Trust & transparency

ClassOrbit Privacy Policy

How ClassOrbit collects, uses, shares, and protects information across the classroom platform, Student Agent, and Teacher Launcher.

Effective September 3, 2026 · Version 1.0

Privacy at a glance

  • ClassOrbit is a school-directed classroom-management service, not an advertising product.
  • ClassOrbit does not sell personal information or use student information for targeted or interest-based advertising.
  • Authorized teachers can view and control classroom browser activity only for students in classes they are permitted to manage.
  • Live View transmits temporary images of the student's currently visible Chrome tab directly over the school's local network. ClassOrbit does not store a screenshot or video archive.
  • The Student Agent does not use the camera or microphone and does not capture the ChromeOS desktop or sign-in screen.
  • Schools control rosters, staff access, managed extension deployment, and requests concerning school-controlled data.

1. Scope and responsibility

This policy applies to the ClassOrbit website and classroom platform, the ClassOrbit Student Agent, the ClassOrbit Teacher Launcher, and related support and security operations (collectively, the “Service”). It does not govern third-party websites that a teacher or school chooses to open through ClassOrbit.

For student and school records, the school or district generally determines why and how ClassOrbit is used. ClassOrbit processes that information to provide the Service at the school's direction. School staff must use ClassOrbit only for authorized educational purposes and according to their organization's policies.

2. Information ClassOrbit processes

Staff accounts and school records

ClassOrbit processes staff names, emails, organizations, campuses, roles, sign-in sessions, and security events. School-provided records can include classes, rosters, student names and school emails, teacher assignments, groups, and saved classroom settings. This information authenticates users, limits access, and operates each school's environment. ClassOrbit does not receive a user's Google password.

Student Agent and device data

The Student Agent can process random Agent and installation identifiers, the signed-in Chrome profile email, extension and browser version, connection state, heartbeat time, local network candidates required for WebRTC, command results, and diagnostic events. This registers and matches the managed browser, maintains classroom controls, establishes ClassOrbit LocalStream, and supports troubleshooting.

Classroom browser activity

During an active class, ClassOrbit can process open-tab titles, URLs or domains, the active tab, browsing-control events, and teacher interventions. This gives the authorized teacher current classroom visibility and enforces teacher-selected web access, tab, link, and attention controls.

Live View

While an authorized teacher is actively viewing a student screen, the Student Agent captures temporary JPEG frames of that student's currently visible Chrome tab. Frames travel through the direct local WebRTC media channel and are not uploaded to or stored by ClassOrbit as a screenshot or video recording.

Communications and operations

ClassOrbit processes announcements, acknowledgements, private teacher-student messages, Raise Hand requests, delivery status, emergency-release requests, diagnostic and audit events, IP-derived security information, license seat counts, subscription status, and payment-provider transaction identifiers. ClassOrbit does not store raw payment-card details.

3. Chrome extension disclosures

ClassOrbit Student Agent

The Student Agent is intended for school-managed student browsers. It uses Chrome permissions for profile identity, tabs and site access, local storage, alarms, scripts, declarative network rules, and an offscreen WebRTC document. These permissions serve its single purpose: school-authorized classroom visibility, communication, and teacher-directed browser controls.

Site access lets the Agent read current tab information, display the student communication interface, apply school-authorized browsing rules, and capture the visible tab only while an authorized teacher is viewing it. The offscreen document hosts WebRTC processing; ClassOrbit does not request camera or microphone permission.

ClassOrbit Teacher Launcher

The Teacher Launcher communicates only with the ClassOrbit service. It opens an authenticated ClassOrbit classroom in Incognito and displays ClassOrbit notifications for raised hands, student messages, and emergency-release approvals. It stores a notification-sound preference and a temporary ClassOrbit window identifier locally. It does not read or transmit the teacher's unrelated browsing history or screen.

Prominent Live View notice: While an authorized teacher is actively viewing a student screen, the Student Agent captures temporary images of that student's currently visible Chrome tab and transmits them to the teacher over the local network. ClassOrbit does not use these images for advertising and does not retain them as screenshots or video recordings.

