KlassNotes
Teacher portal

Privacy policy

Effective April 26, 2026 · Last updated April 26, 2026

KlassNotes is a classroom-management application built for Montessori teachers and the schools they work in. This policy describes what information the app collects, why, how it's stored, and the controls you have over it.

Who we are

KlassNotes is operated by an independent developer. The self-hosted infrastructure that runs my.klassnotes.app is owned and maintained by the operator. The application is ad-free, and your data is never sold or shared with third parties for advertising or analytics.

What we collect

KlassNotes only collects the information needed to run the classroom-management features you choose to use:

  • Account data: your name, email address, optional phone number, and your password (stored as a salted hash; we never see the plaintext).
  • Classroom records: children's first and last names, dates of birth, classroom enrollment dates, and the observations, lesson presentations, attendance marks, notes, and photos you choose to record.
  • Curriculum data: the lessons, prerequisites, and curriculum areas configured for your classroom.
  • Operational logs: server-level access logs (IP address, request path, response code, timestamp) retained for a short window for security and debugging.

We do not use third-party analytics, marketing pixels, or advertising trackers. We do not collect device contacts, location, microphone, or background data.

Why we collect it

All data is collected for one reason: to provide the classroom record-keeping the app exists for. Specifically:

  • Account data identifies you across sessions and routes you to the correct classroom.
  • Classroom records are the records you create — they exist so you and your colleagues can look them up later.
  • Curriculum data drives features like prerequisite checking and the "Available next" view.
  • Operational logs let us detect abuse and debug failures.

How it's stored

The application runs on a self-hosted Supabase stack. The database is PostgreSQL, encrypted at rest. Photos are stored in an access-controlled object-storage bucket and served only via short-lived signed URLs to authenticated users in the relevant classroom.

Row-level security policies enforce that you can only see the classroom records your assigned classrooms grant you access to. School administrators can see all classrooms within their school. No one outside your school can see your data.

Photos of children

If you attach photos to an observation or lesson presentation, those photos are stored in the same access-controlled bucket and visible only to active teachers in the classroom and the school's administrators. Photos are compressed in your browser before upload to limit storage usage; the original high-resolution capture is not retained.

Make sure your school has the appropriate parental consent in place before attaching identifiable photos of children. Klass Notes provides the technical access control; the legal responsibility for consent rests with your school.

Data retention

We retain your records for as long as your account remains active. When a record is deleted in the app, it is soft-deleted (marked as deleted in the database) and remains recoverable for a short period before being permanently removed. School administrators can request permanent deletion at any time.

Your rights

You can:

  • Access: request a copy of the data we hold about you.
  • Correct: edit any record from within the app, or request a correction from your administrator.
  • Delete: request that your account and associated records be permanently removed.
  • Withdraw consent: stop using the app at any time. Your school administrator controls account provisioning.

To exercise any of these rights, email [email protected].

Children's data

KlassNotes records identifying information about children in your classroom. The app is intended to be used by adult teachers and school administrators only — children do not have accounts and cannot interact with the app directly.

If you are a parent and would like to know what records about your child are stored in KlassNotes, contact your school directly. Schools using KlassNotes are the data controllers for the children's records they create; we are the data processor.

Changes to this policy

If we make material changes to this policy, we will update the "Last updated" date at the top of this page and notify active teachers via the app on their next sign-in.

Contact

Questions about this policy or how your data is handled? [email protected].