Privacy Policy
Last updated: 9 August 2026
1. WHO CONTROLS YOUR DATA
Abdlarhman Omar Ahmad Shaheen, Amman, Jordan, operating RitaJet (ritajet.com), is the data controller. Contact: ritajetnetwork@outlook.com (replies within 2 business days).
2. WHAT WE COLLECT
- Account data: name, username, email address, optional phone number, password (stored only as a secure hash), profile picture if you add one.
- Study content: the subjects, flashcards, notes, uploaded PDFs and images, summaries, answers, to-dos and calendar entries you create.
- Usage data: which study modes you open, your review history and streaks, plan allowances used.
- Technical data: IP address, browser and device type, and the device records used for our "trusted devices" security feature.
- Payment data: we never see or store your card. Paddle, our Merchant of Record, processes payments and returns to us only your plan, order reference and billing country.
3. WHY WE USE IT AND OUR LEGAL BASIS
- To provide your account and study features — performance of our contract with you.
- To process purchases, renewals and refunds — performance of the contract and our legal obligations.
- To keep accounts secure, prevent fraud and enforce plan limits — our legitimate interests.
- To send service emails (verification, password reset, receipts, important changes) — contract and legitimate interests.
- To send optional product news or push notifications — only with your consent, withdrawable at any time.
4. AI PROCESSING
When you ask RitaJet to build cards, summaries or questions from your material, the text or image you provide is sent to a language-model provider that performs the generation and returns the result. It is used to answer your request, not to advertise to you. Do not upload patient data, other people's personal data, or confidential material you are not allowed to share.
5. SHARING
We share data only with the processors needed to run the service: our cloud database and file hosting, our email sender, our push-notification service, our AI generation provider, and Paddle for payments and tax. We do not sell personal data, and we do not share it for advertising. We may disclose data if the law requires it.
6. INTERNATIONAL TRANSFERS
Our providers may process data outside your country, including in the EU and the United States. Where required, transfers rely on Standard Contractual Clauses or an equivalent safeguard.
7. HOW LONG WE KEEP IT
Account and study content are kept while your account is open. After you ask us to delete your account, we keep it for 30 days before erasing it, so an accidental request can be reversed, and we erase it sooner if you ask. Billing records are kept for as long as tax law requires (normally 7 years). Security logs are kept for 12 months.
8. YOUR RIGHTS
You can ask us to give you a copy of your data, correct it, export it or delete it, and you can object to or restrict processing or withdraw consent. Email ritajetnetwork@outlook.com with your request and we will act within 30 days. If you are in the EEA or UK you may also complain to your local data-protection authority.
8a. HOW TO ASK FOR DELETION
Send an email to ritajetnetwork@outlook.com from the address you signed up with, with "Delete my account" in the subject and your username in the message. We confirm the request, then erase your account, profile, flashcards, lectures, questions, uploads and study history. Billing records created by a purchase have to stay for as long as tax law requires, and anything you chose to share publicly may need to be removed by you first or named in your email so we can remove it too.
9. COOKIES AND LOCAL STORAGE
We use only what the app needs: a session cookie/token to keep you signed in, local storage for your interface preferences and offline drafts, and basic anonymous counts of feature use. We do not run advertising or cross-site tracking cookies.
10. CHILDREN
RitaJet is for students aged 16 and over, or 13 and over with the consent of a parent, guardian or school. If we learn we hold data about a younger child without that consent, we delete it.
11. SECURITY
Data is encrypted in transit, passwords are hashed, database access is restricted per user by row-level security, and the site offers device-based sign-in protection. No system is perfectly secure; if a breach affects your data we will notify you and any regulator as the law requires.
12. CHANGES
We will update the date at the top when this policy changes and notify you in the app if the change is material.
13. CONTACT
Abdlarhman Omar Ahmad Shaheen — Amman, Jordan — ritajetnetwork@outlook.com