Privacy Policy
Last updated: March 2026
TheTutorLink (“we”, “us”, “our”) is committed to protecting your personal data. This privacy policy explains what data we collect, why we collect it, and your rights under UK GDPR and the Data Protection Act 2018.
1. Who We Are
TheTutorLink operates the websites thetutor.link and app.thetutor.link. We connect students with verified UK tutors for online tutoring sessions.
For data protection queries, contact us at: hello@thetutor.link
2. Data We Collect
Account data: Name, email address, password (hashed), and profile information provided during registration.
Tutor profile data: Qualifications, subjects taught, hourly rate, availability, and profile photo uploaded by tutors.
Transaction data: Lesson bookings, payments processed via PayPal, and lesson history.
Communications: Messages exchanged between tutors and students on the platform.
Usage data: Pages visited, session duration, device type, and browser information collected via Google Analytics (with your consent).
DBS information: Tutors may voluntarily share their DBS certificate status. We do not store DBS certificate numbers or process DBS checks directly.
3. How We Use Your Data
- To operate and improve the TheTutorLink platform
- To connect students with tutors and facilitate lesson bookings
- To process payments via PayPal
- To send booking confirmations, lesson reminders, and platform updates
- To verify tutor qualifications and maintain platform quality
- To comply with our legal obligations
Legal basis: We process your data under contract (to deliver the service you have signed up for) and legitimate interests (to improve and secure the platform). Where we require consent — such as for marketing emails or analytics cookies — we will ask for it explicitly.
4. Data Sharing
We share your data only with:
- PayPal — for payment processing. PayPal’s privacy policy governs their use of payment data.
- Google Analytics — for website analytics (with your consent).
- Law enforcement — if required by law or court order.
We do not sell your personal data to third parties.
5. Data Retention
We retain your account data for as long as your account is active. If you delete your account, we will delete your personal data within 30 days, except where retention is required by law (e.g. financial records, which are retained for 7 years).
6. Your Rights
Under UK GDPR you have the right to:
- Access the personal data we hold about you
- Correct inaccurate data
- Delete your data (subject to legal retention requirements)
- Object to processing based on legitimate interests
- Data portability — receive your data in a machine-readable format
- Withdraw consent at any time where processing is based on consent
To exercise any of these rights, email hello@thetutor.link. We will respond within 30 days.
You also have the right to lodge a complaint with the ICO (Information Commissioner’s Office) at ico.org.uk if you believe we have handled your data unlawfully.
7. Cookies
We use cookies to operate the platform, remember your login session, and (with your consent) collect analytics data. You can control cookies through your browser settings. Withdrawing cookie consent will not affect the functionality of your account.
8. Security
We use industry-standard security measures including HTTPS encryption, hashed passwords, and access controls to protect your data. No internet transmission is 100% secure; we cannot guarantee absolute security, but we take all reasonable steps to protect your data.
9. Changes to This Policy
We may update this privacy policy from time to time. We will notify registered users of material changes by email. The latest version will always be available at this URL.
Contact: hello@thetutor.link