Legal

Privacy Policy

This Privacy Policy explains how IGNITE Solutions collects, uses, stores, discloses and protects personal information in connection with IGNITE LMS (the “Service”), including data relating to institutes, administrators, teachers, students and guardians.

Last updated: 18 August 2026 IGNITE Solutions Made in Pakistan

1. Who we are

The Service is operated by IGNITE Solutions (“we”, “us”, “our”), a Pakistan-based software provider. IGNITE LMS is a multi-tenant learning management platform made available at the domain used by your institute (including lms.ignitesol.net) and related web or installed applications.

This Policy applies to personal information processed when you visit our public website, request a demonstration, create or use an account, or otherwise interact with the Service.

This Policy should be read together with our Terms of Service. Capitalised terms not defined here have the meaning given in the Terms.

2. Scope and roles

How we handle personal information depends on the context:

2.1 Institute customer data (processor)

Where an educational institute, academy, coaching centre, school or similar organisation (the “Customer”) uses the Service to manage its own operations, the Customer determines the purposes and means of processing records about its staff, students and guardians. In that capacity, the Customer is the data controller (or equivalent) and IGNITE Solutions processes that information on the Customer’s instructions in order to provide the Service.

2.2 IGNITE account and marketing data (controller)

We act as an independent controller of information we collect for our own business, including demonstration enquiries, sales correspondence, platform subscription billing for Customers, website analytics, security logs, and account credentials of Customer administrators who contract with us.

2.3 What this Policy does not cover

This Policy does not govern websites, applications or services of third parties (including Zoom, Google, Microsoft, WhatsApp or payment channels) except to the extent we pass information to them as described below. Those providers apply their own terms and privacy notices.

3. Information we collect

The categories of information processed through the Service typically include the following. Exact fields depend on how the Customer configures and uses the platform.

3.1 Identity and contact details

Names, email addresses, telephone numbers, profile photographs, national identity or other identification numbers where the Customer records them, addresses, emergency contacts, and similar details for administrators, teachers, extra staff, students and guardians.

3.2 Account and authentication data

Usernames, hashed passwords, role assignments, session tokens, Google sign-in identifiers where enabled, device or browser information used for login, and records of access permissions (including extra staff menu access and portal lock settings).

3.3 Institute and academic records

Campus and class structures, batches, subjects, enrolment, attendance (including automated attendance derived from live sessions), leave requests, homework, examinations and results, lecture schedules, lecture history, and related academic notes.

3.4 Financial and administrative records

Fee plans, challans, payment status, paid amounts, bank or mobile-wallet payment references entered by the Customer, teacher salary plans, payroll, advances, and platform subscription invoices or payment confirmations between the Customer and IGNITE Solutions.

3.5 Communications

Messages sent through in-platform inboxes and broadcasts among administrators, teachers, students and guardians, including related metadata (sender, recipients, timestamps). Demonstration and support messages sent to us by email, WhatsApp or the public contact form.

3.6 Live lecture and integration data

Meeting identifiers, join times, participant names as reported by the conferencing provider, attendance matching data, whiteboard or lecture notes stored in the Service, and links to recordings where the Customer or provider stores them. Where Google Drive is connected, we process file names, folder identifiers, sharing settings and access metadata necessary to display the Customer’s course library; course files remain in the Customer’s Google Drive unless the Customer copies them elsewhere.

3.7 Technical, usage and cookie data

Internet protocol addresses, browser and device type, approximate time zone, pages viewed, diagnostic logs, crash or error reports, and cookies or similar technologies as described in Section 11.

We do not require special-category health information to operate the Service. If a Customer chooses to store such information in free-text or custom fields, the Customer is responsible for having a lawful basis to do so.

4. How we collect information

We collect information:

  • directly from you, for example when you request a demonstration, sign in, update a profile, send a message, or contact support;
  • from the Customer and its authorised users, who enter or import records (including bulk Excel uploads) about students, staff and guardians;
  • automatically, through the Service, logs, cookies and similar technologies;
  • from third-party services that the Customer connects, including conferencing platforms, Google accounts used for sign-in or Drive, and communication channels such as WhatsApp when used to send login invites or sales messages; and
  • from publicly available or Customer-supplied payment references used to reconcile platform subscription or fee payments.

