Overview
Easy Classroom (“we”, “us”) provides the ClassroomLanka student app (iOS & Android, Flutter) and the ClassroomLanka Dashboard (web). This policy explains what we collect, why, and how you can control it. It applies to students, parents, teachers and institution admins.
Data we collect
Provided by you or your institution
- Account: name, email/phone, password (hashed via Firebase Auth), profile photo, district/province, study grade, institute association.
- Learning content: courses, directories, submissions, poll/exam answers, comments, feed posts and attachments you create.
- Support: messages you send to support, including contact preference (email, WhatsApp, Telegram, etc.).
Collected automatically
- Device & app: device model, OS, app version, push token (FCM), language, timezone offset for countdown accuracy.
- Usage & diagnostics: screens visited, feature use, crash logs and performance metrics to keep the app fast.
- Media & permissions: camera / gallery only when you choose to upload; biometrics only for local auth if you enable it.
We do not collect precise location, advertising IDs for tracking, or data beyond what is necessary for the LMS to function.
How we use data
- Authenticate you and keep your session secure (Firebase Auth + secure storage).
- Show the right courses and gate paid/free directories via your subscription is checked.
- Deliver videos (video), PDFs and images, with caching and thumbnails.
- Enable search, sorting (name, newest, price) and filters.
- Run countdown timers, featured carousels, feeds and notifications.
- Provide analytics to your institution (member counts, district distribution, completion) — never across institutions without consent.
- Improve stability, fix bugs, and prevent abuse (device integrity checks, screenshot protection).
Legal bases: contract (providing the LMS you requested), legitimate interest (security, improvement), and consent where required (push notifications, biometrics).
Storage & security
- Cloud: Firebase (Auth, secure cloud services) hosted by Google. Data is encrypted in transit and at rest.
- On device: encrypted storage and secure preferences for tokens and preferences; cached PDFs/images are stored locally for offline access.
- Access control: every directory checks access type and subscription before render — free vs paid is enforced on client and via security rules.
- Protections: optional screenshot protection, device integrity checks, prevention of account sharing via device binding & trusted devices, and local biometrics.
- Retention: account data until deletion request; learning records and logs per institution policy; backups per Firebase retention.
Your rights
- Access & export: ask your institution admin or contact us for a copy of your data.
- Correction: update profile via the app/dashboard or request correction.
- Deletion: request deletion via your institution or at support. We delete or anonymize unless retention is legally required.
- Object / restrict: opt out of non-essential notifications and optional analytics.
- Withdraw consent: disable biometrics, push or media permissions at any time in device settings.
Children
Many learners are under 18. Data is processed with consent of a parent/guardian or the institution acting in loco parentis, in line with Sri Lankan law. Parents may review, correct or request deletion via the institution or support.
Changes to this policy
We may update this policy to reflect new features (e.g., new content types) or legal changes. We will update the “Last updated” date and, for material changes, notify via the app or dashboard. Continued use after changes means acceptance.
Contact
Questions or requests? Reach us at Support or email privacy@easyclassroom.lk. We aim to respond within 1 business day.
Controller: ClassroomLanka / Easy Classroom • Firebase Project: classroom-shared1 • This policy does not replace institution-specific notices your academy may provide.