Privacy Policy
This is a courtesy translation. The Portuguese version at academy.bridging2.ai prevails legally.
1. Who processes your data
This Policy describes how B2AI Academy (Bridging2.ai), operated by T. Ambrogi Ribas Branco Calgievicz Otto (Ottootto AI Agency & Consulting), CNPJ 63.053.667/0001-72, processes your personal data, in accordance with Brazilian Law No. 13,709/2018 (LGPD, the Brazilian General Data Protection Law).
2. Data we collect
| Category | Examples | Source |
|---|---|---|
| Account | Name, email | You, when creating your account |
| Diagnostic | Answers, archetype, field of work, work case | You, when answering |
| Usage | Lesson progress, completions, preferences | Generated through use |
| Payment | Subscription status (card data stays with the checkout provider, not with us) | Payment partner |
| Technical | Essential cookies, access logs | Automatic |
3. What we use it for
- Provide access to the platform and personalize tracks and recommendations based on the diagnostic.
- Process subscriptions, renewals, and support.
- Send communications about the service and, with your consent, content and updates.
- Security, fraud prevention, and compliance with legal obligations.
4. Legal bases (LGPD)
We process data based on: contract performance (access and subscription), consent (marketing), legitimate interest (improvement and security), and legal obligation (tax/accounting).
5. Sharing
We don't sell your data. We share it only with operators necessary for the service, under contract: authentication and database provider (Supabase), checkout partner (e.g., Eduzz), transactional email, and hosting. We may disclose data when required by law.
6. Cookies
We use essential cookies for login and preferences (theme, font size). We don't rely on invasive trackers for basic operation.
7. Your rights
You can, at any time, request: confirmation and access to your data; correction; anonymization or deletion; portability; information about sharing; and withdrawal of consent. Just write to our privacy channel.
8. Retention
We keep data while your account is active and for as long as needed to comply with legal obligations. After that, it's deleted or anonymized.
9. Security
We adopt technical and organizational measures (access control, encryption in transit, row-level authorization rules in the database) to protect your data. No system is 100% foolproof, but we treat security as a priority.
10. Data Protection Officer (DPO) and contact
Data Protection Officer: Thiago Ambrogi Ribas Branco Calgievicz Otto. To exercise your rights or ask questions: thiagootto@thiagootto.com.
11. Changes
We may update this Policy. Material changes will be communicated through our channels. The current version is always the one published on this page.