4. How information is used

ClassOrbit uses information to provide classroom sessions, current-tab visibility, LocalStream Live View, teacher-directed browsing and attention controls, class communications, authentication, role and class authorization, managed-browser registration, reconnect recovery, security, diagnostics, customer support, licensing, and legal compliance. ClassOrbit does not use classroom or extension data to build advertising profiles, serve targeted advertising, determine creditworthiness, or sell personal information.

5. Sharing and service providers

ClassOrbit discloses information only as needed to provide and protect the Service, at the school's direction, or as required by law. Authorized school users receive information appropriate to their roles and classes. Cloudflare provides application hosting, databases, security, and realtime signaling; Live View frames are not stored in Cloudflare databases or object storage. Chrome supplies managed-browser capabilities and signed-in profile identity. If billing is enabled, a payment provider processes payment details and ClassOrbit receives transaction and subscription status rather than raw card data.

Information may also be disclosed with appropriate authorization for customer support, security investigations, legal compliance, protection of users and the Service, or a qualifying business transfer. ClassOrbit does not permit service providers to use school or student data for their own advertising.

6. Chrome Web Store Limited Use

ClassOrbit's use and transfer of information received from Chrome APIs complies with the Chrome Web Store User Data Policy, including its Limited Use requirements. Information is used only to provide or improve the extensions' disclosed, user-facing classroom-management purposes. It is not transferred except as necessary to provide or improve those purposes, for security, to comply with law, or as part of a qualifying business transfer. It is not used for personalized, retargeted, or interest-based advertising.

Humans do not read personal or sensitive extension data except with specific user or school authorization for support, when necessary for security, when required by law, or after aggregation and anonymization for internal operations.

7. Retention and deletion

ClassOrbit keeps information only as long as reasonably needed to provide the Service, maintain security and auditability, meet contractual or legal requirements, and resolve disputes. Live View frames are ephemeral and are not retained as screenshot or video history. WebRTC signaling and current connection state are short-lived. Current tab and device-presence data are replaced as the Agent reports newer state; ClassOrbit is not designed as a permanent browsing-history archive.

Account, roster, class, communication, device, diagnostic, and audit records may remain while the school account is active and for a limited period afterward where needed for security, recovery, contract, or law. Local extension settings and control state remain on the browser until replaced, reset, or the extension is removed or managed policy directs otherwise. A verified school representative may request export, correction, or deletion of school-controlled data, subject to limited legal and security retention.

8. Student privacy and children

ClassOrbit is provided to schools for educational use and is not marketed directly to children for personal use. Schools decide which students and managed browsers use the Service and are responsible for notices, permissions, and consent required by their policies and applicable law.

ClassOrbit processes student information only to provide the school-directed educational service. It does not sell student information, use it for targeted advertising, or knowingly ask students to provide unnecessary personal information. Parents, guardians, and students should direct requests through their school so the school can verify authority and identify the appropriate records.

9. Security

ClassOrbit uses safeguards designed to protect information, including encrypted HTTPS/WSS transport, organization- and class-scoped authorization, revocable sessions, restricted managed-browser deployment, time-bounded classroom controls, and diagnostic redaction. LocalStream uses WebRTC encryption for direct screen transport. No storage or transmission system is completely secure, so ClassOrbit cannot guarantee absolute security.

10. Choices and requests

School administrators control staff access, roles, rosters, classes, and managed extension deployment. Students and families should first contact their school regarding school-controlled records. Verified schools may ask ClassOrbit for help with access, correction, export, or deletion.

11. Changes to this policy

ClassOrbit may update this policy as the Service, law, or operating practices change. The effective date and version above will be updated. If a change materially affects how an extension handles personal or sensitive data, ClassOrbit will provide any additional notice or consent required by the Chrome Web Store or applicable law.

12. Contact ClassOrbit

Privacy questions and verified school data requests may be sent to privacy@campusopshq.com. Include the school or organization name, and do not email passwords, extension installation secrets, payment-card data, or other unnecessary sensitive information. Schools requesting contractual privacy terms or a data-processing agreement should identify that request in the subject line.