Privacy Policy
Effective October 2, 2026 · Classed Inc.
The most important thing to understand: if you use Classed, it’s because your school chose it. Your school owns and controls the data in the platform; we process it on your school’s behalf under a written agreement, and under FERPA we act as a “school official” serving your institution. We do not sell your information, we do not show ads, and we never use your information for advertising. There are no advertising or tracking SDKs in our apps; the iPhone app uses Google Firebase only for crash reports and speed measurements, which are not tied to your Classed account.
Who we are
Classed Inc. (“Classed,” “we,” “us”) makes a campus platform that your college or university provides to its students, faculty, and staff: mobile apps for students, web dashboards for staff, and the services behind them (together, the “Services”). This policy explains what information we handle, why, and the choices you have. It also covers visitors to our website, classedcampus.com.
1.Information we handle
From your school. Your school provisions your account. There is no self-signup. Through its enrollment system, your school provides your name, school email, role (student, faculty, staff), student ID, course enrollments and schedules, classification, majors/minors, and, where your school keeps one, the mobile phone number you gave it (used only as described in section 9). Sign-in happens through your school’s own login system (single sign-on); we never see or store your password.
From you. What you choose to add: profile details (photo, pronouns, bio, interests, residence hall), posts, stories, comments, chat messages and attachments, voice notes, location pins you choose to share in a chat, poll responses, event RSVPs, club and team memberships, appointment bookings, questions to the campus assistant, whiteboard content, and anything else you create in the app. Some services involve check-in verification (for example, a photo or QR-code check-in at a tutoring session, or a one-time location check to verify attendance), always with an in-app prompt at the moment it happens.
Automatically. Basic records the Services need to work: your device’s push-notification token (if you enable notifications), notification preferences, read/delivery states, content views and reactions used to order your feed, and appointment/attendance records for services you use. We do not collect advertising identifiers, and we do not track you across other apps or websites. Starting with version 3.0.7 (build 173), the Classed iPhone app sends crash reports and speed measurements to Google Firebase to help us fix problems and improve performance. We do not send Firebase your name, email, student ID, username or messages. These diagnostics are not tied to your Classed account, are not used for advertising, and are not sold. Firebase uses an installation identifier and technical information about the app and device.
iPhone app diagnostics. Speed measurements cover app launch to the first screen, the first feed load, publishing a story, composing a story game film, and opening a chat channel. They record duration and whether the operation succeeded, failed, or was cancelled. They also include app start and foreground or background session timing, plus sampled CPU and memory use. Measurements of requests to our own API include the host, a path with every identifier replaced by “:id”, the request method, status code, byte counts, and timing. Query strings are removed. Firebase’s automatic network and screen measurements are turned off.
Crash reports include exception names, scrubbed reasons, stack traces, thread names, and loaded software components. URLs, emails, quoted text, identifiers, and long numbers are removed from exception reasons on your device before the report is stored. We do not send Firebase your Classed account ID, posts, photos, request or response bodies, authentication tokens, or precise location. We do not use Firebase’s user ID, custom key, or custom log features. The iPhone app does not include Google Analytics or Firebase Analytics.
Technical information includes a random identifier for each app installation, a session identifier, app version and build, operating system version, device model, country and language from your device’s locale, time zone offset, and network type. Reinstalling the app resets the installation identifier. Google’s servers also see your connection’s IP address, which Firebase uses to estimate your country.
From your school’s other systems (where your school directs it). Some institutions connect additional campus systems, for example a learning-management system (gradebook and attendance records) or campus-card readers (facility check-in events). These integrations exist only where your school turns them on, carry the minimum data the feature needs, and are used solely to provide services to your school, such as helping its staff support students.
