Skill-tember Sale is live now!
Ends in
00
D
00
H
00
M
00
S

Sale has now ended.

Claim Up to 50% Off
banner close
Sales Link
Learn
Courses
All Courses
Most Popular
AWS Solutions Architect Associate
Associate
48 Hours
Introduction to OpenAI
Beginner
6 Hours
Certified Jenkins Engineer
Associate
20 Hours
Certified Kubernetes Security Specialist
Professional
15 Hours
Rust Programming
Associate
9 Hours
Learning Paths
All Learning Paths
By Topics
DevOps
15 Courses
Artificial Intelligence
19 Courses
Kubernetes
Kubernetes
20 Courses
AWS
10 Courses
Azure
5 Courses
By Career Tracks
DevOps Engineer
17 Courses
Cloud Engineer
21 Courses
Kubernetes Administrator
12 Courses
Site Reliability Engineer
14 Courses
Platform Engineer
12 Courses
Certifications
Explore All
Preparation Courses
Golden Kubestronaut
20 Courses
Kubestronaut
10 Courses
Cloud
18 Courses
Linux
7 Courses
Certified Kubernetes Administrator
5 Courses
Practice
Hands-on Labs
Enhance your practice with interactive hands-on labs
All Labs
Most Popular
Kubernetes
Kubernetes
Deploy & Scale Applications
Docker
Build & Run Containerized Applications
DevOps
Master Foundation Skills
Git
Master Version Control & Collaboration
Artificial Intelligence
Build with LLMs  & AI Frameworks
Terraform
Write & Deploy Infrastructure as Code
Linux
Practice Linux Administration & Scripting
Python Programming
Master Python for DevOps & Automation
Sandbox Environments
Playgrounds offer no-cost, hands-on environments for real-world practice
All Playgrounds
Most Popular
AWS
Launch Real AWS Services
Claude Code
Build with Instant Claude Access
KodeKey
Explore All-in-one AI Access
CI/CD
Experiment With Automated Pipelines
By Category
Artificial Intelligence
Experiment with LLMs & Prompts
Cloud
Experiment with LLMs & Prompts
Linux
Practice Linux Without Installation
Kubernetes
Kubernetes
Deploy Multi-Cluster Environments
Challenge
Kodekloud Engineer100 Days Of DevOps100 Days Of Cloud100 Days Of MLOps
KodeKloud Engineer
Hands-on, real-world challenges to build job-ready skills
Start Real Tasks. Enroll
100 Days of DevOps
100 hands-on tasks to master DevOps
Start DevOps Journey. Free
100 Days of Cloud
100 hands-on tasks to master AWS & Azure
Start Cloud Journey. Free
100 Days of MLOps
100 hands-on tasks to master MLOps
Start MLOps Challenge. Free
PricingFor IndividualsFor Business
Resources
BlogDiscord CommunityDiscussion ForumsAll Cohorts
Blog
Learn with practical DevOps, Cloud and AI guides and best practices
Popular Topics
Kubernetes
Kubernetes
Cloud
Linux
Explore Guides
Discord Community
Network and connect with 50,000+ active users and get instant help.
Popular Channels
#support-help
Build with LLMs  & AI Frameworks
#study-buddy
Study, ask and learn with others
#hiring-board
Explore DevOps & Cloud open positions
Join Community
Discussion Forums
Connect with your peers to share knowledge and ask questions
Trending
exam-doubt
Ask your exam related queries.
discussions
Ask, share, and discuss.
Kubernetes
Kubernetes
Learn and share.
Ask a Question
Ongoing Cohorts
Connect with your peers to share knowledge and ask questions
Popular Cohorts
Golden Kubestronaut
Elite cohort for advanced Kubernetes learners.
Kubestronaut
Earn all 5 certifications and become a Kubestronaut.
AWS AI Practitioner
Master AWS AI and earn your certification.
All Cohorts
Sign inSign up
A
User Name
user@kodekloud.com
Standard
Current Plan
Dashboard
KodeKloud dashboard
Log out
Sign inSign up
Start Free

Privacy Policy

Last Updated: 31 August 2026

This Privacy Policy replaces all earlier versions. Previous versions are available on request from privacy@kodekloud.com.

Zaurac Technologies Pte Ltd (“KodeKloud”, “we”, “us” or “our”) is a company providing an online learning proprietary platform called KodeKloud, accessible at: https://kodekloud.com (“E-Learning Platform” or “Website”). The E-Learning Platform hosts a variety of self-paced and on-demand courses within the fields of Development Operations (DevOps) and Information Technology Administration. We are registered in Singapore, with a corporate registered address at Robinson Road #08-01A, Singapore 048545. We own, operate and manage the Website, mobile applications and all the services provided therein (“Service”).

KodeKloud is the data controller of your personal data processed for purposes set forth herein and, unless expressly specified otherwise, is responsible for the collection, use, disclosure, retention, and protection of your personal data in accordance with our privacy standards, this Privacy Policy, and applicable laws (including the General Data Protection Regulation (EU) 2016/679 (“GDPR”)).

Our privacy policy (“Privacy Policy”) is designed to inform you about our policies and procedures for collecting, using, retaining, processing, transferring, and disclosing your information in connection with your use of the Website and the Service. It also explains what data we collect when you use the Service, why we collect the data, how it is used, and your rights and choices.

This Privacy Policy applies to your use of our website at kodekloud.com and our mobile applications. Some data practices described below – such as cookies used for marketing and interest-based advertising – apply only to our website. Our mobile applications (including the KodeKloud iOS app) do not display third-party advertising and do not use your data for tracking across apps and websites owned by other companies.

This Privacy Policy applies to all users of the Website and Service (together “you” or “Users”).

This Website may include links to third-party websites, plug-ins, and applications. Clicking on those links or enabling those connections may allow third parties to collect or share data about you. We do not control these third-party websites and are not responsible for their privacy statements. When you leave our Website, we encourage you to read the privacy policy of every website you visit.

