Next Tutor Ltd. ("Next Tutor", "we", "us", or "our") respects your privacy and is committed to protecting your personal information. This Privacy Policy describes how we collect, use, disclose, and safeguard your data when you use our website, mobile app, and services (collectively, the "Services"), including our backend integrations.
By using Next Tutor, you agree to this Privacy Policy. If you do not agree, please do not use the Services.
1. Information We Collect:
1.1 Information You Provide:
When you register and use our Services, you may provide us with:
- Account Data: Full name, email address, phone number, profile photo, bio, and billing coordinates.
- Tutoring Data: Student rosters, lesson logs, attendance tracking, lesson schedules, student progress reports, and tasks/assignments.
- Financial Details: Tutors connect their PayPal account email/details to receive payments from students. We do not store raw card numbers or PayPal credentials; payments are processed securely via PayPal.
1.2 Information Collected Automatically:
We may collect:
- Device metadata (OS, browser type).
- IP address and general geographical region.
- Usage statistics (pages visited, features used, session durations).
1.3 Information from Third-Party Services (e.g., Google OAuth):
If you choose to authorize Next Tutor to connect with third-party services, we may collect:
- Google OAuth Data: If you link Google Drive to your Next Tutor account, we receive your Google email address, access tokens, and a secure refresh token to maintain the connection.
- Google Drive Metadata: When you select a specific file from your Google Drive to share on the platform, we retrieve and store the file's name, MIME type (format), file icon, and the Google Drive web view link.
2. How We Use Your Information:
We use the collected information for the following purposes:
- To operate, maintain, and provide the features of the Next Tutor platform.
- To generate and host the tutor's professional public website.
- To send transactional emails, schedule notifications, and automated lesson reminders to tutors and students (routed through Brevo).
- To securely process subscriptions and facilitate peer-to-peer lesson payments (routed through PayPal).
- To support and resolve technical or billing inquiries.
3. Google API Services User Data & Google Drive Integration
Our platform allows tutors to link their Google Drive to attach learning materials, homework, or documents directly to lessons and tasks. If you use this feature:
- Limited Access Scope: We do not download, modify, or scan the contents of your Google Drive files. We only access the metadata (file title, link, and file type) of the specific files you voluntarily select and attach.
- Sharing Permissions: To enable students to view the attachments, our backend invokes the Google Drive API to create a read-only view permission (making it accessible to anyone with the link). This permission is set strictly on the files you choose to share.
- Strict Confidentiality: Your Google OAuth credentials (refresh tokens) are stored securely on our encrypted Firestore database and are never shared with any third party, other than calling Google's official API servers.
- Limited Use Policy: Next Tutor's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
- Revocation: You can disconnect your Google account from Next Tutor at any time in your Settings, which deletes your Google refresh token from our systems, or by revoking access in your Google Account Security settings.
4. Sharing of Information
We do not sell, rent, or trade your personal data. We only share information with trusted third-party providers under strict data processing agreements:
- Brevo (Sendinblue): We share basic notification parameters (such as names and emails) with Brevo to deliver automated email reminders and service notices.
- PayPal: We transmit purchase details and account identification to PayPal for processing premium subscriptions and distributing student payouts.
- Google Cloud Platform & Firebase: Our core databases and file storage (for custom websites) are securely hosted on Google Cloud infrastructure.
5. Data Retention
We retain your personal data for as long as your active account exists, or as needed to provide the Services, comply with legal/accounting guidelines, and enforce agreements. You may delete your account and associated student records at any time. Upon deletion, personal data is permanently removed from our active systems, except for residual backups which are purged according to our cycle.
6. Data Security
We apply robust technical and organizational security measures to protect your data, including:
- HTTPS data transfer encryption.
- Encrypted database storage (Firestore).
- Restricted backend service access keys (secrets managed in secure vaults).
- Access control audits on server-side functions.
However, please note that no method of transmission or storage is 100% secure.
7. Your Rights
Under international privacy regulations (such as GDPR), you have the right to request access to your personal data, rectify inaccuracies, request erasure of records, or withdraw your consent. To exercise any of these rights, contact us at: service@nexttutor.io.
8. Children's Privacy
The platform is intended for tutors (who must be 18 or older). When tutors input minor student records (under 13) onto the platform for progress tracking, they represent that they have obtained appropriate parental consent to store that data. If we find that we have directly collected personal information from children under 13 without consent, we will remove it immediately.
9. Changes to This Policy
We may update this Privacy Policy from time to time. If we make material modifications, we will notify you by email or via in-app alert. Your continued use of the platform after updates indicates acceptance of the revised policy.
10. Contact Us:
For any privacy questions, data requests, or policy inquiries, please contact us at:
Next Tutor Ltd.
Email: service@nexttutor.io
Location: Tel Aviv, Israel