Privacy Policy
We take the protection of your personal data seriously. Here you can find out how we collect, use, and protect your data.
Responsible Party
The party responsible for the processing of personal data on this platform is:
- JAIM Gesellschaft mit beschränkter Haftung
- Meckenheimer Allee 87, D-53115 Bonn
- Managing Director: Jamshed Kharkan
- Email: info@jaim.ai
- Phone: +49 (0228) 97169635
Data Collection
We collect personal data in the following situations:
Account Registration
When you create an account, we collect: first name, last name, email address, phone number (optional), and password (stored encrypted).
Course Enrollment & Participation
When you enroll in courses, we collect: course selections, progress data, quiz results, certificates earned, and completion dates.
Contact Forms
When you submit a contact request, we collect: first name, last name, email address, phone number (optional), reason for inquiry, and your message.
Newsletter
If you subscribe to our newsletter, we collect your email address. You can unsubscribe at any time via the link in each newsletter.
Automatically Collected Data
When you visit our platform, our servers automatically collect: IP address, browser type and version, operating system, referrer URL, date and time of access, and pages visited. This data is processed on the basis of Art. 6(1)(f) GDPR (legitimate interest in ensuring the technical operation and security of the platform).
Purpose of Processing
We process your personal data for the following purposes:
- Contract fulfillment (Art. 6(1)(b) GDPR): Providing access to courses, managing your account, issuing certificates, and processing payments.
- Legitimate interest (Art. 6(1)(f) GDPR): Improving the platform, ensuring security, fraud prevention, and analytics.
- Consent (Art. 6(1)(a) GDPR): Sending newsletters and marketing communications (only with your explicit consent).
- Legal obligation (Art. 6(1)(c) GDPR): Tax and accounting obligations, legal retention periods.
We do not use your data for automated decision-making or profiling.
Cookies
Our platform uses cookies and similar technologies. Cookies are small text files that are stored on your device when you visit our platform.
Essential Cookies
These cookies are necessary for the platform to function properly (e.g., session management, authentication, language preferences). They cannot be disabled. Legal basis: Art. 6(1)(f) GDPR.
Analytics Cookies
We may use analytics cookies to understand how visitors interact with the platform. These cookies are only set with your consent. Legal basis: Art. 6(1)(a) GDPR.
Managing Cookies
You can manage your cookie preferences through your browser settings. Please note that disabling essential cookies may affect the functionality of the platform.
Third-Party Services
We use the following third-party services that may process personal data:
- Hosting: Our platform is hosted on servers within the EU (Linode/Akamai, Frankfurt region) to ensure GDPR compliance.
- Email Services (Postmark): For sending transactional emails (account confirmation, password reset, notifications). Postmark processes email addresses and message content.
- Google Maps: Embedded on our contact page. Google may collect data when the map is loaded. See Google's Privacy Policy.
- Google Fonts: Web fonts are loaded from Google servers. Your IP address may be transmitted to Google. See Google's Privacy Policy.
We have data processing agreements in place with all relevant third-party service providers to ensure compliance with GDPR.
Your Rights (GDPR)
Under the General Data Protection Regulation (GDPR), you have the following rights regarding your personal data:
- Right of Access (Art. 15 GDPR): You may request information about whether and which personal data we process about you.
- Right to Rectification (Art. 16 GDPR): You may request the correction of inaccurate personal data.
- Right to Erasure (Art. 17 GDPR): You may request the deletion of your personal data, subject to legal retention obligations.
- Right to Restriction (Art. 18 GDPR): You may request the restriction of processing of your personal data.
- Right to Data Portability (Art. 20 GDPR): You may request to receive your personal data in a structured, machine-readable format.
- Right to Object (Art. 21 GDPR): You may object to the processing of your personal data based on legitimate interest.
- Right to Withdraw Consent (Art. 7(3) GDPR): You may withdraw any consent given at any time with effect for the future.
To exercise your rights, please contact us at info@jaim.ai. You also have the right to lodge a complaint with the competent supervisory authority (Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen).
Data Retention
We retain your personal data only for as long as necessary for the purposes for which it was collected, or as required by law:
- Account data: Retained for the duration of your account and deleted upon account deletion, unless legal retention periods apply.
- Course data & certificates: Retained for the duration of your account. Certificate records may be retained longer for verification purposes.
- Contact requests: Retained for up to 12 months after resolution of the inquiry.
- Invoicing & payment data: Retained for 10 years in accordance with German tax law (§ 147 AO, § 257 HGB).
- Server logs: Automatically deleted after 30 days.
After the retention period expires, data is securely deleted or anonymized.
Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include:
- SSL/TLS encryption for all data transmission.
- Encrypted storage of passwords using industry-standard hashing algorithms.
- Access controls and authentication mechanisms for platform systems.
- Regular security updates and monitoring of our infrastructure.
- Hosting within the EU on ISO 27001-certified infrastructure.
Despite these measures, no method of electronic transmission or storage is 100% secure. We continuously work to improve our security practices.
Changes to this Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. When we make material changes, we will notify registered users via email or through a notice on the platform.
We encourage you to review this Privacy Policy periodically. The date of the last update is indicated at the top of this page.
Contact
If you have any questions about this Privacy Policy or wish to exercise your data protection rights, please contact us:
- JAIM GmbH
- Meckenheimer Allee 87, D-53115 Bonn
- +49 (0228) 97169635
- info@jaim.ai
- www.jaim.ai