1. About this Privacy Policy

This Privacy Policy explains how we process your personal data. Our legal bases for processing are described in Section 6. Where we require your consent to process your personal data, we will ask for your consent to the collection, use, and disclosure of your personal data as described further below. We may provide additional “just-in-time” disclosures or information about the data processing practices of a specific Service. These notices may supplement or clarify our privacy practices or may provide you with additional choices about how we process your data.

Our Privacy Policy applies to all Users as defined in our standard Terms, unless the context indicates otherwise. Our Terms of Service are accessible at https://kodekloud.com/terms-of-service/

If you do not agree with or you are not comfortable with any aspect of this Privacy Policy, you should immediately discontinue access or use of our Website and Service.

2. Definitions

“Personal data” (in the context of this Privacy Policy) means any information identifying or describing an identifiable individual, including, but not limited to, information relating to their name, age, gender, email address, username, IP address and any identifying number, address or contact information of the individual.

The following terms “controller”, “processor”, “data subject”, “processing activity/ies”, “pseudonymisation”, “cross-border processing of personal data”, “supervisory authority” used in this document shall have the same meaning as in the GDPR unless relevant to a different law or regulation.

Any other terms which are used throughout this Privacy Policy shall have their respective meanings, as defined in our standard Terms, unless the context indicates otherwise.

In this Privacy Policy, “EEA” means the European Economic Area; “UK GDPR” means the General Data Protection Regulation as it forms part of the law of the United Kingdom; “sub-processor” means a third party we engage to process personal data on our behalf; and “PDPA” means the Singapore Personal Data Protection Act 2012.

3. Information we collect

Personal data has the meaning given in Section 2. It does not include data where the identity has been removed (anonymous data).

We may collect, use, store and transfer different kinds of personal data about you which we have grouped together as follows:

  • Identity data includes your full name, addresses and date of birth;
  • contact data includes your and your company’s name, physical address, email address, and telephone numbers;
  • transaction data includes details about payments to and from you and other details of services you have purchased from us;
  • technical data includes internet protocol address, your login data, browser type and version, time zone setting, browser plug-in types and versions, operating system and platform, information about the visits, including the full Uniform Resource Locators (URL), clickstream to, through and from this Website (including date and time), products viewed or searched for, page response times, download errors, length of visits to certain pages, Website interaction information (such as scrolling, clicks, and mouse-overs), methods used to browse away from the Website, and any phone number used to call our customer service number;
  • profile data includes your username and password, purchases or orders made by you, your interests, preferences, feedback, survey responses and inferred data regarding your skill level and learning progress generated by our systems;
  • usage data includes information about how you use our Website and Service, such as app launches within our Service, including browsing history, search history, product interaction, crash data, performance and other diagnostic data, and other usage data;
  • fraud prevention information includes data used to help identify and prevent fraud, including a device trust score;
  • location data in case of using a location-enabled device;
  • marketing and communications data includes your preferences in receiving marketing from us and your communication preferences;
  • other information you provide to us includes details such as the content of your communications with us.
  • AI interaction data includes the content of prompts, queries, code, files or other inputs you submit to our AI-powered features (including KodeKey, AI Assistant, AI Tutor, Live Assist, and AI Playgrounds such as Claude Code, OpenAI Codex, Qwen Coder, Moonshot, and others), the responses generated, associated session and conversation identifiers, token usage, model used, and (for Live Assist) recent terminal command history captured to provide contextual assistance.

We also collect, use and share aggregated data such as statistical or demographic data for any purpose. Aggregated data could be derived from your personal data but is not considered personal data in law as this data will not directly or indirectly reveal your identity.

We do not seek to collect special categories of personal data about you (this includes details about your race or ethnicity, religious or philosophical beliefs, sex life, sexual orientation, political opinions, trade union membership, information about your health, and genetic and biometric data), and we do not seek to collect information about criminal convictions and offences. We do not use any of these categories of data to make decisions about you, we do not use AI or other technologies to infer emotion or biometric characteristics from you, and we do not build profiles based on them.

Because our AI features and Playgrounds accept free-text prompts, files and code, it is technically possible for you to submit special category data — inside a log file, a sample dataset or a screenshot, for example. We ask you not to. We operate automated filters that seek to block such content before it reaches the model, but these are best-effort and will not catch everything. Content that passes through is retained for the periods set out in Section 9 and then deleted automatically. We do not use it to train models or profile individuals; a limited number of authorised personnel may access it for troubleshooting, security and abuse investigation. If you believe you have submitted special category data, contact privacy@kodekloud.com and we will delete it where technically feasible, unless required by law to retain it. 

Important note on AI features: When you use our AI features, the inputs you submit are transmitted to and processed by third-party AI model providers (see Section 8). You should not submit confidential company information, source code from proprietary systems, real credentials (such as API keys, passwords, or contents of .env files), personal data of third parties, or other sensitive information into our AI features or Playgrounds.

Personal data about other people. If you submit personal data about someone else into our AI features or Playgrounds — a colleague's name in a configuration file, or customer records in a sample dataset — it is processed to generate your response and retained for the periods set out in Section 9, where a limited number of authorised personnel may access it for troubleshooting, security and abuse investigation. We will not use it to build a profile of that person and we will not use it to contact them. Because we have no relationship with that person, and no practical way to give them the information Article 14 GDPR requires, we ask you not to submit third-party personal data at all. If you are using the Service in the course of your employment, your employer decides as controller whether submitting such data is lawful (see Section 16).

When you sign-in via a third party (Google, Facebook, LinkedIn), we do not store any of your passwords.

You are not required to provide the requested personal data. However, if you choose not to do so, we will not be able to provide you with our products or services or respond to requests you may have. Thus, where we need to collect personal data by law, or under the terms of a contract we have with you, and you fail to provide that data when requested, we may not be able to perform the contract we have or are trying to enter into with you.

