← Go to Gevaarlijke Stoffen Cursus Online ADR IMDG IATA | DG-Learning
These General Terms and Conditions were last updated on 25 August 2026.
DG-Learning
Jacob Roggeveenstraat 171
2404 ZA Alphen aan den Rijn
The Netherlands
Chamber of Commerce number: 89314204
VAT identification number: NL004716653B15
Telephone: +31 (0)6 54 95 56 70
Email: [email protected]
Website: www.dglearning.eu
This privacy policy was last updated on August 25, 2026.
DG-Learning processes personal data when providing its website, webshop, online learning platform, courses, group management, support and certificates.
We handle personal data carefully and only process it for clearly defined purposes. This privacy policy explains:
This privacy policy applies to the website www.dglearning.eu, the webshop, the online learning platform, the associated account functions and the services provided by DG-Learning.
The products and services offered by DG-Learning are primarily intended for business customers and organisations. Students may receive an account directly or may be enrolled by an employer, client or group leader.
DG-Learning is, in principle, the data controller within the meaning of the General Data Protection Regulation for the processing activities described in this privacy policy.
Contact details:
DG-Learning
Jacob Roggeveenstraat 171
2404 ZA Alphen aan den Rijn
The Netherlands
Chamber of Commerce number: 89314204
VAT identification number: NL004716653B15
Telephone: +31 (0)6 54 95 56 70
Email: [email protected]
Website: www.dglearning.eu
Business customers, employers, clients and group leaders may provide DG-Learning with the personal data of students and enrol students in a course.
The relevant organisation or group leader is responsible for:
An employer or client may also be an independent data controller for its own use of this personal data.
Where DG-Learning processes personal data solely on the documented instructions of a client in a specific situation, additional agreements or a data processing agreement may be concluded.
Depending on how you use the website and our services, we may process the following personal data.
Passwords are not stored in readable form.
Certificates are stored in a protected storage location within the hosting environment of DG-Learning. They are not intended to be publicly accessible without authorisation.
DG-Learning does not generally receive complete bank or credit card details. These details are processed by the payment service provider during online payments.
When you voluntarily submit a rating or review, we may process the following personal data:
A review will only be published if consent has been given. You may withdraw this consent at a later date.
We may also process personal data that you actively provide to us, for example by email, telephone, through a form, in a support message or during other communication with DG-Learning.
We ask you not to provide special categories of personal data, a citizen service number or a copy of an identity document unless DG-Learning explicitly requests this in an exceptional situation and has a valid reason for doing so.
We may receive personal data:
When an employer, client or group leader enrols a student, we generally receive the student’s name, email address, group and the course in which the student is enrolled.
We only process personal data when there is a valid legal ground for doing so.
We process personal data for:
We process personal data when this is necessary to comply with legal obligations, including:
We may process personal data on the basis of a legitimate interest for:
We balance our interests against the privacy interests of the individuals concerned and do not process more personal data than necessary.
We only use consent where this is appropriate or legally required, for example for:
You may withdraw your consent at any time. Withdrawal of consent does not affect processing that lawfully took place before the consent was withdrawn.
Some personal data is necessary for us to provide our services.
At least a name and a unique email address are required to create a personal course account. Without this information, we cannot provide a personal account, course enrolment, progress registration or certificate.
Additional company, address and invoice details may be required for an order and invoice.
Profile details such as a profile picture, cover image, job title or additional employment information are generally optional. Not providing this optional information does not affect your ability to follow a course.
When a student is added to a group, authorised group leaders of that group may view personal data that is necessary to manage the enrolment and monitor course results.
Depending on the functions used, group leaders may have access to:
Group leaders may download or export results, student lists and reports. They may also download certificates and, where this forms part of the service, receive a certificate by email.
A group leader only has access to students and course data belonging to groups for which that group leader is authorised. Other students do not have access to the personal data, results or certificates of fellow students.
DG-Learning may carry out access checks and restrict access where there are indications of misuse or unauthorised use.
Student profiles are not publicly accessible to visitors to the website.
Where necessary, a profile may be visible to:
Other students do not have access to another user’s profile or course results.
Any public example profiles of administrators or DG-Learning Support are excluded from this standard setting.
After successfully completing a designated final test, a personal certificate may be generated automatically.
The certificate may:
We use certificate data to provide evidence of completion, keep the certificate available, provide information about any expiry date and answer questions about its validity or issue.
