Legal
Privacy Policy
Version 1.0 · Effective October 10, 2026
The short version
- We collect what we need to run your account and the communities you’re part of.
- We don’t sell your personal data, and we don’t use advertising or third-party analytics trackers.
- If you sign in with Google, we receive your Google account’s ID and email address. That’s all we keep.
- You must be 18 or over to use Rheter.
- Questions or requests: support@rheter.com.
Who we are
Rheter is a place for learning communities. Teachers (we call them creators) run communities where members watch short lessons, take timed quizzes, join live sessions and chat. This policy covers the Rheter member app, the creator dashboard and this website.
Rheter is a product of Ten94 Technologies Limited, a company based in Nigeria, at 9 Adebajo Street, Gbagada, Lagos, Nigeria (“Rheter”, “we”, “us”). We are responsible for your personal data and handle it in line with the Nigeria Data Protection Act 2023. You can reach us at support@rheter.com.
Community owners and their staff decide how their own community is run, and they can see some of your information as described below. They get that information through Rheter, under the limits in this policy and our Terms of Service.
What we collect
Information you give us
- Account details: your email address, a password (we keep only a one-way hash, never the password itself), your date of birth (so we can confirm you are 18 or over), your timezone, and, if you choose, a username, phone number and profile photo.
- Sign in with Google: your Google account’s unique ID and email address. See Sign in with Google.
- What you post: posts, comments, chat and direct messages, voice notes, images and files, reactions, and your answers in live polls and Q&A.
- Reports and appeals you file, and anything you send to support.
- Payout details, if you are a creator who charges for a community: your account name, bank and account number.
Information about your learning
- Lesson and audio progress, so playback resumes where you stopped.
- Quiz attempts, answers and scores, your review schedule for questions you missed, leaderboard points, streaks, badges and certificates.
- Which live sessions you attended.
Payments
If you join a paid community, payment is handled by Paystack. We receive a payment reference, the amount and status, the card details Paystack shares with us (card type, last four digits, expiry date and issuing bank), and a token we use to charge your renewals. We never see or store your full card number or security code.
Collected automatically
- Your IP address, browser and device type, and a hashed device identifier.
- Sign-in session records, so you can review the devices you’re signed in on and sign them out.
- During quiz attempts, the device and IP address used, to help us spot cheating.
- A push notification token, if you turn on notifications.
- Server logs, and a record each time you accept our Terms, Privacy Policy and Community Guidelines (the version, the time, your IP address and browser).
What we don’t collect
We don’t collect your precise location or your contacts, and we don’t use advertising identifiers. The member app uses your microphone only when you tap to record a voice note. Creators who go live from their browser give their browser permission to use a camera and microphone.
How we use your information
- To create and secure your account, sign you in, and keep you signed in.
- To run communities: deliver lessons, run quizzes fairly, keep scores and leaderboards, issue certificates, and support chat and live sessions.
- To send notifications you ask for, such as a new lesson, a quiz opening or a message. You can switch these off, by category and by channel.
- To process payments, renewals, refunds and payouts.
- To keep people safe: review reports, apply moderation, detect cheating and abuse, and enforce our rules.
- To give creators the information they need to teach well, such as completion, quiz results and topic mastery for their own community.
- To answer your questions, fix problems and meet our legal obligations.
We do not sell your personal data, and we do not use it for advertising.
Sign in with Google
If you choose “Sign in with Google”, Google tells us your account’s unique ID and your email address (and whether Google has verified it). We store those two items and use them only to create your Rheter account, recognise you when you come back, and contact you about your account. We don’t copy your Google name or profile picture.
We don’t ask for access to your Gmail, Google Drive, Calendar, contacts or any other Google service. We don’t sell this information, use it for advertising, or share it with anyone except the service providers listed below that help us run Rheter.
Rheter’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
You can remove Rheter’s access at any time in your Google Account settings. To have your Rheter account and its data removed, see Delete your account.
Who can see your information
- Other members of a community you join can see your username or display name and photo, your posts, comments and messages in shared spaces, your points and rank on the leaderboard (you can hide your name), and any badges you earn.
- Community owners and staff (owners, admins, instructors and moderators, depending on their role) can see who is in the community, your progress and quiz results, community analytics, and, for paid communities, your payment status. Moderators can read reports.
