Last updated: August 01, 2026
As a cyber security platform, we heavily prioritize data minimization. We collect your name, email, and authentication data directly necessary to provision your Sectrox account. Payment data is securely tokenized via Razorpay and is never stored on our bare-metal architecture.
Your learning telemetry (scores, course progression, lab keystrokes during simulations) is utilized strictly to provide gamification XP and to track your performance against the syllabus. We do not sell this telemetry to 3rd party brokers.
We use heavily encrypted, strictly necessary cookies to keep your authentication session alive (`PHPSESSID`) and to protect against Cross-Site Request Forgery (CSRF). There are no tracking pixels injected into the active dashboard.
All data at rest is encrypted via AES-256 block ciphers. All data in transit relies on TLS 1.3 handshakes. If you discover a vulnerability, please reach out via our bug bounty protocol.
If you have questions regarding this policy, email privacy@sectrox.com.