Legal/Privacy Policy
Privacy Policy
Last updated: 17 May 2026
Testwiz is committed to protecting your personal data. This policy explains what we collect, why we collect it, and how we use it.
Information we collect
- Account information: When you sign up, we collect your name, email address, username, university, and year of study.
- Usage data: We collect information about the tests you take, your scores, streaks, XP, and study sessions. This is used to power your dashboard and analytics.
- Device information: We collect browser type, operating system, and device type to improve our service and diagnose issues.
- Payment information: Payments are processed by Paystack. We store your payment reference, plan type, and subscription status. We do not store card details.
How we use your information
- To operate and improve the Testwiz platform.
- To calculate your XP, streaks, leaderboard rank, and performance analytics.
- To send you transactional emails (e.g. email verification, password reset). We do not send marketing emails without your consent.
- To process and verify payments through Paystack.
- To investigate fraud, abuse, or violations of our Terms of Service.
Data sharing
- We do not sell your personal data.
- We share data with Paystack solely for payment processing.
- We use Firebase (Google) for authentication, database, and hosting. Your data is stored on Google's servers in accordance with their privacy policies.
- Leaderboard data (username and scores) is visible to other authenticated users at your university.
- We may disclose data if required by law or to protect the rights and safety of Testwiz and its users.
Data retention
- We retain your account data for as long as your account is active.
- If you delete your account, we will remove your personal data within 30 days, except where retention is required by law.
- Anonymised usage statistics may be retained indefinitely.
Security
- We use industry-standard encryption (HTTPS) for all data in transit.
- Passwords are hashed by Firebase Auth. We never store plaintext passwords.
- Question answer keys are Fernet-encrypted on our servers and never exposed in plain text to the client.
- No security system is perfect. If you discover a vulnerability, please contact us at support@testwiz.ng.
Your rights
- You can update your account information from your profile page at any time.
- You can request a copy of the data we hold about you by contacting support@testwiz.ng.
- You can request deletion of your account and associated data by contacting us.
- If you are in the EEA, you may have additional rights under GDPR. Contact us to exercise them.
Children
- Testwiz is intended for university students (18+). We do not knowingly collect data from anyone under 16. If we discover we have, we will delete it promptly.
Changes to this policy
- We may update this Privacy Policy from time to time. We will notify you of material changes via email or an in-app notice. The 'Last updated' date at the top of this page reflects the latest revision.
Contact
- For any privacy-related questions, email us at support@testwiz.ng or message us on WhatsApp.
Questions? Contact us and we'll respond within 24 hours.