Privacy Policy
Last Updated: October 2026
This Privacy Policy explains how ConnectUs collects, uses, protects, and deletes information in connection with the ConnectUs learning platform. It should be read together with the ConnectUs Terms of Service; capitalized terms not defined here have the meanings given in the Terms of Service. ConnectUs never sells personal information, never uses it for advertising, and never uses Student content to train commercial artificial intelligence models.
1. Definitions, Regulatory Roles & Legal Framework
1.1 Scope of Policy.
This Policy applies to all personally identifiable information (“PII”) and education records that ConnectUs processes through the ConnectUs platform, portals, and related services (the “Platform”) on behalf of subscribing educational institutions (each, a “School”), and to information submitted through the ConnectUs public website (for example, contact and quote forms). “School Data” means all information that a School and its Authorized Users (Admins, Teachers, Students, and Parents) submit to, create in, or upload to the Platform.
1.2 Data Controller and Data Processor.
For School Data, the School is the Data Controller (or equivalent term under applicable law): it decides which information is entered into the Platform, who may access it, and for what educational purposes. ConnectUs is the Data Processor (or service provider): it processes School Data only on the School’s documented instructions, as set out in the Terms of Service and through the School’s configuration and use of the Platform, and for no other purpose. For information submitted through the ConnectUs public website and for account billing records, ConnectUs acts as an independent controller and handles that information as described in Sections 2.7 and 5.
1.3 Compliance Framework.
ConnectUs designs its practices to support Schools in meeting their obligations under applicable student data privacy laws, which may include the U.S. Family Educational Rights and Privacy Act (“FERPA”), the U.S. Children’s Online Privacy Protection Act (“COPPA”), the EU and UK General Data Protection Regulation (“GDPR”), and the education and data protection laws of the School’s own country or region. Each School remains responsible for determining which laws apply to it and for its own compliance; ConnectUs’s commitments are those stated in this Policy and the Terms of Service.
2. Categories of Data Collected
2.1 School-Provided Institutional Data.
School name, School identifier, school type, country and region, subscription plan and Licensed Capacity, administrator contact names, email addresses, and telephone numbers, class names and structures, grading periods and calendars, grading scales and category weightings, and similar institutional configuration.
2.2 Educator PII & Work Product.
Teacher and Admin names, personal IDs, email addresses, assigned classes and subjects, hashed sign-in PINs and access codes, teaching history and evaluations recorded by the School, and the instructional content educators create, including lessons, slides, documents, canvases, assignments, quizzes, answer keys, rubrics, comments, and feedback on Student work.
2.3 Student PII & Academic Records.
Student names, Student IDs, class and School enrollment, enrollment status, hashed sign-in PINs, grades and scores (including per-question marks and auto-graded results), grade change history with the reason and time of each change, assignment submissions and drafts (including typed answers, links, uploaded files, and images), daily attendance status (Present, Absent, Late, or Excused) and who recorded it, character, behavior, and development evaluations, report cards, and teacher notes.
2.4 Student Interactive & Stream Content.
Content Students create while participating in class, including Class Stream posts, comments, and answers to discussion questions; poll votes; live lesson responses, quiz entries, board notes, open responses, and interactions with collaborative canvases and documents; and the related timestamps and author identifiers. For discussion questions configured so that Students must answer before seeing classmates’ responses, the Platform records whether a Student has submitted an answer in order to apply that rule.
2.5 Parent & Guardian PII.
Parent and guardian names, Parent IDs, email addresses and telephone numbers, hashed sign-in PINs, and the links between each Parent and the Student or Students they are authorized to view.
2.6 Technical Telemetry & Audit Logs.
Authentication session tokens issued when a user signs in; records of administrative and academic actions (for example, who changed a grade or attendance record and when); and server and security logs maintained by ConnectUs and its infrastructure providers, which may include IP addresses, request timestamps, browser and device type, and error information. ConnectUs uses this information only to operate, secure, troubleshoot, and maintain the Platform. ConnectUs does not build behavioral profiles of users. Information stored in the user’s own browser is described in Section 9.
2.7 Website Inquiries & Billing Records.
When a person submits the ConnectUs contact or quote form, ConnectUs receives the information entered (such as name, title, school, email, telephone, enrollment range, staff count, and message). When a School subscribes, ConnectUs receives a subscription confirmation and subscriber identifier from PayPal; ConnectUs does not receive or store full payment card numbers, bank account details, or security codes.
3. Zero Data Monetization & Advertising Guarantee
3.1 No Sale or Rental of Data.
ConnectUs does not and will not sell, rent, lease, trade, or otherwise disclose School Data or any PII for monetary or other valuable consideration.
