Privacy Policy
Last updated: 14 August 2026
This policy explains what fermion.academy collects, why, how long it is kept and what you can demand of us. The controller is David Alfyorov, reachable at hello@fermion.academy.
1. The short version
- If you join the notification list, we store your email address and nothing else about you that you did not type.
- Our website analytics is self-hosted, uses no cookies, and never builds a profile of you across sites.
- We do not sell personal data, and we run no advertising or tracking networks on this site.
2. The notification list
What: the email address you submit, the moment you submitted it, the IP address the request came from and your browser’s user-agent string.
Why: to send you one message when Fermion launches (Art. 6(1)(a) GDPR — your consent), and to defend the form against abuse and spam submissions (Art. 6(1)(f) — our legitimate interest in a working service).
How long: until you ask us to delete it, or until twenty-four months after launch, whichever comes first.
Who else sees it: our email delivery provider, Resend, processes the launch message on our behalf. Nobody else.
3. Analytics
We run Umami, an open-source analytics tool, on our own server under our own domain. It sets no cookies and stores no identifier that follows you between sites, which is why this site shows you no cookie banner. For each page view it records the page address, the referring site, the country derived from your IP address, and coarse device, browser and screen-size information. Your IP address itself is not stored. Legal basis: our legitimate interest in knowing whether anyone is reading the site (Art. 6(1)(f) GDPR). Data is kept in aggregate form and is not used to identify you.
If you would rather not be counted at all, enable “Do Not Track” in your browser or block the script at /insights/pulse.js; the site works exactly the same either way.
4. Server logs
Our web server keeps standard access logs (IP address, time, requested URL, status, user-agent) for up to thirty days, for security and troubleshooting. Legal basis: legitimate interest in operating a secure service.
5. The Fermion application
The learning application is not publicly released yet. When it is, it will keep a learner model — what you have studied, what you have mastered, which explanations work for you. That model is bound to the conversations that produced it: deleting a conversation permanently deletes what was learned from it. The application will have its own detailed privacy notice before launch, and it will never sell learner data or use it to train third-party foundation models.
6. Transfers outside the EEA
Our servers are located in the European Union. Resend, our email processor, may process data in the United States under the European Commission’s standard contractual clauses.
7. Your rights
Under the GDPR you may request access to your data, correction, erasure, restriction of processing, portability, and you may object to processing based on legitimate interest. Where processing rests on consent, you may withdraw it at any time without affecting what was lawful before. Write to hello@fermion.academy and we will answer within thirty days. You also have the right to complain to your national supervisory authority; in Lithuania this is the State Data Protection Inspectorate (VDAI).
8. Children
The Site is not directed at children under sixteen, and we do not knowingly collect their data without parental consent. If you believe a child has given us their email address, tell us and we will delete it.
9. Security
Traffic is encrypted with TLS. The notification list is stored on an access-controlled server and is not shared with third parties beyond the processor named above. No system is perfectly secure, but we keep the amount of data we hold deliberately small — the strongest protection available.
10. Changes
If this policy changes materially we will update the date above and, where we hold your address for that purpose, tell you by email.