Privacy Policy
Last updated: September 9, 2026
Passcript ("we", "our", "us") provides result management software for schools. This policy explains what information we collect through the Passcript platform, why we collect it, and how it's protected — for school administrators, teachers, and the students and parents whose records schools manage through Passcript.
1. Information we collect
Account information. When a school registers, we collect the admin's name, email address, and school details (name, address, phone, type). Teacher accounts include name and email, and are issued an internal Teacher ID.
Student records. Schools enter student information into Passcript, including full name, date of birth, gender, class, an internal admission number, and — where provided — a parent or guardian's email and phone number. This data belongs to the school; Passcript processes it on the school's behalf as a data processor, not a data controller, under NDPR.
Academic records. Scores, computed results, grades, and teacher/principal remarks entered by school staff.
Payment information. Billing is handled entirely by Paystack. Passcript never receives or stores card numbers — we retain only invoice records (amount, plan, status, date).
Usage data. Basic technical logs (sign-in activity, error reports) to keep the platform reliable and secure.
2. Children's data
Passcript is used by schools to manage records belonging to minors. We do not collect this data directly from children — it is entered by school staff acting under the school's own authority and responsibility as the data controller. Schools are responsible for ensuring they have a lawful basis (e.g. their existing enrolment agreement with parents/guardians) for processing student data through Passcript. We do not use student data for advertising, and we do not sell it to any third party, under any circumstance.
3. How we use information
- To compute, store, and deliver academic results to the parents/guardians a school has on file
- To operate core features — score entry, approval workflows, PDF result generation, billing
- To send transactional email (result delivery, staff invitations, password resets, receipts)
- To maintain an audit trail of who approved or changed what, and when
- To detect abuse, enforce plan limits, and keep the platform secure
4. Who we share data with
We use a small number of subprocessors to run Passcript, each bound by their own data protection terms:
- Supabase — database, authentication, and file storage
- Resend — transactional email delivery (results, invites, receipts)
- Paystack — payment processing
We do not sell, rent, or share student or school data with advertisers or data brokers.
5. Data storage and security
Data is stored with access controls scoped per school — no school can see another school's records. Access within a school is role-based: teachers see only classes and subjects they're assigned to; parent contact details are visible only to school administrators. Every approval and significant change is logged. Passwords are never stored in plain text.
6. Data retention and deletion
Schools can request deletion of their account and data at any time from Settings. A deletion request starts a 30-day grace period, during which it can be cancelled — after which the request is reviewed and the data is permanently removed. Individual student records can be archived or removed by school administrators at any time.
7. Your rights
If you're a parent, guardian, teacher, or school administrator with questions about data held about you or a student, contact your school directly, or reach us using the details below — we'll support the school in fulfilling access, correction, or deletion requests under NDPR.
8. Cookies
Passcript uses only the cookies necessary to keep you signed in securely. If we ever enable optional analytics cookies, you'll be asked for consent first via the cookie banner, and can decline without affecting core functionality.
9. Changes to this policy
We'll update the date at the top of this page when this policy changes, and notify school administrators of material changes by email.
10. Contact us
Questions about this policy or your data can be sent via the in-app help widget, or by WhatsApp/phone at +234 907 481 6624.
This policy is provided as a good-faith description of Passcript's current data practices and is not a substitute for tailored legal advice. Schools handling student data should ensure this aligns with their own obligations under the Nigeria Data Protection Act.
