Security & privacy
Five layers between your data and anyone who shouldn't see it
Not a marketing claim — an actual diagram of how SchoolTrendz is built, layer by layer.
-
Layer 1
School data kept apart
Every school's records are separated centrally on the server.
-
Layer 2
Role permissions
Each of 9 roles sees only what its job needs.
-
Layer 3
Sign-in protection & two-step
Strong passwords, lockouts, and an optional authenticator code.
-
Layer 4
Audit log & recycle bin
Every change is written down; deleted records can be restored for 30 days.
-
Layer 5
Hosted checkout
Card numbers never touch our servers.
Least privilege
Who sees what — try a role
Every role is scoped on the server, not just hidden on screen. Pick a role below to see exactly what it can reach.
School admin: Sees everything for the school.
Attendance
Full accessMarks & results
Full accessFee records
Full accessPersonal details
Full accessTeacher: Only the classes they actually teach.
Attendance
Their classes onlyMarks & results
Their classes onlyFee records
"Not found"Personal details
Directory onlyAccountant: Full finance access; not part of their role otherwise.
Attendance
"Not found"Marks & results
"Not found"Fee records
Full accessPersonal details
Directory onlyParent / guardian: Only their own child or children.
Attendance
Own child(ren) onlyMarks & results
Own child(ren) onlyFee records
Own child(ren) onlyPersonal details
Own child(ren) onlyStudent: Only themselves.
Attendance
Themselves onlyMarks & results
Themselves onlyFee records
Themselves onlyPersonal details
Themselves onlyLibrarian & receptionist: A directory lookup only, to help at the desk.
Attendance
"Not found"Marks & results
"Not found"Fee records
"Not found"Personal details
Directory onlyAnything outside a role's scope isn't shown as "blocked" — it comes back as "not found", so its existence is never revealed.
Sign-in
Getting past the sign-in step
Password rules, an automatic lockout and an optional authenticator code, before anyone reaches a single record.
-
1
Strong password
8+ characters, letters and digits, never a common password or your username.
-
2
5 wrong attempts
The account locks itself automatically.
-
3
15-minute lock
Then try again, or use a reset link.
-
4
Reset link
Works once, expires after 30 minutes.
-
5
Two-step code
Any authenticator app, plus 10 recovery codes if a phone is lost.
Once signed in, your browser holds a 15-minute access pass; a refresh pass renews it quietly in the background, stored where a script on the page can never read it.
Accountability
Every change is written down — and every AI lookup too
Every add, edit and delete names its source (screen or system), every SchoolTrendz AI lookup is logged alongside, and nothing is gone for good for 30 days.
The SchoolTrendz AI assistant (early access) looks things up the same way a signed-in user would — within their permissions — and every lookup lands in this same log.
Audit log
Searchable and exportable — who changed what, when, and from where.
30-day recycle bin
Undo a deletion right away, or restore it any time within 30 days.
Data minimisation
We collect only what we need
Less personal data on screen means less that can ever go wrong.
Visitor ID number
Only the last 4 digits are ever kept — even in the front-office visitor log.
What a directory lookup shows
- Name
- Class & roll number
- Photo
- Guardian's contact
- Date of birth
- National ID
- Health notes
- Full address
Shown to staff who only need to find someone — librarians, receptionists, teachers of other classes.
Infrastructure
Our cloud design
Designed for managed cloud infrastructure — or run SchoolTrendz on your own server instead.
-
1
Any browser
Phone, tablet or computer, over a secure connection.
-
2
Web application firewall
Rate limits on sign-in attempts, in front of the app.
-
3
Load-balanced containers
Multiple app instances share the load.
-
4
Managed PostgreSQL
Automatic backups with point-in-time recovery.
-
5
Secrets manager
API keys and passwords never sit in code.
Prefer your own server?
School groups that want their data on their own infrastructure can run SchoolTrendz on their own server instead of our cloud.
Quality
Tested before every release
A change reaches your school only after it passes four stages.
-
Develop
Every change ships with automated tests.
-
QA
Tested again in a separate environment.
-
User acceptance
Checked against how a school actually expects it to behave.
-
Production
Released only after all three earlier stages pass.
136
End-to-end tests, across 32 areas
133
Backend tests
Two full role-by-role audits found 149 issues; all are fixed except one, which waits on our e-mail/SMS provider being connected.
What we don't claim (yet)
- We don't hold any formal security certifications yet — we'd rather earn them with real production history than claim them early.
- A penetration test, a load test and a disaster-recovery drill (practising a full restore from backup) are still to be done — we will say so here when they are.
Found something that doesn't look right? Report a security issue — we'd genuinely like to know. For how we handle personal data end to end, read our privacy policy.
Free for every school
Run your school the AI-powered way
SchoolTrendz is free for every school. Register in about a minute, or book a demo and we will show you around.
Register in about a minute Nothing to install AI assistant in early access