Page: Privacy Policy
/privacy Access: Public Priority: P1 Test Script: scripts/page-tests/test-PRIV.sh Components: src/components/marketing/index.ts Purpose
Legal requirement. Explain how Peerloop collects, uses, and protects user data. Build trust through transparency.
Connections
Incoming (users arrive from)
| Source | Trigger | Notes |
|---|---|---|
| HOME | Footer 'Privacy Policy' link | Primary entry |
| SGUP | "Privacy Policy" link in terms checkbox | During registration |
Outgoing (users navigate to)
Sections
Header
- • Title: Privacy Policy
- • Last updated date
- • Effective date
Introduction
- • Who we are
- • Scope of this policy
- • Commitment to privacy
Information We Collect
- • Account information
- • Payment information
- • Usage data
- • Session recordings (for tutoring)
- • Communications
How We Use Information
- • Providing services
- • Processing payments
- • Communication
- • Improving the platform
- • Legal compliance
Information Sharing
- • With Student-Teachers/Creators
- • With service providers
- • Legal requirements
- • Business transfers
Data Retention
- • How long we keep data
- • Deletion requests
Your Rights
- • Access your data
- • Correct your data
- • Delete your data
- • Data portability
- • Opt-out of marketing
Cookies
- • Types of cookies used
- • How to manage cookies
Security
- • How we protect data
- • Encryption
- • Access controls
Children's Privacy
- • Age restrictions
- • Parental consent
International Transfers
- • Where data is processed
- • Safeguards in place
Changes to Policy
- • How we notify of changes
- • Version history
Contact
- • Privacy questions contact
- • Data protection officer info
User Stories Fulfilled
- • US-G030
- • US-G031
States & Variations
| State | Description |
|---|---|
| Default | Full policy with table of contents |
Mobile Considerations
- • Table of contents as sticky sidebar on desktop, collapsible dropdown on mobile
- • Smooth scroll navigation to sections
Notes
- • Legal page required before launch
- • GDPR/CCPA compliance considerations
- • Must be reviewed by legal counsel before production
Features
- ✓ Privacy content (12 comprehensive sections)
- ✓ Table of contents (sticky sidebar on desktop, collapsible dropdown on mobile)
- ✓ Last updated date
- ✓ Effective date
- ✓ Smooth scroll navigation to sections
- ✓ Related documents links (Terms, Contact)
- ✓ Contact information with email link
- ○ Analytics events (page_view, section_view) Not implemented
Interactive Elements
Buttons
| Element | Component | Action | Status |
|---|---|---|---|
| TOC Toggle (mobile) | PrivacyPolicyPage | Opens/closes mobile TOC dropdown | active |
| TOC Section Links (mobile) | PrivacyPolicyPage | Smooth scrolls to section | active |
| TOC Section Links (desktop) | PrivacyPolicyPage | Smooth scrolls to section | active |
Links
Internal
| Element | Target | Status |
|---|---|---|
| Terms of Service | /terms | active |
| Contact Us | /contact | active |
External
| Element | Target | Status |
|---|---|---|
| Privacy email (Your Rights section) | mailto:privacy@peerloop.com | active |
| Privacy email (Contact section) | mailto:privacy@peerloop.com | active |
Target Pages Status
| Target | Page Code | Status |
|---|---|---|
/terms | TERM | PageSpecView |
/contact | CONT | Implemented |
Verification Notes
Verified Components
- ✓
src/components/marketing/PrivacyPolicyPage.tsx
Screenshots
- 📷
PRIV-2026-01-08-19-25-17.png- Full page view showing all sections and TOC
Notes
- • All interactive elements are functional
- • TOC navigation works correctly on both mobile and desktop
- • /terms target page is PageSpecView placeholder (TERM not yet implemented)
- • Analytics events from JSON spec not implemented
Test Coverage
scripts/page-tests/test-PRIV.sh tests/pages/privacy.test.tsx ○ tests/components/marketing/PrivacyPolicyPage.test.tsx ✓ Discrepancies (Spec vs Implementation)
As of 2026-01-08
Planned but Not Implemented
| Feature | Original Spec | Status | Priority |
|---|---|---|---|
| Analytics events | page_view on load, section_view on scroll | Not implemented | Low |
Implemented Differently
| Feature | Original Spec | Reality | Note |
|---|---|---|---|
| Sections collapsible | Sections collapsible for easier reading | Scroll-based navigation with smooth scroll | Acceptable - cleaner UX with TOC navigation |
Privacy Policy
1. Introduction
Peerloop LLC ("Peerloop," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website, mobile application, and services (collectively, the "Platform").
