Student data, treated like it belongs to the family - because it does.
Chaimount holds attendance, grades, contact details, and counselor notes. That's some of the most personal data a school ever writes down. Below is exactly how we treat it, without overclaiming.
The controls in place today
Encryption in transit and at rest
TLS 1.2 or higher for every connection, AES-256 for data at rest, keys rotated on a scheduled cadence.
Role-based access
Teachers, administrators, and counselors see different slices of the same student record. The counselor note is not in the class gradebook.
Per-school isolation
Every school lives in its own logical partition. One school cannot see another, even by accident.
Encrypted backups
Automated encrypted backups with defined retention, and a documented restore procedure.
Audit trail
Sensitive actions - grade edits, access changes, data exports - carry an immutable log entry.
Data export and deletion
The school can export its data, and can request deletion of a former student per the school policy and the applicable law.
Who sees what, and why
Scoped to assigned classes
- Enter and edit grades in own classes
- Mark daily attendance
- See early-warning flags on own students
- See gradebooks of other teachers
- View counselor case notes
Whole-school visibility
- View the whole-school health grid
- Configure roles, timetables, and cadences
- Export school data
- See counselor case notes unless explicitly granted
Case-scoped view
- See flagged students assigned to them
- Record intervention notes privately
- Coordinate with teachers on interventions
- See gradebooks outside their case load
What is collected, kept, and eventually removed
What is collected
Only what the school needs to run: admissions details, attendance, grades, communication with parents. No location tracking, no browsing behavior, no third-party ad data.
How long it is kept
Active-student data is kept for as long as the student is enrolled. Alumni records follow the school retention policy the administrator configures.
Where it lives
Data is hosted with reputable cloud infrastructure, in regions the school chooses at onboarding. It does not travel outside those regions without explicit consent.
How it is removed
On offboarding, the school receives a full data export. After the export window, all school data is purged from primary storage and expires from backups on the documented schedule.
Current posture, stated honestly
- In place today: encryption in transit (TLS 1.2+), encryption at rest (AES-256), role-based access control, per-school data isolation, audit logs on sensitive actions.
- On the roadmap: third-party penetration testing report, formal certification against a recognised information-security standard. When these land, this page will say so, and not before.
Tell us your school.
Watch the grid draw itself.
Move the sliders. The grid on the right rebuilds at your scale, and one cell flags amber - an illustrative view of the signal you would see on your own school if a student began falling behind.
An illustrative view based on typical patterns - not a live read of your actual school data.