Legal Document

Privacy Policy

Last updated: May 22, 2025

At DevKnow, your privacy matters deeply to us. This policy explains exactly what data we collect, why we collect it, and how we protect it — written in plain language so you always stay informed.

Your data is encrypted
We never sell your data
You control your data

Jump to section

1

Information We Collect

When you create a DevKnow account, we collect basic account information including your name, email address, username, and an encrypted version of your password. If you sign in via a third-party OAuth provider (Google, GitHub), we receive only the profile data that provider shares with us under its own permissions.

Types of data we collect:

  • Account Data: Name, email, profile photo, timezone, and preferences you set in your profile.
  • Usage Data: Pages visited, features used, time spent, search queries, and click patterns — collected to improve your experience.
  • Device & Log Data: IP address, browser type, operating system, referring URLs, and error logs for diagnostics.
  • Cookies & Trackers: Session identifiers, preference tokens, and analytics cookies (see Section 4).
  • Payment Data: Billing address and last-four digits of card (full card details are handled by our payment processor, Stripe).

We collect only what is necessary to provide and improve our services. We do not collect sensitive personal information such as government IDs, health records, or biometric data. You may browse certain public content on DevKnow without creating an account, in which case we collect only anonymous analytics data.

2

How We Use Your Information

DevKnow uses the information we collect for specific, legitimate purposes. We are committed to using your data in ways that genuinely benefit your experience on our platform and to operating our business responsibly.

Service Delivery

Authenticate your account, display personalised dashboards, and deliver the features you request.

Analytics

Understand how features are used, identify issues, and prioritise improvements based on real usage patterns.

Communications

Send transactional emails (password resets, invoices) and, with consent, newsletters and product updates.

Security & Fraud

Detect suspicious activity, prevent unauthorised access, and enforce our Acceptable Use Policy.

Legal Compliance

Meet our obligations under applicable laws (GDPR, CCPA) and respond to lawful regulatory requests.

Personalisation

Recommend relevant courses, articles, and tools based on your learning history and preferences.

We will never use your data to build profiles for third-party advertisers or engage in automated decision-making that produces significant legal effects without human review. Where we rely on legitimate interests as a legal basis, those interests never override your fundamental rights and freedoms.

3

Data Sharing

We do not sell, rent, or trade your personal data.

DevKnow's business model is subscription-based. Your personal information is never monetised by selling it to data brokers, advertisers, or any other third party.

We share limited data only with trusted service providers who assist us in delivering our platform. Each provider is contractually bound to process your data solely for the purpose we specify and in compliance with applicable data-protection laws.

Provider Purpose Data Shared
StripePayment processingBilling info, transaction data
Amazon AWSCloud hosting & storageEncrypted user data
SendGridTransactional emailEmail address, name
Google AnalyticsAggregated analyticsAnonymised usage events
SentryError monitoringError logs, device info

We may also disclose data when required by law (e.g., court orders or government requests), to protect the rights or safety of DevKnow, our users, or the public, or in connection with a merger, acquisition, or sale of assets — in which case we will notify affected users.

4

Cookies & Tracking

Cookies are small text files stored in your browser that help us remember your preferences and understand how you use DevKnow. We use a minimal set of cookies — only those necessary for the site to function and to gather anonymised analytics.

Essential

Required for login sessions, CSRF protection, and basic site functionality. Cannot be disabled.

Preference

Store your display settings (theme, language) so you do not need to re-set them on each visit.

Analytics

Anonymised, aggregated data (via Google Analytics) that helps us understand page traffic and feature usage.

Marketing

We do not currently use marketing or advertising cookies. We do not run retargeting campaigns.

How to disable cookies

You can control or delete cookies through your browser settings. Disabling essential cookies will prevent you from logging in and using most features. For analytics cookies, you may install the Google Analytics Opt-out Browser Add-on. Our cookie banner also allows you to opt out of non-essential cookies on your first visit.

5

Data Security

We take the security of your data seriously and employ industry-standard safeguards to protect it from unauthorised access, alteration, disclosure, or destruction.

TLS 1.3 Encryption

All data in transit is protected with TLS 1.3.

AES-256 at Rest

Stored data is encrypted with AES-256 on AWS.

Bcrypt Hashing

Passwords are hashed with bcrypt — never stored in plain text.

Our infrastructure undergoes regular third-party security audits and penetration testing. Access to production systems is restricted to authorised personnel using multi-factor authentication, and all access is logged and reviewed.

Data Breach Notification

In the unlikely event of a data breach that poses a risk to your rights and freedoms, we will notify affected users and relevant supervisory authorities within 72 hours of becoming aware — in compliance with GDPR Article 33. Notifications will be sent to the email address associated with your account.

However, no method of transmission over the internet or electronic storage is 100% secure. We encourage you to use a strong, unique password for your DevKnow account and to enable two-factor authentication (2FA) where available.

6

Your Rights

Depending on your location, you may have several rights under applicable data-protection law (including GDPR and CCPA). DevKnow respects and honours these rights regardless of where you are located.

Right of Access

Request a copy of the personal data we hold about you at any time.

Right to Rectification

Ask us to correct inaccurate or incomplete information about you.

Right to Erasure

Request deletion of your account and personal data ("right to be forgotten").

Right to Object

Object to processing of your data for direct marketing or legitimate interest purposes.

Data Portability

Receive your data in a structured, machine-readable format (JSON or CSV).

Right to Restrict

Ask us to pause processing of your data while a complaint is resolved.

To exercise any of these rights, email us at privacy@devknow.io with the subject line "Privacy Rights Request". We will respond within 30 days. We may need to verify your identity before processing your request. If you believe we have mishandled your data, you have the right to lodge a complaint with your national data-protection authority.

7

Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or the way DevKnow handles your personal data, please do not hesitate to reach out. Our dedicated privacy team will respond promptly to every inquiry.

Privacy Email

privacy@devknow.io

Response Time

Within 30 days

Privacy Questions?

Our dedicated Privacy Team is here to answer any questions you have about how your data is handled. We aim to reply to every inquiry within 30 business days. You can also submit a formal data rights request via email.

GDPR Compliant
CCPA Compliant
Last Updated: May 22, 2025
Reviewed Annually

Related legal documents