Privacy Policy

Privacy Policy for The Geek Institute of Cyber Security explaining how we collect, use, protect, and handle your personal information.

Last Updated: August 27, 2026
Effective: January 1, 2026

Effective Date: January 1, 2026
Last Updated: August 27, 2026

Welcome to The Geek Institute of Cyber Security ("Geek Institute", "we", "our", or "us"). We are committed to protecting the privacy, confidentiality, and security of our students, website visitors, partners, and users of our Institute Management System and Learning Management System.

This Privacy Policy describes the types of personal information we collect, how we process and protect it, and the rights you have regarding your personal data.


1. Information We Collect

We collect information directly from you when you register on our platform, enroll in a course, submit an inquiry, take an online exam, or interact with our services.

1.1 Personal & Profile Details

  • Identification: Full name (first, middle, last name), father's name, mother's name, date of birth, gender, and photograph.
  • Contact Information: Email address, mobile/phone number, and permanent or current postal address (address lines, city, state, pincode).
  • Identity Verification (KYC): Government-issued identification such as Aadhaar Number (UID) and identity document copies where required for enrollment and official certificate verification.

1.2 Academic & Educational Background

  • Previous educational history (institution name, type, qualification, completion year, marks/CGPA/grade).
  • Course enrollment history, batch allocations, attendance records, and course completion progress.

1.3 Assessment & Certification Data

  • Examination schedules, admit card records, test attempts, question responses, scores, and generated marksheets.
  • Official course completion certificates, internship certificates, and program participation credentials.

1.4 Financial & Payment Data

  • Installment schedules, fee payments, and transaction history.
  • Payment identifiers (e.g., Razorpay order ID, payment ID, transaction serials). We do not store credit card, debit card numbers, or banking PINs on our servers. All online transactions are processed through certified third-party payment gateways (Razorpay).

1.5 Technical & Usage Information

  • Device and browser information, IP address, operating system, and login session identifiers.
  • Push notification subscription tokens (Firebase Cloud Messaging) when you opt in to receive real-time notifications.

2. How We Use Your Information

We process your data for legitimate educational, administrative, and operational purposes, including:

  1. Academic Delivery: Facilitating admissions, batch scheduling, classroom training (online and offline), and providing study resources.
  2. Identity & Document Verification: Issuing unique verifiable student ID cards, admit cards, fee receipts, marksheets, and digitally verifiable certificates via our public verification portal (/verify).
  3. Examination & Grading: Proctoring exams, calculating test scores, and publishing academic results.
  4. Communication & Alerts: Sending transactional emails (credentials, fee receipts, exam notices, course updates) and web push notifications.
  5. Security & Audit Logs: Recording system activity and access logs to ensure platform integrity and prevent unauthorized access.
  6. Customer Support: Responding to course inquiries, requests, and feedback submitted through our contact channels.

3. How We Protect Your Data

We employ industry-standard administrative, technical, and physical security measures to safeguard your personal data:

  • Encryption & Authentication: Passwords are encrypted using robust hashing algorithms (bcryptjs). Sensitive API routes and printable documents use time-limited cryptographic HMAC tokens.
  • Role-Based Access Control (RBAC): Strict permissions ensure that student records are only accessible to authorized branch managers, instructors, and administrative staff on a need-to-know basis.
  • Audit Logging: System actions including enrollment changes, status updates, and document issuances are tracked in immutable audit logs.
  • Secure Hosting: Database and application services run within secure, monitored environments with automated backups and HTTPS/TLS encryption for all data in transit.

4. Sharing & Disclosure of Information

We do not sell, rent, or trade your personal data with third-party advertisers. We only share information with trusted third-party service providers under strict confidentiality agreements:

  • Payment Processing: Razorpay for secure wallet top-ups and fee payment processing.
  • Transactional Emails: Resend and React Email for sending automated academic and administrative communications.
  • Media & Document Assets: Cloudinary for secure storage of student profile photos, signatures, and payment QR codes.
  • Push Notifications: Google Firebase Cloud Messaging (FCM) for delivering instant browser notifications.
  • Public Verification: Third parties (such as prospective employers or academic institutions) can verify the authenticity of issued certificates and enrollments using our public verification system (/verify) via the document's unique serial number or QR code. Only verified academic completion status is confirmed.

We may also disclose information when required by applicable law, regulation, legal process, or governmental request in India.


5. Data Retention

We retain your personal, academic, and certification records for as long as necessary to fulfill educational, compliance, and legal obligations. Official certification records and document verification serials are retained permanently to enable lifetime credential verification for our graduates.


6. Your Rights & Choices

You have the right to:

  • Access & Review: View your profile details, enrollment status, attendance calendar, exam attempts, and documents in your student dashboard.
  • Correction & Update: Request corrections to inaccurate or incomplete profile information through your branch administrator.
  • Notification Preferences: Enable or disable browser push notifications at any time through your browser settings or dashboard notifications menu.
  • Account Inactivation: Contact your branch manager if you wish to suspend or terminate your student account.

7. Cookies & Local Storage

We use essential session cookies and local storage to maintain your authentication state, remember your theme preference (Dark/Light mode), and manage browser push notification tokens. We do not use third-party tracking cookies for targeted advertising.


8. Updates to This Privacy Policy

We may periodically update this Privacy Policy to reflect changes in our operational practices, services, or legal obligations. The latest version will always be posted on this page with the revised "Last Updated" date.


9. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or how your personal data is handled, please reach out to us:

  • Institute: The Geek Institute of Cyber Security
  • Address: 376, Kapashera, New Delhi - 110097, India
  • Phone / WhatsApp: +91-8882618533
  • Email: [email protected]
  • Website: https://geekinstitute.org
  • Support Hours: Monday – Saturday: 10:00 AM – 10:00 PM IST