Loading
Loading
We believe in full transparency. Here's how we handle your data.
NexaLearn is an educational platform focused on teaching AI and Cloud in Arabic.
We are committed to your privacy and full transparency about how we handle your data.
Last updated: June 2026.
The platform uses Supabase Auth to manage user accounts.
You can register with email/password or via Google OAuth.
Apple Sign-In is not supported at this time.
When creating an account, we may store: email, full name, profile picture (from Google if using OAuth), and your role (student or admin).
Data is stored in Supabase PostgreSQL in the Europe (eu-central-1) region.
Account data: email, name, photo, role, preferred language.
Learning data: course progress, quiz results, completed lessons.
Saved prompts: prompts you choose to save to your account.
Profile data: learning level, interests, goals (optional).
Contact messages: if you contact us via the contact form, we retain your message to reply.
We never sell any of this data to third parties.
Some platform features — AI Mentor, Prompt Studio, Roadmap Generator — use Google's Gemini API.
All AI requests are processed server-side only — your API key never reaches your browser.
AI chat conversations are not stored in the database. They end when you close or clear the chat.
Your inputs to AI forms are sent to Google Gemini API for processing — see Google's Privacy Policy for details.
Do not enter passwords, API keys, or sensitive personal data into AI chat forms.
Some data is saved in your browser's localStorage only and never sent to our servers:
• Theme preference (dark/light)
• Temporary quiz data if you're not logged in
You can clear this data at any time from your browser settings.
The platform is deployed on Vercel. Sensitive variables (API keys) are stored in Vercel Environment Variables and never appear in source code.
Database: Supabase PostgreSQL with Row Level Security (RLS) enabled on all tables.
Authentication: Supabase Auth with full encryption of sensitive data.
Source code is available on GitHub but contains no real keys or sensitive data.
We use only necessary session cookies for managing your login session (Supabase session cookies).
We do not use tracking or commercial analytics cookies.
Vercel may collect anonymized performance data — see Vercel's Privacy Policy for details.
You can delete your account and data at any time via Account Settings or by contacting us.
You can request a copy of your data by contacting us.
We will never sell your data to third parties.
We will not send commercial emails without your permission.
We will notify you of any significant changes to this policy.
For any inquiries, contact us via the Contact page.
For any privacy questions, reach us via the Contact page.