OmicsLogic Privacy Policy

Effective Date: January 29, 2026
Last Updated: January 29, 2026

Table of Contents

  1. Introduction

  2. Who We Are and How to Contact Us

  3. Scope of This Policy

  4. Information We Collect

  5. How We Use Your Information

  6. Legal Bases for Processing (EEA/UK Users)

  7. How We Share Your Information

  8. International Data Transfers

  9. Special Considerations for Sensitive Scientific Data

  10. Data Retention

  11. Security Measures

  12. Cookies and Tracking Technologies

  13. Your Privacy Rights

  14. Children's Privacy

  15. Marketing and Communications

  16. Third-Party Links and Services

  17. California Privacy Rights (CCPA/CPRA)

  18. Changes to This Privacy Policy

  19. Contact Us

1. Introduction

Welcome to OmicsLogic. We are committed to protecting your privacy and ensuring transparency about how we collect, use, share, and safeguard your personal information.

Our Commitment to Privacy

At OmicsLogic, we understand the sensitive nature of bioinformatics research and education. Whether you're analyzing genomic sequences, working with proteomic datasets, or learning computational biology techniques, we recognize that your data—both personal and scientific—requires careful protection and responsible handling.

This Privacy Policy explains:

  • What information do we collect and why

  • How we use and protect your information

  • Your rights and choices regarding your data

  • Special protections for sensitive scientific data

Your Consent

By accessing or using OmicsLogic's websites, platforms, applications, courses, or services (collectively, "Services"), you acknowledge that you have read, understood, and agree to this Privacy Policy and our Terms and Conditions.

If you do not agree with this Privacy Policy, please do not use our Services.

2. Who We Are and How to Contact Us

Data Controller

OmicsLogic operates as the data controller for personal information collected through our Services. This means we determine how and why your personal data is processed.

Our Contact Information

OmicsLogic

Email:

Website:https://omicslogic.com

United States Office:
5900 Balcones Drive

STE 100

Austin, TX, 78731, USA

India Office:
#6 CGHS Plot No. 7, Sec 9, Manzil Apartment
West Delhi-110075, India

Data Protection Officer

For data protection inquiries, particularly from EU/EEA or UK users, you may contact us at: support@omicslogic.com

3. Scope of This Policy

What This Policy Covers

This Privacy Policy applies to personal information collected through:

  • Websites: omicslogic.com and associated subdomains

  • Learning Platforms: Our course delivery and learning management systems

  • Mobile Applications: OmicsLogic mobile apps (iOS and Android)

  • Google Forms and Surveys: Data collection forms and feedback surveys

  • Communications: Emails, support tickets, live chat, phone calls

  • Events: Webinars, workshops, conferences, and training events

  • Research Services: Custom data analysis and consultation services

  • Social Media Channels: Engagements, direct messages, comments, and subscription or follow activities on OmicsLogic’s official social media accounts

Data Controller vs. Data Processor

When we are the Data Controller:
For individual learners, students, and users accessing our public courses and services, OmicsLogic acts as the data controller and determines how personal data is processed.

When we are a Data Processor:
For organizational customers (enterprises, institutions, research organizations), we may process data on their behalf in accordance with their instructions. In these cases:

  • The customer is the data controller

  • OmicsLogic is the data processor

  • A Data Processing Addendum (DPA) governs the processing relationship

  • The customer determines data retention, deletion, and usage policies

What This Policy Does Not Cover

This Privacy Policy does not apply to:

  • Third-party websites, platforms, or services linked from our Services

  • Information collected by our customers (organizational account administrators) from their own users

  • Information processed by third-party integrated tools that you choose to use (e.g., GitHub, cloud platforms)

4. Information We Collect

We collect several types of information to provide, improve, and secure our Services.

4.1 Information You Provide Directly

Account Information

When you create an account, we collect:

  • Personal Identifiers: Full name, email address, phone number, username

  • Professional Information: Job title, organization/institution name, department, field of study, research interests

  • Authentication Data: Password (encrypted and hashed), security questions

  • Profile Details: Profile photo, biography, professional background, areas of expertise

  • Location Data: Country, state/region, timezone (for course scheduling and localization)

Educational and Course Data

As you use our educational Services, we collect:

  • Course Enrollment Information: Courses enrolled, enrollment dates, payment information

  • Learning Progress: Course completion status, module progress, time spent on lessons

  • Assessment Data: Quiz responses, exam scores, assignment submissions, project evaluations

  • Certificates: Certificate of completion, records, and credentials

  • Learning Preferences: Preferred learning pace, content difficulty preferences, areas of interest

  • Feedback and Surveys: Feedback collected through forms or surveys at the end of training sessions, workshops or courses

User-Generated Content

You may choose to submit:

  • Course Projects: Code files, scripts (R, Python), Jupyter notebooks, analysis workflows

  • Scientific Datasets: Genomic sequences, transcriptomic data, proteomic profiles, metabolomic datasets, or other omics data uploaded for learning or analysis purposes

  • Documentation: Project reports, research summaries, analysis documentation

  • Discussion Contributions: Forum posts, comments, questions, peer interactions

  • Assignments and Exercises: Completed coursework, practical exercises, and case study solutions

Communications and Support

When you contact us, we collect:

  • Support Requests: Problem descriptions, error messages, screenshots, system information

  • Feedback: Course reviews, satisfaction surveys, feature requests, improvement suggestions

  • Correspondence: Email communications, live chat transcripts, phone call recordings (with notice)

Payment Information

When you make a purchase, we collect:

  • Billing Details: Billing name, address, email, phone number

  • Payment Information: Credit/debit card information (processed securely by our payment processors; we do not store full card numbers)

  • Transaction Data: Purchase history, invoice records, refund requests

4.2 Information Collected Automatically

Device and Technical Information

When you access our Services, we automatically collect:

  • Device Data: Device type, model, operating system (OS) version, screen resolution, device identifiers

  • Browser Information: Browser type and version, language preferences, installed plugins

