- Policy version
- signup-2026-07-27-v1
- Draft date
- 27 July 2026
- Platform operator
- Digital Information Systems
- Registered-office location
- Kinshasa, Democratic Republic of the Congo
1. Who handles your information
Digital Information Systems operates SapiaVault from Kinshasa, Democratic Republic of the Congo. During prelaunch, privacy enquiries and rights requests should be sent to customercare@sapiavault.com.
2. Information we collect
We may collect account identity and contact information, declared age band, country, language, role, guardian relationships and consent records; authentication, security and device logs; purchases, subscriptions and access entitlements; course progress and downloads; and support communications. We do not ask for full card numbers or card security codes.
3. Why we use information
We use information to create and secure accounts, provide learning content, enforce age and guardian safeguards, process verified commerce, record progress and consent, answer support requests, prevent fraud and abuse, improve reliability, meet legal duties and protect SapiaVault users and content.
4. Children and protected minors
Under-16 learner accounts require guardian activation before protected learning and downloads are available. Users aged 16–17 remain protected minors. SapiaVault does not provide public learner profiles or learner-to-learner messaging. We collect an age band instead of a birth date unless further information is legally required and appropriately verified.
5. Service providers and international processing
SapiaVault uses Supabase for authentication, database and private storage; Vercel for application hosting; and Cloudflare for domain and security services and, when enabled, video services. CinetPay and Resend receive relevant information only when their payment or email features are enabled. Providers may process information outside the user’s country under their contractual and security safeguards. We do not sell personal information.
6. Retention and deletion
Account, consent, transaction, security, learning, support and academic approval records are retained only as needed to provide the service, meet legal or accounting duties, resolve disputes, preserve publication integrity and protect users. Deletion requests may not remove records that must be retained for security, consent, payment, academic audit or legal reasons.
7. Security
SapiaVault uses server-side authorization, protected sessions, row-level database controls, private file storage, expiring download links, audit records and restricted administrative access. No system is completely risk-free. Report suspected account compromise to support@sapiavault.com and never email passwords, payment credentials or verification links.
8. Your choices and rights
Subject to applicable law and verified identity, you may ask to access, correct, export or delete your personal information, object to or restrict certain processing, or withdraw optional consent. Withdrawing a consent needed for an under-16 account may restrict that learner’s access. Contact customercare@sapiavault.com to make a request.
9. Cookies and similar storage
SapiaVault uses essential cookies or browser storage for secure sessions, language selection and core service operation. Marketing or non-essential analytics will not be enabled without a separate, appropriate notice and choice mechanism.
10. Contact and policy changes
Privacy enquiries and complaints may be sent to customercare@sapiavault.com. Technical security reports may be sent to support@sapiavault.com. If this notice changes materially, SapiaVault will issue a new policy version and request renewed acknowledgement where required.
