Voxento follows FERPA-aligned privacy practices, encrypts data in transit and at rest, scopes access by role, and publishes a school data protection addendum you can read before you talk to us. Student data is never sold and never used for advertising.
In short
Everything a district needs for a security review is on this page or linked from it, readable before you talk to anyone. Where a question has a straight answer — who owns the data, what happens on termination, which certifications we hold — you will find it below rather than in a negotiation.
Schools control their data. Student data is never sold, and is never used for targeted advertising or commercial profiling.
Encryption in transit and at rest, with role-based access so observers and administrators see only what their role covers.
A school data protection addendum is published and available for district review before any conversation about contracts.
Cardinal Community School District is available as an approved reference for districts running their own diligence.
Student data is processed only to provide the service and only as instructed by the school. Voxento acts as a service provider; the school remains the data controller.
| Question | Voxento's position |
|---|---|
| Purpose of processing | Providing the service, on the school's instructions |
| Targeted advertising | Never. No commercial profiling of students |
| Data ownership | The school owns its data |
| Export | Available at any time, in a usable format |
| Deletion on termination | Returned or deleted per the school's instructions and applicable law |
| Encryption | In transit and at rest |
| Access model | Role-based, scoped to staff groups |
| Subprocessors | Current list on request; schools notified of material changes |
| Demonstrating compliance | Voxento cooperates with reasonable requests from schools |
These commitments are contractual, not marketing copy — each one comes from the school data protection addendum.
The data protection addendum, our subprocessor list, and a live walkthrough of role-based access — before you commit to an evaluation. Send your district's security questionnaire and we will complete it.
On certifications: Voxento does not currently hold a SOC 2 Type II report or ISO 27001 certificate. Those are third-party attestations of process maturity, and they are generally held by larger vendors — what they attest to is the audit, not the security practice itself. What Voxento offers instead is direct access to the underlying practices and contractual commitments, which is the evidence an attestation is a proxy for.
If your district gates procurement on a certification, tell us on the first call. Knowing in week one is better for both of us than finding out in legal review.
Ask for the data protection addendum on the first call, not the last. A tool that clears every instructional requirement can still fail legal review.
The full procurement list, with what a good answer sounds like and what should worry you, is in 12 questions to ask before buying observation software.
We would rather answer it before you invest time in an evaluation than after.
Hosted in USA, GDPR compliant.
Fully customizable platform with your branding and requirements.
Ready to use in minutes. No prior knowledge required.
Personal, fast and with real people.