2.Device permissions
Every permission is optional, requested in context, and used only for the stated purpose:
| Permission | Used for |
|---|---|
| Camera | Capturing photos and video for stories, posts, and chats; scanning check-in QR codes. |
| Microphone | Voice notes, video recording, and live office-hours audio. |
| Location (only while using the app) | A one-time check to verify attendance at a class or study session, and, only if you choose, a location pin you share in a chat. We never track location in the background. Raw attendance readings are deleted within 24 hours; only the pass/fail verification result is kept. A pin you share is part of your message and goes away when the message is deleted. |
| Photo library (save only) | Saving photos you choose to keep to your camera roll. Choosing media to upload uses your device’s system picker, so we never get access to your whole library. |
| Notifications | Push notifications you can configure or turn off in Settings. |
| Health Connect (Android, write only) | If you choose to log a dining-hall meal, the app writes that nutrition entry to Health Connect on your device. We never read anything from Health Connect, and nothing from it is sent to Classed. |
3.How we use information
- To run the Services: deliver messages, show your feed, schedule appointments, manage events, clubs, and teams, and everything else the product does.
- To keep the community safe: messages in school-managed spaces (like class channels) are screened by automated moderation; content that gets flagged is reviewed, and penalties are decided by people, not machines. Direct messages and private, invite-only groups are never screened by AI.
- To help your school support students: we compute engagement and utilization insights for your school (for example, helping its success team notice when a student may benefit from outreach). These insights are your school’s data, used by its staff under its policies.
- To improve Classed: using de-identified, aggregated information that no longer identifies you or your school. We commit never to attempt to re-identify it.
- To fix crashes and slow screens: use the iPhone app diagnostics described in section 1. We do not use these diagnostics for profiling or to build a record of any student.
- To communicate with you: service emails and notifications (which you control), not marketing.
4.AI features, plainly
The Services use AI (currently Google’s Gemini models through Google Cloud’s Vertex AI, inside our own Google Cloud project) for: the campus assistant that answers your questions; moderation screening in school-managed spaces; aggregate “where is the class confused” summaries for instructors, computed with student identities pseudonymized before any AI processing; and content recommendations. Two commitments: your data is never used to train AI models (ours or anyone else’s), and no adverse action is ever taken against you based solely on an AI output. A human decides. AI requests are processed by Google Cloud inside the United States (Google’s US multi-region and US regional endpoints); Google keeps nothing from them. Everything we store stays in the United States, except for iPhone app diagnostics processed globally by Google Firebase (section 7).
5.Who can see what
- Classmates and members see what you share to shared spaces: your profile, posts, comments, messages in rooms you share.
- Stories stop being visible to others after 24 hours. They aren’t erased at that point. They move to your private archive so you can revisit them or pin them to your board. If you delete a story or post, it and its media are removed.
- Anonymous polls hide who voted from instructors and classmates. Results leave our systems only as aggregate tallies. Our servers do keep an internal record of participation (to prevent double-voting), which is never displayed to anyone.
- School staff see what their role needs: instructors see their class spaces; tutoring, advising, and success staff see records for the services they run; moderators see flagged content.
- Classed personnel access personal data only when needed to operate or support the Services, under confidentiality obligations and access controls.
6.When we share information
We share personal information only with:
- Your school. It’s their data; their staff access it through the dashboards per their own policies.
- Service providers (subprocessors) that host and power the platform under contracts at least as protective as ours with your school: Google Cloud Platform (hosting and Gemini AI features, US; see section 4), Google LLC (Firebase Crashlytics and Performance Monitoring for iPhone app diagnostics; global processing under the Firebase Data Processing and Security Terms; see section 7), Postmark (email delivery), Twilio (delivery of the student-support text messages described in section 9), Apple and Google (push-notification delivery), Cloudflare (network/content delivery), GIPHY (GIF search inside chat: the search terms you type and basic device information go from your device to GIPHY, never your roster or messages), and Google Maps on Android or Apple Maps on iOS (drawing the map and looking up an address when you share a location in chat: the map area and the pin’s coordinates go from your device to Google or Apple, never your roster or messages). The current list is available from support@classedcampus.com.
- Authorities, when legally required. Where allowed, we notify your school first so it can respond or object.
