GDPR REPRESENTATION & DATA PROTECTION STATEMENT
SLLEARNING EDUCATIONAL SERVICES LLP
Last Updated: [26/08/2025]
1. Introduction
SLLEARNING EDUCATIONAL SERVICES LLP (“SLLEARNING”, “we”, “our”, “us”) is committed to protecting personal data and respecting the privacy rights of individuals in accordance with the General Data Protection Regulation (EU) 2016/679 (“GDPR”) and other applicable data protection laws.
This GDPR Representation explains how SLLEARNING processes personal data, defines our role under GDPR, and outlines the rights available to data subjects.
2. Scope of This Statement
This GDPR Representation applies to:
- Users located in the European Union (EU) and European Economic Area (EEA)
- International users whose data is processed under GDPR-equivalent standards
- Learners, creators, institutions, affiliates, and partners using SLLEARNING platforms
It covers data processed through:
- www.sllearning.com
- www.lms.sllearning.com
- www.erp.sllearning.com
- Support portals, applications, and related services
3. Roles Under GDPR
3.1 SLLEARNING as Data Processor
In most cases, SLLEARNING acts as a Data Processor, meaning:
- We process personal data only on documented instructions from our users (Data Controllers)
- We provide the technical infrastructure and security measures
- We do not decide how learner data is used for educational or commercial purposes
3.2 Users as Data Controllers
Creators, institutions, and organizations using SLLEARNING platforms act as Data Controllers for:
- Learner information
- Course participant data
- Student, parent, or employee records
They are responsible for:
- Defining lawful bases for data processing
- Providing privacy notices to learners
- Handling consent, refunds, and data subject requests related to their content
4. Lawful Basis for Data Processing
SLLEARNING processes personal data based on one or more of the following lawful bases:
- Contractual necessity – to provide platform services
- Legal obligation – to comply with applicable laws
- Legitimate interests – to maintain platform security and functionality
- Consent – where explicitly obtained (e.g., communications)
5. Categories of Personal Data Processed
Depending on platform usage, SLLEARNING may process:
- Identification data (name, email, phone number)
- Account and login information
- Platform usage and activity logs
- Payment-related metadata (excluding card or banking details)
- Device, browser, and IP address information
SLLEARNING does not intentionally process:
- Sensitive personal data unless required for service delivery
- Biometric or genetic data
- Payment card or banking credentials
6. Data Security Measures
SLLEARNING implements appropriate technical and organizational measures to ensure data security, including:
- Encrypted data transmission (HTTPS / SSL)
- Role-based access controls
- Secure cloud hosting infrastructure
- Regular system updates and patching
- Hourly backups for LMS and ERP platforms
- Restricted internal data access
7. International Data Transfers
Personal data may be processed or stored outside the EU/EEA.
Where such transfers occur, SLLEARNING ensures:
- Adequate safeguards are in place
- Data is protected under GDPR-equivalent standards
- Transfers comply with applicable legal mechanisms
8. Data Retention
SLLEARNING retains personal data only for as long as:
- Necessary to provide services
- Required to meet legal or regulatory obligations
- Needed to resolve disputes or enforce agreements
Data may be anonymized or deleted once it is no longer required.
9. Data Subject Rights (GDPR Rights)
Under GDPR, data subjects have the right to:
- Access their personal data
- Rectify inaccurate or incomplete data
- Request erasure (“Right to be Forgotten”)
- Restrict processing
- Object to processing
- Request data portability
- Withdraw consent at any time
Requests may be submitted by contacting SLLEARNING using the details below.
10. Handling Data Subject Requests
SLLEARNING will:
- Verify the identity of the requester
- Respond within legally mandated timelines
- Coordinate with the relevant Data Controller where applicable
Certain requests may need to be handled directly by the creator or institution acting as the Data Controller.
11. Breach Notification
In the event of a personal data breach:
- SLLEARNING will assess the impact promptly
- Affected Data Controllers will be notified without undue delay
- Required regulatory notifications will be supported where applicable
12. Third-Party Processors
SLLEARNING may engage trusted third-party service providers for:
- Payment processing
- Email delivery
- Analytics and infrastructure support
All such processors are bound by data protection and confidentiality obligations consistent with GDPR.
13. Children’s Data
SLLEARNING does not knowingly collect or process personal data of children without appropriate consent as required under applicable laws.
Institutions and creators are responsible for ensuring lawful processing of minors’ data on their courses or systems.
14. Updates to This GDPR Representation
This GDPR Representation may be updated to reflect:
- Regulatory changes
- Platform enhancements
- Legal requirements
The latest version will always be available on our website.
15. Contact – GDPR & Data Protection
For GDPR-related queries, data requests, or concerns:
📧 support@sllearning.com
🌐 https://sllearning.com/support/
📱 WhatsApp Business: +91 8585968648

