Privacy Policy
Last updated 2026-02-02
Scope
This Privacy Policy explains how ForestRoot Academy collects, uses, and stores personal data when you visit data-portal.one, register for courses, or contact our newsroom.
It applies to learners, corporate coordinators, and visitors who submit forms. If you interact with us only through your employer’s account, your employer may hold additional records we never see.
Use of data
We use contact details to deliver schedules, invoices, and security notices. We use attendance and assessment data to operate labs, issue certificates, and improve exercises.
We do not sell personal data. We do not use automated decision-making that produces legal effects about individuals.
Third parties
We rely on infrastructure vendors for email delivery, video hosting, and ticketing. Those vendors process data under instructions and contracts that require confidentiality and security measures.
If we change a subprocessor in a way that increases risk, we will describe the change in our editorial changelog and update this section’s date.
Your rights
Depending on your situation, you may request access, correction, deletion, or restriction of certain personal data. You may also object to processing that is not strictly necessary to perform our contract with you.
We verify requests to prevent impersonation. Complex requests may take up to thirty days where permitted by law.
Data collected
We collect identifiers (name, email, phone if provided), professional context (employer, role), billing references, technical logs (IP address, browser type), and content you submit through forms or forums.
Optional profile fields are clearly labeled; leaving them blank does not block purchases unless a corporate contract requires them.
Contact
Questions about privacy can be sent to welcome@data-portal.one with “Privacy” in the subject line. Postal correspondence should use the Gangnam-gu address published in the site footer.
Retention
We retain transactional records for seven years where tax and commercial law in Korea expects availability. Forum posts may be retained until you request deletion, unless they are part of an unresolved dispute.
Backup systems may hold deleted data for a short technical window before overwriting cycles complete.
Security measures
We enforce access controls on internal tools, require multi-factor authentication for administrators, and segment production data from lab sandboxes. No security program is perfect; we investigate credible reports promptly.
International transfers
If we transfer personal data outside Korea, we rely on appropriate safeguards such as standard contractual clauses or vendor certifications, and we document the purpose of each transfer.
Children
Services are intended for working professionals. We do not knowingly collect data from children under fourteen. If you believe a child enrolled improperly, contact us and we will delete associated records where feasible.
Contact: welcome@data-portal.one