We never sell personal information, share it for advertising, or disclose it for any purpose beyond providing the Services. Mobile phone numbers and text-messaging consent or opt-out information are never shared with third parties or affiliates for marketing or promotional purposes.
7.Security and where data lives
Except for the iPhone app diagnostics described below, everything we store is kept in the United States, and our systems, including AI request processing (section 4), run in Google Cloud’s US regions and US multi-region endpoints. Google Firebase Crashlytics and Performance Monitoring process iPhone app diagnostics globally. They may process and store these diagnostics at any Google Cloud Platform or Google data center location. Data is encrypted in transit and at rest. Access is controlled through your school’s single sign-on (we store no passwords), short-lived signed tokens between services, least-privilege access for our systems and personnel, and audit logging of administrative actions. No security is perfect, but if a breach affects your data, we will notify your school without undue delay, within 72 hours of confirming it, so it can inform you as required by law.
8.Retention and deletion
We keep personal data only as long as needed to provide the Services to your school. Highlights: raw attendance-location readings are deleted within 24 hours; content you delete is removed; safety and moderation records are kept as long as your school’s policies and our legal obligations require. When a school ends its contract, we delete its data within 30 days (backup copies age out within a further 30 days) and certify the deletion.
iPhone app diagnostics follow Firebase’s published retention periods. Crashlytics keeps crash data and associated identifiers for 90 days. Performance Monitoring keeps events associated with IP addresses for 30 days and installation-associated and de-identified performance data for 60 days. After these periods, Firebase starts removing that data from live and backup systems. Firebase retains installation IDs until we request their deletion through its API. After that request, it removes the IDs from live and backup systems within 180 days.
9.Your rights and choices
Because your account is created and managed by your school, requests to access, correct, or delete your information go through your school. That’s how FERPA works, and it ensures your education records are handled consistently. Contact your registrar or the campus office that administers Classed; we act on your school’s instructions within days, and we’re happy to help you find the right contact at support@classedcampus.com. See also Account deletion.
In-app choices: edit your profile anytime; delete your own posts, stories, and messages; control notifications; deny or revoke any device permission in your device settings.
Text messages (SMS). Texts are off by default. If your school uses Classed for student success, you can opt in to two separate programs, each with its own phone number and its own opt-in page on our website: Student Success texts (automated messages from the Classed platform such as appointment reminders, office-hours changes and announcements, and personal messages from your assigned success coach) at classedcampus.com/sms, and well-being check-ins from Chap, the team’s automated assistant, which always identifies itself as such, at classedcampus.com/sms/chap. On each page you enter the mobile number that will receive texts and check one consent box that is unchecked by default. That form is the only way to opt in: creating an account, signing in, accepting the Terms, enrolling at your school, or replying to a message never opts you in. Consent is optional and is not a condition of enrollment, of using Classed, or of any school service. Texts are informational, never advertising, and their frequency varies with your situation (typically a few messages a month). Message and data rates may apply. Reply STOP to any text to stop receiving texts from that program (reply START to the confirmation if you later want them back); reply HELP for help, or email support@classedcampus.com. Your number and your opt-in and opt-out choices are used only to deliver and honor these texts and are never shared with third parties or affiliates for marketing or promotional purposes. The messages themselves are part of your student record with your school.
10.Website visitors
Our public website (classedcampus.com) is informational. It has no sign-in, no forms, and no advertising cookies or third-party analytics trackers. If you choose to email us from the site, we use your message and email address to respond to you. This is the one area where Classed, not a school, is responsible for the data, and we keep it only as long as the conversation warrants.
11.Children
The Services are built for higher-education communities and intended for users 18 and older. They are not directed to children under 13, and we do not knowingly collect information from them.
12.Changes to this policy
If we make material changes, we’ll notify your school and post the updated policy here with a new effective date. We won’t reduce your protections without your school’s agreement.
13.Contact
Classed Inc. · 2300 Ranier Ct, Austin, TX 78754
Questions, privacy requests, or security reports: support@classedcampus.com