GDPR Compliance Statement

Applies to users in the European Union and European Economic Area (EEA)

Last Updated: June 10, 2025

Our Commitment

**Cash Grow Step** is fully committed to compliance with the EU’s General Data Protection Regulation (GDPR). We are dedicated to protecting your personal data and respecting your privacy throughout your learning journey with us.

Lawful Bases for Processing

We process personal data based on:
– Your explicit consent
– Performance of our contract with you (e.g., providing access to courses)
– Compliance with legal obligations
– Our legitimate interests in providing and improving our educational services

Your GDPR Rights

As a user, you have the right to:
– Access and receive a copy of your personal data held by us
– Request correction of inaccurate data or deletion of your data
– Withdraw consent at any time, where processing is based on consent
– Object to certain processing activities
– Request data portability to another service

To exercise any of these rights, please contact us at **[email protected]**.

International Transfers

If your data is transferred outside the EU/EEA, we ensure appropriate safeguards (e.g., Standard Contractual Clauses or reliance on adequacy decisions) are in place to maintain the highest level of GDPR protections.

Data Processors

All third-party vendors (e.g., learning management systems, payment processors, email services) we engage are carefully vetted for GDPR compliance and operate under strict data processing agreements to protect your information.

Security Measures

We implement robust security controls to protect your data, including:
– Encryption of data at rest and in transit
– Strict access controls and multi-factor authentication
– Regular security audits and vulnerability scans
– Secure backups and comprehensive disaster recovery planning

Questions & Contact

For any GDPR-related inquiries, questions about your data, or to lodge a complaint, please email us directly at **[email protected]**.