  • Network Data: IP address, internet service provider (ISP), connection type

  • Location Data: Approximate geographic location based on IP address (country, state, city)

Usage and Analytics Data

We collect information about how you interact with our Services:

  • Navigation Data: Pages visited, features accessed, clickstream patterns, navigation paths

  • Interaction Metrics: Buttons clicked, forms submitted, videos watched, time spent on each page

  • Course Engagement: Lessons completed, videos played/paused, quiz attempts, assignment submissions

  • Search Queries: Search terms used within our platform

  • Performance Data: Page load times, errors encountered, system performance metrics

  • Referral Information: Referring website or source that directed you to our Services

Log Files

Our servers automatically record information in log files, including:

  • Access timestamps and dates

  • URLs accessed and resources requested

  • HTTP response codes and error messages

  • User agent strings

  • Session identifiers

4.3 Sensitive and Special Category Data

Scientific and Bioinformatics Data

OmicsLogic may receive, store, or process sensitive scientific data uploaded by users, including:

  • Genomic Data: DNA/RNA sequences, variant calls, genome assemblies, SNP data

  • Transcriptomic Data: Gene expression matrices, RNA-Seq counts, differential expression results

  • Metagenomic Data: Microbial community sequencing data, taxonomic and functional profiling results

  • Proteomic Data: Protein sequences, mass spectrometry data, protein-protein interaction networks

  • Metabolomic Data: Metabolite profiles, pathway data, biochemical measurements

  • Epigenomic Data: Methylation patterns, chromatin accessibility data, histone modifications

  • Clinical Correlations: Phenotypic data, treatment responses, disease associations (when provided)

  • Patient/Subject Identifiers: In rare cases, research data may contain identifiable human subject information (we strongly recommend de-identification before upload)

  • Other Biological or Omics Data: Any other type of biological, biomedical, or multi-omics dataset submitted as part of research, analysis, or training activities

Important: We treat all bioinformatics datasets as potentially sensitive and apply enhanced security measures and access controls. See Section 9 for detailed information on how we handle sensitive scientific data.

Health and Medical Information

While our Services are for educational and research purposes (not clinical use), we may indirectly collect health-related information through:

  • Research datasets containing health phenotypes

  • Course projects involving clinical case studies

  • User discussions about health-related bioinformatics topics

We do not intentionally collect personal health information for commercial purposes, nor do we use health data for marketing.

Other Special Category Data (Rare)

In limited circumstances, we may collect:

  • Demographic Data: Race, ethnicity (only when voluntarily provided for diversity scholarships or research studies)

  • Accessibility Needs: Disability information (only when you request accommodations)

We process special category data only with your explicit consent, for legitimate educational/research purposes, and with appropriate safeguards.

4.4 Information from Third-Party Sources

We may receive information about you from third parties, including:

Identity Providers

When you sign up or log in using third-party authentication (Google, LinkedIn, GitHub, institutional SSO):

  • Name, email address, profile photo

  • Professional information from your social profile

  • Authentication tokens (we do not access your password)

  • General geographic location or timezone inferred from your third-party profile or account settings

Organizational Administrators

If you access OmicsLogic through an organizational account (employer, university, research institution):

  • Your name, email, and employee/student ID

  • Enrollment permissions and course assignments

  • Organizational affiliation and role

  • Institutional or campus location, department address, or region associated with your organization’s account

Payment Processors

Our payment partners (Stripe, PayPal, Razorpay, Google Pay, bank transfer options, etc.) provide:

  • Transaction confirmation and payment status

  • Billing information and invoice records

  • Fraud detection signals

Analytics and Marketing Partners

We may receive aggregated or de-identified insights from:

  • Google Analytics (website usage patterns)

  • Social media platforms (ad campaign performance)

  • Email service providers (email engagement metrics)

Referral Partners

If a partner institution or affiliate referred you:

  • Referral source information

  • Promotional code usage

  • Partnership-specific identifiers

5. How We Use Your Information

We use your personal information for the following purposes:

5.1 Providing and Delivering Services

To operate our educational platform:

  • Create, manage, and authenticate your account

  • Provide access to courses, learning materials, and platform features

  • Track your learning progress and course completion

  • Generate certificates of completion

  • Process and grade assessments

  • Enable interactive features (forums, Q&A, peer collaboration)

  • Provide technical support and troubleshooting

  • Respond to your inquiries and support requests

To deliver research and analysis services:

  • Execute custom bioinformatics analyses as requested

  • Process and analyze uploaded datasets

  • Generate reports, visualizations, and results

  • Provide consultation and expert guidance

5.2 Personalization and Recommendations

To enhance your learning experience:

  • Recommend courses and learning paths based on your interests, progress, and goals

  • Personalize content delivery and difficulty level

  • Suggest relevant resources, tools, and case studies

  • Customize platform interface and preferences

  • Provide tailored feedback on assignments and projects

5.3 Communication

To keep you informed:

  • Send transactional emails (enrollment confirmations, password resets, payment receipts)

  • Provide course updates, announcements, and schedules

  • Notify you of new features, courses, and platform improvements

  • Send administrative messages (account status, policy changes)

  • Respond to your questions, feedback, and support requests

Marketing communications:

  • Share educational content, tips, and best practices

  • Promote new courses, webinars, and events

  • Offer discounts, promotions, and special opportunities

  • Conduct surveys and request feedback

5.4 Payment Processing and Billing

To handle financial transactions:

  • Process payments for courses, subscriptions, and services

  • Generate invoices and receipts

  • Manage refunds and cancellations

  • Prevent payment fraud and verify transactions

  • Maintain financial records for accounting and tax purposes

5.5 Research, Analytics, and Improvement

To improve our Services:

  • Analyze usage patterns and learning behaviors (using aggregated or anonymized data)

  • Conduct educational research on effective teaching methods

  • Measure course effectiveness and engagement

  • Identify areas for content improvement

  • Test new features and functionality

  • Optimize platform performance and user experience

  • Benchmark learning outcomes across courses

We use aggregated, de-identified, or anonymized data for research whenever possible to minimize privacy risks.

