Privacy Policy
Effective July 31, 2026 · Pilot edition
The short version: we don’t sell your information, and we only use it to provide the training service. The rest of this page spells that out.
What we collect
- Account information — your name, email address (or, if you registered with a single-use access code and no email, that code as your sign-in handle), a securely hashed password, and your organization affiliation.
- Training activity — which modules you view and complete, assessment scores, and the certifications you earn.
- Messages you send us — contact and support forms (name, email, and any organization details you include, like team size).
- Technical basics — a session cookie to keep you signed in, and standard server logs (including IP address) used for security and rate limiting.
How we use it
- To provide the service: sign-in, tracking your progress, and issuing certificates.
- To show training records to the administrators of your own organization — that’s the product: managers see completion and certification status for their team.
- To send service emails (verification codes, password resets, certificate notices). We don’t send marketing email.
- To respond when you contact us, and to keep the service secure.
What we don’t do
- We never sell or rent your personal information.
- We don’t share it with third parties for their marketing.
- We don’t use advertising trackers — the only cookie is your session.
Who can see your data
Administrators and overseers at your organization can see your training records (progress, scores, certifications) for the programs they license. Beyond that, data goes only to the service providers we need to operate — email delivery and hosting — and only as needed to provide the service. The pilot is free, and we don’t collect payment information.
Retention & deletion
We keep your data while your account is active or as needed to maintain your organization’s training records. You can ask us to delete your account and personal information at any time — use the contact options on this page or ask your organization’s administrator. Certificates your organization relies on may be retained in anonymized form.
Security
Passwords are stored hashed (never in plain text), traffic is encrypted with TLS, and access to your data is limited by role. No system is perfect, but we build to standard, current security practice.
Children
Thrive is a workforce training product for organizations and is not directed at children under 16.
Changes & contact
We’re in a pilot phase, so this policy may be updated — material changes will be posted here with a new effective date. Questions or requests: contact Keyed Systems, LLC through keyedsystems.com, or ask your organization’s administrator.
