Privacy policy
This policy explains in plain language how personal information may be collected and processed when you visit Michel Cardinal’s website and use the services it provides access to.
Effective date and last update: August 18, 2026
In brief
The WordPress website does not currently sell courses, accept payments or offer public accounts. It presents Michel Cardinal’s services and resources. Requests are directed to the HESK support centre and bookings to Cal.com. No advertising analytics tool is currently declared.
1. Person responsible for the protection of personal information
Michel Cardinal operates the website as part of his professional activities relating to Moodle, IOMAD, digital learning and instructional design. He acts as the person responsible for the protection of personal information.
For a question, complaint, access request or correction request, use the Michel Cardinal Support Centre and write “Privacy” in the request’s subject line.
2. Information that may be processed
Depending on how you use the website, the following categories may be involved:
- technical data normally recorded by the server, such as IP address, date, time, requested page, browser and security logs;
- cookies needed by authorized people signing in to WordPress administration;
- booking information entered directly on Cal.com when you choose that service;
- name, email, message and attachments sent directly to the HESK centre;
- information related to the Moodle Campus when you access that service separately.
3. Why this information is used
Information is used only for relevant and reasonable purposes:
- display and secure the website;
- prevent abuse and diagnose technical problems;
- respond to a request or assess a project;
- arrange a meeting chosen by the person;
- prepare, carry out or document an accepted engagement;
- comply with legal obligations and protect applicable rights.
It is not sold and is not used for behavioural advertising.
4. External services and providers
The website may direct users to separate services. Each provides its own collection context:
Information may be accessible to technical providers only when necessary for the service, its security or maintenance, or when required by law. Some providers may process information outside Quebec; applicable transfers must undergo the required checks and safeguards.
5. Cookies and embedded content
WordPress may use strictly necessary cookies for administration, security and maintaining a session. The public website does not currently declare any advertising analytics or profiling tool.
Links to Cal.com, HESK and Moodle open separate services. External content embedded in a page could establish a connection with its provider. Before adding analytics, marketing or other non-essential cookies, the policy and consent mechanism will need to be updated.
6. Retention and destruction
Information is retained only for the time necessary for its purpose, reasonable follow-up of a professional relationship, security and applicable obligations. Technical logs, communications, bookings and backups may follow different cycles.
When information is no longer needed and no obligation justifies keeping it, it is deleted, anonymized or securely destroyed. External platforms also apply their own retention periods.
7. Security measures and incidents
Proportionate technical and organizational measures are used, including HTTPS, restricted administrative access, passwords, updates, limited privileges and technical monitoring. However, no Internet service can guarantee zero risk.
Privacy incidents must be recorded, assessed and addressed. When an incident presents a risk of serious injury, the required notices are sent to the people concerned and the competent authorities.
8. Access, correction, withdrawal and complaints
You may ask to know what information is held about you, access it, have it corrected or, where permitted by law, have it deleted. You may withdraw consent for an optional use or lodge a complaint about the handling of your information.
Reasonable verification of your identity may be requested before information is disclosed. Requests are handled diligently within the applicable time limits.
9. Changes to the policy
This policy will be reviewed before adding a WordPress form, newsletter, non-essential measurement tool, client area or transaction feature. Significant changes will be communicated appropriately, and the displayed date will identify the applicable version.
A question about your information?
Use the support centre rather than publishing sensitive information or sending it by ordinary email.
