Skip to main content

Privacy Policy

Last updated: February 17, 2026

Smart Services Hub, publisher of the SmartCamp application, places the highest importance on protecting your personal data. This policy describes in detail how we collect, use, store, share and protect your information when you use our mobile application and website.

1

Data Controller Identity

The data controller for personal data processing is:

Smart Services Hub (Team AmphiMill)

Address: Carrefour Emia, Yaoundé, Cameroon

Email: team@smartserviceshub.ai

Phone: +237 651-03-74-24

Smart Services Hub is a company specialized in developing innovative digital educational solutions for French-speaking Africa.

2

Personal Data Collected

We collect the following categories of data:

Registration data: first name, last name, email address, phone number, encrypted password, profile photo (optional).

Usage data: in-app browsing history, courses viewed, quiz and simulation results, time spent per module, progress rate, AI tutor interactions.

Technical data: IP address, device type and version, operating system, unique device identifier, system language, time zone, crash and performance data.

Payment data: transactions are processed by our secure payment partners. We never store your full banking details on our servers.

Communication data: messages sent via the contact form, customer support exchanges, community forum participation.

3

Mobile App Permissions

The SmartCamp app may request the following permissions on your device:

Photo Library: to allow you to customize your profile with a photo or attach images to your personal course notes.

Camera: for profile photo capture and scanning course-related documents (revision sheets, paper materials).

Microphone: for voice recording features during oral practice exercises and note dictation.

Push Notifications: to inform you of revision reminders, simulation results, content updates and promotional offers.

Local Storage: for downloading courses in offline mode and caching educational resources.

Each permission is requested when the corresponding feature is first used. You can revoke these permissions at any time in your device settings.

4

Purposes of Processing

Your data is processed for the following purposes:

Service delivery: creating and managing your account, accessing courses and educational content, personalizing the learning experience through AI, tracking your progress.

Service improvement: analyzing learning paths to optimize content, identifying recurring difficulties to adapt exercises, measuring the effectiveness of our teaching methods.

Communication: sending notifications related to your learning path (reminders, results), responding to support requests, newsletters and commercial offers (with your prior consent).

Security and compliance: fraud and abuse prevention, compliance with legal and regulatory obligations, dispute resolution.

5

Legal Bases for Processing

Each data processing activity relies on a specific legal basis:

Contract performance (Article 6.1.b GDPR): providing our educational services, managing your account and processing payments are necessary for performing the contract between us.

Consent (Article 6.1.a): sending marketing communications, accessing sensitive device features (camera, microphone) and placing non-essential cookies are based on your explicit consent.

Legitimate interest (Article 6.1.f): improving our services, preventing fraud and anonymized statistical analysis fall under our legitimate interest, while respecting your rights.

Legal obligation (Article 6.1.c): retaining certain data (invoices, transactions) meets accounting and tax obligations.

6

Data Sharing and Transfers

We never sell your personal data to third parties. Your data may be shared with:

Technical providers: cloud hosts, messaging services, analytics tools (Firebase, Google Analytics). These providers are contractually bound to protect your data and use it only for defined purposes.

Payment partners: for secure processing of financial transactions. These partners comply with PCI-DSS standards.

Competent authorities: only when legally required, by court order or to protect our rights.

For transfers outside Cameroon, we ensure appropriate safeguards are in place (standard contractual clauses, recipient certification).

7

Data Security

We implement robust technical and organizational measures:

Encryption: all data in transit is protected by TLS 1.2 or higher. Sensitive data at rest is encrypted with AES-256.

Access control: strong authentication for internal teams, least-privilege principle, access logging.

Infrastructure: hosting on secure servers with redundancy, regular encrypted backups, firewalls and intrusion detection systems.

Procedures: regular security audits, ongoing team training on best practices, security incident response plan.

Despite these measures, no internet transmission is completely secure. We encourage you to protect your credentials and use a strong password.

