Back to home

Privacy Policy

How EdSys handles the personal data of people using the app.edsys.uz web app and the EdSys mobile apps for Android and iOS.

Last updated August 10, 2026

1. Who processes your data

EdSys is a service for learning centres: schedules, attendance, grades, homework and payment tracking. You can use it through the app.edsys.uz website and the EdSys mobile apps for Android and iOS.

The learning centre where you study or work decides what data goes into the system and controls it. EdSys processes that data on the centre's behalf and only to the extent the service requires.

By using EdSys you agree to this policy. If you do not agree with it, please do not use the service.

2. What data we process

We collect only what the service cannot work without:

  • Account details: first and last name, phone number, role in the system (student, teacher, administrator, owner), learning centre and branch.
  • Profile photo — if you uploaded one.
  • Study data: groups and courses, class schedule, attendance marks, grades, homework and comments on it.
  • Files you attach to assignments: documents, images and voice recordings.
  • Financial data: tuition charges, payments and their history. EdSys never receives or stores bank card details — the payment system handles them.
  • Technical data: your device push token, interface language and theme, app version, IP address and request timestamps in server logs.
  • Telegram ID — only if you linked Telegram yourself to receive notifications there.

3. Where the data comes from

Most of it is entered by the learning centre when you are enrolled — name, phone number, group. The rest you provide yourself: profile photo, homework files, interface language, Telegram link. Technical data is sent automatically by the app while you use it.

We do not buy personal data from third parties and do not collect it from public sources.

4. Why we process it

The data is needed to fulfil the agreement between you and your learning centre and to run the service:

  • Signing you in and confirming your role and permissions.
  • Showing schedules, attendance, grades and homework.
  • Accepting, reviewing and grading homework.
  • Tracking payments, reminding about debt and generating payment links.
  • Notifications about classes, grades and messages — push in the app and Telegram if you linked it.
  • Technical support, troubleshooting and protection against unauthorised access.

We do not use your data for advertising and there are no ads in the app.

5. Mobile app permissions

The app asks for a permission at the moment it is actually needed and keeps working if you decline — only the related feature becomes unavailable.

  • Camera — take a photo for your profile or for a homework answer.
  • Photos and files — attach an existing file to an assignment.
  • Notifications — send push about classes, grades and new messages.

The app does not record audio, does not track your location and does not read contacts, SMS or call history.

6. Who we share data with

We do not sell personal data and do not share it for advertising. Access is limited to those the service cannot run without:

  • Your learning centre: administrators, teachers and the owner see data within the limits of their role.
  • Payme and Click payment systems — when you pay for tuition. The contract with them is signed by the learning centre itself, and card details are entered on the payment system's side.
  • Google (Firebase Cloud Messaging), Apple (APNs) and Expo — delivery of push notifications to your device: they receive the device token and the notification text.
  • Telegram — if you linked your account for notifications.
  • The hosting provider whose servers run the service.
  • Government authorities — only upon a lawful and justified request.

7. How long we keep data

While you are enrolled at a learning centre, your data stays in the system — it is needed for schedules, registers and settlements.

After you delete your account, personal data is anonymised within 30 days: phone number, name, photo, homework files and device tokens are erased permanently.

Study and financial records — attendance, grades, charges and payments — remain with the learning centre in anonymised form: it needs them for reporting, and they cannot identify you.

Database backups are kept for no longer than 30 days and are then overwritten, so deleted data disappears from them as well.

8. Your rights

Regarding your data, you can:

  • Get a copy of the data we hold about you.
  • Correct inaccurate data — through your profile in the app or through your learning centre's administrator.
  • Delete your account (see the next section).
  • Turn off push notifications in the app or system settings, and Telegram notifications by unlinking the account in your profile.
  • File a complaint about data processing using the contacts at the bottom of this page.

We respond to requests within 30 days. So that we can find your account, include the phone number it is registered to.

9. Deleting your account

You can delete your account right in the app: the “More” tab → “Profile” → the “Delete account” card at the bottom of the page. In the web version it is “Profile” in the menu and the same card.

If you have no access to the app, fill in the form on the Account deletion page: edsys.uz/en/account-deletion. It also describes the procedure, the timelines and which data is deleted or kept.

10. Children

The app is intended for users aged 13 and over. Self-registration in EdSys is not possible: a student account is created by the learning centre under its agreement with the student or their parent (legal guardian).

If the student is under 13, the account is registered to a parent or legal guardian, and it is they who accept this policy.

If you believe we process a child's data without parental consent, write to us and we will delete it.

11. How we protect data

No system is perfectly secure, but we apply measures proportionate to the risks:

  • All traffic between the app and the server goes over HTTPS (TLS).
  • Passwords are stored only as an irreversible hash — the original password cannot be recovered.
  • Sign-in tokens are stored on the device in the system secure storage: Keychain on iOS, Keystore on Android.
  • Data access is separated by role and branch: staff only see what their work requires.
  • Payment system keys and other organisation secrets are stored encrypted.
  • The database is backed up daily.

12. Changes to this policy

We may update this policy — for example when new features appear in the service. The current version is always published on this page, with its date shown at the top.

We will announce material changes in the app or through the contacts you provided at least 10 days before they take effect.

Still have questions?

Write or call us — we reply on business days from 9:00 to 18:00 Tashkent time.