Applies to: ThePFSI.com, related subdomains, and PFSI-managed online course/exam portals (collectively, the “Services”).
1) Who we are
Personal Fiduciary Standards International (“PFSI”) provides education and certification for individuals acting in personal fiduciary roles (e.g., Power of Attorney, Executor/Executrix, Trustee). For the purposes of applicable privacy laws, PFSI is the “controller” (EU/UK) and the “organization” (Canada) for personal information we collect through the Services.
Contact (all regions): privacy@thepfsi.com
Mailing address: 4-2131 Williams Parkway, Brampton, Ontario, Canada, L6S 5Z4
2) Scope
This Policy explains how we collect, use, disclose, transfer, and protect personal information when you interact with our website, register for the Personal Fiduciary Certificate (PFC), complete coursework/exams, request support, or otherwise use our Services.
3) What we collect
a) Information you provide directly
b) Information collected automatically
c) Information from third parties
4) How we use personal information (purposes & legal bases)
We limit use to what is necessary to:
5) Disclosures (how we share information)
We may disclose personal information to:
We do not sell personal information. We do not share personal information for cross-context behavioral advertising. If that changes, we will update this Policy and provide required opt-out mechanisms.
6) International transfers
PFSI operates globally. We primarily host data in Canada and/or the United States and may process data in other countries where we or our processors operate. When transferring personal information from the EEA/UK to countries without an adequacy decision, we rely on appropriate safeguards (e.g., EU Standard Contractual Clauses, UK IDTA/Addendum), plus supplementary measures as needed.
7) Data retention
We retain personal information only as long as necessary for the purposes described above, including:
8) Security
We use administrative, technical, and physical safeguards appropriate to the sensitivity of the information, including access controls (“need-to-know”), encryption in transit and at rest (where applicable), secure development practices, staff training, and contractual confidentiality with vendors. No method of transmission or storage is 100% secure; please use caution when sending information electronically.
9) Your rights
Your privacy rights depend on where you live. Subject to legal limits, you may have rights to access, correct, delete, restrict, object, portability, and to withdraw consent.
EU/EEA & UK (GDPR/UK GDPR)
Canada (PIPEDA & provincial laws)
U.S. State Privacy Laws (e.g., CA/CPRA, CO, CT, UT, VA)
How to exercise rights: email privacy@thepfsi.com. We will respond as required by applicable law.
10) Children’s privacy
The Services are not directed to children under the age of 13 (U.S.) or 16 (EEA/UK, where consent requirements apply). Do not provide us children’s data unless legally permitted and necessary (e.g., as part of a learning scenario with proper authority). If we learn we have collected personal information from a child contrary to law, we will delete it.
11) Cookies & similar technologies
We use cookies and similar technologies to operate our Website, remember preferences, enhance usability, analyze usage, and—where permitted—provide personalized experiences.
For full details about the cookies we use, the third parties involved, and how to manage them, please see our Cookies Policy
12) Marketing communications
We send transactional emails (enrollment, receipts, exam notices, policy changes). With your consent where required, we may send informational or promotional communications about new languages, modules, or credentials. You can unsubscribe via the link in the message or by contacting us. We will continue to send essential service notices.
13) Payment processing
Payments are handled by third-party processors. PFSI does not store full payment card numbers. Processors handle your payment information under their own privacy/security standards (e.g., PCI DSS). We receive limited metadata (e.g., last 4 digits, token, payment status).
14) Information about others (when you act as a fiduciary)
If you provide information about another individual (e.g., a principal or beneficiary) as part of coursework or exercises, you confirm you have a lawful basis and share only what is necessary. Avoid uploading sensitive identifiers (e.g., government IDs, full account numbers) unless essential and permitted by law. Where possible, use anonymized examples.
15) Third-party links
The Services may link to third-party sites or platforms (e.g., CE bodies, professional associations). Their privacy practices apply to their sites; we encourage you to review their policies.
16) Changes to this Policy
We may update this Policy to reflect changes in our practices or legal requirements. Please check back regularly for any changes or updates.
17) How to contact us
Questions, requests, or complaints: privacy@thepfsi.com
Region-Specific Notice (California “CPRA” Summary)
Categories collected: Identifiers (name, email), internet/activity data (usage analytics), education data (course/exam records), and limited commercial information (transaction metadata).
Sources: You, your device, partners (e.g., SSO), service providers, CE bodies.
Purposes: As described in Sections 4–6.
Retention: As described in Section 7.
Selling/Sharing: We do not sell or share personal information for cross-context behavioral advertising.
Sensitive PI: We do not use Sensitive Personal Information to infer characteristics.
Rights & Requests: Access, correction, deletion, portability, opt-out (if ever applicable), and non-discrimination. Submit at privacy@thepfsi.com.