Authenticated boundaries
Dashboard reads and mutations are designed to travel through authenticated server boundaries rather than exposing privileged credentials to the browser.
Schoolletics is built around authenticated, role-based experiences. A founding pilot limits its participants, programs, and data scope so the school can review the operating model before any expansion.
These statements describe the implemented approach. They are not a claim of third-party certification or blanket regulatory compliance.
Dashboard reads and mutations are designed to travel through authenticated server boundaries rather than exposing privileged credentials to the browser.
User roles and organization memberships are used to determine the workspace and data operations available to an authenticated account.
Production clients are designed to show an unavailable state when required live configuration is invalid rather than silently falling back to demo data.
The public marketing site asks before sending a small allowlisted conversion event to a first-party endpoint.
Schoolletics does not represent this page as a SOC 2, ISO 27001, FERPA, COPPA, HIPAA, or other compliance certification. School-specific legal, privacy, procurement, and data-processing requirements must be reviewed before a live-data pilot.
We will separate what is implemented today from what your school would require before a live-data rollout.