By using the Platform, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies, please do not use the Platform.
2. Information We Collect
Information You Provide
- Account Information: Name, email address, password, profile photo, and bio when you create an account.
- Payment Information: Credit card details and billing address when you make purchases. Payment processing is handled by Stripe; we do not store full card numbers.
- Profile Information: Skills, certifications, availability, and other information you add to your profile.
- Communications: Messages you send to other users, support requests, and feedback you provide.
Information Collected Automatically
- Usage Data: Pages visited, features used, session duration, and actions taken on the Platform.
- Device Information: IP address, browser type, operating system, and device identifiers.
- Session Data: Video session metadata (duration, participants) for quality assurance. Session video/audio is not recorded or stored by Peerloop.
- Cookies: See our Cookies section below for details.
3. How We Use Your Information
- Provide Services: Enable course enrollment, tutoring sessions, payments, and communication between users.
- Process Payments: Complete transactions and pay Student-Teachers and Creators.
- Communicate: Send transactional emails (receipts, session reminders), respond to inquiries, and provide customer support.
- Improve the Platform: Analyze usage patterns to improve features, fix bugs, and develop new services.
- Marketing: Send promotional content (with your consent) about new courses and features. You can opt out anytime.
- Legal Compliance: Comply with applicable laws, prevent fraud, and enforce our Terms of Service.
4. How We Share Your Information
With Other Users
When you book a session, your name, profile photo, and relevant course information are shared with your Student-Teacher. Creators see aggregate data about students in their courses.
With Service Providers
We share information with third-party service providers who help us operate the Platform, including:
- Stripe for payment processing
- Stream.io for activity feeds
- PlugNmeet for video sessions
- Resend for email delivery
- Cloudflare for hosting and security
For Legal Reasons
We may disclose information if required by law, subpoena, or court order, or if we believe disclosure is necessary to protect our rights, prevent fraud, or ensure safety.
Business Transfers
If Peerloop is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.
5. Data Retention
We retain your personal information for as long as your account is active or as needed to provide services. After account deletion, we retain certain data for up to 7 years for legal and tax purposes. Anonymized analytics data may be retained indefinitely.
6. Your Privacy Rights
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate or incomplete data.
- Deletion: Request deletion of your personal data (subject to legal retention requirements).
- Portability: Request your data in a machine-readable format.
- Opt-Out: Unsubscribe from marketing emails at any time.
- Do Not Sell: We do not sell your personal information. California residents can exercise CCPA rights by contacting us.
To exercise any of these rights, email us at privacy@peerloop.com.
8. Security
We implement industry-standard security measures including:
- Encryption of data in transit (TLS) and at rest
- Regular security audits
- Access controls and authentication
- Secure payment processing through Stripe
However, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security.
9. Children's Privacy
The Platform is not intended for children under 13 (or 16 in the EU). We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.
10. International Data Transfers
Your information may be transferred to and processed in the United States and other countries where our service providers operate. We ensure appropriate safeguards are in place for international transfers, including Standard Contractual Clauses where required.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or a prominent notice on the Platform. The "Last Updated" date at the top indicates when the policy was last revised.
12. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us:
Email: privacy@peerloop.com
Address: Peerloop LLC, 123 Learning Lane, San Francisco, CA 94105
For EU residents, you may also lodge a complaint with your local data protection authority.