3.2 No Advertising or Profiling.
ConnectUs does not display third-party advertising on the Platform, does not use School Data for targeted or behavioral advertising, and does not build profiles of Students for any purpose other than the educational purposes directed by the School.
3.3 No Commercial AI Training.
ConnectUs does not use Student content or other School Data to train, fine-tune, or improve generalized or commercial artificial intelligence or machine learning models, and does not permit its sub-processors to do so.
3.4 Permitted Uses Only.
ConnectUs uses School Data solely to provide, maintain, secure, support, and improve the Platform for the School; to send transactional messages (such as credential slips, PIN reset links, and account notices); to verify subscription status and enforce Licensed Capacity; and to comply with law. ConnectUs may use aggregated, de-identified information that cannot reasonably be used to identify any School or individual to measure and improve Platform performance.
4. In-Product Role-Based Access Control
4.1 Multi-Tenant Isolation.
All Schools are served from a shared, secure cloud platform. Separation between Schools is enforced by database-level, role-based access rules that are evaluated on every request against the signed-in user’s verified role, School, and class assignments. A user at one School cannot read or modify another School’s records.
4.2 Admins.
Admins can view and manage the records of their own School, including staff, classes, Students, Parents, grading periods, grades, and attendance, and can correct historical records and permanently delete accounts as described in the Terms of Service.
4.3 Teachers.
Teachers can view and manage records for the classes to which their School has assigned them, including those Students’ grades, submissions, attendance, and class content. Teachers cannot access classes they are not assigned to.
4.4 Students.
Students can view their own grades, submissions, attendance, and evaluations, and the class content of the classes in which they are enrolled. Students cannot view other Students’ grades, submissions, or attendance. Classmates can see one another’s Class Stream posts and comments within the same class; for discussion questions configured to require an answer first, a Student cannot see classmates’ responses until the Student has submitted their own. Individual live lesson responses are visible to the Teacher; only content designed to be shared, such as collaborative board notes, is visible to classmates.
4.5 Parents.
Parents can view the grades, attendance, assignments, evaluations, and progress of the Students to whom their School has linked them, and cannot view information about other Students.
4.6 ConnectUs Personnel.
ConnectUs personnel access School Data only as necessary to provide support requested by the School, maintain and secure the Platform, or comply with law, and are bound by confidentiality obligations.
5. Third-Party Infrastructure & Sub-Processors
5.1 Sub-Processors.
ConnectUs uses the following service providers to deliver the Platform. Each processes information only as needed to provide its service to ConnectUs.
- Google Cloud / Google Firebase (Google LLC): website hosting, Cloud Firestore database storage, Cloud Storage for files, authentication, and server functions. School Data is primarily stored in data centers in the United States.
- Google Gmail SMTP (Google LLC): delivery of transactional emails such as credential slips, PIN reset links, and account notices.
- PayPal (PayPal Holdings, Inc. and affiliates): subscription payment processing. Payment information is collected directly by PayPal and governed by PayPal’s Privacy Statement.
- Unsplash API (Unsplash Inc.): stock image search inside the lesson editor. Only the Teacher’s search terms and selections are sent to Unsplash; no Student information is shared. Selected images are copied into the School’s own storage.
- EmailJS: delivery of messages submitted through the ConnectUs public website contact form. No Platform School Data is sent through this service.
5.2 Content Delivery Networks.
ConnectUs pages load standard fonts, icons, and code libraries from content delivery networks (including Google Fonts, cdnjs/Cloudflare, jsDelivr, and the Tailwind CSS CDN). As with any website resource, these providers receive the technical information needed to deliver the file, such as the requesting IP address and browser type. No School Data is sent to them.
5.3 Changes to Sub-Processors.
ConnectUs will update this Section before engaging a new sub-processor that processes School Data and, for material changes, will notify Schools in accordance with Section 10.
6. Children’s Privacy & COPPA/FERPA Mechanics
6.1 School Authorization and Parental Consent.
Student accounts are created and managed exclusively by the School. ConnectUs does not knowingly collect PII directly from children outside of a School’s authorized use of the Platform. Where a Student is under the age of thirteen (13), or under the higher age at which parental consent is required by local law, the School is responsible for obtaining any verifiable parental consent and providing any notices required by COPPA, GDPR, or other applicable law before creating the Student’s account. Where permitted by law, the School may consent on Parents’ behalf for the use of the Platform solely in the educational context.