5.6 Security, Fraud Prevention, and Compliance

To protect our Services and users:

  • Monitor and detect fraudulent activity, spam, and abuse

  • Investigate and prevent security incidents and unauthorized access

  • Enforce our Terms and Conditions and acceptable use policies

  • Maintain audit trails and security logs

  • Conduct security testing and vulnerability assessments

To comply with legal obligations:

  • Respond to law enforcement requests and legal process

  • Comply with tax, accounting, and financial regulations

  • Meet data protection and privacy law requirements

  • Enforce intellectual property rights

  • Fulfill contractual obligations

5.7 Organizational Account Administration

For enterprise and institutional customers:

  • Provide administrators with tools to manage user accounts

  • Enable assignment of courses and learning paths

  • Generate reports on team progress and performance

  • Facilitate group enrollments and bulk licensing

  • Support integration with the organization's learning management systems

Note: Organizational administrators may access certain user information within their organization, as described in our Terms and Conditions.

5.8 Sensitive Scientific Data Processing

When you upload bioinformatics datasets:

  • Store datasets securely with encryption and access controls

  • Execute analysis pipelines and computational workflows as requested

  • Generate results, visualizations, and statistical outputs

  • Provide educational feedback on analysis approaches

  • We do not use identifiable sensitive scientific data for marketing, advertising, or unrelated product development without your explicit permission

6. Legal Bases for Processing (EEA/UK Users)

For users in the European Economic Area (EEA), the United Kingdom (UK), or other jurisdictions with similar data protection laws, we process personal data based on the following legal grounds:

6.1 Contractual Necessity

Processing is necessary to perform our contract with you (Terms and Conditions), including:

  • Providing access to courses and platform features

  • Delivering purchased services

  • Managing your account

  • Processing payments

6.2 Legitimate Interests

Processing is necessary for our legitimate business interests, provided these interests do not override your rights:

  • Improving and optimizing our Services

  • Conducting research and analytics (using anonymized data where possible)

  • Preventing fraud and ensuring security

  • Managing customer relationships

  • Direct marketing to existing customers (with opt-out option)

6.3 Consent

Processing is based on your explicit, freely-given consent:

  • Marketing emails and promotional communications

  • Optional cookies and tracking technologies

  • Processing sensitive personal data (health, genetic information)

  • Sharing data with third parties for non-essential purposes

You may withdraw consent at any time without affecting the lawfulness of prior processing.

6.4 Legal Obligations

Processing is necessary to comply with legal requirements:

  • Tax and accounting regulations

  • Law enforcement requests

  • Court orders and legal proceedings

  • Regulatory compliance (e.g., export control, anti-money laundering)

6.5 Vital Interests

In rare cases, processing may be necessary to protect vital interests (life-threatening emergencies).

6.6 Public Interest

Processing may be necessary for public interest purposes, such as:

  • Academic and scientific research (with appropriate safeguards)

  • Public health research (when properly anonymized)

7. How We Share Your Information

We do not sell, rent, or trade your personal information to third parties for their marketing purposes.

7.1 Service Providers and Subprocessors

We share information with trusted third-party service providers who perform services on our behalf. These providers are contractually obligated to:

  • Process data only according to our instructions

  • Maintain confidentiality and security

  • Comply with applicable data protection laws

  • Not to use data for their own purposes

Categories of service providers:

Cloud Infrastructure and Hosting

  • Providers: Amazon Web Services (AWS), Google Cloud Platform, Microsoft Azure, DigitalOcean, GoDaddy

  • Data Shared: All data stored on our platform

  • Purpose: Hosting, storage, computing infrastructure, database management

Payment Processing

  • Providers: Stripe, PayPal, Razorpay, Google Pay, and bank transfer options

  • Data Shared: Billing information, payment details, transaction data

  • Purpose: Processing payments, managing subscriptions, and fraud detection

Email and Communications

  • Providers: SendGrid, Mailchimp, Amazon SES, Mergo, Substack, Calendly, Microsoft Teams

  • Data Shared: Email address, name, communication preferences

  • Purpose: Sending transactional and marketing emails, managing email campaigns

Analytics and Performance Monitoring

  • Providers: Google Analytics, Mixpanel, Hotjar

  • Data Shared: Usage data, device information, interaction metrics (often anonymized)

  • Purpose: Understanding user behavior, improving Services, and performance monitoring

Customer Support

  • Providers: Gmail, Microsoft Teams, Zoom, Google Meet, WhatsApp

  • Data Shared: Contact information, support tickets, conversation history

  • Purpose: Providing customer support and managing inquiries

Video and Content Delivery

  • Providers: Vimeo, YouTube, Wistia, CloudFlare CDN

  • Data Shared: Usage data, viewing metrics

  • Purpose: Delivering video content, improving streaming performance

Authentication Services

  • Providers: Auth0, Google OAuth, LinkedIn, GitHub, Facebook Login, Apple ID, X (formerly Twitter)

  • Data Shared: Authentication tokens, profile information

  • Purpose: Single sign-on, account authentication

Learning Management and Assessment

  • Providers: Custom LMS integrations, quiz platforms, plagiarism detection services

  • Data Shared: Course data, assignments, assessment responses

  • Purpose: Course delivery, grading, and academic integrity monitoring

7.2 Organizational Customers and Administrators

If you access OmicsLogic through an organizational account, your organization's administrators may access:

  • Your account information (name, email, job title)

  • Course enrollment and completion status

  • Learning progress and assessment scores

  • Usage activity and engagement metrics

  • Content you create or upload (if permitted by organizational policies)

This data sharing is necessary to provide services to organizational customers and is disclosed in our Terms and Conditions.

Your organization may have its own privacy policies governing how they use this information.

7.3 Legal Requirements and Safety

We may disclose personal information if required to do so by law or in good faith belief that such disclosure is necessary to:

  • Comply with legal obligations, court orders, subpoenas, or government requests

  • Enforce our Terms and Conditions, Privacy Policy, or other agreements

  • Protect the rights, property, or safety of OmicsLogic, our users, or the public

  • Prevent, investigate, or take action regarding illegal activities, fraud, or security threats

  • Respond to claims that content violates third-party rights

We will notify you of legal requests for your data, unless prohibited by law or notification would compromise an investigation.

