Privacy & Compliance
Your data doesn't belong to us.
It never will.
FERPA-compliant for schools. HIPAA and SOC 2 Type II audits are in progress. GDPR, CCPA, and ISO 27001 are in queue. Role-based access controls. Encrypted in transit and at rest. Your data never sold. Ever.
After the PowerSchool breach
Data privacy is now a buying criterion, not a checkbox. Your board already knows this.
The 2025 PowerSchool breach exposed student data across thousands of districts. After that, IT directors and data officers became buying decision-makers, not just approvers. The question is no longer "is this FERPA compliant?" It's "what happens if this company gets breached?" Pulse is built to answer both questions before you ask.
Your data lives in your Pulse instance. Not commingled with other organizations.
Encryption at rest and in transit. Every record. Every voice memo. Every file.
No data is sold to third parties. No data is used to train AI models without explicit consent.
A Data Processing Agreement is available for any organization that requires one before signing.
How privacy is built in
Four layers. Not one policy memo.
Encrypted storage
All data, including voice recordings and transcriptions, is encrypted at rest using AES-256. Encryption in transit via TLS 1.3.
Role-based access
Every user sees only the data their role permits. A frontline team member cannot access records outside their scope. A leader sees aggregate patterns, not individual surveillance.
FERPA-compliant today
Built for K-12 data requirements. FERPA-compliant for student records. COPPA-compliant for data involving minors. DPA available on request.
No data selling
Your data is never sold to third parties. It is never used for advertising. It is never used to train AI models without your organization's explicit consent.
Who sees what
Role-based access means the right visibility for every level.
Access is configured by your organization's administrator. Every level sees what they need, and nothing they shouldn't.
For IT directors and data officers
A DPA is available before you sign anything.
We know how procurement works. The IT director needs to approve before the deal can move. We have a Data Processing Agreement ready for any organization that requires one. Request it in the demo, or ask us to send it before the call.
We also support SSO, so your team doesn't need another set of credentials to manage.
IT approval checklist
- FERPA compliant
- DPA available on request
- SSO compatible
- AES-256 encryption at rest
- TLS 1.3 encryption in transit
- No student data sold
- Role-based access controls
- Data retention policy configurable
- SOC 2 Type II (in progress)