4. Additional information for mobile app users

When you use our mobile applications (such as the KodeKloud iOS or Android apps), we collect and use the following categories of information in addition to the data listed above:

  • Account data (such as your name, email address and profile information) so that you can sign in and sync your learning progress.
  • Learning activity (courses and lessons viewed, completion status, timestamps) so we can sync your progress between web and mobile and improve the learning experience.
  • Device and app data (device model, operating system version, app version, crash logs and basic diagnostics) to maintain security, troubleshoot issues and improve performance.

Our mobile applications do not collect your precise GPS location, your contacts, or your photos, microphone or camera content, unless we clearly explain the purpose and ask for your permission in the app.

For our iOS app, we do not use your data for “tracking” as that term is defined by Apple (linking your data or device identifiers with data from other companies’ apps, websites or offline sources for targeted advertising, or sharing it with data brokers). Therefore, our iOS app does not display third-party ads and does not request the App Tracking Transparency (ATT) permission. If we ever decide to use your data for tracking in this sense, we will update this Privacy Policy and request your permission through the ATT framework first.

5. How we collect information

We use different methods to collect data from and about you including through:

  • Direct interactions. You may give us your personal data by using our live chat, filling in forms or by corresponding with us by post, phone, email or otherwise. This includes personal data you provide when you:
    • apply for our Service;
    • create a User Account on our Website;
    • subscribe to our Service or publications;
    • request marketing to be sent to you; or
    • give us feedback or contact us.
  • Automated technologies or interactions. As you interact with our Website, we will automatically collect technical data about your equipment, browsing actions and patterns. We collect this personal data by using cookies and other similar technologies. We may also generate data about you via our Artificial Intelligence (AI) and Machine Learning (ML) algorithms which analyze your performance on the platform to personalize your learning path.
  • Third parties, which includes, but is not limited to Company’s sub-contractors in technical, payment services, advertising networks, search information providers, credit reference agencies, or other third parties who may provide information, for the purpose of fulfilling the Service or to comply with legal requirements. Examples of the personal data we receive about you from various third parties include:
    • technical data from analytics providers and search information providers.
    • contact and transaction data from providers of technical, payment and delivery services.

Where you have given your consent, we and our advertising partners may use cookies and similar technologies to understand your interests and to show you advertising for our courses on other websites. Section 7 explains how to give, refuse and withdraw that consent.

We do not use identity-resolution or data-matching services to link your activity on our Website to your email address or postal address for marketing purposes if you are located in the EEA or the United Kingdom.

6. How we store and use your information

We use the gathered personal data to provide you with our Service and to ensure our legitimate interests. More specifically, we will use your personal data for the following purposes:

Providing our E-Learning Platform and Service

We use User Account-related data provided by Users in connection with the sign-up, use, or support of the User Account (such as usernames, email address and billing information) to provide you with access to the Service, contact you regarding your use of the Service, or to notify you of important changes to the Service. Such use is necessary for the performance of the contract between you and us (Legal Basis: Performance of Contract).

Provide Information; Respond to Requests

When you ask for information about the Service (for example, when you request a demo or ask us to send you offers or price information), we will use your contact information to respond to your request (Legal Basis: Pre-Contractual Necessity or Legitimate Interest).

Sending Marketing Communications

Where required by applicable law (for example, if you are an EU data subject), we will only send you marketing information by email, or contact you by phone, if you consent to us doing so at the time you provide us with your personal data (Legal Basis: Consent).

When you provide us with your consent to be contacted for marketing purposes, you have the right to withdraw your consent at any time by following the instructions to “opt-out” of receiving marketing communication in each marketing email we send you. In addition, if at any time you do not wish to receive future marketing communications or wish to have your name deleted from our mailing or calling lists, please contact us at privacy@kodekloud.com.

Please note that if you opt-out from marketing communications, we may still contact you regarding issues related to our Service and to respond to your requests.

For our Legitimate Business Interests

We use data relating to your use of and interaction with the Service for certain legitimate business interests, which are the following:

  • to personalize and improve your access to and use of the Service (including to increase our Service’s functionality, product features, and user-friendliness);
  • to conduct analytics and report on industry trends on content usage and performance;
  • to meet our corporate and social responsibility objectives;
  • for internal business/technical operations, including troubleshooting, data analysis, testing, to prevent fraud or criminal activity, misuses of our products or services and ensure the security of our IT systems, architecture, and networks.

This use of your personal data is necessary for our legitimate interests in understanding how our services are being used by you and to improve your experience on it.

Artificial Intelligence (AI), algorithms and profiling

We utilize Artificial Intelligence (AI) and Machine Learning (ML) technologies to enhance your learning experience. Specifically, we process your Usage Data and Profile Data to:

  • Analyze your skill gaps and learning progress;
  • Recommend specific courses, labs, or content tailored to your proficiency level (Personalization); and
  • Generate automated feedback on specific technical tasks.

Some of this constitutes “profiling” under the GDPR. None of it involves automated decision-making of the kind described in Article 22 GDPR. Our AI features produce feedback, recommendations and suggested learning paths; they do not decide whether you pass an assessment, whether a certificate is issued to you, or whether you may access any part of the Service. Decisions of that kind, and any decision to suspend or close an account, are taken by our staff. All AI-generated feedback and recommendations are advisory and you are free to disregard them.

Legal Basis for AI Processing: Where AI is used to deliver the Service you have subscribed to (for example generating feedback on a lab), we rely on Performance of Contract. For personalization and recommendations, we rely on Legitimate Interest. You have the right to object to this profiling as detailed in Section 11.

Any information stored on KodeKloud, or any third-party service that we use, is encrypted and kept securely on the cloud. Access to such information, even at KodeKloud, is done through the best practices while keeping privacy and security of the information.