7.4 Business Transfers

In the event of a merger, acquisition, reorganization, bankruptcy, or sale of all or substantially all of our assets:

  • Personal information may be transferred to the acquiring entity

  • We will provide notice before your information is transferred and becomes subject to a different privacy policy

  • Appropriate safeguards will be maintained to protect your data during the transition

7.5 With Your Consent

We may share your information with third parties when you explicitly consent, such as:

  • Sharing your course completion certificate with your employer or institution

  • Featuring your project or case study in our marketing materials (with anonymization if requested)

  • Participating in research studies or surveys conducted by partners

  • Integrating with third-party tools you choose to connect (e.g., GitHub, Google Drive)

7.6 Aggregated and De-Identified Data

We may share aggregated, anonymized, or de-identified data that cannot reasonably be used to identify you:

  • Research publications on educational outcomes and learning methods

  • Industry reports and whitepapers

  • Platform usage statistics and trends

  • Benchmark data for organizational customers

8. International Data Transfers

8.1 Global Operations

OmicsLogic operates globally, serving users worldwide. Our primary operations are based in India and the United States, and we use service providers located in various countries. As a result, your personal information may be transferred to, stored in, and processed in:

  • The United States

  • European Economic Area (EEA) countries

  • India

  • Other countries where our service providers operate

These countries may have data protection laws that differ from those in your home country.

8.2 Safeguards for International Transfers

When we transfer personal data from the EEA, UK, or Switzerland to countries without an adequacy decision, we implement appropriate safeguards:

Standard Contractual Clauses (SCCs)

We use EU Standard Contractual Clauses (also known as Model Clauses) approved by the European Commission. These are standardized contractual terms that ensure adequate data protection for transfers.

Data Processing Addenda

For organizational customers, we enter into Data Processing Addenda that include:

  • Standard Contractual Clauses

  • Security requirements and commitments

  • Data subject rights mechanisms

  • Provisions for onward transfers

Additional Security Measures

For sensitive scientific data transfers, we implement supplementary measures:

  • Enhanced encryption in transit and at rest

  • Strict access controls and authentication

  • Data localization options (storing data in specific regions)

  • Regular security audits and assessments

8.3 Data Localization Options

For customers with specific data residency requirements:

  • We may offer regional data storage options (e.g., EU-only, India-only hosting)

  • Organizational customers can request data localization in their service agreements

  • Contact our sales team at communication@omicslogic.com to discuss data residency options

8.4 Your Rights Regarding Transfers

If you are in the EEA, UK, or Switzerland:

  • You have the right to obtain information about international transfers

  • You may request copies of appropriate safeguards (SCCs, DPAs)

  • You can object to certain transfers or request data localization

9. Special Considerations for Sensitive Scientific Data

Given OmicsLogic's focus on bioinformatics and omics education, we recognize that users may upload or process sensitive biological, genomic, and health-related datasets. We treat such data with heightened protection.

9.1 Nature of Sensitive Scientific Data

Sensitive scientific data may include:

  • Human genomic sequences (whole genome, exome, targeted sequencing)

  • RNA expression data from patient samples

  • Proteomic profiles with clinical correlations

  • Metabolomic data linked to disease phenotypes

  • Microbiome data from human subjects

  • Any dataset containing identifiable human subject information

9.2 User Responsibilities

Before uploading sensitive datasets, you must:

Obtain Proper Authorization

  • Ensure you have legal authority to use and share the data

  • Obtain necessary ethics committee approvals (IRB, ethics board, institutional review board)

  • Secure informed consent from human subjects where required

De-Identify or Anonymize Data

  • Remove direct identifiers (names, addresses, dates of birth, medical record numbers)

  • Apply de-identification standards (HIPAA Safe Harbor, Expert Determination, GDPR pseudonymization)

  • Consider re-identification risks and apply k-anonymity or differential privacy where appropriate

Comply with Regulations

  • Follow HIPAA regulations (if in the US healthcare context)

  • Comply with GDPR requirements (for EU subjects)

  • Adhere to your institution's data governance policies

  • Follow research ethics guidelines and codes of conduct

Classify Data Appropriately

  • Label datasets according to sensitivity level

  • Apply appropriate access controls and sharing restrictions

  • Document data handling requirements

Warning: Uploading identifiable human subject data without proper authorization and consent may violate laws and regulations. You are solely responsible for ensuring compliance.

9.3 OmicsLogic's Commitments

When you upload sensitive scientific data, we commit to:

Enhanced Security Measures

  • Encryption at Rest: All sensitive datasets are encrypted using AES-256 encryption or stronger

  • Encryption in Transit: All data transfers use TLS 1.2 or higher

  • Access Controls: Role-based access control (RBAC) with multi-factor authentication (MFA)

  • Isolated Storage: Option for isolated storage environments for highly sensitive data

  • Audit Logging: Comprehensive logging of all access, modifications, and downloads

Limited Use and Purpose Limitation

  • Process sensitive data only for the specific educational or analysis purpose you specify

  • Do not use identifiable sensitive data for marketing, advertising, or product improvement without explicit permission

  • Do not share sensitive data with third parties except as necessary to provide the service and with your consent

Contractual Protections

  • For organizational customers processing sensitive data, we provide:

    • Data Processing Addendum (DPA) with Standard Contractual Clauses

    • Business Associate Agreement (BAA) for HIPAA-covered entities

    • Custom data handling agreements as needed

Data Minimization

  • Process only the minimum sensitive data necessary

  • Encourage the use of anonymized or synthetic datasets for educational purposes

  • Provide tools and guidance for data de-identification

Retention and Deletion

  • Retain sensitive data only as long as necessary for the specified purpose

  • Securely delete sensitive data upon request or according to retention schedules

  • Provide secure deletion mechanisms and certificates of destruction upon request

