Separation by school
Every application record is tied to its school's scope. Server-side controls prevent one school from reading another's scope.
This page presents what is verifiable in the current product. It claims no certification or guarantee we cannot document.
Mechanisms verified in the product · August 2026Every application record is tied to its school's scope. Server-side controls prevent one school from reading another's scope.
The connection between the server and the database uses TLS with certificate verification.
Two-factor secrets are encrypted, and backup codes are never stored in plain text.
Technical detail: AES-256-GCM encryption.Generation, deletion, and reprinting of official documents are recorded in an audit log.
Describe your context, your access requirements, or your audit needs. We'll answer based on the mechanisms actually in place.