LifePath is designed for youth career navigation. It should collect only information needed to provide the service: account details, learner profile information, subjects and marks, assessment results, saved careers and application-tracking information.
Schools or SchoolCore integrations should only share learner information under an appropriate lawful basis and permission model. LifePath should not sell learner information to advertisers or training providers.
Assessment results are guidance signals, not medical or psychological diagnoses and not fixed labels. Learners remain responsible for their choices and should be able to retake assessments as they grow.
When AI features are enabled, LifePath should minimise personal information sent to the AI provider. The career coach uses a learner’s relevant career context but should not send their email address or full identity in the prompt.
LifePath records the source used to verify an institution or provider. A missing record does not prove fraud; users are directed to official verification sources before paying fees.
Users should be able to request a copy of their information and delete their account. The application includes an account-deletion API; deployment owners should expose this through their operational support process and align the final privacy notice with POPIA and their organisation’s legal requirements.