- Direct messages are visible to the people in the conversation. If someone reports a message, the moderators and staff reviewing the report can read it.
- Rheter staff access your information only when needed for support, safety or legal reasons. When we view an account to help with a problem, the session is read-only, lasts 30 minutes, needs a stated reason, and is recorded in an audit log.
- The public can see a community’s public page and preview lessons. A certificate’s share link shows the certificate to anyone who has the link.
- Others where the law requires it, to protect someone’s safety, or as part of a merger or sale of our business.
Service providers
We use other companies to run Rheter. They process data on our behalf and only for the purposes below, and we choose them with care. We describe them by what they do, and name the ones you deal with directly. If you want to know which providers handle your data, ask us.
- Payments: Paystack processes card payments, subscriptions and creator payouts.
- Sign-in: Google and Apple, if you choose to sign in with them.
- Push notifications: Google’s notification service delivers push notifications to your device.
- Cloud infrastructure: providers of hosting, databases, network security, video streaming and live video, and file and image storage.
- Email: providers that send account emails such as verification codes, and the email tool creators use to send campaigns to their members.
- Monitoring: providers that help us keep the service running, such as logging and performance tools.
Profile photos and community images are stored so the app can load them, and may be reachable by anyone who has the image’s address. Our providers may store and process data in countries outside Nigeria. When personal data leaves Nigeria, we make sure it stays protected, in line with the Nigeria Data Protection Act 2023, for example through our contracts with those providers.
Cookies and browser storage
Rheter uses one cookie, rheter_refresh. It keeps you signed in. It is HttpOnly (page scripts can’t read it), Secure, and used for nothing else. We use no advertising or analytics cookies.
Your browser also holds a few things so the app works: a short-lived access token for your session, your theme choice, notification settings and token, drafts of quiz answers during an attempt, and a cached copy of recent screens so the app opens quickly. A service worker stores the app’s own files. Signing out clears your cached screens and drafts.
How long we keep your information
- While your account is open, we keep your account and activity data so Rheter keeps working for you.
- If you delete your account, it is disabled and you are signed out everywhere. Communities you own are suspended for 30 days so ownership can be transferred. To have us erase or anonymise the personal data we still hold, email us from your account address. We will complete the request within 30 days.
- If a community is deleted, its posts, messages, quizzes, lessons and member data are permanently deleted after 30 days. We keep moderation reports and audit records.
- Records we may need to keep: moderation and safety records, and payment and accounting records for 6 years, as Nigerian tax and company law requires.
- Short-lived data: uploads that were never attached to anything are removed within 24 hours. If a sign-up is turned away because the person is under 18, we keep a hashed email and device marker for 30 days so the same person can’t simply try again. Raw live recordings are removed shortly after they’ve been saved to a library.
- Logs are kept for 90 days.
Your choices and rights
In the app you can edit your profile (a username and phone number can be set once), choose which notifications you get by category and by email or push, hide your name on the leaderboard, control who can message you and block people, see and sign out your devices, and review the policies you’ve accepted.
Depending on where you live, you may have the right to access your personal data, correct it, delete it, restrict or object to how we use it, receive a portable copy, and withdraw consent you’ve given. A self-service export isn’t available yet, so to get a copy of your data or use any other right, email support@rheter.com from your account address. We may ask you to confirm it’s you. We will reply within 30 days. If a request is complex, we will tell you within that time and may take longer, up to a further two months.
If you’re unhappy with how we handle your data, please tell us first. You can also complain to the Nigeria Data Protection Commission (NDPC), or to the data protection authority where you live.
Children
Rheter is for people aged 18 and over. We ask for your date of birth when you sign up and won’t create an account for anyone under 18. If you believe a child is using Rheter, tell us at support@rheter.com and we will act on it.
Security
Your connection to Rheter is encrypted. We store passwords and one-time codes only as hashes, keep session tokens short-lived, and limit who can reach personal data. No system is perfectly secure. If you find a security problem, please email us.
Changes to this policy
We’ll update this page when our practices change, and change the version number above. If a change is significant, we’ll ask you to review and accept the new version in the app.
Contact us
Ten94 Technologies Limited
9 Adebajo Street, Gbagada, Lagos, Nigeria
support@rheter.com