Prepvora is built on transparent, privacy-first principles. We safeguard student data with strict access controls, zero ad-tracking, and full international compliance.
Last updated: April 2026 · Version 3.2
We only collect data required for your test practice: email, hashed password, test answers, time spent, and domain performance statistics. We never store payment card numbers directly.
We do not sell, rent, or monetize your personal data to advertisers or third parties — ever. Your study analytics are exclusively used to power your adaptive prep.
All network traffic is encrypted in transit via TLS 1.3. User passwords are cryptographically salted and hashed. Database tables are protected by strict Row-Level Security (RLS).
Under GDPR and CCPA, you have the full right to export or permanently delete your account and all associated test records at any time from your settings or via email request.
Prepvora (“Prepvora,” “we,” “us,” or “our”) operates https://www.prepvora.com. This Privacy Policy describes how we collect, use, disclose, and protect personal information when you use our educational software and adaptive testing services.
We collect information in the following categories:
We process your information strictly to provide and improve educational services:
Prepvora is strictly designed for individuals aged 13 and older. We do not knowingly collect, solicit, or maintain personal information from children under the age of 13.
If we discover that a child under 13 has provided us with personal information without verified parental consent, we will promptly delete all associated account information and test records from our active databases. If you are a parent or guardian and believe your child under 13 has created an account, please contact us immediately at admin@prepvora.com.
We only share data with essential third-party service providers who adhere to strict data protection standards:
If you reside in the European Economic Area (EEA) or the United Kingdom, you have the following rights under the GDPR:
Under the California Consumer Privacy Act (CCPA/CPRA), California residents have specific statutory rights:
We implement industry-standard administrative, physical, and technical safeguards to protect your personal information against unauthorized access, destruction, loss, or alteration. All database connections utilize TLS 1.3 encryption, and sensitive data is encrypted at rest using AES-256.
We retain your performance data and diagnostic history for as long as your account remains active. If you request account termination, your data will be permanently wiped from our active production database within seven (7) business days.
For any questions, data subject access requests (DSAR), deletion requests, or privacy concerns, please contact our Data Protection and Compliance team:
Data Protection Officer
Official privacy inquiries & requests: