Terms of Service
EFFECTIVE DATE: 1 APRIL 2026 · GRC PRO LAB · GRCPROLAB.COM
1. Acceptance
By creating an account or using GRC Pro Lab ("the Platform"), you agree to be bound by these Terms. If you do not agree, do not use the Platform.
2. Description of Service
GRC Pro Lab is an online training platform providing scenario-based learning content, audit simulations, and professional development resources for governance, risk, and compliance practitioners. Access is provided via subscription (Monthly, Annual) or a one-time Lifetime licence.
3. Eligibility
You must be at least 18 years old to create an account. By registering, you confirm that the information you provide is accurate and that you are authorised to enter into this agreement.
4. Account Responsibilities
- You are responsible for maintaining the confidentiality of your login credentials.
- You must not share your account with others or allow multiple users to access a single account simultaneously.
- You must notify us immediately at [email protected] if you suspect unauthorised access to your account.
5. Subscriptions & Payments
Paid plans are billed in EUR via Stripe. Monthly and Annual plans renew automatically at the end of each billing cycle unless cancelled before renewal. Lifetime plans are a one-time purchase with no recurring charges.
All prices are displayed inclusive of applicable taxes where required. GRC Pro Lab reserves the right to update pricing with 30 days' notice to existing subscribers.
6. Refund Policy
Due to the digital nature of the Platform, all purchases are final. Refunds are considered on a case-by-case basis for technical failures attributable to GRC Pro Lab. To request a review, contact us within 7 days of purchase.
7. Intellectual Property
All content on the Platform — including course materials, scenario datasets, audit simulations, finding templates, and certificates — is the intellectual property of GRC Pro Lab. You may not reproduce, redistribute, or commercialise any content without prior written consent.
8. Acceptable Use
You agree not to:
- Attempt to reverse-engineer, scrape, or extract Platform content at scale
- Use the Platform for any unlawful purpose
- Impersonate another user or misrepresent your identity
- Interfere with the security or integrity of the Platform
9. Termination
We reserve the right to suspend or terminate accounts that violate these Terms. Upon termination, access to the Platform and associated content is revoked immediately.
10. Limitation of Liability
GRC Pro Lab provides educational content for training purposes only. Nothing on the Platform constitutes professional legal, compliance, or audit advice. To the maximum extent permitted by applicable law, GRC Pro Lab shall not be liable for indirect, incidental, or consequential damages arising from use of the Platform.
11. Governing Law
These Terms are governed by the laws of the Republic of Ireland. Any disputes shall be subject to the exclusive jurisdiction of the Irish courts.
12. Changes to Terms
We may update these Terms from time to time. Continued use of the Platform after changes are posted constitutes acceptance of the updated Terms. We will notify active users of material changes via email.
13. Contact
For questions about these Terms, contact us at [email protected].
Privacy Policy
EFFECTIVE DATE: 1 APRIL 2026 · GRC PRO LAB · GRCPROLAB.COM
1. Who We Are
GRC Pro Lab ("we", "us", "our") operates the training platform at grcprolab.com. We are committed to protecting your personal data and complying with applicable data protection laws, including the EU General Data Protection Regulation (GDPR).
2. Data We Collect
- Account data: name, email address, hashed password
- Payment data: billing details processed securely by Stripe — we do not store card numbers
- Usage data: progress tracking, sections completed, quiz scores, session timestamps
- Technical data: IP address, browser type, device type (collected automatically)
3. How We Use Your Data
- To provide and maintain your account and access to the Platform
- To process payments and manage your subscription
- To send account-related communications (verification codes, receipts, important notices)
- To track and display your learning progress
- To improve Platform content and performance
4. Legal Basis for Processing
We process your data on the following legal bases: (a) performance of a contract — to deliver the service you signed up for; (b) legitimate interests — to operate, secure, and improve the Platform; (c) legal obligation — where required by applicable law.
5. Data Storage & Security
Your data is stored securely using Supabase (hosted on AWS infrastructure in the EU). We implement industry-standard security measures including encrypted connections (HTTPS), hashed passwords, and session token authentication. We do not sell your data to third parties.
6. Third-Party Services
- Stripe — payment processing (subject to Stripe's own Privacy Policy)
- Supabase — database and authentication infrastructure
- Resend — transactional email delivery
- Vercel — serverless hosting and deployment
7. Your Rights (GDPR)
If you are in the EEA or UK, you have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your account and associated data
- Object to or restrict certain processing
- Lodge a complaint with your local data protection authority
To exercise any of these rights, contact us at [email protected].
8. Data Retention
We retain your account data for as long as your account is active. If you delete your account, we will remove your personal data within 30 days, except where retention is required by law.
9. Cookies
GRC Pro Lab uses session storage to maintain your login state. We do not use third-party tracking cookies or advertising cookies.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes via email or a notice on the Platform.
11. Contact
For privacy-related queries, contact us at [email protected].