Legal & Compliance

Privacy Policy

Last updated: July 11, 2026 · Jurisdiction: Victoria, Australia

1. Our Commitment to Your Privacy

Thesis50 (“we”, “us”, or “our”) is committed to protecting the privacy of our users, particularly high school students using our educational platform. This Privacy Policy details how we collect, hold, use, and disclose personal information in compliance with the Privacy Act 1988 (Cth) and the 13 Australian Privacy Principles (APPs).

2. Types of Information We Collect

We only collect personal information that is reasonably necessary for us to provide our educational study guides. This includes:

  • Account Credentials: Student email addresses and usernames collected when you register for an account or sign up to receive free sample content.
  • Payment Telemetry (Third-Party Services): Transactions are processed securely by compliant third-party payment gateways (such as Stripe or PayPal). Thesis50 does not collect, process, or store credit card details or bank account information on our servers. The gateway processes this directly and returns an encrypted token to confirm purchase completion.
  • Platform Usage Metrics & Analytics: Information on how you interact with our guides, pages viewed, time spent per study guide section, and device metadata (e.g. IP addresses, browser types) to enforce account security thresholds and optimize our user experience.

3. Purposes of Collection and Use

We use the personal information we collect to:

  • Deliver our educational guides, access keys, and personalized study progress statistics.
  • Verify your account identity and check for unauthorized account-sharing activity under our Terms.
  • Improve our curriculum offerings based on aggregate, de-identified platform engagement metrics.
  • Send transactional messages (e.g., invoice details, password resets) or educational support updates.

4. Data Storage, Security, and Protection

We store your data securely in encrypted cloud repositories. We take all reasonable administrative, technical, and physical measures to secure your personal information against loss, theft, misuse, unauthorized access, alteration, or disclosure.

Because we utilize Stripe and standard Australian cloud providers, some elements of transaction logs may be held in secure servers globally. All data transfer is encrypted using Secure Socket Layer (SSL/TLS) technology.

5. Access, Correction, and Your Rights

Under the Australian Privacy Principles, you have the right to request access to the personal information we hold about you, request corrections to any inaccuracies, or request the deletion of your account and personal records.

Requesting Your Data or Deletion

You can request a copy of your collected personal information or ask us to delete your personal records by contacting us at privacy@thesis50.com. We will respond to your request within 30 days.

6. Changes to this Privacy Policy

We may update this policy periodically to reflect changes in our SaaS operations or updates to the Privacy Act. Any revised version will be published here with an updated revision date.