Privacy Policy
Last updated: December 19, 2025
Privacy policy — Next Level Pro Institute
At Next Level Pro Institute, we are committed to protecting your privacy and ensuring that your personal data is handled with care. This Privacy Policy outlines how we collect, use, store, and share your personal data when you visit our website (https://nextlevelproinstitute.com/) or use our services. By accessing our website or services, you agree to the terms of this Privacy Policy.
We comply with applicable U.S. privacy laws, such as the California Consumer Privacy Act (CCPA), as well as international regulations, including the General Data Protection Regulation (GDPR) for users in the European Union. These laws ensure that your data is processed lawfully, transparently, and fairly.
1. Introduction
This Privacy Policy describes how Next Level Pro Institute, Inc. (“Company,” “we,” “our,” or “us”) collects, processes, and shares personal data through its website and services. Our services include retreat-style NLP certification, continuous professional development programs, and ongoing training. We are committed to ensuring your privacy is protected in accordance with applicable laws.
If you have any questions or concerns about this policy, please contact us at hello@thenlpi.com
2. Definitions
To ensure clarity, the following terms are used in this Privacy Policy:
- “Personal Data”: Any information relating to an identified or identifiable individual.
- “Processing”: Any operation performed on personal data, including collection, storage, use, and sharing.
- “User”: Any individual who visits our website or uses our services.
- “Third-Party Processor”: External companies that help us manage and process personal data (e.g., Stripe).
3. Scope of the Policy
This Privacy Policy applies to all personal data collected from users of Next Level Pro Institute via:
- Our website: https://nextlevelproinstitute.com
- Our app: https://nlpi.passion.io
- Our services: Including NLP certification programs, bootcamps, masterclasses, in person training, online training, and ongoing training
- Third-party platforms: Data collected via social media ads funnels and payment processing systems (e.g., Stripe, Relay Financial).
This policy is effective for users in the United States and users in other countries as we expand globally. If you access our website or services from outside the U.S., your data may be processed internationally.
This policy applies regardless of how you access our services (web, mobile app, or third-party platforms).
4. Types of Data Collected
We collect several types of personal data from users, which may include:
- Personal Identification Information: Name, email address, phone number, billing address, and other contact details.
- Payment Information: Collected via our third-party payment processors, Stripe and Relay Financial (Thread Bank) (e.g., credit card details, billing address).
- Marketing Data: Data collected through social media ads funnels, such as preferences, interests, and interactions with our advertisements.
- Automatically Collected Data: Information about your device, browser, IP address, and browsing behavior when you visit our website.
5. Methods of Data Collection
We collect data through the following methods:
- Direct Collection: When you provide personal information by filling out forms, registering for courses, or purchasing services (e.g., retreats, digital products).
- Automated Collection: Through cookies and tracking technologies, we collect data about how you use our website (e.g., IP address, device type, browser).
- Third-Party Sources: We collect data through social media advertising funnels (e.g., Facebook, Instagram) to improve our marketing strategies and tailor ads.
6. Purpose of Data Collection
We collect and process your personal data for the following purposes:
- Marketing & Analytics: To tailor our marketing efforts based on your preferences and interactions with our ads and services. Marketing and analytics activities are conducted only where permitted by law and subject to user consent preferences.
- Payment Processing: To securely process payments for our digital products and retreat packages (via Stripe).
- Certification Management: To manage NLP certifications, track course progress, and ensure proper delivery of our training programs.
- Communication: To provide updates, customer support, and information related to your account or services.
We only collect data necessary for these purposes and ensure that your personal data is not used for unrelated purposes without your consent.
7. Legal Basis for Data Processing
We process your personal data based on the following legal grounds:
- Consent: We rely on your consent to collect and process your personal data for marketing purposes. By opting in to receive marketing communications, you agree to the collection and use of your data for these purposes.
- Contractual Necessity: We process your personal data when it is necessary to fulfill our contractual obligations, such as processing payments, delivering services (e.g., NLP certification and retreat programs), and managing user accounts.
- Legitimate Interests: We process data based on our legitimate business interests, such as improving our services, securing our platform, and ensuring a positive user experience. We always consider the balance between our interests and your rights and freedoms.
- Legal Compliance: In certain cases, we may process your data to comply with legal obligations, such as financial record-keeping or responding to lawful requests from authorities.
8. Third-Party Data Processors
We use a limited number of trusted third-party service providers (“data processors”) to support the operation of our services and business functions. These processors act on our behalf and are contractually bound to process personal data only in accordance with our instructions and applicable data protection laws.
The primary third-party processors we use include:
- Passion.io – to host and deliver digital content and membership access
• Stripe – to securely process payment transactions (PCI DSS compliant). In some cases, Stripe may act as an independent data controller in accordance with its own privacy policy.
