Legal
Privacy Policy
1. About Beyond Borders
Beyond Borders is a mentoring and community platform operated by Malik Basit Zia in Denmark.
For the purposes of applicable data protection law, including the General Data Protection Regulation (GDPR), Malik Basit Zia is the data controller for personal data processed through Beyond Borders.
Contact: beyondborders.dk@outlook.com
Country: Denmark
2. Who can use Beyond Borders
Beyond Borders is intended for users who are 18 years of age or older.
By creating an account, you confirm that you are at least 18 years old.
3. Personal data we collect
Depending on how you use Beyond Borders, we may collect the following categories of personal data:
Account information
- Name
- Email address
- User account identifier
- Authentication information provided through Microsoft Entra ID
Profile information
- Profile photo
- Biography
- Interests
- Profession
- Skills
- Education
- Mentor or mentee role
- Mentoring interests
- Availability information
Mentorship and platform activity
- Mentorship requests
- Mentoring sessions
- Mentor availability
- Participation in events
- Community participation
- Ratings and feedback
- Mentor contribution statistics
- Certificates issued through Beyond Borders
Communications
- Private messages between users
- Messages exchanged with AI mentors
- Support requests
- Feedback submitted to Beyond Borders
Technical and usage information
- Device and application information
- IP address
- Login and security information
- Diagnostic information
- Crash information
- Performance information
- Usage information collected through Azure Application Insights
4. Authentication
Beyond Borders uses Microsoft Entra ID for authentication.
Microsoft may process information necessary to authenticate users in accordance with Microsoft’s own privacy practices.
Beyond Borders does not receive or store users’ Microsoft account passwords.
5. Why we process personal data
We may process personal data in order to:
- Create and maintain user accounts
- Authenticate users
- Provide mentor and mentee functionality
- Allow users to communicate privately
- Manage mentorship requests and sessions
- Manage mentor availability
- Provide events and community features
- Provide AI-powered mentoring and guidance
- Maintain conversation history
- Provide relevant event information
- Calculate mentoring activity and contribution statistics
- Generate mentor certificates
- Maintain security and prevent misuse
- Diagnose technical issues
- Monitor application performance
- Improve the reliability and functionality of Beyond Borders
- Respond to support requests
- Comply with applicable legal obligations
6. Legal basis for processing
Depending on the processing activity, Beyond Borders may rely on one or more legal bases under GDPR. These may include:
Performance of a contract
Where processing is necessary to provide the Beyond Borders service requested by the user.
Legitimate interests
Where processing is necessary for purposes such as security, fraud prevention, diagnostics, platform improvement and protecting the service, provided those interests do not override the rights and interests of users.
Legal obligations
Where processing is required by applicable law.
Consent
Where Beyond Borders specifically requests consent for an optional feature or communication.
Not all personal data processing carried out by Beyond Borders is based on consent.
7. AI mentors
Beyond Borders may provide clearly identified AI mentors.
AI mentors are not human mentors and will be presented as AI within the service.
When a user communicates with an AI mentor, the user’s message and relevant conversation context may be processed using Microsoft Azure / Microsoft Foundry AI services in order to generate a response.
AI conversations may be stored by Beyond Borders as part of the user’s chat history.
Beyond Borders aims to send only the information reasonably necessary to provide the AI interaction.
AI mentors must not be treated as substitutes for qualified medical, legal, financial, tax, immigration or other regulated professional advice.
AI-generated content may contain errors or incomplete information.
8. Private messaging
Beyond Borders allows users to communicate through private messages.
Private messages are stored so that users can access their conversation history and so that the service can operate properly.
Users are responsible for the information they choose to share with other users.
Users should avoid sharing highly sensitive information unless it is necessary and appropriate.
9. Events and notifications
Beyond Borders may send users information related to events and platform activity. This may include:
- Information about events a user has registered for
- Reminders
- Changes to event details
- Relevant Beyond Borders event information
Beyond Borders does not currently send general commercial marketing communications.
If promotional marketing is introduced later, appropriate consent or opt-out mechanisms will be provided where required.
10. Analytics and diagnostics
Beyond Borders uses Azure Application Insights for application monitoring, diagnostics and performance analysis. This may include information such as:
- Application errors
- Request performance
- Device or application information
- Technical usage information
- Diagnostic events
Beyond Borders does not intentionally use Application Insights to store the full content of private conversations.
11. Mentor certificates
Beyond Borders may generate certificates based on recorded activity within the platform. Certificate information may include:
- Mentor name
- Mentoring hours
- Number of mentees supported
- Sessions or events
- Helpful contributions
- Ratings or feedback
- Issue date
- Certificate identifier
Certificates may be publicly verifiable using a certificate identifier or verification link.
12. Who we share personal data with
Beyond Borders may use third-party service providers to operate the platform. These may include providers of:
- Cloud hosting
- Databases
- Authentication
- AI services
- Application monitoring
- Email and notifications
- Security services
Current key providers include Microsoft services used for:
- Azure hosting
- Microsoft Entra ID
- Azure SQL
- Microsoft Foundry / Azure AI
- Azure Application Insights
These providers may process personal data where necessary to provide their services.
Beyond Borders does not sell users’ personal data.
13. International data transfers
Some service providers may process personal data outside Denmark or outside the European Economic Area.
Where required by applicable law, appropriate safeguards will be used for international transfers of personal data.
14. Data retention
Beyond Borders retains personal data only for as long as reasonably necessary for the purposes for which it was collected.
Retention periods may vary depending on the type of information. For example:
- Account information may be retained while the account remains active
- Messages may be retained to provide conversation history
- Mentorship and event history may be retained while relevant to the user’s account
- Certificates may remain verifiable after issuance
- Diagnostic and security logs may be retained for a limited operational period
- Information may be retained longer where required by law or necessary for legitimate security or dispute-resolution purposes
15. Account deletion
Users can request deletion of their Beyond Borders account through the application.
When an account is deleted, personal data associated with the account will be deleted or anonymised where appropriate, subject to information that Beyond Borders may need or be legally permitted to retain.
Account deletion may affect access to:
- Messages
- Mentorship history
- Event history
- Certificates
- Other account-related functionality
16. Your data protection rights
Subject to applicable law, users may have rights including:
- The right to access personal data
- The right to correct inaccurate information
- The right to request deletion
- The right to restrict certain processing
- The right to object to certain processing
- The right to data portability
- The right to withdraw consent where processing is based on consent
- Rights relating to certain automated decision-making
Requests may be sent to: beyondborders.dk@outlook.com
17. Security
Beyond Borders uses reasonable technical and organisational measures designed to protect personal data against:
- Unauthorised access
- Loss
- Misuse
- Alteration
- Disclosure
However, no online service can guarantee absolute security.
18. Changes to this Privacy Policy
This Privacy Policy may be updated as Beyond Borders develops.
If changes materially affect how personal data is processed, users may be notified through the application, email or another appropriate method.
The current version of the Privacy Policy will remain accessible within Beyond Borders and may also be made available at beyondborders.dk.
19. Complaints
If you have concerns about how Beyond Borders processes your personal data, please contact:
Malik Basit Zia
beyondborders.dk@outlook.com
You also have the right to lodge a complaint with the relevant data protection authority.
For users in Denmark, the supervisory authority is Datatilsynet, the Danish Data Protection Agency.
