Privacy Policy

Last Updated: December 12, 2025

CISSP Mastery ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and use our services. Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the site.

1. Information We Collect

Personal Information

We may collect personal information that you voluntarily provide to us when you:

  • Register for an account
  • Make a purchase
  • Subscribe to our newsletter
  • Contact us for support
  • Participate in surveys or promotions

This information may include:

  • Name and email address
  • LinkedIn profile information (when using LinkedIn authentication)
  • Payment information (processed securely through Stripe)
  • Communication preferences
  • Any other information you choose to provide

Automatically Collected Information

When you visit our website, we automatically collect certain information about your device, including:

  • IP address and browser type
  • Operating system and device information
  • Pages visited and time spent on pages
  • Referring website addresses
  • Usage patterns and preferences

2. How We Use Your Information

We use the information we collect to:

  • Provide, operate, and maintain our services
  • Process your transactions and send related information
  • Send you technical notices, updates, and support messages
  • Respond to your comments, questions, and customer service requests
  • Send you marketing and promotional communications (with your consent)
  • Monitor and analyze usage and trends to improve your experience
  • Detect, prevent, and address technical issues and fraudulent activity
  • Personalize your learning experience and content recommendations
  • Comply with legal obligations and enforce our terms of service

3. How We Share Your Information

We may share your information in the following situations:

Service Providers

We work with third-party service providers to help us operate our business and deliver services to you:

  • Clerk: Authentication and user management
  • Stripe: Payment processing
  • LinkedIn: Social authentication
  • Hosting providers: Website and database hosting
  • Analytics providers: Usage analytics and performance monitoring

Legal Requirements

We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., a court or government agency).

Business Transfers

If we are involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will provide notice before your information is transferred and becomes subject to a different privacy policy.

4. Data Security

We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:

  • Encryption of data in transit and at rest
  • Secure authentication through industry-standard providers
  • Regular security assessments and updates
  • Limited access to personal information by authorized personnel only
  • PCI DSS compliant payment processing through Stripe

However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee absolute security.

5. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to track activity on our website and hold certain information. Cookies are files with a small amount of data that may include an anonymous unique identifier.

You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our service.

We use both session cookies (which expire when you close your browser) and persistent cookies (which stay on your device until deleted) for authentication, preferences, and analytics purposes.

6. Your Privacy Rights

Depending on your location, you may have the following rights regarding your personal information:

  • Access: Request a copy of your personal information
  • Correction: Request correction of inaccurate or incomplete information
  • Deletion: Request deletion of your personal information
  • Portability: Request transfer of your information to another service
  • Opt-out: Unsubscribe from marketing communications
  • Restrict processing: Request limitation on how we use your information
  • Object: Object to certain types of processing

To exercise these rights, please contact us using the information provided below. We will respond to your request within 30 days.

7. Data Retention

We retain your personal information only for as long as necessary to fulfill the purposes outlined in this privacy policy, unless a longer retention period is required or permitted by law. When we no longer need your information, we will securely delete or anonymize it.

8. Third-Party Websites

Our website may contain links to third-party websites that are not operated by us. If you click on a third-party link, you will be directed to that third party's site. We strongly advise you to review the privacy policy of every site you visit. We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party sites or services.

9. Children's Privacy

Our services are not intended for individuals under the age of 18. We do not knowingly collect personal information from children under 18. If you are a parent or guardian and you are aware that your child has provided us with personal information, please contact us. If we become aware that we have collected personal information from children without verification of parental consent, we will take steps to remove that information from our servers.

10. International Data Transfers

Your information may be transferred to and maintained on computers located outside of your state, province, country, or other governmental jurisdiction where data protection laws may differ. By using our services, you consent to the transfer of your information to our facilities and the third parties with whom we share it as described in this privacy policy.

11. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

  • Right to know what personal information is collected, used, shared, or sold
  • Right to delete personal information held by businesses
  • Right to opt-out of the sale of personal information (we do not sell personal information)
  • Right to non-discrimination for exercising your CCPA rights

12. European Privacy Rights (GDPR)

If you are located in the European Economic Area (EEA), you have certain data protection rights under the General Data Protection Regulation (GDPR). We process your personal information based on the following legal grounds:

  • Contract: To perform our contract with you
  • Consent: Where you have given explicit consent
  • Legitimate interests: For our business operations
  • Legal obligation: To comply with legal requirements

13. Changes to This Privacy Policy

We may update our privacy policy from time to time. We will notify you of any changes by posting the new privacy policy on this page and updating the "Last Updated" date. We will notify you via email and/or a prominent notice on our website prior to the change becoming effective. You are advised to review this privacy policy periodically for any changes.

14. Contact Us

If you have any questions about this privacy policy or our privacy practices, please contact us:

CISSP Mastery

Email: privacy@cisspmastery.com

Website: cisspmastery.com

15. Your Consent

By using our website and services, you consent to this privacy policy and agree to its terms. If you do not agree to this policy, please do not use our services.