Privacy Policy

  • Home
  • Privacy Policy

PRIVACY POLICY

Last Updated: June 21, 2026

1. SCOPE AND COMPLIANCE FRAMEWORK

This Privacy Policy outlines how "UpMinds" ("we", "us", or "our") collects, processes, utilizes, maintains, and safeguards the personal information of users residing within the United States. This policy is designed to maintain compliance with federal and state privacy statutes, including the Children's Online Privacy Protection Act (COPPA), the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA), and other emerging state privacy legal frameworks (e.g., Virginia, Colorado, Connecticut, Texas, Utah).

2. CATEGORIES OF INFORMATION COLLECTED

We collect information necessary to facilitate transaction fulfillment and platform enhancement. This includes:

  • Identifiers & Contact Information: First and last name, email address, billing address, and phone number.
  • Financial Transaction Data: All financial payments are securely funneled and executed via PCI-DSS compliant third-party payment gateways (e.g., Stripe, PayPal). The Company never stores, processes, or retains credit card numbers, CVVs, or full banking credentials on its servers.
  • Electronic Network & Device Data: Internet Protocol (IP) addresses, browser variants, device operating systems, geolocation data derived from network settings, and diagnostic interaction cookies used for fundamental platform operations.

3. CHILDREN'S PRIVACY (STRICT COPPA COMPLIANCE)

Our website and online commerce systems are constructed and directed strictly toward adults, parents, and legal guardians. While the digital materials (videos, cards, books) are designed for consumption by or interaction with young children, we do not knowingly collect, solicit, or maintain personal information directly from children under thirteen (13) years of age.

All user accounts must be established, managed, and controlled exclusively by an adult. If we discover or possess reasonable grounds to suspect that personal information belonging to an individual under 13 has been inadvertently or deceptively gathered without verified parental consent, we will execute immediate, systemic data purge routines to erase that information entirely from our active databases.

4. COMPREHENSIVE US STATE PRIVACY RIGHTS (CCPA/CPRA & OTHERS)

Depending on your respective US state of residence (including but not limited to California, Virginia, Colorado, Texas), you may possess specific legal entitlements regarding your digital profile data:

  • Right to Know and Access: The right to demand a clear accounting of the categories and specific pieces of personal information we have compiled.
  • Right to Deletion: The right to request the deletion of your personal history metrics, subject to mandatory statutory retention exemptions (such as corporate accounting, tax audits, and fraud prevention obligations).
  • Right to Correction: The right to insist on the rectifying of inaccurate or outdated personal files.
  • Right to Opt-Out of Sale or Sharing: We do not sell your personal data to marketing intermediaries or brokers, nor do we share your personal metrics for cross-contextual behavioral advertising.
  • Right to Non-Discrimination: We guarantee zero programmatic discrimination, pricing spikes, or service degradation if you decide to invoke your legal privacy rights.

To exercise any of these constitutional or state-specific rights, please submit an official verifiable request to our designated data monitoring department via email at info@upminds.pro.

5. USE AND RETENTION OF PERSONAL DATA

We process your data exclusively for the following operations: processing transaction invoices; verifying authorized product access licensing; distributing critical service notifications; optimizing website security metrics; preventing commercial fraud; and satisfying federal and international corporate tax recording compliance. We maintain personal records only for the duration required to execute these baseline professional objectives or as mandated by state legal statutes.

6. DATA SECURITY AND INTERNATIONAL DATA TRANSFERS

We employ commercial-grade cryptographic protection mechanisms and secure socket layer (SSL) protocols to protect administrative data. However, you acknowledge that no continuous network data transfer standard or digital storage infrastructure is entirely impregnable. The Company disclaims liability for unauthorized external dynamic security breaches that occur outside our direct, reasonable systemic control.

Our processing centers and computational networks operate globally. By executing a transaction on our site, you understand and explicitly consent to the transfer, storage, and cloud processing of your administrative details across international borders.