Attestation of Compliance

Overview

CodeREADr Inc (“CodeREADr”) does not use customer and user data for any purpose other than to provide our data processing services, in accordance with our Terms of Service, and our Privacy Policy. CodeREADr does not own or control customer data, which belongs to the customer that contracts with us as their data processor. Our customers have full access and complete control of all of the data imported and collected by our service within their online account. We keep information collected on behalf of our customers only as long as necessary to perform our services, pursuant to contractual terms or as otherwise required by applicable law. We do not sell or share data with third parties. We delete information that is not held pursuant to contractual terms in accordance with our data destruction policy or at the request of a customer. We have implemented robust security controls, policies and procedures in order to keep customer data safe as well as a documented incident response procedure that includes timely breach notifications.

The Family Educational Rights and Privacy Act (FERPA)

Our services and policies are designed to meet our responsibilities as an outside party “School Official” to protect the personal information of students and educational records shared with us under FERPA. We agree to work with our educational institution customers to ensure our mutual compliance with the FERPA regulations and that our customers have full and complete control over the use and maintenance of the student data shared with us. An educational institution may collect or disclose the personally identifiable information from a student’s education record with CodeREADr in performance of an institutional function which as a legitimate educational interest. CodeREADr will process all shared personally identifiable information of a student’s education record solely in the performance of the institutional function and at the sole instruction of the educational institution.

Children’s Online Privacy Protection Act (COPPA)

CodeREADr’s services are not directed to children under 13 and we do not knowingly collect any information from children under the age of 13. We do not permit a child under 13 to register or use the service. Any educational institution customer using the services to collect or share personal information of a child under 13 represents that it has obtained all necessary consents to collect and use such personal information in a manner permitted by COPPA. Please contact us immediately if you believe the personal information of a child under 13 was collected inadvertently without proper parental consent so that we may notify the applicable educational institution and delete such data as soon as possible.

Students Online Personal Information Protection Act (“SOPIPA”)

The CodeREADr services and policies are designed to comply with SOPIPA. Our business does not generate revenue from advertising. We do not display ads within the service at all. We do not sell any student data or use student data to create user profiles for targeted advertising purposes.

Google API Services User Data Policy (including “Limited Use” requirements).

CodeREADr’s services use and transfer of information received from Google APIs to any other app will adhere to Google API Services User Data Policy, including the Limited Use requirements.