Venture University

Legal

Privacy Notice

Last updated: June 2026

Venture University respects your privacy. This notice explains what personal data we collect when you visit venture-university.com or apply to one of our programs, why we collect it, and the rights you have under the EU General Data Protection Regulation (GDPR) and the UK GDPR.

Who is responsible

The controller for the European site is Venture University (the legal entity will be confirmed in the Imprint). Contact for privacy questions: privacy@venture-university.com.

What we collect

  • Application data: name, work email, phone, country, LinkedIn, professional background and the answers you provide on the application form.
  • Communication data: messages you send us, calendar bookings, and notes from calls.
  • Technical data: IP-derived approximate location, browser type, device type, pages viewed, referrer.
  • Marketing data: if you subscribe to the newsletter, your email and engagement with our emails.

Why we use it (legal bases)

  • Pre-contractual steps at your request, e.g. reviewing your application (Art. 6(1)(b) GDPR).
  • Consent for marketing emails, analytics and advertising cookies (Art. 6(1)(a) GDPR). You can withdraw at any time.
  • Legitimate interests in operating, securing and improving the site (Art. 6(1)(f) GDPR).
  • Legal obligations such as accounting and tax (Art. 6(1)(c) GDPR).

Who we share it with

We use trusted processors to operate the service. Each receives only the data needed for their task and is bound by a data processing agreement.
  • Hosting and SSR (Cloudflare).
  • Database and authentication (Supabase, EU region where available).
  • CRM (Pipedrive).
  • Scheduling (Calendly), forms (Typeform), video (YouTube / Vimeo). Only when you load them.
  • Email delivery for transactional and marketing messages.
Some of these providers are located outside the EEA. In that case we rely on EU Standard Contractual Clauses and additional safeguards.

How long we keep it

Application data is kept for up to 24 months from your last interaction. Customer data is kept for the duration of the relationship plus the retention periods required by accounting law. You can ask for earlier deletion at any time, subject to legal obligations.

Your rights

You have the right to access, rectify, erase, restrict and object to processing, and to data portability. You can also lodge a complaint with your local supervisory authority. For consent-based processing you can withdraw consent at any time without affecting the lawfulness of earlier processing.

Cookies

We use cookies as described in our Cookie Policy.

Security

We use TLS in transit, restrict access on a need-to-know basis, and rely on managed infrastructure providers with industry-standard controls. No system is perfectly secure, and we will notify you and the relevant authority if a breach is likely to result in a risk to your rights.