TertiaSync ("TertiaSync," "we," "our," or "us") respects your privacy and is committed to responsible handling of personal data.
This Data Policy explains what personal data TertiaSync collects, how we use it, how it may be shared, how we protect it, how long it is retained, and the rights available to users under applicable data-protection law, including the Nigeria Data Protection Act 2023 (NDPA).
TertiaSync is currently designed for undergraduate students enrolled at Nigerian tertiary institutions.
Where applicable law requires consent for a particular processing activity, TertiaSync will request consent through an appropriate mechanism. Where another lawful basis applies, processing may be carried out on that basis.
The information TertiaSync collects depends on how you use the Platform and what information you choose to provide.
When creating an account, TertiaSync may collect information such as:
Users may voluntarily add additional information to their profile, including:
Phone number and matriculation number are optional and are not required to create a TertiaSync account.
TertiaSync does not represent that a matriculation number is institutionally verified merely because a user enters one into their profile.
We use account and profile information to:
Depending on the features used, TertiaSync may process information entered into academic tools, including:
This information is used to provide academic organization and calculation features such as CGPA calculations, scheduling, and relevant reminders.
TertiaSync does not represent calculations generated by the Platform as official institutional academic records.
When you submit an academic contribution, TertiaSync may process:
This information is used to review, moderate, organize, maintain, and publish approved academic resources and administer the contribution system.
TertiaSync may process technical or usage information necessary to operate and secure the Platform, including, where available:
This information may be used for:
If you contact TertiaSync through email, support channels, reports, or other communication methods, we may process the information contained in those communications to respond to you, provide support, investigate reports, handle complaints, and address account or security matters.
TertiaSync does not intentionally store user passwords in plain text.
Where passwords are used, appropriate authentication and credential-protection mechanisms are applied.
Users are responsible for protecting their account credentials and should not share their passwords with others.
Depending on the circumstances, TertiaSync may process personal data to:
TertiaSync will not intentionally process personal data for purposes incompatible with the purpose for which it was collected without an appropriate legal basis or notice where required.
TertiaSync does not sell or rent users' personal data to advertisers or data brokers.
TertiaSync may use third-party service providers and infrastructure providers necessary to operate the Platform.
Depending on the services actually used by TertiaSync, these may include:
Database infrastructure, authentication, and related backend services.
Platform hosting and deployment infrastructure.
TertiaSync may use a third-party domain registrar to register and manage its domain name. Such a provider may process information associated with the TertiaSync account and domain registration.
TertiaSync may use other providers for services such as email delivery, security, analytics, monitoring, storage, or other technical functionality where necessary to operate the Platform.
TertiaSync will not list a provider as an active data processor merely because we may use that provider in the future.
Where third parties process personal data on TertiaSync's behalf, TertiaSync will take appropriate steps to establish relevant safeguards as required by applicable law.
The November 14, 2026 MVP does not offer Premium subscriptions or paid plans.
If paid services are introduced later, the applicable payment providers and relevant data-processing practices will be reflected in an updated Data Policy where appropriate.
TertiaSync uses reasonable technical and organizational measures designed to protect personal data against unauthorized access, loss, misuse, alteration, disclosure, or destruction.
These measures may include:
TertiaSync's role-based access controls may restrict administrative or role-specific functionality according to authorized permissions.
For example, authorized representative functionality may provide certain users with capabilities that ordinary users do not have.
No online service can guarantee absolute security. Users are also responsible for taking reasonable steps to protect their accounts and devices.
TertiaSync aims to retain personal data only for as long as reasonably necessary for the purposes for which it was collected, subject to applicable legal or operational requirements.
Personal data associated with a user's account, including optional profile information such as phone number and matriculation number, will be deleted when the user deletes their account, subject to limited technical, legal, security, or other circumstances where retention is required or reasonably necessary.
Academic information entered into personal academic tools will be deleted with the user's account, subject to applicable technical or legal limitations.
Information necessary to maintain the integrity of the contribution system may be handled separately from ordinary account information.
Approved academic materials do not automatically disappear from the TertiaSync Archive when the contributor deletes their account.
An approved contribution may remain available because it forms part of TertiaSync's academic resource archive.
However, the contributor's personal account information will not remain attached to the contribution merely because the contribution remains available.
An approved contribution may be removed where:
Users may request deletion of their TertiaSync account through the available account settings or designated support channel.
When an account is deleted, TertiaSync will delete personal data associated with that account in accordance with this Policy and applicable law.
Deleting an account does not automatically delete approved academic contributions that have already been published in the Archive.
Approved contributions are treated separately from the user's personal account data.
TertiaSync may retain limited information where necessary for legal compliance, security, fraud prevention, dispute resolution, enforcement of rights, or protection of the Platform and its users.
TertiaSync may use cookies, local storage, or similar technologies to support Platform functionality.
These may be used for:
Maintaining login sessions and helping protect accounts.
Remembering settings such as interface preferences where applicable.
Supporting detection and prevention of suspicious activity.
Where analytics tools are implemented, they may help TertiaSync understand general Platform usage and improve performance.
The specific technologies and retention periods may change as TertiaSync develops.
Users may manage or delete cookies and local storage through their browser or device settings. Disabling certain technologies may affect Platform functionality.
Subject to applicable law and relevant limitations, users may have rights including:
Request information about personal data TertiaSync processes about you.
Request correction of inaccurate or incomplete personal data.
Request deletion of personal data in appropriate circumstances.
Request restriction of certain processing where applicable.
Request personal data in a portable format where applicable.
Object to certain forms of processing where applicable.
Where processing is based on consent, withdraw consent subject to applicable limitations.
Exercising a data-protection right does not necessarily require TertiaSync to remove an approved academic contribution from the Archive where the contribution is retained separately from the user's personal data and there is a lawful basis for retaining it.
To exercise a data-protection right, contact:
tertiasync@gmail.comTertiaSync may reasonably verify the identity of a requester before processing a request. Requests will be handled within the period required by applicable law.
TertiaSync is currently designed for undergraduate students enrolled at Nigerian tertiary institutions.
TertiaSync does not intentionally seek to collect personal data from individuals who are not eligible to use the Platform.
Where TertiaSync becomes aware that an ineligible individual has created an account, appropriate action may be taken in accordance with applicable law and the Terms of Use.
Some third-party infrastructure or technology providers used by TertiaSync may process or store information outside Nigeria.
Where personal data is transferred or made accessible outside Nigeria, TertiaSync will take appropriate steps required by applicable Nigerian data-protection law.
The location of third-party infrastructure may change as TertiaSync develops.
If TertiaSync becomes aware of a personal-data breach or security incident requiring action under applicable law, TertiaSync will take appropriate steps to investigate, mitigate, document, and report the incident as required.
Where notification to affected users or an appropriate authority is legally required, TertiaSync will provide such notification in accordance with applicable requirements.
TertiaSync may update this Data Policy when necessary to reflect changes to:
Material changes may be communicated through the Platform or another appropriate channel.
The Last Updated date will be changed when this Policy is revised.
For privacy questions, data requests, complaints, or concerns:
© 2026 TertiaSync. All Rights Reserved.
TertiaSync — The Centralized Academic Operating System
Built in Ogbomoso, Nigeria.