Generative AI Features (KodeKey, AI Assistant, AI Tutor, AI Playgrounds)

In addition to internal ML algorithms, we offer generative AI features powered by large language models. These include:

  • AI Assistant: real-time guidance during lab sessions.
  • AI Tutor and Live Assist: personalized learning paths, on-demand content generation, and real-time feedback during exercises.
  • KodeKey: a managed API key service that lets you access supported AI models (including Anthropic Claude, OpenAI, Google Gemini, and others) within your KodeKloud subscription, including integrations such as Claude Code.
  • AI Playgrounds: hosted environments for experimenting with specific AI tools, including but not limited to Claude Code, OpenAI Codex, Qwen Coder, Moonshot (Kimi), MCP, n8n, AWS AI, and Azure OpenAI.

When you use these features, the following data is processed:

  • The prompt, query, code or input you submit;
  • For AI Tutor and Live Assist: your profile data (skill level, learning approach, preferred language), your learning history (lessons and courses completed), and, where relevant to the task, your recent terminal command history;
  • The model response generated.

This data is transmitted to our AI model providers (described in Section 8) for the sole purpose of generating a response. We do not use your AI interaction content to train our own AI models, and we instruct our providers, where possible, not to use this content to train theirs. Where provider defaults already restrict training use (for example, Anthropic and OpenAI’s API tiers), we rely on those defaults.

Legal Basis for Generative AI Processing: We rely on Performance of Contract where the AI feature is part of the Service you have subscribed to. For optional personalization (such as profile-aware AI Tutor responses), we rely on Legitimate Interest, balanced against your right to object.

7. Cookies

When browsing the Website (and not the mobile application), we use cookies and similar tracking technologies to collect and use personal data about you and, where you have consented, to serve interest-based advertising. Cookies are small text files that are placed on your computer by websites that you visit. They are widely used in order to make websites work, or work more efficiently, as well as to provide information to the owners of the site.

Cookies are typically stored on your computer’s hard drive. Information collected from cookies is used by us to evaluate the effectiveness of our Website, analyze trends and administer our Service. The information collected from cookies allows us to determine such things as which parts of our Website are most visited and what difficulties our users may experience in accessing our Website. With this knowledge, we can improve the quality of your experience by recognizing and delivering more of the most desired features and information, as well as by resolving access difficulties. We also use cookies and/or a technology known as web bugs or clear gifs, which are typically stored in emails to help us confirm your receipt of, and response to, our emails and to provide you with a more personalized experience when using our Website.

We may use one or more third-party service providers, to assist us in better understanding the use of our Website. Our service provider(s) will place cookies on the hard drive of your computer and will receive information that we select that will educate us on such things as how visitors navigate around our Website. Our service provider(s) will analyze this information and provide us with aggregate reports. The information and analysis provided by our service provider(s) will be used to assist us in better understanding our visitors’ interests in our Website and the Service and how to better serve those interests. The information collected by our service provider(s) may be linked to and combined with information that we collect about you while you are using our Service. Our service provider(s) is/are contractually restricted from using the information they receive from our Website for any other purpose than to assist us.

Your cookie choices

Cookies that are strictly necessary for the Website to work — to keep you signed in, to route your session, or to remember the cookie choices you have made — are set without your consent, because you have asked for a service we cannot deliver without them.

Every other cookie and similar technology, including those used for analytics, personalisation and interest-based advertising, is set only if you consent. When you first visit the Website we show you a consent banner that lets you accept all, reject all, or choose category by category. Refusing is as easy as accepting, and we set no non-essential cookie before you have made your choice.

You can change or withdraw your consent at any time, and just as easily, through the cookie settings link in the footer of every page. Withdrawing your consent does not affect the lawfulness of any processing we carried out before you withdrew it.

We do not treat your continued use of the Website, scrolling, or your browser configuration as consent.

8. How we disclose your information

We do not disclose or sell your information to third parties or other websites without your consent, except to those necessary to deliver services for us and except as required by law. These third parties and their functions are listed below.

Employees, Service Providers, Business Partners, and Others

We will disclose your personal data to our employees as necessary to deliver the Service, and we may use certain third-party companies and individuals to help us provide, support, analyze, and improve the Service (such as providers of data storage services, maintenance services, payment processing, database management, digital business services, providers of analytics services who help us understand how you use and interact with the Service, providers of digital advertising services, providers of CRM, marketing, sales software solutions, and providers of AI/Large Language Model infrastructure). These third parties may have access to your personal data for the purpose of performing these tasks on our behalf and pursuant to our instructions.

Where we make use of third-party service providers to help us provide the Service to you, including for the purposes of retrieving or delivering information, records, notifications or other messages to you or any users or for hosting or providing any component of our Service, we require such third parties to maintain the confidentiality of any personal data we provide to them for these purposes. Third-party service providers are contractually bound to protect and use such information only for the purposes for which it was disclosed, except as otherwise required or permitted by law. We ensure that such third parties will be bound by terms complying with applicable law.

Our mobile applications do not share personal data with third parties for their own advertising or marketing purposes, and we do not permit third parties to use data from our mobile apps to track you across other companies’ apps or websites.

Sub-Processors for AI and Cloud Services

To deliver our AI features and cloud-based Playgrounds, we share specific categories of your data with certain sub-processors. Each of these sub-processors is contractually bound to process your data only on our instructions and consistent with this Privacy Policy. The categories of recipients we use, and the countries in which they process personal data, are set out below.

A current list naming each sub-processor, the service it provides and the countries in which it processes personal data is available upon request through privacy@kodekloud.com.

International Transfers

As Zaurac Technologies Pte Ltd is headquartered in Singapore, your personal data will be transferred to, and processed in, Singapore and potentially other jurisdictions where our service providers are located. Singapore has not yet been recognized by the European Commission as providing an “adequate” level of data protection.