9.4 Data Processing Addendum (DPA)

Organizations processing sensitive scientific data through OmicsLogic should execute our Data Processing Addendum, which includes:

  • Detailed processing instructions and limitations

  • Security and confidentiality obligations

  • Sub-processor management

  • Data subject rights facilitation

  • Breach notification procedures

  • Audit and inspection rights

  • Terms for data deletion and return

Request a DPA: Contact communication@omicslogic.com

9.5 Research Use of Scientific Data

Aggregated Research: We may research aggregated, anonymized scientific datasets to:

  • Improve analysis algorithms and methods

  • Benchmark tool performance

  • Publish scientific findings on computational methods

  • Develop new educational content

Safeguards for research use:

  • Data is aggregated across multiple users and thoroughly anonymized

  • No attempt is made to re-identify individuals

  • Research protocols undergo ethics review where required

  • Results are published in aggregate form only

Opt-Out: If you do not wish your anonymized data to be used for research, contact support@omicslogic.com to opt out.

9.6 No Clinical or Diagnostic Use

Important Disclaimer:

  • OmicsLogic Services are for educational and research purposes ONLY

  • We do not provide clinical diagnostic, medical advisory, or healthcare services

  • Results from platform analyses are not validated for clinical decision-making

  • Never use OmicsLogic for diagnosis, treatment planning, or patient care without appropriate validation

10. Data Retention

We retain personal information only as long as necessary to fulfill the purposes described in this Privacy Policy and to comply with legal, regulatory, and contractual obligations.

10.1 Retention Periods by Data Type

Account and Profile Information

  • Active Accounts: Retained while your account is active

  • Deleted Accounts: Personal identifiers deleted within 90 days, except data required for legal, accounting, or security purposes

User-Generated Content

  • Forum Posts and Discussions: Retained while account is active; may be anonymized (username removed) rather than deleted to preserve community discussions

  • Feedback and Reviews: Retained indefinitely in anonymized form for quality improvement

Uploaded Scientific Datasets

  • Educational/Practice Datasets: Retained for the duration of your account or as specified in your service agreement

  • Research Service Data: Retention period specified in your service agreement 

  • You may request deletion at any time unless contractual or legal obligations require retention

Communications and Support

  • Email Communications: Retained according to our email retention policy (typically 3-5 years)

  • Marketing Communications: Retained until you unsubscribe or for 7 years (whichever is earlier)

Billing and Financial Records

  • Transaction Records: Retained for 7 years to comply with tax and accounting regulations

  • Payment Information: Not stored by us (held by payment processors); transaction references retained per above

Organizational Account Data

  • Retention is determined by the organization's contract and policies

  • Upon contract termination, data handling is per the contract terms (typically 30-90 day grace period for retrieval, then deletion)

10.2 Legal and Regulatory Requirements

We may retain data longer when required by:

  • Tax and financial regulations (typically 7 years)

  • Legal holds (litigation, investigations, subpoenas)

  • Regulatory compliance (export control, research ethics)

  • Contract terms with organizational customers

10.3 Anonymization as an Alternative to Deletion

In some cases, instead of deleting data, we may anonymize it:

  • Removing all personal identifiers

  • Aggregating data to prevent re-identification

  • Using anonymized data for analytics and research

Anonymized data is no longer considered personal information and may be retained indefinitely.

10.4 Your Right to Request Deletion

You may request deletion of your data at any time (subject to legal/contractual exceptions). See Section 13 for information on exercising your rights.

11. Security Measures

We are committed to protecting your personal information and sensitive scientific data through comprehensive security measures.

11.1 Technical Security Controls

Encryption

  • Data at Rest: AES-256 encryption for all databases and file storage systems

  • Data in Transit: TLS 1.2 or higher for all data transmissions

  • Sensitive Scientific Data: Enhanced encryption with customer-managed keys available for enterprise customers

  • Backups: Encrypted backups stored in geographically distributed locations

Access Controls

  • Authentication: Strong password requirements

  • Authorization: Role-based access control (RBAC) with the principle of least privilege

Network Security

  • Firewalls: Web application firewalls (WAF) and network firewalls

  • DDoS Protection: Distributed denial-of-service attack mitigation

  • Network Segmentation: Isolation of sensitive data environments

Application Security

  • Secure Development: Security-first development practices 

  • Code Reviews: Regular security code reviews and audits

  • Vulnerability Management: Regular vulnerability scanning and penetration testing

  • Dependency Management: Monitoring and updating third-party libraries for security patches

11.2 Administrative and Organizational Controls

Personnel Security

  • Background Checks: Background verification for employees with access to sensitive data

  • Security Training: Regular security and privacy training for all employees

  • Access Management: Strict controls on who can access personal and scientific data

  • Departure Procedures: Immediate revocation of access when employees leave

Security Policies and Procedures

  • Information Security Policy: Comprehensive security policies and standards

  • Incident Response Plan: Documented procedures for detecting and responding to security incidents

  • Business Continuity: Disaster recovery and business continuity plans

  • Vendor Management: Security requirements for all service providers and subprocessors

Monitoring and Logging

  • Activity Monitoring: Continuous monitoring of system access and user activity

  • Audit Trails: Comprehensive logging of access to sensitive data

  • Regular Audits: Periodic security audits and compliance reviews

11.3 Data Breach Response

Despite our best efforts, no security system is 100% impenetrable. In the event of a data breach:

Our Response:

  1. Immediate Action: Contain and investigate the incident

  2. Assessment: Determine scope, affected data, and potential impact

  3. Notification: Notify affected individuals and regulatory authorities as required by law (typically within 72 hours for GDPR)

  4. Remediation: Address vulnerabilities and prevent recurrence

  5. Support: Assist affected individuals (e.g., credit monitoring if applicable)

What We'll Tell You:

  • Nature of the breach and data affected

  • When the breach occurred and was discovered

  • Steps we're taking to address it

  • Actions you can take to protect yourself

  • How to contact us for more information

11.4 Your Role in Security

You play an important role in keeping your data secure:

Best Practices:

  • Use strong and unique passwords 

  • Keep your password confidential and don't share accounts

  • Log out when using shared or public computers

  • Keep your email address and contact information up to date

  • Report suspicious activity or security concerns immediately

  • De-identify sensitive datasets before uploading

  • Be cautious of phishing emails pretending to be from OmicsLogic

  • Keep your device and browser software up to date

Report Security Issues:
If you discover a security vulnerability or have security concerns, please report immediately to: support@omicslogic.com

We appreciate responsible disclosure and will work with security researchers to address vulnerabilities.

