Privacy Policy

Last Updated: 30/01/2026

At Human2Human.ai (“Human2Human”, “we”, “our”, or “us”), we take privacy and data protection seriously. This Privacy Policy explains how we collect, use, store, and protect personal data when individuals and organizations use our platform to design and participate in AI‑facilitated learning activities.

This policy is intended to be clear, transparent, and aligned with applicable data protection principles, including GDPR and FERPA, where relevant.


1. Scope of This Policy

This Privacy Policy applies to:

  • Educators, facilitators, administrators, and learners using the Human2Human platform

  • Visitors to our website

  • Customers and institutional partners deploying Human2Human for learning activities

This policy covers only data processed by Human2Human. It does not apply to third‑party platforms (such as LMSs) that may integrate with Human2Human, which are governed by their own privacy policies.


2. Data We Collect

We collect only the data necessary to deliver, operate, and improve the learning experience. Depending on the role of the user and how the platform is used, this may include:

a. Identity and Account Data

  • Name

  • Email address

  • User role (e.g., learner, educator, administrator)

b. Activity and Scheduling Data

  • Activity configurations and schedules

  • Room assignments and participation timing

c. Participation Data

  • Text contributions made during learning activities

  • Audio contributions made during learning activities (where voice interaction is enabled)

d. System‑Generated Data

  • AI‑generated assessments and feedback

  • Analytics derived from participation (e.g., engagement metrics, attendance, learning outcomes)

We do not intentionally collect sensitive personal data unless it is voluntarily provided as part of a learning activity.


3. Data Ownership

All learner and educator data processed through Human2Human is owned by the customer or institution offering the learning activities.

Human2Human acts as a data processor on behalf of its customers, who act as data controllers under applicable data protection laws.


4. How We Use Data

We use collected data solely for the following purposes:

  • Facilitating structured learning activities and group interactions

  • Providing real‑time and post‑session feedback

  • Generating assessments aligned with educator‑defined rubrics

  • Producing analytics and reports for educators and administrators

  • Operating, securing, and maintaining the platform

We do not use personal data for advertising or unrelated commercial purposes.


5. Use of AI and Large Language Models (LLMs)

Human2Human uses AI models to facilitate learning activities and generate feedback.

Specifically:

  • Learner conversations are stored

  • Learner conversations are logged for operational, quality, and analytics purposes

  • Learner conversations are sent to third‑party LLM providers for inference

  • Learner conversations are not used to train foundation models

Human2Human does not use customer or learner data to train its own models or third‑party foundation models.


6. Data Retention

By default, Human2Human retains customer and learner data for five (5) years.

For Enterprise customers, data retention periods may be customized based on contractual agreements, regulatory requirements, or institutional policies.

Data may be deleted or anonymized upon request, subject to contractual and legal obligations.


7. Data Processing Location

Data processed by Human2Human is hosted and stored in cloud infrastructure located in AWS US East.

AI processing is currently performed using OpenAI as our LLM provider. For Enterprise deployments, alternative providers or configurations may be made available by agreement.


8. Data Security

We implement industry‑standard technical and organizational measures to protect data, including:

  • Encryption of data in transit (TLS)

  • Encryption of data at rest

  • Role‑based access controls

  • Logical separation between customer tenants

  • Secure authentication and session management

While no system can guarantee absolute security, we take reasonable steps to safeguard data against unauthorized access, loss, or misuse.


9. User Rights

Depending on applicable law and the customer relationship, users may have rights to:

  • Access their personal data

  • Request correction of inaccurate data

  • Request deletion or anonymization of personal data

  • Restrict or object to certain processing activities

Requests are handled in coordination with the relevant customer or institution, who acts as the data controller.


10. Account Closure and Data Deletion

Users may request account closure through their institution or by contacting Human2Human support.

Upon account closure:

  • User profiles may be anonymized

  • Personal identifiers may be removed or replaced

  • Activity and analytics data may be retained in anonymized or aggregated form

Specific deletion timelines and methods may vary based on customer agreements and legal requirements.


11. Compliance Alignment

Human2Human is designed to align with applicable data protection frameworks, including:

  • General Data Protection Regulation (GDPR)

  • Family Educational Rights and Privacy Act (FERPA)

Alignment includes principles of data minimization, purpose limitation, access control, and transparency.


12. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated through the website or directly to customers, as appropriate.

Continued use of the platform after an update indicates acceptance of the revised policy.


13. Contact Us

If you have questions about this Privacy Policy or how data is handled, please contact us: