Privacy Policy
We designed this product to minimize student personal data for school-authorized classroom use. Students have no email, no required legal name, and no date of birth. They enroll under a class (join code + display nickname + PIN hash). This page describes our practices; it does not claim that the product is “COPPA compliant.”
What we collect
- Staff: name, email, password hash, role.
- Students: class association, display nickname, PIN hash, and learning artifacts (responses, progress). Write-path redaction reduces patterned contact info (email, phone, handles, SSN, street addresses) before storage — it is a reduction, not a guarantee. Teachers can run a privacy review that flags likely personal names for conversation; detections are not stored.
- Classroom attestation: teachers record school-responsibility acknowledgment before enrollments open. We do not collect student ages or birthdates at join.
- Retention: teachers can set an inactivity window (new classes default to a finite window). Past that window, inactive student projects are hard-deleted; enrollments remain.
- Technical logs as needed for security and operations (consult your deployment provider).
Customer discovery
In-product discovery uses simulated fictional personas. Do not paste real-person interview transcripts or third-party identifying information into the product.
AI processing
When students use the coach, prompts are moderated and may be sent to our AI provider (Anthropic) for generation. Configure keys only on the server; do not expose them in the browser.