12. Cookies and Tracking Technologies

We respect your privacy and follow a no-first-party-cookie approach. OmicsLogic does not use cookies or tracking technologies of its own.

We do not place, read, or store any cookies, local storage items, tracking pixels, or similar identifiers on your device for analytics, marketing, personalization, or functional purposes.

12.1 Third-Party Cookies

Although OmicsLogic itself does not use cookies, third-party services integrated into our platform may set cookies or similar technologies when you choose to interact with them. These third parties have their own privacy policies:

  • Google: https://policies.google.com/privacy

  • Facebook: https://www.facebook.com/privacy

  • LinkedIn: https://www.linkedin.com/legal/privacy-policy

  • Vimeo: https://vimeo.com/privacy

  • Stripe: https://stripe.com/privacy

We do not control third-party cookies and recommend reviewing their privacy policies.

13. Your Privacy Rights

Depending on your location, you may have specific rights regarding your personal information. We respect and facilitate these rights.

13.1 Universal Rights (All Users)

Right to Access

You have the right to request confirmation of whether we process your personal data and obtain a copy of your data.

What you can request:

  • Categories of personal data we collect

  • Specific pieces of information we hold about you

  • Sources of your data

  • Purposes for processing

  • Third parties with whom we share data

How to exercise: Email support@omicslogic.com.

Right to Correction/Rectification

You have the right to correct inaccurate or incomplete personal information.

What you can do:

  • Update account information directly in Account Settings

  • Request the correction of information that you cannot update yourself

  • Ask us to complete the incomplete profile data

How to exercise: Update in Account Settings or email support@omicslogic.com


Right to Deletion/Erasure ("Right to Be Forgotten")

You have the right to request deletion of your personal data, subject to certain exceptions.

When you can request deletion:

  • Data is no longer necessary for the purposes collected

  • You withdraw consent (where consent was the legal basis)

  • You object to processing, and there are no overriding legitimate grounds

  • The data was processed unlawfully

  • Deletion is required by law

Exceptions (we may not be able to delete data when):

  • Needed to comply with legal obligations

  • Required for accounting, tax, or financial record-keeping (typically 7 years)

  • Necessary to establish, exercise, or defend legal claims

  • Required by contract or service agreement

  • Needed for scientific or historical research (in anonymized form)

How to exercise: Email support@omicslogic.com or use "Delete My Account" in Account Settings

Right to Data Portability

You have the right to receive your personal data in a structured, commonly used, machine-readable format and transmit it to another service.

What you can export:

  • Account information

  • Course progress and certificates

  • Uploaded datasets and analysis results

  • Project files and code repositories 

How to exercise: Email support@omicslogic.com

13.2 Additional Rights (EEA/UK Users - GDPR)

Right to Restriction of Processing

You can request that we limit how we process your data in certain situations:

  • You contest the accuracy of the data

  • Processing is unlawful, but you prefer restriction over deletion

  • We no longer need the data, but you need it for legal claims

  • You objected to processing, pending verification of our legitimate grounds

How to exercise: Email support@omicslogic.com

Right to Object

You have the right to object to:

  • Processing based on legitimate interests

  • Direct marketing (opt-out anytime, no questions asked)

  • Automated decision-making and profiling

How to exercise: Email support@omicslogic.com or click "Unsubscribe" in marketing emails

Right to Withdraw Consent

Where processing is based on consent, you can withdraw consent at any time without affecting the lawfulness of prior processing.

How to exercise: Update preferences in Account Settings or email support@omicslogic.com

Right to Lodge a Complaint

You have the right to complain to your national data protection authority.

EU Data Protection Authorities: https://edpb.europa.eu/about-edpb/board/members_en
UK Information Commissioner's Office (ICO): https://ico.org.uk/make-a-complaint/

13.3 California Privacy Rights (CCPA/CPRA)

See Section 17 for detailed California-specific rights.

13.4 How to Exercise Your Rights

Methods to submit requests:

  1. Email:support@omicslogic.com

  2. Account Settings: Many rights can be exercised directly in your account

  3. Mail: 5900 Balcones Drive, STE 100, Austin, TX, 78731, USA

What to include in your request:

  • Your full name and email address are associated with your account

  • Description of the right you wish to exercise

  • Specific information you're requesting (if applicable)

  • Proof of identity (we may ask for verification)

Our Response:

  • Acknowledgment: Within 5 business days

  • Fulfillment: Within 30 days (may extend to 60-90 days for complex requests)

  • No Fee: Requests are generally free (excessive or repeated requests may incur a reasonable fee)

  • Verification: We may ask for additional information to verify your identity before fulfilling requests

13.5 Authorized Agents

You may designate an authorized agent to make requests on your behalf. The agent must:

  • Provide written authorization signed by you

  • Verify their own identity

  • You may still need to verify your identity directly with us

13.6 Non-Discrimination

We will not discriminate against you for exercising your privacy rights. You will not:

  • Be denied services or features

  • Receive different pricing or rates

  • Experience a different quality of service

14. Children's Privacy

14.1 Age Requirements

OmicsLogic Services are designed for users aged 13 and older. We do not knowingly collect personal information from children under 13 years of age.

