Browse Notes Request Board Support Pricing
Login Sign Up University Login

Privacy Policy

Version 3.0.0 · Last updated: 6 October 2026 · Applies to all users of AcadeX (NoteShare)

Your privacy matters to us. This policy explains what data we collect, how we use it, and your rights regarding your personal information.

1. Information We Collect

Account Information

When you register, we collect your name, email address, password (stored in encrypted form), role (student/teacher), and optionally your university (or, if it is not registered with us, an institution name you type in), phone number, city, gender, and date of birth.

Accounts Created by a University

A verified university can create or add student and teacher accounts for its members. The university provides your name and email, and can see which of its members hold Premium that it has purchased. Universities cannot see your password.

Profile Information

You may optionally provide a profile photo, bio, social media links (LinkedIn, GitHub, Twitter, Website), and online status preferences.

Google OAuth

If you sign in with Google, we receive your name, email address, and Google profile ID from Google. We do not receive your Google password.

Uploaded Content

We store PDF files you upload (stored with a trusted cloud file-hosting provider) along with details like title, subject, type, and pricing.

Payment Information

Payments are processed by Razorpay (withdrawals are verified and paid manually by AcadeX). We do not store your card, UPI, or bank account details. We store only transaction IDs, order amounts, payment status, and any coupon code applied. When a university buys Premium for members, we record which members were covered. For withdrawals, we store your UPI ID or bank account details to process payouts.

Usage Data

We collect basic usage information including note views, ratings, community posts, and meeting requests. We also log your last seen time and IP address for security purposes.

2. How We Use Your Information

To provide the service

Your data is used to operate your account, show your profile to other users, process payments, and deliver notes you purchase.

Communications

We may send you platform notifications (e.g. when someone requests a meeting, or your password was reset). We do not send marketing emails without your consent.

Security

We use IP addresses and login timestamps to detect and prevent unauthorised access and fraud.

Improvements

Aggregated, anonymous usage data helps us improve the platform's features and performance.

3. How We Share Your Information

Other Users

Your public profile (name, username, bio, profile photo, role, university, social links) is visible to other users. Your email address is never shown publicly.

Payment Processors

We share necessary payment data with Razorpay to process payments.

Cloud Services

Files you upload are stored with a trusted cloud file-hosting provider, and your account data is kept in a secure managed cloud database.

Legal Requirements

We may disclose your information if required by law, court order, or to protect the rights and safety of our users.

No Selling of Data

We do not sell, rent, or trade your personal data to any third party for marketing purposes.

4. Data Retention

Account Data

We retain your account data for as long as your account is active. If you request account deletion, we will delete your personal data within 30 days, except where retention is required by law.

Transaction Records

Payment and transaction records are retained for 7 years as required by financial regulations.

Uploaded Notes

Notes you upload remain on the platform until you delete them or your account is closed.

5. Cookies & Local Storage

Session Cookies

We use secure cookies, which scripts on the page cannot read, to keep you signed in. These expire after 7 days.

No Tracking Cookies

We do not use third-party advertising or tracking cookies. We do not use Google Analytics or Facebook Pixel.

6. Security

Passwords

Passwords are stored using strong one-way encryption. We never store them in plain text.

HTTPS

All data transmitted between your browser and our servers is encrypted via HTTPS/TLS.

Rate Limiting

Sign-in and other sensitive actions are rate-limited to prevent repeated guessing attacks.

Breach Notification

In the event of a data breach affecting your personal information, we will notify affected users within 72 hours of becoming aware of the breach.

7. Your Rights

Access

You can view and edit your personal data at any time from your Edit Profile page.

Deletion

You may request deletion of your account and personal data by raising a support ticket or emailing codobaby@outlook.com.

Data Portability

You may request a copy of your data by raising a support ticket or emailing codobaby@outlook.com.

Opt-out

You may disable online status visibility from your profile settings. You may disconnect your Google account from Edit Profile.

8. Children's Privacy

Age Requirement

AcadeX is not intended for children under 13 years of age. We do not knowingly collect personal data from children under 13. If we become aware that a child under 13 has provided us personal data, we will delete it promptly.

9. Third-Party Links

External Sites

Our platform may contain links to external websites (e.g. user-provided LinkedIn, GitHub profiles). We are not responsible for the privacy practices of those sites.

10. Changes to This Policy

Updates

We may update this Privacy Policy from time to time. We will notify users of significant changes via email or a platform notification. Continued use of AcadeX after changes constitutes acceptance of the updated policy.

11. Contact Us

Questions

If you have any questions about this Privacy Policy or how we handle your data, please raise a support ticket on the platform or email us at codobaby@outlook.com.

Grievance Officer

For privacy-related complaints (India), you may contact our Grievance Officer at codobaby@outlook.com. We will respond within 30 days.