• Relay Financial (Thread Bank) – for business banking and financial operations
• MailerLite – for email communications and subscriber management
• Tally.so – for collecting information via online forms
These third parties only process personal data for the specific purposes outlined above and in accordance with this Privacy Policy and applicable data protection regulations.
9. Data Sharing and Disclosure
We may share your personal data with third parties under the following circumstances:
- Marketing Agencies: We share data with marketing agencies to assist with targeted advertising and campaign management.
- Certification authorities and credentialing bodies associated with our NLP programs (including Society of NLP™).
- Legal Obligations: We may disclose personal data if required to do so by law, in response to a subpoena, or when necessary to protect our rights, safety, or property.
We do not sell or lease your personal data to third parties for any reason.
10. Data Retention
We retain your personal data for as long as necessary to fulfill the purposes for which it was collected, including for the following durations:
- Marketing Data: Marketing data is retained for as long as you remain subscribed, unless you opt out or request deletion.
- Payment Data: Retained for a minimum of 7 years for financial record-keeping purposes in compliance with applicable laws.
- Certification Data: Retained indefinitely for certification management and verification purposes.
Once your data is no longer needed, it will be securely deleted or anonymized.
11. User Rights
As a user, you have several rights in relation to your personal data:
- Right to Access: You may request access to the personal data we hold about you.
- Right to Rectification: If your data is incorrect or incomplete, you can request corrections.
- Right to Erasure: You have the right to request the deletion of your personal data under certain conditions.
- Right to Withdraw Consent: You can withdraw your consent for marketing communications at any time.
- Right to Data Portability: You may request to receive your personal data in a structured, commonly used format.
- Right to Restrict Processing (GDPR): You have the right to request that we restrict the processing of your personal data under certain circumstances, including where you contest the accuracy of the data, where processing is unlawful and you oppose erasure, or where we no longer need the data but you require it for the establishment, exercise, or defense of legal claims. When processing is restricted, we will store your personal data but will not further process it without your consent, except as permitted by law.
- Right to Object to Processing (GDPR): You have the right to object to the processing of your personal data where such processing is based on our legitimate interests or used for direct marketing purposes. If you object to processing for direct marketing, we will stop processing your personal data for those purposes. If you object to processing based on legitimate interests, we will assess whether we have compelling legitimate grounds to continue processing that override your rights and freedoms, or whether the data is required for legal claims.
- California Consumer Privacy Rights (CCPA): If you are a California resident, you have specific rights under the California Consumer Privacy Act (CCPA), including:
- Right to Know: You have the right to request information about the categories and specific pieces of personal data we have collected about you, the purposes for which it is used, and the categories of third parties with whom it is shared.
- Right to Delete: You have the right to request the deletion of your personal data, subject to certain legal exceptions.
- Right to Non-Discrimination: You have the right not to receive discriminatory treatment for exercising any of your CCPA rights.
We do not sell your personal data as defined under the CCPA.
To exercise your California privacy rights, please contact us using the contact information provided in this Privacy Policy.
To exercise any of these rights, please contact us at hello@thenlpi.com. We will respond within the timeframes required by applicable laws.
12. Data Security Measures
We take the protection of your personal data seriously and have implemented a variety of security measures to ensure its safety:
- Encryption: We use encryption protocols to protect your data during transmission.
- Access Controls: Only authorized personnel have access to your personal data, and they are required to maintain strict confidentiality.
- Third-Party Security: We rely on trusted third-party service providers, such as Stripe and Passion.io, which employ industry-standard security measures to protect personal data.
While we strive to protect your data, no security system is completely foolproof. In the event of a security breach, we will notify you as required by law.
13. Payment Information Security
When processing payments, we ensure your payment details are securely handled through Stripe, a trusted third-party payment processor:
- PCI Compliance: Stripe complies with Payment Card Industry Data Security Standards (PCI DSS), ensuring your payment information is securely processed.
- Encryption: All payment information is encrypted and never stored on our servers.
- Secure Checkout: Transactions are completed using a secure, encrypted connection to prevent unauthorized access to your payment information.
Your payment data is only used for the transaction and will not be stored or used for other purposes without your explicit consent.
14. Cookies and Tracking Technologies
Our website uses cookies and other tracking technologies to improve your experience and analyze how our website is used:
- Types of Cookies Used:
- Essential Cookies: Necessary for the proper functioning of the website.
- Analytics Cookies: Used to collect data on how users interact with our website.
- Advertising Cookies: Used to deliver personalized ads based on your interests.
- Cookie Management: You can control or disable cookies through your browser settings, though doing so may impact your ability to use certain features of our website.
Where required by law, cookie consent is obtained before non-essential cookies are placed.
15. Social Media and Advertising
We utilize social media platforms and third-party advertising services to promote our services and engage with our audience. Data is collected through these platforms in the following ways:
- Social Media Ads Funnels: We collect data when you interact with our ads on platforms such as Facebook and Instagram. This data includes engagement metrics, interests, and preferences.
