Launching Fall 2026 — early access & pilot inquiries are open. Get in touch →
Privacy & FERPA

Privacy & FERPA: student data is handled with care, by design.

We built GridGrade so that the cautious choice is the default one. Here's exactly how student data is treated.

This is a plain-language stance page, not a legal contract. A formal Privacy Policy / DPA is available to institutional customers.

Five commitments.

Compliance before data moves.

We sequence privacy and security review before any student data is processed in the cloud — not after.

Local-first pilot.

For the Fall 2026 pilot, grading runs locally on the instructor's own machine. No student data touches any cloud platform.

AI is optional and off by default for sensitive work.

The deterministic core does the grading and is the authority. Third-party AI assists only on judgment calls, on minimal anonymized snippets — and an instructor or institution can disable third-party AI entirely.

No PII where it doesn't belong.

We never log student names, IDs, or cell contents. Student work never enters our code repository or issue tracker; feedback we collect is scrubbed of personal information before any human sees it.

Deletable on request.

Extracted artifacts and stored results are deletable on request; the system is built around single-prefix erasure so a deletion is complete, not partial.

Where GridGrade fits with FERPA.

The pilot.

During Fall 2026, processing student submissions locally is functionally equivalent to opening them in Excel for grading — no vendor cloud involved.

The cloud product (2027+).

Before any real student data enters the cloud, the customer institution's security and data-sharing review must clear, and student consent is captured where required. We provide a privacy packet: a data-flow one-pager, PII-minimization design, a configurable retention/deletion lifecycle, and a standard DPA template.

De-identification done properly.

When workbooks are de-identified, it's a real pipeline — author/company metadata, comment authors, headers/footers, and roster-name matches are all addressed — not just a renamed file. We don't treat "hashed the filename" as de-identification.

What this site collects.

The contact form.

Your name, email, institution, role, course/enrollment context, your selected interest, and your message. We store this to respond to you and to plan the launch. We don't sell it or share it. We keep it only as long as needed to follow up.

Basic anti-spam signals.

We capture your approximate request metadata (a coarse rate-limit signal and timestamp) to stop abuse. We do not run third-party advertising trackers.

No accounts on this site.

The marketing site has no login; the graded product (with its own privacy controls) is separate.

Retention and deletion.

In the product, retention is course-configurable (a sweep set per term by the instructor's institution), and a deletion request is honored completely. Grading evidence is never silently lost — it's either retained per the course's setting or fully erased on request. For this website's contact data, email hello@gridgrade.app to have your inquiry deleted.

Security.

  • Tenant isolation with deny-by-default data rules.
  • No exported service-account keys.
  • PII-redacted logs.
  • Append-only audit.
  • Encrypted in transit and at rest on Google Cloud.

Security and privacy are first-class — sequenced before any student data moves.

Questions about privacy or a DPA?

Email hello@gridgrade.app.

Contact us

Launching Fall 2026 — early access & pilot inquiries open now. One human reads every message.

Ask about privacy, a DPA, or request early access.

One human reads every message. We aim to reply within two business days.

No commitment. We never share your information. Replies typically within two business days.

I'm interested in