8

Data Retention

We retain your data for the following periods:

Active account data: retained throughout your registration, then deleted within 30 days of account deletion.
Progress and results data: retained during your account lifetime, exportable upon request.
Payment data and invoices: 10 years in compliance with Cameroonian accounting and tax obligations.
Technical logs: 90 days maximum.
Communication data (support): 3 years after last exchange.
Anonymized data for statistical purposes: retained without time limit.

At the end of these periods, data is securely deleted or irreversibly anonymized.

9

Cookies and Tracking Technologies

Our website uses cookies and similar technologies:

Essential cookies: necessary for the website to function (session, language preferences, cart). They cannot be disabled.

Analytics cookies: Google Analytics helps us understand how visitors use our site (pages visited, session duration, paths). This data is anonymized.

Marketing cookies: with your consent, we use cookies to measure advertising campaign effectiveness (Facebook Pixel, Google Ads).

You can manage your cookie preferences at any time via the consent banner or your browser settings. Refusing non-essential cookies does not affect access to core features.

10

Integrated Third-Party Services

SmartCamp integrates the following third-party services, each with its own privacy policy:

Google Play Services: Android app distribution and updates.
Apple App Store: iOS app distribution and updates.
Firebase (Google): authentication, real-time database, push notifications, crash reports (Crashlytics), remote configuration.
Google Analytics: audience and behavior analysis.
Payment providers: secure transaction processing.

We encourage you to review the privacy policies of these services to understand how they handle your data.

11

Your Rights

Under applicable data protection regulations, you have the following rights:

Right of access: obtain a copy of all personal data we hold about you.

Right to rectification: request correction of inaccurate or incomplete data.

Right to erasure: request deletion of your personal data, subject to our legal retention obligations.

Right to restriction: restrict the processing of your data in certain situations (accuracy disputed, unlawful processing).

Right to object: object to the processing of your data on grounds relating to your particular situation, especially for direct marketing.

Right to portability: receive your data in a structured, commonly used format and transmit it to another data controller.

Right to withdraw consent: withdraw your consent at any time, without affecting the lawfulness of processing carried out before withdrawal.

To exercise these rights, contact us at team@smartserviceshub.ai. We will respond within 30 days. You also have the right to lodge a complaint with a competent supervisory authority.

12

Protection of Minors

SmartCamp is primarily aimed at adult students and professionals. We do not knowingly collect personal data from children under 16 without verifiable parental or legal guardian consent.

If we discover that data from a minor under 16 has been collected without appropriate parental consent, we will proceed with immediate deletion.

Parents or legal guardians can contact us at team@smartserviceshub.ai to request access, modification or deletion of their child's data.

13

Account Deletion

You can delete your SmartCamp account in two ways:

1. Directly from the app: Settings → My Account → Delete My Account.

2. By email to team@smartserviceshub.ai indicating the email address associated with your account.

Deletion results in:

Permanent deletion of your profile and progress data within 30 days.
Revocation of access to all courses and content.
Retention of billing data for 10 years (legal obligation).
Anonymized data cannot be deleted as it can no longer identify you.

This action is irreversible. We recommend exporting your data before proceeding with deletion.

14

Third-Party Links

SmartCamp may contain links to third-party websites or services (social networks, educational partners, external resources). We have no control over these sites and are not responsible for their privacy practices.

We encourage you to read the privacy policies of each third-party site you visit through our app or website.

15

Changes to This Policy

We may update this privacy policy to reflect changes in our practices, services or applicable regulations.

For substantial changes, we will notify you via:

An in-app notification.
An email sent to the address associated with your account.
A notice displayed on our website.

The last update date is indicated at the top of this page. We encourage you to review this policy regularly. Continued use of our services after a change constitutes acceptance of the updated version.

Questions about your data?

For any questions, requests to exercise your rights, or reports concerning the protection of your personal data, our team is at your service.

team@smartserviceshub.ai