Trust Center
Trust is at the heart of everything we do!
Our Commitment to Data Security
We are actively working toward SOC 2 Type II Certification — a rigorous, independent audit process that demonstrates our commitment to safeguarding sensitive data.
Our focus is on the Security trust principle, ensuring that our systems are protected against unauthorized access and breaches.
We partner with the Nation’s leading cybersecurity audit firm, for our SOC 2 audits and ongoing compliance support — working together year-round to strengthen and evolve our security practices
Here’s How We Keep Our Data Secure
Data Encryption: All data is encrypted in transit and at rest using industry-standard protocols
Access Controls: Role-based access, MFA wherever supported, and strict internal controls ensure that only authorized team members can access sensitive information
Security Monitoring: We partner with a Managed Security Operations Center (SOC) for 24/7 threat monitoring and rapid response
Penetration Testing: Annual independent penetration tests help us proactively identify and address potential vulnerabilities
Protecting Students, Families, and Schools
As a trusted partner to thousands of schools nationwide, we understand the unique responsibility that comes with handling student data.
We’ve signed the Student Privacy Pledge and follow the principles of:
Data Minimization: We only collect what’s necessary
Purpose Limitation: Your data is only used to fulfill orders and services — never for resale or advertising
Transparency: Our privacy practices are openly shared, and we’re always here to answer questions
Did your provider take the Student Privacy Pledge? Click here and find out.
We Comply With:
FERPA (Family Educational Rights and Privacy Act)
COPPA (Children’s Online Privacy Protection Act)
State privacy laws across the U.S.
School District requirements across the U.S.
Compliance & Certifications
SOC 2 Type I – Compliance achieved May 2025
SOC 2 Type II – Working towards compliance for 2025-2026 School Season
Student Privacy Pledge – Signed
FERPA & COPPA – Compliant
Request a copy of our SOC 2 Type I Report link.
For the report, email us your full name, email address, title, organization, and reason for requesting the report. Requires a Non-Disclosure Agreement to view.
System Uptime & Incident Response
We’re proud of our strong operational resilience. Our services are cloud-based, and we’ve designed our systems for high availability. If an issue ever arises:
You’ll be notified promptly through our designated communication channels
Our Incident Response Team, including privacy, legal, security, and communications leads, will respond immediately
We follow a tested Business Continuity and Disaster Recovery Plan to minimize downtime and data loss
Our Trusted Vendors
We work with carefully vetted partners who share our commitment to data privacy and security. We assess all vendors annually and require contractual safeguards around:
Data security
Sub processor transparency
Incident notification timelines
Have Questions? Let’s Talk.
We believe transparency builds trust. If you’re a school, parent, or district leader with questions about our practices, please reach out: