Last updated: July 27, 2026
This policy explains what information Learn Cursor collects, why we collect it, who we share it with and the choices you have. Learn Cursor is operated from New South Wales, Australia, but is available globally.
Learn Cursor (“the service”, “we”, “us”) is an independent educational web app operated by Clique Media Group Pty Ltd (ABN 22 614 800 341), a business based in New South Wales, Australia. This policy covers the Learn Cursor website, app, courses, team training features and related support. For privacy questions, requests or complaints, contact us at blake@cliquemediagroup.com.au.
For privacy laws that use controller/processor language, Clique Media Group Pty Ltd (ABN 22 614 800 341) is generally the controller of account, billing, analytics and support information we collect to operate Learn Cursor. Where an organisation uses Learn Cursor for team training, that organisation may also be responsible for how it invites members, assigns work and uses learner progress reports.
Browsing without an account.You can read modules, take quizzes, use flashcards and run the practice walkthroughs without signing in. In that mode your progress, including practice grades, is saved only in your browser’s local storage on your device. It is not sent to our servers.
Account information (via Clerk). If you create an account or sign in, our authentication provider, Clerk, processes your identity details, typically your email address, display name and profile image. Clerk also assigns you a role (learner or admin). We use this to recognise you and secure your account.
Study data. When you are signed in, we store your learning activity so it syncs across devices. This includes:
Leaderboard data. The leaderboard is off by default. If you opt in, your display name, profile image, readiness score and streak become visible to other users. Your email address and detailed progress are never shown. You can opt out at any time in the app.
Organisation, cohort and admin data. If you create or join an organisation, we process organisation names, member and invitation records, admin/member roles, cohort names, assignments, due dates, roster exports, readiness summaries, seat counts and related audit records. Organisation administrators can see member names, emails and progress within their organisation.
Billing and transaction data (via Stripe). Paid team features are billed through Stripe. Stripe processes payment method details, payment authentication, invoices, tax-related information, transaction status, refunds, disputes, fraud checks and related billing records. We receive and store limited billing metadata needed to manage the organisation subscription, such as Stripe customer/subscription identifiers, invoice status, billing status, seat counts, payment status and audit events. We do not store full card numbers.
Support and communications. If you contact us, we collect the details you provide, such as your email address, request content and any account or billing context needed to answer the request.
Email choices and delivery data. We store whether you chose daily review or weekly learning emails, when and where that choice changed, your email time zone, campaign and delivery status, and any bounce, complaint, suppression or unsubscribe event. A queued message temporarily includes its destination and content so it can be sent or retried.
Security, server and diagnostic data. Our hosting, database, authentication, analytics and billing providers may process IP address, device/browser information, request paths, timestamps, error reports, webhook delivery records and similar technical data needed to secure, debug and operate the service.
Analytics and product usage events (with your consent).If you accept analytics, we collect product usage events such as page views, referral/source information, device and browser details, searches, button clicks, onboarding choices, module and section completions, quiz and flashcard activity, certificate actions, leaderboard choices and similar interactions. If you are signed in, analytics may include Clerk’s opaque user ID and broad role so we can understand product usage across sessions and account types. We do not send your email address, display name, private cohort data or payment details to analytics tools.
Sensitive information. Learn Cursor is not designed to collect sensitive information such as health information, racial or ethnic origin, political opinions, religion, union membership, biometric identifiers or government identity documents. Please do not submit that information to the service.
We use the information above only to:
We do not sell your personal data and we do not use it for advertising.
If privacy laws such as the GDPR or UK GDPR apply to you, we rely on the following legal bases, depending on the activity:
Strictly necessary. Clerk sets cookies that are required to keep you signed in and to secure authentication. These are always active and cannot be turned off.
Analytics tools. We use Google Analytics and PostHog to measure how the site and product are used so we can improve them. Google Analytics runs under Google Consent Mode. Until you accept the cookie banner it runs in a cookie-free mode: no cookies are stored, you are not identified and only aggregate, non-identifying signals are collected. Cookie- and session-based PostHog product analytics (page views, clicks and feature usage tied to a session or account) stays off until you accept. If you accept, full analytics is enabled and signed-in analytics uses Clerk’s opaque user ID only, not your email address or name. Session replay is disabled on authentication, billing, organisation, roster and admin surfaces and those surfaces are masked from capture. You can change your choice at any time from the Cookie preferences link in the footer. Advertising signals stay disabled; we do not use cookies for advertising.
Cookieless content-page counting.Separately from the consent-gated tools above, our server counts basic pageviews for our public pages — the home page, course tracks, modules, practice walkthroughs, glossary, pricing pages, shared certificate links and similar public pages — even before you accept the cookie banner. This sets no cookie and builds no visitor profile: the identifier it sends to PostHog is a one-way hash of the day, your IP address and your browser’s user agent, so it cannot identify you, link the visit to an account or track you across days. It records the page path, the referring site’s domain, your browser’s user-agent string and a flag for whether the request looks automated — the last two only so we can tell crawler traffic from real readers.
Two details of that record matter for your privacy, so we state them plainly. First, if the link you arrived on carries campaign labels — a utm_source, utm_campaign or refvalue, the kind added to links we share or that a learner shares — the server keeps those two short labels alongside the count, so we can tell which channel sent the visit. Only those specific labels are read, they are shortened and stripped of anything that looks like an address, a link or a token, and the rest of the web address you arrived on is never recorded. Second, a page whose address contains a personal link — a shared certificate at a /credential/address — is recorded as a generic placeholder rather than the real link, so the count can never be traced back to the learner whose certificate it was.
This counting is skipped for do-not-track requests and for requests that already look automated. It runs regardless of your cookie-banner choice because it stores nothing on your device; our basis for this aggregate, non-identifying counting is the legitimate interest in understanding usage described above.
Email measurement. We do not enable Resend open or click tracking. Learning-email links carry campaign labels so, under the analytics choices above, PostHog can show whether a visit led to a review, lesson or certificate action. Those labels do not contain your email address.
The main browser storage categories are:
We rely on a small number of trusted providers to run the service. Your data may be processed by them on our behalf:
We may also disclose information if required by law, to professional advisers, to enforce our terms, to protect rights and safety or in connection with a business transfer such as a merger, acquisition, financing or sale of assets.
We keep personal information only for as long as we reasonably need it for the purposes described in this policy, unless a longer period is required by law. In general:
If you ask us to delete your data, we will delete or de-identify information we no longer need, subject to legal, security, billing, backup and dispute-resolution requirements.
We will respond within the timeframe required by applicable law. We may need to verify your identity before actioning a request.
Australia. We aim to handle personal information consistently with the Australian Privacy Principles where they apply. If you have a privacy complaint, contact us first at blake@cliquemediagroup.com.au so we can try to resolve it. If you are not satisfied, you may contact the Office of the Australian Information Commissioner.
European Economic Area, United Kingdom and Switzerland. Where applicable, you may have rights of access, correction, deletion, restriction, objection, portability and complaint to a supervisory authority. We have not appointed a data protection officer. You can contact us at blake@cliquemediagroup.com.au.
California and similar US state laws. If these laws apply, we collect categories such as identifiers, commercial/billing information, internet or electronic activity, approximate location derived from IP address, account/profile information, learning activity and inferences from product usage. We collect them from you, your device, your organisation admin and our service providers. We use them for the purposes described in this policy. We do not sell personal information and we do not share it for cross-context behavioural advertising. We do not knowingly collect, sell or share personal information from children under 16.
Data is encrypted in transit (HTTPS/TLS) and encrypted at rest by our database provider. Database access is restricted to our servers: the database rejects direct client access, and no part of the website or app connects to it from your browser. Every read and write runs on our server, which authorises the request before it reaches the database:
No method of storage or transmission is perfectly secure, but we take reasonable measures to protect your information.
We are based in New South Wales, Australia and use global cloud providers. Your information may be stored or processed in Australia, the United States, the United Kingdom, the European Economic Area, Singapore and other countries where our providers or their subprocessors operate. The exact locations can change as providers update their infrastructure.
Where we send personal information overseas, we use provider contracts, data processing terms, security controls and transfer safeguards such as standard contractual clauses, adequacy or Data Privacy Framework participation where available. For Australian APP 8 purposes, we take reasonable steps designed to ensure overseas recipients handle personal information consistently with applicable privacy obligations.
Learn Cursor does not use automated decision-making that produces legal or similarly significant effects about you. Readiness scores, streaks, progress summaries and analytics segments are product features used for learning feedback, team reporting and product improvement. They do not decide hiring, employment, credit or other legal rights.
Learn Cursor is intended for adults preparing for technical interviews and is not directed to children under 16. You must be at least 16 to create an account or use paid team features. We do not knowingly collect personal information from children under 13. If you believe a child has provided us personal information, contact us and we will take appropriate steps to delete it.
We may update this policy from time to time. When we do, we will revise the “Last updated” date at the top of this page.
Questions about this policy or your data? Email blake@cliquemediagroup.com.au.