6.2 FERPA School Official.
For Schools subject to FERPA, ConnectUs acts as a “school official” with a “legitimate educational interest” in education records, operates under the School’s direct control with respect to those records, uses them only for the purposes for which they were disclosed, and does not re-disclose them except as authorized by the School or permitted by FERPA.
6.3 Parent and Student Rights Requests.
Because the School controls Student records, Parents, guardians, and eligible Students who wish to review, correct, export, or delete Student information should contact their School Administrator, who can act on most requests directly in the Platform. If ConnectUs receives such a request directly, it will refer the requester to the School and assist the School in responding, unless applicable law requires otherwise.
7. Data Retention, Export & Permanent Deletion
7.1 Retention During the Subscription.
ConnectUs retains School Data for as long as the School maintains an active subscription, or until the School deletes it, in order to provide the Platform.
7.2 Post-Termination Export Window.
After the end of the School’s final paid subscription period, ConnectUs retains School Data in a suspended state for sixty (60) days. During that window the School may reactivate its subscription or request an export of its School Data in a commonly used, machine-readable format by contacting ConnectUs at the address in Section 10.
7.3 Permanent Deletion.
After the sixty (60) day window expires, ConnectUs permanently deletes the School’s Data from its active production systems. Residual copies in routine backups maintained by ConnectUs or its infrastructure providers are deleted or overwritten on those providers’ standard backup cycles and are not restored or used except as required by law. ConnectUs may retain billing and transaction records, and any data that the law requires it to keep, for the period so required.
7.4 Admin-Initiated Deletion.
Admins can permanently delete Teacher and Student accounts and their associated records at any time using the Platform’s administrative tools. Such deletions take effect immediately in the active production systems and cannot be reversed by ConnectUs. Schools may also request deletion of all School Data before the end of their subscription.
8. Security Architecture & Incident Response
8.1 Encryption.
All traffic between users and the Platform is encrypted in transit using HTTPS/TLS (version 1.2 or higher). School Data is encrypted at rest by ConnectUs’s cloud infrastructure provider using AES-256.
8.2 Credentials.
Sign-in PINs and administrator access codes are stored only as one-way SHA-256 cryptographic hashes, not in readable form. When a new Teacher or Student account is created, the newly generated PIN is held temporarily so that it can be delivered on the credential slip, and is automatically removed once the welcome message has been processed.
8.3 Access Controls and Logging.
Access to School Data is governed by the role-based rules in Section 4, enforced on ConnectUs’s servers and database rather than only in the user interface. Grade changes are recorded with the time and the reason given, and attendance records note who recorded or corrected them.
8.4 Incident Response.
If ConnectUs confirms unauthorized access to, or acquisition, disclosure, or loss of, School Data in its possession or control, ConnectUs will notify the School’s primary administrator contact without undue delay and in any event within seventy-two (72) hours of confirmation, describe the nature of the incident and the data affected, and take reasonable steps to contain and remediate it. As Data Controller, the School is responsible for any notifications to Students, Parents, staff, and authorities required by law, and ConnectUs will reasonably assist.
8.5 No Absolute Guarantee.
No method of transmission or storage is completely secure. ConnectUs maintains reasonable administrative, technical, and physical safeguards appropriate to the sensitivity of School Data, and Schools and users play an important role by keeping credentials confidential and removing access for people who leave the School.
9. Cookies & Local Storage Disclosure
9.1 Functional Storage Only.
The Platform uses the browser’s local storage, session storage, and IndexedDB only for functions that make the Platform work. These are: keeping a user signed in (the sign-in session and authentication token); remembering the last time a user viewed the Class Stream, so the “New” badge can be shown; caching a Teacher’s class list and summary figures so pages load faster; saving a temporary backup of an unsent assignment answer so work is not lost if the page closes; and remembering simple display preferences. This information stays on the user’s own device.
9.2 No Tracking.
ConnectUs does not use advertising cookies, third-party tracking pixels, cross-site tracking, or analytics that profile individual users. Clearing the browser’s site data will sign the user out and reset these preferences.
10. Policy Modifications & Contact
10.1 Changes to This Policy.
ConnectUs may update this Policy from time to time and will post the updated version with a new “Last Updated” date. For material changes, ConnectUs will notify each School’s primary administrator contact at least thirty (30) days before the changes take effect. ConnectUs will not make material changes to how it uses previously collected Student information without the School’s authorization.
10.2 Contact.
Questions about this Policy, data export or deletion requests, and security reports may be sent to privacy@connectusonline.org. Parents and Students should first contact their School Administrator, as described in Section 6.3.