14.2 Parental Consent for Ages 13-17

If you are between 13 and 17 years old:

  • You must obtain permission from your parent or legal guardian before using the Services

  • Your parent/guardian should review this Privacy Policy and our Terms and Conditions

  • Organizational accounts (schools, educational institutions) may provide educational use for minors under their supervision

14.3 Parental Rights

Parents and guardians of users under 18 may:

  • Review their child's personal information

  • Request correction or deletion of their child's information

  • Refuse further collection or use of their child's information

  • Withdraw consent previously given

To exercise parental rights: Email support@omicslogic.com with proof of parental/guardian status

15. Marketing and Communications

15.1 Types of Communications

Transactional Communications (Cannot Opt Out): These are essential messages about your account and services:

  • Account creation, login, and password reset confirmations

  • Course enrollment confirmations and receipts

  • Payment confirmations, invoices, and billing issues

  • Course schedules, deadlines, and updates

  • Important policy changes or service updates

  • Security alerts and account notifications

  • Customer support responses

Marketing Communications (Can Opt Out): Promotional and informational messages (requires your consent):

  • New course announcements and promotions

  • Educational content, tips, and resources

  • Webinar and event invitations

  • Product updates and new features

  • Special offers and discounts

  • Newsletter and blog updates

  • Surveys and feedback requests

15.2 Communication Preferences

You can control marketing communications through:

Account Settings:

  • Log in to your email account

  • Navigate to Settings > Communication Preferences

  • Select which types of emails you wish to receive

  • Save your preferences

Unsubscribe Links:

  • Every marketing email contains an "Unsubscribe" link

  • Click to immediately opt out of that category of emails

  • You'll receive confirmation of your unsubscribe

Email Us:

15.3 Response Time

  • Opt-out: Takes effect within 10 business days

  • Preference updates: Applied immediately in our system

  • Already-scheduled emails: May be sent before opt-out takes effect

15.4 Re-subscribing

You can resubscribe to marketing emails at any time:

15.5 SMS, Phone Calls, and Messaging Services

If you provide your mobile number, we may use it to communicate with you via SMS, phone calls, and messaging services (including WhatsApp), subject to the following:

  • Communications may include service updates, follow-up messages, promotional information, or sales-related inquiries.

  • You may opt out of SMS or WhatsApp messages at any time by replying “STOP” to any message, or by contacting us directly.

  • You may request not to receive sales or marketing calls at any time.

  • Message and call frequency will vary based on your interactions, preferences, and selections.

15.6 Organizational Account Communications

If you're part of an organizational account:

  • Your administrator may send you course-related communications

  • These are not controlled by your personal communication preferences

  • Contact your organization's administrator to manage these messages

16. Third-Party Links and Services

16.1 Links to External Websites

Our Services may contain links to third-party websites, platforms, databases, and resources, including:

  • Bioinformatics databases (NCBI, UniProt, UCSC Genome Browser)

  • Research articles and publications

  • Software tools and documentation

  • Code repositories (GitHub, GitLab, Bitbucket)

  • Cloud platforms (AWS, Google Cloud, Azure)

  • Social media platforms

  • Partner organizations and institutions

Important:

  • We do not control, endorse, or assume responsibility for third-party content

  • Third-party sites have their own privacy policies and terms

  • We encourage you to review the privacy policy of any site you visit

  • Your interactions with third parties are governed by their terms, not ours

16.2 Integrated Third-Party Services

We integrate with various third-party tools and platforms:

Authentication Services:

  • Google, LinkedIn, Facebook, Apple, X (Twitter), GitHub, institutional SSO

  • When you sign in using these services, they may share profile information with us according to your permissions

Payment Processors:

  • Stripe, PayPal, Razorpay, Google Pay

  • Payment information is collected and processed by these services

  • We do not store your full credit card numbers

Video Hosting:

  • Vimeo, YouTube, Wistia

  • May set cookies and collect viewing data according to their privacy policies

Cloud Storage and Computing:

  • AWS, Google Cloud, Microsoft Azure, DigitalOcean, GoDaddy

  • Store and process data according to our instructions and security requirements

Communication Tools:

  • Email providers, chat services, and video conferencing

  • Subject to their privacy policies and security practices

16.3 Social Media Features

Our Services may include social media features (share buttons, embedded feeds):

  • These features may collect your IP address and set cookies

  • Social media features are governed by the privacy policy of the company providing them

  • We are not responsible for the data practices of social networks

16.4 User-Initiated Integrations

You may choose to connect third-party services to your OmicsLogic account (e.g., syncing code to GitHub):

  • You control what data is shared with third-party services

  • Review and manage connected apps in Account Settings > Integrations

  • Revoking access will disconnect the integration

  • Third parties may retain data shared before disconnection

16.5 No Liability

We are not responsible for:

  • The privacy practices of third-party websites or services

  • Content or accuracy of external resources

  • Data collected by third parties

  • Security of third-party platforms

Use third-party services at your own risk.

17. California Privacy Rights (CCPA/CPRA)

This section applies to California residents and provides information required under the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA).

17.1 Categories of Personal Information Collected

In the past 12 months, we have collected the following categories of personal information:

Category

Examples

Collected

Identifiers

Name, email, IP address, device ID, account username

✅ Yes

Customer Records

Billing name, address, phone number, payment info

✅ Yes

Protected Classifications

Age, gender (only if voluntarily provided)

Limited

Commercial Information

Purchase history, course enrollments, subscriptions

✅ Yes

Internet/Network Activity

Browsing history, search history, and interaction with the website

✅ Yes

Geolocation Data

Approximate location from IP address

✅ Yes

Sensory Information

Audio/video from video conferences (with consent)

Limited

Professional/Employment

Job title, employer, field of study

✅ Yes

Education Information

Course progress, grades, certificates

✅ Yes

Inferences

Learning preferences, skill levels, and predicted interests

✅ Yes

Sensitive Personal Information

Precise geolocation (not collected), health data (not intentionally collected for commercial purposes), genetic data (only uploaded by users for educational purposes)

Limited

17.2 Sources of Personal Information

We collect personal information from:

  • Directly from you (account registration, forms, uploads)

  • Automatically from your device (cookies, logs)

  • Third-party identity providers (Google, LinkedIn, etc.)