5. How we use information

We use personal information to:

  • provide, operate, maintain and improve the Service, including portals for administrators, teachers, students and guardians;
  • authenticate users, enforce roles and permissions, and protect accounts;
  • schedule and deliver lectures, generate attendance, and support related academic workflows;
  • generate and track challans, payroll and other institute administration features requested by the Customer;
  • enable messaging, notifications and (where configured) WhatsApp login invitations;
  • connect optional integrations such as Zoom, Google Meet, Microsoft Teams and Google Drive on the Customer’s instructions;
  • bill Customers for platform subscriptions, process payment confirmations, and provide related notices;
  • respond to enquiries, provide support, and send service or security communications;
  • monitor performance, prevent fraud, abuse and unauthorised access, and comply with law; and
  • with appropriate notice or consent where required, send product updates or marketing about IGNITE LMS. You may opt out of marketing by contacting us. Transactional and security messages are not marketing.

We process information as necessary to perform our contract with the Customer, to pursue legitimate operational and security interests that are not overridden by individual rights, to comply with applicable law, and, where required, on the basis of consent (for example certain cookies or optional marketing).

6. Accounts and roles

The Service supports distinct roles, commonly including Super Admin (IGNITE platform staff), institute Admin, extra staff, Teacher, Student and Guardian. Access to personal information is limited by the permissions assigned to each role.

The Customer is responsible for:

  • creating and deactivating accounts promptly;
  • assigning appropriate roles and menu access;
  • ensuring that credentials are kept confidential; and
  • obtaining any consents or notices required under applicable law before entering personal information, including information about minors, into the Service.

Guardians typically see information relating to the student(s) linked to their account, as configured by the Customer. Students typically see their own academic, attendance, lecture and fee information.

7. Student, parent and guardian data

The Service is designed for educational institutions and will inevitably process information about children and young people where the Customer enrols them. We do not knowingly use student records for IGNITE’s independent marketing.

Parents and guardians who have been given portal access by the Customer may view or submit information according to the Customer’s configuration (for example attendance, fees, leave and messages). Requests to access, correct or delete a student’s record should first be directed to the institute that controls the account. We will assist the Customer in responding where the request is properly authorised.

If you believe a child’s information has been submitted to us without appropriate authority, contact the institute and, if necessary, IGNITE Solutions using the details in Section 18.

8. Lectures, conferencing and recordings

Live lectures may be delivered through third-party conferencing tools connected by the Customer (including Zoom and, where enabled, Google Meet or Microsoft Teams). Participant names, join and leave times, and similar meeting telemetry may be retrieved in order to mark attendance and operate the lecture workflow.

Recordings, if enabled, are created and stored according to the Customer’s and the conferencing provider’s settings. The Customer is responsible for informing teachers, students and guardians where sessions may be recorded, and for using recordings only for legitimate educational purposes. IGNITE Solutions does not use Customer lecture recordings for advertising.

9. Cloud storage, documents and messaging

Where a Customer connects Google Drive, course documents remain in that Google account. We access Drive only as needed to list, version, share or display materials inside the Service on the Customer’s instructions. Disconnecting the integration stops new access; copies already displayed or cached as reasonably required to operate the Service may persist until deleted in accordance with our retention practices and the Customer’s settings.

In-platform messages are stored so that authorised users can read conversation history and so that administrators may, where the feature is enabled, monitor communications for safeguarding, academic integrity or acceptable-use enforcement. Customers should not use the Service to send information they are not entitled to process.

10. Fees, challans and platform billing

Fee challans, student payment status and related amounts are generated and maintained by the Customer. IGNITE LMS is not a bank and, unless a specific payment integration is separately agreed in writing, does not take custody of student tuition. Payment references (for example bank or JazzCash references) entered by users are used to reconcile records for the Customer.