- Advertising Platforms: We use advertising platforms to serve personalized ads based on your interactions with our site and services.
- Opt-Out: You can control the data these platforms collect through your account settings on the respective social media platforms, or by adjusting your ad preferences.
This data helps us improve our marketing strategies and deliver more relevant content to you.
16. Marketing Communications
We may use your personal data to send you marketing communications related to our services, including promotions, new courses, and retreat updates. This section covers:
- Opt-In: By providing your contact details and consenting to receive communications, you agree to receive marketing emails and notifications.
- Opt-Out: You may unsubscribe from marketing communications at any time by clicking the “unsubscribe” link in our emails or by contacting us directly.
- Marketing Preferences: You can manage your communication preferences by updating your account settings or contacting us for further assistance.
We will not send you marketing communications without your explicit consent.
17. International Data Transfers
As we expand globally and use international service providers, your personal data may be transferred to, and processed in, countries outside of your residence, including the United States. We ensure your data is protected by:
- Adequate Safeguards: We implement appropriate safeguards, such as Standard Contractual Clauses (SCCs) and other legally recognized safeguards where applicable.
- Third-Party Compliance: All third-party processors with whom we share your data comply with international data transfer regulations.
If you are located in the European Economic Area (EEA) or another region with specific data protection regulations, you have the right to know how your data is transferred and the safeguards in place.
18. Children’s Privacy
Our services are not intended for use by individuals under the age of 18. We do not knowingly collect or process personal data from children under this age:
- Parental Consent: If we discover that we have collected data from a child under 18 without parental consent, we will promptly delete that data.
- Reporting: If you believe we have inadvertently collected data from a minor, please contact us at hello@thenlpi.com.
We comply with applicable laws, such as the Children’s Online Privacy Protection Act (COPPA), regarding data collection from minors.
19. Data Processing Outside the U.S.
As part of our operations, some personal data may be processed by remote staff or contractors located outside of the United States. This includes:
- Nomadic Staff: Remote workers and contractors located internationally may have access to personal data to perform their job duties.
- Data Protection Measures: All staff and contractors are required to follow strict data protection protocols to ensure your data is secure, regardless of their location.
We take steps to ensure that international data processing adheres to the same privacy standards as in the U.S.
20. User-Generated Content and Public Forums
If you submit content such as reviews, feedback, or participate in public forums hosted by our services, please be aware that:
- Public Nature: Any information you post publicly will be visible to others and can be collected and used by third parties.
- Responsibility: You are solely responsible for any content you submit, and we recommend avoiding sharing any sensitive personal information in public forums.
We reserve the right to monitor, edit, or remove content that violates our terms or may harm other users.
21. Links to Third-Party Websites
Our website may contain links to third-party websites for your convenience. Please note:
- No Control: We do not control or take responsibility for the content, privacy practices, or policies of third-party websites.
- Encouragement to Review Policies: We encourage you to review the privacy policies of any third-party sites you visit, as their policies may differ from ours.
We are not liable for any actions taken by these third-party sites, and users are responsible for their interactions with external websites.
22. Changes to the Privacy Policy
We reserve the right to update or modify this Privacy Policy at any time. Any changes will be reflected on this page, with the updated policy’s effective date at the top.
- Notification: If we make significant changes to how we handle personal data, we will notify users through email or a prominent notice on our website.
- Continued Use: By continuing to use our website or services after changes are made, you agree to the updated Privacy Policy.
We encourage you to review this Privacy Policy periodically to stay informed of any updates.
23. Legal and Regulatory Compliance
We comply with all applicable laws and regulations regarding the collection, use, and protection of personal data, including:
- United States Laws: We follow U.S. federal and state regulations, including the California Consumer Privacy Act (CCPA), where applicable.
- International Regulations: If you are located outside of the U.S., we ensure compliance with international data protection regulations such as the General Data Protection Regulation (GDPR) in the European Union.
If any legal obligation arises that requires us to disclose personal data, we will comply with the law and notify users as permitted.
24. Data Breach Notifications
In the event of a data breach that compromises personal data, we will take the following steps:
- Investigation and Mitigation: We will promptly investigate the breach and take appropriate measures to mitigate its effects.
- User Notification: If the breach poses a risk to your personal data, we will notify you as required by applicable laws, including the nature of the breach and the steps you can take to protect yourself.
We are committed to maintaining robust security practices to prevent such breaches, but in the unlikely event of one, we will act in accordance with all legal requirements.
25. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or the handling of your personal data, please contact us:
- Email: hello@thenlpi.com
You may also use this contact information to exercise your rights under this Privacy Policy, such as accessing, correcting, or deleting your personal data. We will respond to all inquiries within the legally required timeframes.