  • Organizational administrators (for enterprise accounts)

  • Payment processors

  • Analytics and advertising partners

17.3 Purposes for Collecting Personal Information

See Section 5 for detailed purposes. In summary:

  • Providing and operating Services

  • Personalization and recommendations

  • Communications and customer support

  • Payment processing

  • Research and analytics

  • Security and fraud prevention

  • Legal compliance

17.4 Categories of Third Parties with Whom We Share Personal Information

We share personal information with:

  • Service providers and subprocessors (cloud hosting, email, analytics, payment processing)

  • Organizational customers (for enterprise accounts)

  • Legal authorities (when required by law)

  • Business transfer recipients (in mergers/acquisitions)

  • Advertising partners (for marketing purposes, with consent)

17.5 Sale and Sharing of Personal Information

Do we "sell" personal information?
No, OmicsLogic does not sell personal information for monetary consideration.

Do we "share" personal information for cross-context behavioral advertising?
We may share personal information with advertising partners (Google Ads, Facebook, LinkedIn) for targeted advertising purposes. This may constitute "sharing" under CCPA.

Right to Opt Out: California residents have the right to opt out of the sale or sharing of personal information.

How to Opt Out:

17.6 Retention of Personal Information

See Section 10 for detailed retention periods. We retain personal information for as long as necessary to provide Services and comply with legal obligations.

17.7 Your CCPA/CPRA Rights

California residents have the following rights:

Right to Know

Request disclosure of:

  • Categories of personal information collected

  • Specific pieces of personal information we hold

  • Categories of sources

  • Business purposes for collection

  • Categories of third parties with whom we share

How to exercise: Email support@omicslogic.com

Right to Delete

Request deletion of your personal information, subject to certain exceptions.

How to exercise: Email support@omicslogic.com or use "Delete My Account" in Account Settings

Right to Correct

Request correction of inaccurate personal information.

How to exercise: Update in Account Settings or email support@omicslogic.com

Right to Limit Use of Sensitive Personal Information

Request limitation on use and disclosure of sensitive personal information.

How to exercise: Email support@omicslogic.com

Note: We do not use sensitive personal information for purposes other than those permitted under CCPA.

Right to Non-Discrimination

We will not discriminate against you for exercising your CCPA rights.

17.8 Verification Process

To verify your identity when you submit a request:

  • We may ask for additional information (email confirmation, account details)

  • For deletion requests, we may require more stringent verification

  • We will respond within 45 days (may extend to 90 days for complex requests)

  • We may deny requests that cannot be verified

17.9 Authorized Agents

You may designate an authorized agent to submit requests on your behalf. The agent must provide written authorization from you.

17.10 Contact for California Privacy Rights

California Privacy Rights Requests:
Email: support@omicslogic.com
Subject: "California Privacy Rights Request"

18. Changes to This Privacy Policy

18.1 Right to Modify

We reserve the right to update, modify, or change this Privacy Policy at any time to reflect:

  • Changes in our Services or business practices

  • Legal, regulatory, or compliance requirements

  • Technological developments

  • Industry best practices

18.2 Notice of Changes

When we make changes to this Privacy Policy, we will:

Material Changes:

  • Provide prominent notice on our website or platform

  • Send email notification to registered users

  • Display in-service Banner notification if applicable

  • Update the "Last Updated" date at the top of this policy

Non-Material Changes:

  • Update the "Last Updated" date

  • Post the revised policy on our website

18.3 What Constitutes Material Changes

Material changes include:

  • Significant changes to data collection practices

  • New uses of personal information beyond original purposes

  • Changes to data sharing or disclosure practices

  • Reduction in privacy protections or user rights

  • Changes affecting sensitive scientific data handling

18.4 Your Acceptance of Changes

Continued use of the Services after changes become effective constitutes your acceptance of the revised Privacy Policy.

If you do not agree to the changes:

  • You may discontinue use of the Services

  • You may close your account

  • You may contact us to discuss concerns

For material changes affecting sensitive data processing, we may require explicit consent before applying changes to your existing data.

18.5 Reviewing Changes

We encourage you to periodically review this Privacy Policy to stay informed about how we protect your information.

19. Contact Us

We welcome your questions, concerns, and feedback about this Privacy Policy and our privacy practices.

General Privacy Inquiries

Email: support@omicslogic.com
Subject Line: Include "Privacy Inquiry" for faster routing
Response Time: Within 5 business days

Specific Privacy Contacts

Data Subject Rights Requests:

California Privacy Rights (CCPA):

Data Protection Officer (EU/EEA/UK):

Security Concerns:

Marketing Opt-Out:

General Support:

  • Email: support@omicslogic.com

Mailing Addresses

United States Office:

5900 Balcones Drive

STE 100

Austin, TX, 78731, USA

India Office:

#6 CGHS PLOT NO 7, SEC 9 MANZIL APARTMENT

WEST DELHI -110075

Response Times

  • Privacy inquiries: 5 business days

  • Data subject rights requests: 30 days (may extend to 60-90 days for complex requests)

  • Security incidents: Immediate (within 72 hours for breach notifications)

  • General support: 1-2 business days

Regulatory Authorities

If you believe we have not adequately addressed your privacy concerns, you have the right to complain to your data protection authority:

European Union:
Find your national data protection authority: https://edpb.europa.eu/about-edpb/board/members_en

United Kingdom:
Information Commissioner's Office (ICO)
Website: https://ico.org.uk
Phone: 0303 123 1113

California:
California Privacy Protection Agency
Website: https://cppa.ca.gov
Phone: (916) 287-1433

Acknowledgment and Acceptance

BY USING OMICSLOGIC'S SERVICES, YOU ACKNOWLEDGE THAT YOU HAVE READ, UNDERSTOOD, AND AGREE TO THIS PRIVACY POLICY.

If you have questions or concerns about this Privacy Policy or our data practices, please contact us at support@omicslogic.com


Last Updated: January 29, 2026
Effective Date: January 29, 2026
Version: 2.0


© 2026 OmicsLogic. All Rights Reserved.