcome to CERTIFICATES IN AI sp. z o.o. (“CEAI “), a professional organization specializing in Artificial Intelligence education, certification, and professional credentialing.
At CEAI, we value your privacy and are committed to protecting your personal information. This Privacy Policy explains how we collect, use, store, and safeguard your data when you visit our website, enroll in our training programs, register for certification examinations, or use any of our services.
We process your personal data lawfully, fairly, transparently, and securely in accordance with the General Data Protection Regulation (GDPR), the UK GDPR, and other applicable privacy laws.
By accessing our website or using our services, you acknowledge that you have read and understood this Privacy Policy.
1. Data Controller
CERTIFICATES IN AI sp. z o.o. (“CEAI”, “we”, “our”, or “us”) is a company registered in Poland and acts as the Data Controller in accordance with the General Data Protection Regulation (EU) 2016/679 (“GDPR”), the UK GDPR, and other applicable data protection laws.
Registered Office:
[Insert Full Registered Address]
- KRS: 0001249929
- NIP: 7831956791
- REGON: 54507831300000
For any questions regarding this Privacy Policy or the processing of your personal data, please contact us:
- Email:info@cerai.eu
2. Scope of This Policy
This Privacy Policy explains how we collect, use, store, protect, and transfer personal data when you:
- Visit our website.
- Create an account.
- Register for courses or certification programs.
- Sit for certification examinations.
- Verify professional credentials.
- Contact our support team.
- Interact with our services as a learner, trainer, partner, or organizational client.
3. Categories of Data Collected
We may collect the following categories of personal data:
Identification Data
- Full name
- Email address
- Country of residence
- Professional information
Account and Enrollment Data
- Login credentials
- Account profile
- Course registrations
- Assessment participation
- Certification records
- Examination results
Certification and Verification Data
- Assessment outcomes
- Certification status
- Credential verification records
To maintain the integrity of CEAI certifications, limited certification information may be disclosed through our credential verification system solely for the purpose of confirming the authenticity and validity of issued certificates.
Payment Data
Billing information and transaction details.
Payment card information is securely processed by authorized third-party payment providers (such as Stripe). CEAI does not store full payment card details.
All online payments are securely processed using PCI DSS-compliant payment providers.
Technical and Usage Data
- IP address
- Browser type
- Device information
- Operating system
- Pages visited
- Session information
- System logs
Communications Data
- Customer support requests
- Feedback
- Emails
- Other communications with IAIDL
4. Purpose of Processing
We process personal data for the following purposes:
- Delivering training programs and certification services.
- Managing user accounts and enrollments.
- Administering examinations and issuing certificates.
- Verifying certification authenticity.
- Processing payments and maintaining financial records.
- Providing customer support.
- Ensuring platform security and preventing fraud.
- Improving our services and user experience.
- Sending service-related communications.
- Sending marketing communications where consent has been provided.
- Complying with legal and regulatory obligations.
We do not sell personal data to third parties.
5. Legal Basis for Processing
We process personal data under one or more of the following legal bases:
- Contract Performance – to provide certification, training, and examination services.
- Legal Obligation – to comply with tax, accounting, regulatory, and legal requirements.
- Legitimate Interests – for security, fraud prevention, service improvement, and operational management.
- Consent – for marketing communications and optional services.
Users may withdraw their consent at any time without affecting the lawfulness of processing carried out before the withdrawal.
Marketing communications are sent only where consent has been obtained or where otherwise permitted by applicable law.
Users may unsubscribe from marketing communications at any time.
6. Data Sharing
Personal data may be shared with trusted third parties where necessary, including:
- Payment processors (such as Stripe)
- Cloud hosting providers
- IT service providers
- Assessment and credential verification systems
- Professional advisors (legal, accounting, and auditing)
- Regulatory or governmental authorities where legally required
All third-party service providers are contractually required to process personal data securely and in accordance with GDPR and applicable data protection laws.
7. International Data Transfers
Where personal data is transferred outside the European Economic Area (EEA) or the United Kingdom, CEAI implements appropriate safeguards, including:
- Standard Contractual Clauses approved by the European Commission.
- Transfers to countries recognized as providing an adequate level of data protection.
- Other legally approved tran
8. Data Retention
We retain personal data only for as long as necessary to fulfill contractual, certification, operational, and legal obligations.
Examples include:
- Account information: retained while the account remains active.
- Financial records: retained as required under applicable tax and accounting laws.
- Certification records: retained long-term to enable credential verification and certification validation.
After applicable retention periods expire, personal data is securely deleted or anonymized.
9. Data Security
We implement appropriate technical and organizational measures to protect personal data, including:
- Encrypted data transmission.
- Secure hosting infrastructure.
- Access control mechanisms.
- Authentication procedures.
- Regular security monitoring.
- Internal security policies.
Although we employ industry-standard security measures, no system can guarantee absolute security.
In the event of a personal data breach, CEAI will comply with all applicable notification obligations under GDPR and other relevant data protection laws.
10. Automated Decision-Making
CEAI does not make decisions producing legal or similarly significant effects solely through automated processing.
11. Your Rights
Under GDPR and applicable data protection laws, you have the right to:
- Access your personal data.
- Correct inaccurate or incomplete information.
- Request deletion of your personal data where legally applicable.
- Restrict processing.
- Object to processing.
- Request data portability.
- Withdraw consent at any time.
- Lodge a complaint with a competent supervisory authority.
If you believe your rights have been violated, you may lodge a complaint with the supervisory authority in your country of residence or with the competent Polish Data Protection Authority.
Requests may be submitted through our Support Page or by email.
12. Children's Privacy
IAIDL’s services are intended for individuals who are at least 18 years of age, or who have reached the legal age required to enter into binding agreements in their jurisdiction.
We do not knowingly collect personal data from children without appropriate legal authorization.
If we become aware that personal data has been collected from a child in violation of applicable laws, we will promptly delete such information.
13. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Ensure the website functions properly.
- Improve user experience.
- Analyze website performance.
- Enhance security.
- Remember user preferences.
Where required by law, users may manage their cookie preferences through our Cookie Consent Banner or their browser settings.
For more detailed information, please refer to our separate Cookies Policy.
14. Changes to This Privacy Policy
CEAI may update this Privacy Policy periodically to reflect changes in our services, legal obligations, or data processing practices.
The latest version will always be published on this page with an updated Effective Date.
Your continued use of our services after any updates constitutes acceptance of the revised Privacy Policy.
15. External Links
Our website may contain links to third-party websites. CEAI is not responsible for the privacy practices or content of external websites. We encourage users to review the privacy policies of any third-party websites they visit.
16. Contact Us
If you have any questions regarding this Privacy Policy or wish to exercise your privacy rights, please contact us:
CERTIFICATES IN AI sp. z o.o.
Registered Office:
ul. Święty Marcin 29/8, 61-806 Poznań