CohortLedger· v1
Security

What we do.
What we will not do.

Concrete posture, not marketing claims. We are software for schools that serve children. The bar matters.

What we do

Encryption in transit

Every connection between an operator’s browser and CohortLedger is TLS-protected. We do not accept unencrypted connections to the dashboard or the API.

Encryption at rest

The production database is encrypted at rest with managed keys held by our hosting provider. Encrypted backups are stored in the same posture and rotated on a defined schedule.

US-hosted infrastructure

Production runs in US-region infrastructure. We do not move personal information outside the United States as part of normal service operation.

Role-based access

Production access is limited to a small set of authorized Ravencord employees. Access is granted on a least-privilege basis and reviewed regularly. Sensitive administrative actions are logged.

Authentication

Operator accounts use strong password requirements. Multi-factor authentication is supported for the operator account and recommended for all schools.

Backups and recovery

Encrypted backups run on a defined schedule. We maintain a disaster recovery procedure with a documented recovery point and recovery time target.

Vulnerability management

We patch known vulnerabilities in our dependencies on a routine cadence. We use automated dependency scanning. We will accept good-faith vulnerability disclosures from security researchers at security@cohortledger.com and respond within two business days.

Subprocessors

  • Stripe, payment processing.
  • Hosting provider, US-region infrastructure.

We will notify schools in advance of adding any new subprocessor, consistent with the DPA.

What we will not do

  • We will not embed third-party advertising trackers in the dashboard.
  • We will not sell any data, ever.
  • We will not use student records to train AI models, ours or third party.
  • We will not display advertising to children. The dashboard is for adult operators.
  • We will not move data out of the United States as part of normal service operation.
  • We will not silently retain data forever. See retention in the Privacy Policy and DPA.

If something goes wrong

If we confirm a security incident affecting personal information CohortLedger holds, we will notify the affected school without undue delay and within any timeline required by applicable US state law. We will provide the facts the school needs to notify the families they serve. See the DPA for the contractual breach notification commitment.

Reporting a vulnerability

We welcome good-faith security research. Email security@cohortledger.com with a description of the issue, reproduction steps, and any relevant logs. We will acknowledge within two business days and keep you informed during remediation.