Privacy Policy
Version 1.0 · Effective 27 July 2026
Who we are and scope
GoStudyInAustralia is operated by OnTrack Education ("we", "us" or "our"). This Policy explains how we collect, use, store, share and protect personal data through this website, the visa-probability calculator, the course-inquiry form and the counselling-booking form. It applies to all users, in India and abroad, who interact with this service. For privacy questions, requests or grievances, contact our Grievance Officer at Info@purplepatcheducation.com.
Personal data we collect
We collect what you enter to generate your assessment or process your enquiry: full name, email address, phone number, date of birth, nationality, education history, English-test scores, employment details, and sponsor and financial-readiness information — including self-declared annual income, employment type, and a self-declared credit/CIBIL-type score used only to estimate loan eligibility. We also collect your passport issue and expiry dates, used solely to confirm your passport will remain valid for the intended intake; we do not collect your passport number. If you use the optional document-upload features, we additionally collect the academic marksheets and sponsor income-proof documents you choose to upload, and the data our automated text-extraction tool reads from them. We also collect consent records, policy-acceptance timestamps, and technical information such as IP address and browser type needed to secure and operate the service. Please avoid uploading documents showing Aadhaar, PAN, other government ID numbers, or full bank account/card numbers where these are not required for the field being verified.
Document uploads and automated extraction
When you upload a marksheet or an income-proof document, an automated OCR (text-recognition) tool reads details such as marks, subjects or income figures and shows them to you to review and correct before anything is saved — we do not act on extracted data without your confirmation. The original file is stored with our document-storage processor under access-controlled folders that are never made public, and is used only for your assessment, verification and record-keeping.
Notice, consent and purpose
When you submit the calculator, book counselling, or raise a course inquiry, we process your data to generate the requested Australia visa-readiness assessment or loan-eligibility estimate, respond to your enquiry, provide related counselling follow-up if you request it, maintain the record, prevent fraud or misuse, secure the service, and meet legal obligations. We seek clear, affirmative consent before processing and record the policy versions you accepted. We will not use your data for a materially new purpose unless permitted by law or we provide the required notice and obtain fresh consent where required.
Cookies and similar technologies
We use one essential cookie to keep your session verified during email one-time-password (OTP) confirmation on the calculator. It is not used for advertising or tracking. See our Cookie Policy for full details.
Children
This service is intended for users aged 18 or above. If a person under 18 uses it, a parent or lawful guardian must provide the information and consent on the child's behalf. We do not knowingly use a child's data for tracking, behavioural monitoring or targeted advertising.
Sharing and processors
We do not sell personal data. We share data only with service providers who process it on our behalf under contract: Firebase / Google Cloud (database, authentication and hosting of your assessment and enquiry records), Cloudinary (secure storage of uploaded marksheets and income-proof documents), and Resend (delivery of the OTP verification email). We may disclose information where required by applicable law, a valid government or court request, or to protect rights, safety and security. We will obtain your separate permission before sharing your profile with an education provider, migration professional, lender/NBFC or other third party for their own independent use.
International processing
Our service providers may process or store data outside India. Where that happens, we use appropriate contractual, technical and organisational safeguards and follow applicable Indian restrictions on cross-border transfer of personal data.
Retention and deletion
We retain assessment, enquiry and uploaded-document records only for as long as needed for the purposes described here, security, dispute handling and legal obligations. Our current operational target is 24 months from the last meaningful interaction, unless a longer period is required by law or a documented retention hold applies — see our Data Retention & Deletion Policy for details.
Your choices, rights and grievance
You may ask to access a summary of your data, correct inaccurate data, withdraw consent, or request erasure where applicable, by emailing Info@purplepatcheducation.com with the subject “Privacy Request”, along with your name, the email used on the site, and the request type. We may verify your identity before acting. Our Grievance Officer will acknowledge your request and respond within the timeline required under applicable Indian law. Withdrawal does not affect processing already completed lawfully and may mean we cannot continue your assessment.
Security and incident handling
We use encryption in transit, access-controlled storage for uploaded documents, role-based access, authentication, and monitoring designed to protect personal data from unauthorised access, use, alteration or disclosure. No online system is completely secure. We maintain incident-response procedures and will assess, report and notify as required under applicable law and CERT-In directions.
Legal framework and updates
This Policy is designed with reference to the Information Technology Act, 2000, the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, the Digital Personal Data Protection Act, 2023 and the Digital Personal Data Protection Rules, 2025 (notified 13 November 2025, with obligations phasing in through 2026–2027), and CERT-In directions on cyber-incident reporting. It does not replace legal advice. We may update this Policy to reflect service, law or regulatory changes; the current version and effective date will appear on this page, and material changes will be presented before a new submission.
This policy is written in clear language for this service. Contact us if you need it explained or need to exercise a privacy right.
Return home