Privacy Policy
Last updated: 17 August 2026
This policy describes what DSD Certify collects, why, how long it is kept, and what you can ask us to do with it. It covers dsdcertify.com.
1. Information you give us
- Name, email address and telephone number
- Nursing license type, number and state
- Years of nursing experience
- Anything you write in a support message or a course review
2. Information we record as you use the course
Because this course carries continuing education hours, we keep a record of your participation. A regulator or an employer may reasonably ask you to evidence it, and we cannot issue a certificate we cannot substantiate.
- Which modules you opened and completed, and when
- Time spent on each module, and the pages you viewed while signed in
- Sign-in times and how long each visit lasted
- Quiz and examination attempts, answers and scores
- Certificates issued, downloaded and emailed
- Your IP address, browser and device type, recorded alongside the above
3. Technical and error information
When something goes wrong we record it so it can be fixed. That record can include the page you were on, the pages you visited immediately before it, your IP address, your browser, and the technical detail of the fault. We do not capture the contents of forms you submit, and passwords and payment card details are never written to these records.
4. Cookies
We use one essential cookie, PHPSESSID, which keeps you signed in
as you move between pages. It is removed when you sign out or when the session
expires. We do not use advertising or cross-site tracking cookies, and there is
no third-party analytics on this site.
5. How we use it
- To run the course and record your progress toward the certificate
- To substantiate the contact hours a certificate asserts
- To take payment and send receipts, certificates and course email
- To answer your questions
- To find and fix faults, and to detect abuse of the platform
We do not sell your personal information, and we do not share it for cross-context behavioural advertising.
6. Who else is involved
- Stripe processes payments. Card details go directly to Stripe and are never stored on our servers.
- SendGrid (Twilio) delivers our email.
- Google reCAPTCHA protects our sign-in and registration forms from automated abuse. It collects hardware and software information and sends it to Google for analysis. Use of reCAPTCHA is subject to the Google Privacy Policy and Terms of Service.
- A regulator or accrediting body, where verification of a credential is required.
- Law enforcement, where the law requires it.
7. How long we keep it
| Record | Kept for |
|---|---|
| Your account, enrollment, quiz results and certificates | For as long as the account exists. Certification records are kept while the certificate remains verifiable. |
| Page-by-page activity | 400 days |
| Sign-in and visit records | 800 days |
| Fault and error records | 90 days once resolved |
| Payment records | As required for tax and accounting purposes |
8. Security
- All traffic is encrypted in transit (TLS)
- Passwords are stored hashed with bcrypt and are never recoverable
- Session identifiers are stored hashed in our activity records
- Card details never reach our servers
9. Your rights
You can ask us to:
- Tell you what we hold about you, and give you a copy
- Correct anything inaccurate
- Delete your information
- Stop sending you non-essential email
If you are a California resident, the California Consumer Privacy Act gives you the right to know what personal information we collect and why, to request its deletion or correction, to receive a portable copy, and not to be treated differently for exercising any of these rights. We do not sell or share personal information as those terms are defined by the Act, so there is nothing to opt out of.
One limit worth stating plainly: if you ask us to delete your information we may need to keep the minimum record of a certificate we have issued, because a certificate that cannot be verified is worthless to you and misleading to anyone relying on it. We will tell you exactly what is retained and why.
To exercise any of these, email support@dsdcertify.com. We will confirm your identity before acting, and respond within 45 days.
10. Children
This course is for licensed nurses. It is not directed at anyone under 18 and we do not knowingly collect information from children.
11. Changes
If this policy changes materially we will update the date above and, where the change affects how we use information you have already given us, tell you by email.