Where we transfer personal data out of the EEA or the United Kingdom, we assess each recipient and rely on one of the following:

  • Adequacy decisions. Where the recipient is in a country that the European Commission (or, for UK transfers, the UK government) has decided offers an adequate level of protection, we rely on that decision. This includes recipients in the United States that are certified under the EU–US Data Privacy Framework and, for UK transfers, its UK Extension.
  • Standard Contractual Clauses. For any recipient not covered by an adequacy decision — including our own Singapore headquarters — we put in place the European Commission-approved Standard Contractual Clauses, together with the UK International Data Transfer Addendum where UK data is involved. We carry out and document a transfer risk assessment before relying on them, and we apply additional technical and organisational measures where that assessment shows they are needed. We do not rely on the derogations in Article 49 GDPR for routine or repeated transfers.

AI and Playground features. If you are located in the EEA or the United Kingdom, prompts you submit to our AI features are routed only to model providers and regions that we have identified in advance and covered by an adequacy decision or by Standard Contractual Clauses. AI models that route to jurisdictions we cannot cover on that basis — currently those hosted in China — are not available to learners in the EEA or the United Kingdom, and we configure our AI gateway to prevent that routing. We publish the current routing position on our sub-processor page.

We engage only with reputed third-party service providers who have security and privacy policies and procedures providing at least the same level of protection as we do ourselves.

Compliance with Laws and Law Enforcement Requests

We may disclose to any competent law enforcement body, regulatory body, government agency, court or other third party the data stored in your User Account and information about you that we collect when we have a good faith belief that disclosure is reasonably necessary to (a) comply with a law, regulation, or compulsory legal request; (b) protect the safety of any person from death or serious bodily injury; (c) prevent fraud or abuse of KodeKloud or its Users; (d) protect KodeKloud’s legal rights; (e) report suspected illegal activity; or (f) investigate violations of this Privacy Policy or our Terms of Service.

Business Transfers

If we are involved in a merger, acquisition, consolidation, liquidation, reorganization, bankruptcy, or sale of all or a portion of our assets, your information may be transferred as part of that transaction, but we will notify you of any change in control or use of your personal data or Content, or if either become subject to a different Privacy Policy. We will notify you either by sending you an email or posting a notice on our Website. We will also notify you of choices you may have regarding the information.

9. How we delete your information

If you are a registered User, you may review, update or correct the personal data in your User Account. If you would like to delete your User Account, please contact us as indicated below. If your personal data has been shared outside of our Service by other Users or any third parties and not directly by us, we cannot change or delete this personal data out of our control.

We will retain your personal data for as long as is necessary for the purposes set out in this Privacy Policy or for our Service, for as long as your User Account is active, and after it is closed only for as long as we need it to comply with a legal obligation, to resolve a dispute, or to establish, exercise or defend a legal claim. If you wish to delete your User Account please contact us at privacy@kodekloud.com and raise a formal request. Please note that we may retain, use or disclose your information as necessary to comply with our legal obligations, to resolve disputes or enforce our agreements, and legitimate business interest (such as for analytics purposes, safety, and security).

We retain your personal data only for as long as necessary to fulfill the purposes we collected it for, including for legal, accounting, or reporting requirements. Specific retention periods depend on the type of data and purpose.

Retention of AI Interaction Data

AI interaction data is retained as follows:

  • KodeKey, Claude Code, and AI Playground requests routed via LiteLLM: request metadata (model used, token counts, timestamps, request IP, user identifier) is stored in our PostgreSQL database for billing, quota enforcement, fraud prevention, and service improvement. Prompt and response content is not retained in this logging system. We retain this metadata for 90 days, after which it is deleted.
  • AI Tutor and Live Assist conversations: the full conversation, including any terminal command history captured for contextual assistance, is stored in our MongoDB conversation database to allow you to resume prior sessions. We retain these conversations for 12 months from your last interaction with the conversation.

Where you exercise your right to deletion under Section 11, we will purge AI interaction data associated with your user account from both systems within one month of a verified request, except where retention is required for legal compliance, dispute resolution, or fraud prevention.

You have the right to request the deletion of your personal data or closure of your User Account, subject to applicable laws and any retention requirements outlined in this Privacy Policy (e.g., for legal, accounting, or security purposes). Deleting your data may limit or prevent your access to certain features of the Service. To submit a deletion request:

  • Log in to your User Account and use the “Delete Account” or equivalent option (if available);
  • Send an email to privacy@kodekloud.com with the subject line “Personal Data Deletion Request”;
  • Include in your email: (1) your full name and the email address associated with your User Account; (2) a description of the specific personal data you wish to have deleted (or state if you want all personal data deleted); and (3) any additional information we may need to verify your identity (e.g., account details or proof of identity). We will acknowledge your request promptly and respond within one month of receipt. If your request is complex, or if you have made a number of requests, we may extend that period by up to two further months; if we do, we will tell you within the first month and explain why. Where California law applies we will respond within 45 days, which we may extend by a further 45 days where permitted.

If we deny your request (e.g., due to legal obligations), we will explain the reasons. For EU data subjects or California residents, additional details on your rights are provided in Sections 11 and 13, respectively. If you have questions about the process, contact us at privacy@kodekloud.com.

If a request is manifestly unfounded or excessive, in particular because it is repetitive, we may charge a reasonable fee to cover our administrative costs or decline to act on it. If we decline, we will tell you why, and explain that you may seek a judicial remedy.

10. Security measures

The security of your information is important to us. We follow generally accepted standards to protect the personal data submitted to us, both during transmission and once we receive it.

The measures we apply include encryption of personal data in transit using TLS and encryption at rest for our production databases; role-based access control, so that access to personal data is limited to those staff who need it for their role; multi-factor authentication for administrative access; logging and monitoring of access to production systems; separation of lab and Playground environments from our production databases; vulnerability scanning and patching; backup and restore testing; and contractual security obligations on our sub-processors.

Taking into account relevant developments in technology including telecommunications and web services, technical limitations associated with different telecommunications protocols, the costs of implementation and the nature, scope, context and purposes of processing as well as the risk of varying likelihood and severity for the rights and freedoms of natural persons, we shall in relation to the personal data implement appropriate technical and organizational measures to ensure a level of security appropriate to that risk.

We use a variety of security measures to ensure the confidentiality of your personal data, and to protect your personal data from loss, theft, unauthorized access, misuse, alteration or destruction. No method of electronic transmission or storage is 100% secure, however. Therefore, we cannot guarantee its absolute security.

Please always check that any website on which you are asked for financial or payment information in relation to our reservations or Service is operated by us or by third-party service providers authorized by us. If you do receive a suspicious request, do not provide your information and report it as set out in this Privacy Policy.

However, we cannot guarantee that loss, misuse, unauthorized acquisition, or alteration of your data will not occur. Please recognize that you play a vital role in protecting your own personal data. You are responsible for keeping your User Account passcode, membership numbers and pin numbers safe and secure. Do not share those with anyone. If there is unauthorized use or any other breach of security involving your information, you must notify us as soon as possible.

Furthermore, we cannot ensure or warrant the security or confidentiality of information you transmit to us or receive from us by internet or wireless connection, including email since we have no way of protecting that information once it leaves and until it reaches us. If you have reason to believe that your data is no longer secure, please contact us using the contact information provided in this Privacy Policy.

11. Additional information for EEA and UK data subjects

Scope

KodeKloud has appointed Buxton Data Solutions Ltd of Despot Slav No. 14 Street, Sofia, Bulgaria as its representative in the European Union. You may contact our EU representative on any matter relating to our processing of personal data of EEA data subjects, in any official language of the European Union, by email to privacy@kodekloud.com or by writing to the address above.This section applies solely to data subjects as defined by the General Data Protection Regulation (“GDPR”) (“EU data subjects”). For these purposes, reference to the EU also includes the European Economic Area countries of Iceland, Liechtenstein and Norway and, where applicable, Switzerland. 

This section applies equally to data subjects in the United Kingdom, and references to the GDPR should be read as including the UK GDPR, except where we say otherwise.

In relation to the rights and obligations of EU data subjects, this Privacy Policy should be interpreted in a way that assures maximum compliance with GDPR. Thus, regarding EU data subject, the terms of this Privacy Policy are to be understood in accordance with the meaning given to them by GDPR.

Data Controller

KodeKloud is the data controller for processing of your personal data processed for purposes set forth herein. As we are located outside the EEA, we implement appropriate safeguards, including Standard Contractual Clauses (SCCs), to protect your data during transfer.

Your Rights

Subject to applicable EU law, you have the following rights in relation to your personal data:

  • Right to be informed: You have the right to concise, transparent, intelligible and easily accessible information regarding the processing of your personal data.
  • Right of access: If you ask us, we will confirm whether we are processing your personal data and, if so, provide you with a copy of that personal data along with certain other details. If you require additional copies, we may need to charge a reasonable fee.
  • Right to rectification (updating your information): If your personal data is inaccurate or incomplete, you are entitled to ask that we correct or complete it. If we share your personal data with others, we will tell them about the correction where possible. If you ask us, and where possible and lawful to do so, we will also tell you with whom we shared your personal data so you can contact them directly.
  • Right to erasure (right to be forgotten): You may ask us to delete or remove your personal data, such as where our legal basis for the processing is your consent and you withdraw consent. If we share your data with others, we will tell them about the erasure where possible. If you ask us, and where possible and lawful to do so, we will also tell you with whom we shared your personal data so you can contact them directly. We may continue processing personal data where this is necessary for a legitimate interest in doing so (for example, for compliance with the law), as described in this Privacy Policy.
  • Right to restrict processing: You may ask us to restrict or ‘block’ the processing of your personal data in certain circumstances, such as where you contest the accuracy of the data or object to us processing it. We will tell you before we lift any restriction on processing. If we share your personal data with others, we will tell them about the restriction where possible. If you ask us, and where possible and lawful to do so, we will also tell you with whom we shared your personal data so you can contact them directly.
  • Right to data portability: You have the right to obtain your personal data from us that you consented to give us or that was provided to us as necessary in connection with our contract with you. We will give you your personal data in a structured, commonly used and machine-readable format. You may reuse it elsewhere.
  • Right to deletion of AI interaction data: You may request deletion of your AI interaction data (KodeKey logs, AI Tutor conversations, Playground session data) by contacting privacy@kodekloud.com. We will action this request within one month. Note: anonymized aggregate usage metrics may be retained for service improvement purposes.
  • Right to object: Where we process your personal data on the basis of our legitimate interests, you may object at any time. If you do, we will stop that processing unless we can demonstrate compelling legitimate grounds that override your interests, rights and freedoms, or unless we need to continue in order to establish, exercise or defend legal claims. Where we process your personal data for direct marketing, including any profiling connected with direct marketing, you may object at any time and we will stop, without exception and without any balancing exercise. We will draw this right to your attention clearly and separately at the point we first communicate with you.
  • Rights regarding automated decision-making and AI: You have the right not to be subject to a decision based solely on automated processing, including profiling, that produces legal effects concerning you or similarly significantly affects you. We do not currently take decisions of that kind, as explained in Section 6. If that changes, we will update this Privacy Policy before it does and tell you what safeguards apply. You may also ask us for meaningful information about the logic involved in our AI-driven personalisation and profiling, express your point of view on it, and object to it as described above.
  • Right to withdraw consent: If we rely on your consent to process your personal data, you have the right to withdraw that consent at any time. This will not affect the lawfulness of processing of your data before we received notice that you wished to withdraw your consent.
  • Right to lodge a complaint with the data protection authority: You have the right to make a complaint at any time to your local data protection authority. We would, however, appreciate the chance to deal with your concerns before you approach the local data protection authority so please contact us in the first instance.

