Privacy Policy

Last updated: 13 June 2026

Who we are

This website is operated by Rudrasec Pty Ltd (ABN available on request), an Australian company. We offer the Active Directory Security Attack and Response online training course at rudrasec.io.

For privacy enquiries, contact us at [email protected].

Information we collect

We collect two categories of information:

Information you provide directly — when you purchase the course or contact us, our course platform (Podia) collects your name, email address, and payment details. Rudrasec does not store payment card data directly; this is handled by Podia and their payment processors.

Analytics data — this website uses Google Analytics 4 (GA4) to collect anonymised information about how visitors interact with the site, including pages visited, time on site, general geographic location (country/city level), device type, and referral source. This data does not identify you personally.

How we use your information

We use the information collected to:

  • Deliver the course and send you access credentials
  • Respond to support and enquiry emails
  • Understand how visitors use our website so we can improve it (via GA4)
  • Send course-related updates during your access period (you may opt out at any time)

We do not sell your personal information to third parties. We do not use your data for advertising targeting.

Google Analytics

We use Google Analytics 4 to analyse website traffic. GA4 uses cookies to collect anonymised usage data. Google may process this data on servers outside Australia. You can opt out of GA4 tracking by installing the Google Analytics opt-out browser add-on, or by using a browser with tracking protection enabled.

Cookies

This website uses cookies set by Google Analytics for analytics purposes only. We do not use advertising or tracking cookies. By continuing to use this site, you consent to the placement of these analytics cookies.

Data retention

Course purchase records are retained for 7 years as required by Australian tax law. Analytics data is retained in Google Analytics for 14 months by default. Support emails are retained for 2 years.

Your rights

Under the Australian Privacy Act 1988, you have the right to access personal information we hold about you, and to request correction of inaccurate information. If you are located in the European Economic Area, you also have rights under the GDPR, including the right to erasure and data portability.

To exercise any of these rights, email us at [email protected]. We will respond within 30 days.

Third-party services

We use the following third-party services that may process your data:

Changes to this policy

We may update this policy from time to time. The date at the top of this page reflects when it was last revised. Continued use of the site after changes constitutes acceptance of the updated policy.

Contact

Questions about this policy? Email [email protected].