Privacy Policy
Overview
EduPath AI ("Colbuddy") is committed to protecting the privacy of all users, especially minors. This policy describes what data we collect, how we use it, and your rights regarding that data.
Data We Collect
- Account information: Name, email, date of birth, role (student/parent)
- Academic profile: GPA, test scores, courses, intended major, extracurriculars
- College preferences: Saved colleges, search history, application status
- Chat conversations: Messages exchanged with our AI college advisor
- Career interests: Survey responses and career exploration data
- Transcript data: Uploaded transcripts and AI-generated analysis
- Financial information: Family income bracket (self-reported), FAFSA progress
- Payment data: Processed securely through Stripe; we do not store card numbers
How We Use Your Data
- Provide personalized college planning guidance via AI
- Match students with colleges based on academic profile and preferences
- Generate merit aid estimates and financial fit analysis
- Track application progress and send deadline reminders
- Improve our AI models and service quality
Children's Privacy (COPPA Compliance)
EduPath AI complies with the Children's Online Privacy Protection Act (COPPA).
For users under 13:
EduPath AI does not knowingly collect personal information from children under 13. Account creation is blocked for users who indicate they are under 13 years old.
For users aged 13–17:
- A parent or guardian must provide verifiable consent before the account is activated
- We send a consent email to the parent/guardian email provided during registration
- The student cannot access any features until consent is granted
- Parents can review, correct, or delete their child's data at any time
Parent/Guardian Rights:
- Access: Request a copy of your child's data
- Correction: Request changes to inaccurate information
- Deletion: Request complete deletion of your child's account and all data
- Revoke consent: Withdraw consent at any time, which will deactivate the account
To exercise any of these rights, contact us at privacy@colbuddy.com or through the Family Workspace settings in your account.
Data Security
We use industry-standard security measures including encryption in transit (TLS), encryption at rest (AES-256), and role-based access controls. Data is stored on AWS infrastructure with SOC 2 compliance.
Data Retention and Deletion
You can delete your account and all associated data at any time from the Settings page. For minor users, parents/guardians can also request deletion. When an account is deleted, all personal data is permanently removed from our systems.
Contact Us
If you have questions about this privacy policy or our data practices, contact us at: privacy@colbuddy.com
Last updated: March 15, 2026