You may exercise your rights by contacting us as indicated under the “Contact us” section below. We respond to all requests we receive from individuals wishing to exercise their data protection rights in accordance with applicable data protection law. We may ask you to verify your identity in order to help us respond efficiently to your request.

Data Protection Officer.  We have designated a Data Protection Officer, who is responsible for overseeing our compliance with this Privacy Policy and with applicable data protection law, and who acts independently in performing that role. You can contact the Data Protection Officer at privacy@kodekloud.com, or by writing to us at our registered address marked for the attention of the Data Protection Officer.

Legal Basis for Processing Personal Data and Legitimate Interest

Our legal basis for collecting and using the personal data described above will depend on the personal data concerned and the specific context in which we collect it. If you are an EU resident, we will only process your personal data when one (or more) of the following requirements is met:

  • When we have your consent to do so. If consent is the legal basis for the processing of your personal data, you may withdraw your consent at any time.
  • When processing is necessary for the performance of the contract to which you are a party (e.g. for providing the services you requested).
  • To comply with our legal obligations.
  • When we (or a third party) have a legitimate interest in processing your personal data. “Legitimate interests” means our interests in conducting our business, managing and delivering the best Service to you. This Privacy Policy describes when we process your personal data for our legitimate interests, what these interests are and your rights. We will not use your personal data for activities where the impact on you overrides our interests, unless we have your consent or those activities are otherwise required or permitted by law. We carry out and record a balancing assessment before relying on legitimate interests, and you can ask us for a summary of it at privacy@kodekloud.com.

If we ask you to provide personal data to comply with a legal requirement or to perform a contract with you, we will make this clear at the relevant time and advise you whether the provision of your personal data is mandatory or not, as well as of the possible consequences if you do not provide your personal data.

Security and Breach

Security measures: Appropriate technical and organizational measures are implemented to ensure that, by default, the only personal data processed are those which are necessary for each specific purpose of processing. This applies to the quantity, the extent of the processing, the period of storage and the accessibility of the collected personal data. With such measures, we try to ensure that personal data are not made accessible to an indefinite number of persons without your intervention.

In case of a personal data breach: If a personal data breach occurs we shall without undue delay, where feasible, not later than 72 hours after having become aware of it, notify the supervisory authority. This does not apply when the personal data breach is unlikely to result in a risk to your rights and freedoms. Where a personal data breach is likely to result in a high risk to your rights and freedoms, we will also inform you without undue delay. This does not apply to situations where we have implemented appropriate technical and organizational protection measures that were applied to the personal data affected by the breach or if our subsequent measures ensure that the risk is no longer likely to materialize. It also does not apply when it would involve disproportionate effort. In the described cases we shall inform you through public communication or similar way in an equally effective manner.

12. Rights of individuals residing outside the EU

If you are a non-EU User of our Services your personal data may be processed for the purposes described in this Privacy Policy in accordance with the rights described above. The data protection law of your country may give you fewer rights than the GDPR. Where that is so, we will apply the standard required by the law that applies to you. Nothing in this Section limits any right you have under the GDPR or the UK GDPR if you are in the EEA or the United Kingdom.

13. Your California privacy rights

The California Consumer Privacy Act, as amended by the California Privacy Rights Act (together, the “CCPA”), and the California Online Privacy Protection Act (CalOPPA) require us to disclose the categories of Personal Information (as defined in the acts) we collect and how we use it, the categories of sources from whom we collect Personal Information, and the third parties with whom we share it, which we have explained above. We are also required to communicate information about rights California residents have under California law. You may exercise the following rights:

  • Right to Know and Access. You may submit a verifiable request for information regarding the: (1) categories of Personal Information we collect, use, or share; (2) purposes for which categories of Personal Information are collected or used by us; (3) categories of sources from which we collect Personal Information; and (4) specific pieces of Personal Information we have collected about you.
  • Right to Equal Service. We will not discriminate against you if you exercise your privacy rights.
  • Right to Delete. You may submit a verifiable request to close your User Account and we will delete Personal Information about you that we have collected.
  • Right to Opt Out of Sale or Sharing. We do not sell your Personal Information for money. Where we use cookies for cross-context behavioural advertising, that may be “sharing” under the CCPA. You may opt out through the cookie settings link in the footer of every page, and we honour Global Privacy Control signals sent by your browser.
  • Right to Correct. You may ask us to correct inaccurate Personal Information that we hold about you.
  • Right to Limit Use and Disclosure of Sensitive Personal Information. Where we use or disclose sensitive personal information beyond the purposes the CCPA permits, you may direct us to limit that use and disclosure.

Under California’s “Shine the Light” law, California residents who provide personal information in obtaining products or services for personal, family, or household use are entitled to request and obtain from us once a calendar year information about the customer information we shared, if any, with other businesses for their own direct marketing uses. If applicable, this information would include the categories of customer information and the names and addresses of those businesses with which we shared customer information for the immediately prior calendar year (e.g., requests made in 2026 will receive information regarding 2025 sharing activities).

If you would like to exercise any of these rights or if you would like to receive any further information about these rights, please contact us at any time via email disclosed below. To obtain this information, contact us specifying that you want a “Request for California Privacy Information” on the subject line and in the body of your message. You must include sufficient information regarding your identification as the data subject and a detailed request with the declaration, under the penalty of perjury, that you are exercising your rights for lawful purposes. We will do our best to respond to your valid request (one that meets the described criteria) within 45 days of receiving it. Please be aware that only the required information will be included in our response.

14. Personal data of minors

Our Service is intended for users aged 16 and over. In the United Kingdom, and in those EEA Member States that have set a lower age under Article 8(1) GDPR, the applicable threshold may be as low as 13.