Separately, IGNITE Solutions may collect billing details from the Customer to charge for the platform subscription, including invoices, payment confirmations and correspondence. Those records are retained as required for accounting and tax purposes.

11. Cookies and similar technologies

We use cookies, local storage and similar technologies to operate the Service, keep you signed in, remember preferences (including language or display settings), maintain security, and understand how public pages are used.

11.1 Essential cookies

These are required for authentication, load balancing, fraud prevention and core functionality. The Service cannot operate correctly if they are blocked.

11.2 Functional and analytics cookies

These remember choices and help us measure aggregate usage of public pages such as the landing page and Feature Book. Where non-essential cookies are used, you may control them through your browser settings. Blocking some cookies may limit features (for example remaining signed in or installing the progressive web application).

11.3 Third-party cookies

Embedded or connected services (for example conferencing, Google sign-in, maps or video) may set their own cookies subject to those providers’ policies.

12. Sharing and disclosure

We do not sell personal information. We share information only as follows:

  • Within the Customer’s organisation, according to roles and permissions the Customer assigns;
  • Service providers who assist with hosting, infrastructure, email or operational support, bound to use the information only to perform services for us;
  • Integration partners the Customer elects to connect, including conferencing, Google, Microsoft and messaging channels;
  • Professional advisers (for example legal or accounting) under confidentiality obligations;
  • Authorities, where we are required by applicable law, court order or to protect the rights, safety or property of IGNITE Solutions, our Customers, users or the public; and
  • Business transfers, in connection with a merger, acquisition, financing or sale of assets, subject to appropriate confidentiality and continuity of protection.

13. Data retention

We retain personal information for as long as needed to provide the Service to the Customer, to comply with legal, accounting and tax obligations, to resolve disputes, and to enforce our agreements.

Institute records remain available for the life of the Customer’s subscription and for a reasonable wind-down period after termination or expiry, unless the Customer deletes data earlier using available tools or we are instructed (and legally able) to delete sooner. Backup copies may persist for a limited period in encrypted backups before being overwritten. Platform billing, security logs and correspondence may be retained longer where required by law or legitimate security interests.

14. Security

We implement organisational and technical measures appropriate to the nature of the Service, including access controls, role-based permissions, encrypted transmission (HTTPS), hashed password storage, and monitoring for unauthorised access. No method of transmission or storage is completely secure. Customers must also protect their accounts, devices and staff access, and promptly notify us of suspected compromise.

15. Your rights

Subject to applicable law and the controller/processor roles described above, individuals may have the right to request access to personal information, correction of inaccurate data, deletion, restriction of processing, or information about how their data is used.

  • Students, teachers, guardians and institute staff should submit requests to their institute (the Customer), which controls the relevant records. We will support the Customer in fulfilling valid requests.
  • Prospective customers and website visitors whose data we hold as controller may contact us directly using Section 18.

We may need to verify identity and authority (for example, that a parent is entitled to act for a student) before acting on a request. We may decline or limit a request where the law permits, including where disclosure would adversely affect others, compromise security, or conflict with a legal retention duty.

16. International processing

IGNITE Solutions is based in Pakistan. The Service, hosting infrastructure and some integration partners may process information in Pakistan or in other countries. Where information is processed outside Pakistan, we take steps we consider reasonable in the circumstances to protect it, including contractual and technical measures with providers. By using the Service, Customers instruct us to process information in these locations as needed to operate IGNITE LMS.

17. Changes to this Policy

We may update this Privacy Policy from time to time. The “Last updated” date at the top of this page will change when we do. Material changes will be indicated by posting the revised Policy on this page and, where appropriate, by a notice in the Service or by email to the Customer’s primary administrator. Continued use of the Service after the updated Policy takes effect constitutes acceptance of the revised Policy, except where applicable law requires additional consent.

18. Contact

Questions about this Privacy Policy, our data practices, or a privacy request that cannot be resolved with your institute should be directed to:

IGNITE Solutions — IGNITE LMS
Pakistan
WhatsApp: +92 302 4884029

Related documents: Terms of Service · Home · Feature Book · User Manual