Privacy Policy

Last updated: June 2026

1. Overview

CyberQuizzer ("we", "us") is committed to protecting your privacy. This policy explains what personal information we collect, how we use and disclose it, and your rights. We handle personal information in accordance with the Australian Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs). If you have questions, reach us at contact@cyberquizzer.com.

2. Information we collect

We collect the minimum information necessary to provide the service:

  • Email address and display name (on sign-up)
  • OAuth profile data if you sign in with Google or GitHub
  • Quiz answers, scores, streaks, and progress (to power spaced repetition)
  • Subscription status (we receive this from Stripe; see section 4)
  • Technical and session logs for security and abuse prevention

3. How we use your information

  • Provide and personalise the quiz experience
  • Calculate streaks, XP, badges, and spaced-repetition schedules
  • Process subscription payments (via Stripe; see section 4)
  • Send transactional emails (email verification, password reset, account notices)
  • Keep the service secure and prevent abuse

We do not sell your personal information or use it for advertising.

4. Service providers we use

We share personal information with a small set of providers only as needed to run the service:

  • Stripe: payment processing. Stripe collects and stores your payment-card details directly — we never see or store full card numbers.
  • Vercel: application hosting, edge delivery, and database infrastructure.
  • Resend: delivery of transactional emails (verification, password reset).
  • Google / GitHub: only if you choose to sign in with one of these providers.

We do not currently use third-party product analytics or advertising trackers.

5. Overseas disclosure

Some of our service providers (including those listed above) store and process data on servers located outside Australia, such as in the United States and the European Union. By using the service, you consent to your personal information being handled overseas. We take reasonable steps to ensure these providers protect your information consistently with this policy.

6. Data retention

We retain your account data for as long as your account is active. You may request deletion at any time by contacting us, and we will action deletion within 30 days, except where we are required to retain certain records (for example, billing records) by law.

7. Cookies

We use a single session cookie to keep you signed in. We do not use advertising or third-party tracking cookies.

8. Security

We take reasonable technical and organisational measures to protect your personal information. Passwords are stored hashed, never in plain text. No method of transmission or storage is completely secure, but we work to safeguard your data.

9. Your rights

You have the right to access, correct, export, and delete your personal information. To exercise these rights, contact us at contact@cyberquizzer.com. If you are not satisfied with how we handle a privacy concern, you may contact the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.

10. Children

CyberQuizzer is not intended for children under 16, and we do not knowingly collect personal information from them.

11. Changes to this policy

We may update this policy periodically. Material changes will be communicated by email or a notice on the site.