DG-Learning does not send commercial newsletters, advertising messages or other marketing emails.
We may send necessary emails that form part of our services, including:
These messages are not commercial marketing and are necessary for performing the contract, managing the account or providing the requested service.
Online payments are processed through Mollie.
To process and verify a payment, the following data may be provided to Mollie:
Mollie may also process payment data itself, such as a bank account number, card details, IP address, device details and transaction details.
As a payment service provider, Mollie is independently responsible to a significant extent for processing personal data that is necessary to execute, secure and administer payments. Mollie’s own privacy policy also applies to these processing activities.
DG-Learning generally only receives the information from Mollie that is necessary to determine whether a payment has been completed, failed, cancelled or refunded.
DG-Learning uses a self-hosted WordPress environment.
Within this environment, software is used for:
WordPress, WooCommerce, BuddyBoss and LearnDash, among others, operate as software components within the hosting environment of DG-Learning.
The use of this software does not mean that account, course and progress data is automatically stored on servers belonging to the software suppliers BuddyBoss or LearnDash. The data is generally stored in DG-Learning’s own WordPress database and file storage.
A software supplier may only be given access to personal data when this is necessary for technical support and DG-Learning has explicitly granted access. Access will then be limited as much as possible to what is necessary.
We do not sell personal data or provide it to third parties for commercial purposes.
We may share personal data with the following recipients where this is necessary.
The website, database, course data, orders and certificate files are processed within the hosting environment of DG-Learning.
DG-Learning uses TransIP for this purpose and may also use technical administrators who are only granted access where this is necessary for management, maintenance or security.
DG-Learning uses Cloudflare for DNS, security, protection against unwanted traffic and the faster and more reliable delivery of the website.
Cloudflare may process technical request data, including:
Mollie processes the data required for online payments and for its legal obligations as a payment service provider.
Service providers required for sending, delivering and securing necessary emails may process email addresses, message data and technical delivery information.
Where necessary, personal data may be provided to:
DG-Learning works together with Gevaarlijke Stoffen Training en Advies B.V.
Where this organisation is involved in content-related support, administration, customer service or the performance of services, authorised employees may have access to the personal data necessary for those activities.
Information about enrolment, progress, results and certificates may be made available to the authorised employer, client or group leader who ordered the course or group licences.
We may provide personal data where we are legally required to do so or where this is necessary to establish, exercise or defend legal claims.
Where a service provider processes personal data on behalf of DG-Learning, we enter into a data processing agreement where required or make other appropriate privacy and security arrangements.
We aim to process personal data within the European Economic Area as much as possible.
Some technical service providers or their subprocessors may process personal data outside the European Economic Area. This may, for example, occur in connection with Cloudflare’s global security and network infrastructure.
Where personal data is processed outside the European Economic Area, we ensure that there is a valid legal basis for the transfer and that appropriate safeguards are in place. This may include:
You may contact us for more information about the safeguards used for a specific transfer.
DG-Learning only uses strictly necessary and functional cookies and similar technologies that are required for the website, webshop and online learning platform to function correctly and securely.
These cookies may be used for:
DG-Learning does not use cookies for:
Because only strictly necessary and functional cookies are used, prior consent is not required for these cookies.
The retention period differs for each cookie. Some cookies are deleted when you close your browser. Other cookies remain for a limited period to support a necessary function, such as remembering a language preference or maintaining a secure login.
You can delete or block cookies through your browser. If you block necessary cookies, you may be unable to log in, place an order or use certain parts of the learning platform.
When you are redirected to Mollie or another payment service during a payment, that party may use cookies that are necessary for its own security and payment processing. The privacy and cookie policy of that party applies to those cookies.
Certain actions within DG-Learning are carried out automatically, including:
DG-Learning does not make decisions based solely on automated processing that produce legal effects or similarly significant effects for an individual.
An automatically calculated test result may be reviewed by DG-Learning and, where necessary, corrected if there is a technical error or a demonstrably incorrect result.
DG-Learning does not retain personal data for longer than necessary for the purpose for which it was collected, unless a legal obligation or legitimate interest requires a longer retention period.
We generally apply the following periods and criteria.
Account and profile details are retained for as long as the account remains active and the user has access to our services.
When an account is deleted, we delete or anonymise the account and profile details unless certain data must still be retained due to a legal obligation, certificate verification, an ongoing contract, a dispute or another legitimate reason.
