Privacy Policy

National Center for Secure AI Education

Last updated: August 10, 2026

The National Center for Secure AI Education (“NCSAE,” “we,” “us,” or “our”) is a 501(c)(3) non-profit organization. This Privacy Policy explains how we collect, use, share, and protect personal information when you visit secureaieducation.org, sign in to the SecureAI Academy learning platform, apply to our programs, or otherwise interact with our websites and services (collectively, the “Services”).

By using the Services, you agree to the collection and use of information in accordance with this policy. If you do not agree with this policy, please do not use the Services.

1. Who We Are

NCSAE advances secure, responsible, and workforce-ready artificial intelligence through education, experiential internships, hands-on training, rapid prototyping, credentialing, and policy research. We are the data controller responsible for the personal information described in this policy. This policy applies to our public marketing pages, the login-gated SecureAI Academy platform, our application forms, and our email and community-messaging features.

2. Information We Collect

We collect information that you provide to us directly, information created as you use the Services, and a limited amount of information collected automatically.

a. Account and authentication information

When you sign in to the Academy, we use Google Sign-In. Through this process we receive your name, email address, Google account identifier, and profile picture. We create an account record for you and store your sign-in and last-login timestamps.

b. Information you provide directly

  • Contact and interest forms: your name, email address, organization, title, phone number, area of interest, and the contents of your message.
  • Program and internship applications: your name, email address, school or institution, degree program, the position or program you are applying to, and any résumé or supporting materials you submit.
  • Enrollment and applications to cohorts: the courses and cohorts you apply to or enroll in, and the status of those applications.
  • Parental / guardian consent forms: where a program involves minors, information provided on consent forms such as the student’s name, school, and grade level, and the consenting adult’s name and signature.
  • Coursework and proof of work: module completions and submissions such as project repository links (for example, GitHub URLs), titles, and notes you provide as evidence of your learning.
  • Community messages: messages you post in cohort rooms and channels, which display your name to other members of that cohort.

c. Information collected automatically

When you access the Services, our systems and hosting providers automatically record standard technical information such as your IP address, browser type and settings, device information, referring pages, and the dates and times of your requests. This information is used to operate, secure, and troubleshoot the Services.

3. Cookies and Similar Technologies

We use strictly necessary cookies to operate the Services — principally to keep you signed in and to maintain the security of your session. These cookies are essential; without them, features such as authenticated access to the Academy will not work.

We do not use the Services to serve third-party advertising, and we do not deploy cross-site advertising trackers. Most browsers let you block or delete cookies through their settings; note that blocking essential cookies may prevent you from signing in.

4. How We Use Your Information

We use personal information to:

  • Provide, maintain, and improve the Services;
  • Authenticate you and manage your account, enrollments, and applications;
  • Deliver courses and cohorts, track module completions and submissions, and issue the credentials you earn;
  • Review program and internship applications and communicate with you about their status;
  • Respond to your inquiries and send administrative or program-related emails, such as welcome messages, meeting reminders, and announcements;
  • Enable community features such as cohort rooms and channels;
  • Maintain the security and integrity of the Services, prevent fraud and abuse, and debug and monitor performance; and
  • Comply with legal obligations and enforce our terms.

We rely on your consent, the performance of our services to you, our legitimate interests in operating an education platform, and compliance with legal obligations as the bases for these uses, as applicable in your jurisdiction.

5. How We Share Your Information

We do not sell your personal information. We share it only in the following circumstances:

  • Service providers. We use trusted vendors to operate the Services, including cloud hosting and database providers, authentication providers (Google), form and applicant-tracking tools, and email-delivery providers. These providers process information on our behalf and are permitted to use it only to provide services to us.
  • Within your program. Program administrators and the instructors of a cohort you participate in may access information necessary to run that program, including your contact details, applications, and progress. Your instructors and administrators can see your contact information; your peers cannot.
  • Public credential verification. Credentials you earn are designed to be publicly verifiable (see Section 6).
  • Legal and safety. We may disclose information if required by law, regulation, legal process, or governmental request, or where necessary to protect the rights, property, or safety of NCSAE, our users, or others.
  • Business changes. If NCSAE is involved in a merger, acquisition, reorganization, or transfer of assets, information may be transferred as part of that transaction, subject to this policy.
  • With your consent. We may share information for other purposes with your consent.

6. Verifiable Credentials and Public Verification

When you complete the requirements for a certification, we may issue a digital credential that attests to your achievement. These credentials are designed to be independently verifiable: anyone holding your credential link, or a system checking it, can confirm its authenticity against our published issuer identity.

A verification page for a credential may display information such as the credential holder’s name, the certification or course earned, the issuing organization, the issue date, and the associated learning objectives or evidence you submitted. Please keep this in mind before sharing a credential link, and contact us if you have concerns about the information shown on your credential.

7. Children's Privacy (FERPA / COPPA)

Some of our programs serve middle- and high-school students. Where a program involves minors, we collect only the limited information needed to run the program — such as a student’s name, school, and grade level — and we require appropriate parental or guardian consent, or work through the student’s school, before collecting such information.

We do not knowingly collect personal information from children beyond what is described in a program’s consent materials. Parents, guardians, and schools may review, request changes to, or request deletion of a student’s information, and may withdraw consent, by contacting us using the details in Section 14. If you believe a child has provided us personal information without appropriate consent, please contact us and we will take reasonable steps to delete it.

8. Data Retention

We retain personal information for as long as your account is active or as needed to provide the Services, and thereafter for as long as reasonably necessary to comply with our legal obligations, resolve disputes, maintain the integrity and verifiability of issued credentials, and enforce our agreements. When information is no longer needed, we take reasonable steps to delete or de-identify it.

9. How We Protect Your Information

We implement administrative, technical, and organizational safeguards designed to protect personal information against unauthorized access, disclosure, alteration, and destruction. Access to personal information is limited to authorized personnel and processed through secured, server-side systems. No method of transmission or storage is completely secure, however, and we cannot guarantee absolute security.

10. Your Privacy Rights and Choices

Depending on where you live, you may have rights regarding your personal information, including the right to access, correct, update, or delete it, to object to or restrict certain processing, to request portability, and to withdraw consent where processing is based on consent. Residents of some regions (for example, the European Economic Area, the United Kingdom, and California) may have additional rights under laws such as the GDPR and the CCPA/CPRA, including the right not to receive discriminatory treatment for exercising those rights.

  • Access and correction: you may request a copy of your information or ask us to correct it.
  • Deletion: you may ask us to delete your account and associated personal information, subject to the retention needs described in Section 8.
  • Email communications: you may opt out of non-essential emails at any time by contacting us; we may still send you essential service and administrative messages.

To exercise any of these rights, contact us using the details in Section 14. We will respond consistent with applicable law and may need to verify your identity before acting on your request.

11. Third-Party Links and Services

The Services may contain links to third-party websites and services that we do not operate or control. This Privacy Policy does not apply to those third parties, and we are not responsible for their practices. We encourage you to review the privacy policies of any third-party sites you visit.

12. International Users

We are based in the United States, and the Services are operated from the United States. If you access the Services from outside the United States, you understand that your information may be transferred to, stored, and processed in the United States and other countries where our service providers operate, which may have data-protection laws that differ from those in your country.

13. Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will revise the “Last updated” date at the top of this page. Material changes may be communicated through the Services or by email. Your continued use of the Services after an update constitutes acceptance of the revised policy.

14. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or your personal information, please contact us:

National Center for Secure AI Education

A 501(c)(3) non-profit organization

Email: willie.lee@secureaieducation.org