At registration we ask you to confirm your date of birth, and we do not knowingly create a User Account for anyone below the applicable age. Where we rely on your consent — for cookies, or for marketing — and you are below the applicable age in your country, we will not rely on that consent unless it is given or authorised by the holder of parental responsibility for you, and we will make reasonable efforts to verify that authorisation, taking into account available technology.

If you believe that a child below the applicable age has registered, please tell us at privacy@kodekloud.com. Where we find that we hold the personal data of a child below the applicable age without the necessary authorisation, we will delete it promptly and close the account.

15. Third-party links

Our Website may contain certain links to third-party websites (“Third-party Links”) that are not run by us. These include, but are not limited to Facebook, X (formerly Twitter), LinkedIn, YouTube and others. We are not responsible for personal data about you that is collected and stored by these platforms and similar third parties. They have their own privacy policies so please note that this Privacy Policy does not apply to them. For that reason we recommend you to read their privacy policies carefully before submitting personal data to them.

16. Enterprise and team accounts

Some of our customers are organisations that buy KodeKloud subscriptions for their people — an employer enrolling its engineering team on a learning plan, for example. If that is how you came to use the Service, two different relationships apply at the same time.

The organisation that enrolled you decides what learning it requires, what progress information it receives about you, and how long your access lasts. For that information the organisation is the controller and we act as its processor. We process it only on the organisation's documented instructions under a data processing agreement that meets Article 28 GDPR. If you want to know what your employer can see, or you want to exercise your data protection rights in relation to it, contact your employer first; we will support them in responding to you.

For everything else — your account credentials, how you use our Website and AI features, your billing relationship with us if you pay us directly, and our own security and analytics — we remain the controller, and the rest of this Privacy Policy applies to you as it does to any other user.

Where we act as a processor, the sub-processors described in Section 8 are engaged as sub-processors of the organisation, and we notify the organisation of changes to them in accordance with our data processing agreement.

17. Singapore Personal Data Protection Act

Zaurac Technologies Pte Ltd is incorporated in Singapore and is subject to the Personal Data Protection Act 2012 (the “PDPA”) in addition to the laws described above.

Under the PDPA you may withdraw your consent to our collection, use or disclosure of your personal data; ask for access to the personal data we hold about you and for information about how it has been used or disclosed in the year before your request; and ask us to correct an error or omission. We will respond as soon as reasonably possible, and in any event within the time prescribed under the PDPA; if we cannot respond within 30 days we will tell you when we can.

Our Data Protection Officer, whose contact details are in Section 11, is also our Data Protection Officer for PDPA purposes. Where a data breach is notifiable under Part 6A of the PDPA, we will notify the Personal Data Protection Commission and affected individuals as required. Requests under the PDPA should be sent to privacy@kodekloud.com.

18. Changes to this Privacy Policy

This Privacy Policy may change from time to time. If we make a material change to this Privacy Policy, we will provide you with notice (for example, by email if you have provided your email address to us and your email address is current), and we may provide notice of changes in other circumstances as well. It is therefore important that you register with us and notify us if you change your email address. If you do not provide us with a current email address, you should regularly review this policy to ensure that you are informed of any changes.

We keep a record of earlier versions of this Privacy Policy, and you can ask us for one at privacy@kodekloud.com. Where a change affects processing that relies on your consent, we will ask for your consent again rather than rely on notice alone.

19. Contact us

If you have any questions about this Privacy Policy, please contact us at privacy@kodekloud.com.

You can also write to us at Zaurac Technologies Pte Ltd, Robinson Road #08-01A, Singapore 048545. Our Data Protection Officer can be reached at the same email address. The contact details of our EU and UK representatives are in Section 11.

If you are in the EEA or the United Kingdom and you are not satisfied with how we have handled your request, you have the right to complain to your local supervisory authority. In Bulgaria, where our EU representative is established, that is the Commission for Personal Data Protection. In the United Kingdom it is the Information Commissioner's Office. In Singapore you may complain to the Personal Data Protection Commission.

Learning Paths
DevOpsKubernetesDocker LinuxIaCAWSGCPAzure
Courses
Certified Kubernetes AdministratorCertified Kubernetes Application DeveloperCertified Kubernetes Security SpecialistAWS Cloud PractitionerMicrosoft Azure Solutions Architect ExpertMicrosoft Azure Administrator
For Businesses
KodeKloud-For-Business (Team Training)Instructor-Led-Trainings for Teams (Live)For Resellers and Vendors
Resources
Blog articlesInfographicsEducational LibraryContent Hubs
Community
Join our communityTeach with UsAmbassadorsEducationAffiliatesWebinars
About
About UsSuccess StoriesOur ValuesCareers at KodeKloudPrivacy PolicyTerms of ServiceBusiness Terms of Service
Help
Contact UsSupportGive us feedbackRequest a Course
Learning Paths
DevOpsKubernetesDocker LinuxIaCAWSGCPAzure
Courses
Certified Kubernetes AdministratorCertified Kubernetes Application DeveloperCertified Kubernetes Security SpecialistAWS Cloud PractitionerMicrosoft Azure Solutions Architect ExpertMicrosoft Azure Administrator
For Businesses
KodeKloud-For-Business (Team Training)Instructor-Led-Trainings for Teams (Live)For Resellers and Vendors
Resources
Blog articlesInfographicsEducational LibraryContent Hubs
Community
Join our communityTeach with UsAmbassadorsAcademiaAffiliatesWebinars
About
About UsSuccess StoriesOur ValuesCareers at KodeKloudPrivacy PolicyTerms of ServiceBusiness Terms of Service
Help
Contact UsSupportGive us feedbackRequest a Course
©2026
KodeKloud.com
All Rights Reserved
🇸🇬Zaurac Technologies Pte Ltd
14 Robinson Road #08-01A
Singapore 048545
Download from Google PlayDownload on the App Store
Linkedin