Order, invoice and payment details that form part of our financial records are generally retained for seven years from the end of the relevant financial year, or longer if another statutory retention period applies.
Data relating to an incomplete course is retained for as long as access remains active and afterwards for as long as is reasonably necessary for support, recovery, extension, administration or the handling of questions.
This data is generally deleted or anonymised no later than two years after the expiry of course access or the most recent relevant course activity, unless a longer period is necessary.
Data required to demonstrate completion of a course, a test result or an issued certificate is generally retained for a maximum of seven years after the completion or issue date.
A longer period may apply where this is necessary because of:
Support requests and related correspondence are generally retained for a maximum of two years after they have been resolved, unless the content forms part of a contract, complaint, dispute or technical file for which a longer retention period is necessary.
Technical error reports and internal support logs are generally retained for a maximum of six months, unless they are required for longer to investigate a recurring problem, security incident or dispute.
Technical data relating to the sending of necessary service emails is generally retained for a maximum of six months, unless a longer period is necessary to handle a problem, complaint or dispute.
Security, access and server logs are generally retained for a maximum of twelve months. Data relating to a specific security incident may be retained for longer for as long as this is necessary for the investigation and handling of the incident.
A published review is retained until:
After deletion, personal data may remain temporarily in secure backups. These backups are overwritten in accordance with our normal backup cycle and are not used for other purposes.
Where a backup is restored, previously received deletion requests will be processed again.
You can delete your account through your account settings or contact DG-Learning to request deletion.
When your account is deleted, your account and profile details will be deleted or anonymised where we no longer require this personal data.
We may not be able to delete certain personal data immediately. For example, we may be required to retain order, invoice and payment details because of our statutory record-keeping obligations.
Data relating to certificates obtained, contracts, complaints, security incidents or legal claims may also be retained for longer where this is necessary.
Personal data may remain temporarily in secure backups after deletion. These backups are overwritten in accordance with our normal backup cycle.
After your account has been deleted, you will no longer have access to your courses, results and certificates. You should therefore download any certificates you wish to keep before deleting your account.
DG-Learning takes appropriate technical and organisational measures to protect personal data against loss, misuse, unauthorised access, unwanted disclosure and unauthorised alteration.
Depending on the processing activity, we use measures including:
Only individuals who require the personal data for their work are given access to it.
No method of storage or transmission is completely free of risk. If you suspect that your account or personal data is being used improperly, please contact us immediately.
Where a security incident involving personal data occurs, we investigate the incident and take appropriate measures.
Where legally required, we report a personal data breach to the Dutch Data Protection Authority.
Where a personal data breach is likely to result in a high risk to the rights and freedoms of individuals, we will also inform the affected individuals.
Where the legal conditions are met, you have the following rights:
Withdrawal of consent does not affect the lawfulness of processing carried out before consent was withdrawn.
The right to erasure is not absolute. We may refuse a request in whole or in part where we are required to retain personal data because of a legal obligation, contract, certificate verification, security interest or legal claim.
You can send a privacy request to:
Please clearly state in your request:
We do not routinely request a copy of an identity document.
We first try to verify your identity through the email address known to us, your logged-in account or other information already known to us.
Only where we have reasonable doubts about your identity may we ask for additional information.
If a copy of an identity document is necessary in an exceptional case, we ask you to obscure any information that is not required, including your photograph, citizen service number, document number and machine-readable zone.
Any copy received will be deleted after the identity check has been completed.
We will generally respond within one month of receiving the request.
Where a request is complex or we receive multiple requests, we may extend this period by a maximum of two months. We will inform you of any extension and the reason for it within the first month.
Privacy requests are generally handled free of charge. In the case of manifestly unfounded or excessive requests, we may charge a reasonable fee or refuse the request to the extent permitted by law.
If you have a complaint about the way in which we process your personal data, please contact us first at [email protected].
We will make every effort to resolve your complaint carefully.
You also have the right to lodge a complaint with the Dutch supervisory authority:
Dutch Data Protection Authority
DG-Learning may amend this privacy policy when our services, website, systems or legal obligations change.
The most recent version will be published on www.dglearning.eu.
The date of the most recent update is always shown at the top of the privacy policy.
Where significant changes affect active accounts or ongoing services, we may also inform users through the platform or by email.