PAthfinder Assessments

Privacy Policy

  • Effective Date: June 18, 2025.
  • Applicable to: pathfinderassessments.com

Article 1—DEFINITIONS

a) APPLICABLE WEBSITE: This Privacy Policy will refer to and be applicable to the Website and educational assessment platform listed above, which shall hereinafter be referred to as “Website.”

b) EFFECTIVE DATE: “Effective Date” means the date this Privacy Policy comes into force and effect.

c) PARTIES: The parties to this privacy policy are the following data controller: Pathfinder Assessments, LLC (“Data Controller”) and you, as the user of this Website. Hereinafter, the parties will individually be referred to as “Party” and collectively as “Parties.”

d) DATA CONTROLLER: Data Controller is the publisher, owner, and operator of the Website and is the Party responsible for the collection of information described herein. Data Controller shall be referred to either by Data Controller’s name or “Data Controller.” If Data Controller or Data Controller’s property shall be referred to through first-person pronouns, it shall be through the use of the following: us, we, our, ours, etc.

e) YOU: Should you agree to this Privacy Policy and continue your use of the Website, you will be referred to herein as either you, the user, or if any second-person pronouns are required and applicable, such pronouns as ‘your”, “yours”, etc.

f) SERVICES: “Services” means any educational assessment tools, analytics, or related services that we make available through the Website.

g) PERSONAL DATA: “Personal Data” means personal data and information that we obtain from you in connection with your use of the Website that is capable of identifying you in any manner.

h) EDUCATIONAL DATA: “Educational Data” means any data related to educational assessments, student performance, or other education-related information processed through our Services.

Article 2—GENERAL INFORMATION

This privacy policy (hereinafter “Privacy Policy”) describes how we collect and use the Personal Data and Educational Data that we receive about you, as well as your rights in relation to that data, when you visit our Website or use our Services.

This Privacy Policy does not cover any information that we may receive about you through sources other than the use of our Website. The Website may link out to other websites or mobile applications, but this Privacy Policy does not and will not apply to any of those linked websites or applications.

We are committed to the protection of your privacy and educational data while you use our Website. Our practices comply with applicable education privacy laws, including:

  • Family Educational Rights and Privacy Act (FERPA)
  • Children’s Online Privacy Protection Act (COPPA)
  • State student privacy laws
  • General Data Protection Regulation (GDPR) where applicable


By continuing to use our Website, you acknowledge that you have had the chance to review and consider this Privacy Policy, and you acknowledge that you agree to it. This means that you also consent to the use of your information and the method of disclosure as described in this Privacy Policy. If you do not understand the Privacy Policy or do not agree to it, then you agree to immediately cease your use of our Website.

Article 3—EDUCATIONAL DATA PROTECTION

As an educational assessment platform, we maintain specific protections for educational data:

a) Student Data Protection:

  • We collect only the minimum necessary student data required to provide our Services
  • Student data is never used for marketing purposes
  • We do not create student profiles unrelated to educational purposes
  • We never sell student data


b) Teacher and Administrator Data Protection:

  • Professional information is protected with the same level of security as student data
  • Assessment materials created by educators remain their intellectual property
  • Usage analytics are collected only to improve service quality


c) Institutional Data Protection:

  • School and district data is maintained separately and securely
  • Aggregate data is anonymized before use in research or analysis
  • Custom data protection agreements are available for institutions


Article 4—CONTACT AND DATA PROTECTION OFFICER

The Party responsible for the processing of your personal data is as follows: Pathfinder Assessments, LLC. 

The Data Controller and operator of the Website are one and the same.

Article 5—LOCATION

Please be advised the data processing activities take place in the United States, outside the European Economic Area. Data may also be transferred to companies within the United States, but will only be done so in a manner that complies with:

  • The EU’s General Data Protection Regulation (GDPR)
  • The Family Educational Rights and Privacy Act (FERPA)
  • State-specific student privacy laws
  • Other applicable data protection regulations


Article 6—THE PERSONAL DATA WE RECEIVE FROM YOU

Depending on how you use our Website, you will be subject to different types of Personal Data collection:

a) Educator Users: You, as an educator using the Website, may be asked to provide:

  • Professional contact information
  • School or institution affiliation
  • Teaching credentials
  • Grade levels and subjects taught
  • Assessment preferences and history
  • Custom content and materials you create


b) Administrative Users:
As an administrative user, you may provide:

  • Institutional contact information
  • Administrative credentials
  • District or school information
  • Staff management data
  • Licensing and subscription information


c) Student Data (collected through educational institutions):

  • Basic demographic information
  • Grade level and class enrollment
  • Assessment responses and results
  • Progress tracking data
  • Performance analytics


d) All users:
The following data may be collected from all users:

  • Login and authentication data
  • Device and browser information
  • Usage patterns and preferences
  • Technical interaction data with our Services

 

Article 7—AUTOMATED DATA COLLECTION

We employ the following automated data collection methods:

a) Cookies: We use the following types of cookies:

  • Essential cookies for basic platform functionality
  • Performance cookies for improving user experience
  • Analytics cookies for service improvement
  • Preference cookies for remembering user settings


b) Technical Data Collection:

  • IP address information
  • Browser type and version
  • Operating system
  • Time zone setting
  • Browser plug-in types
  • Platform usage statistics


c) Analytics Data:

  • Assessment completion rates
  • Feature usage patterns
  • Performance metrics
  • System reliability data
  • User interaction patterns


Article 8—EDUCATIONAL DATA USAGE

Your educational data is used solely for the following purposes:

a) Core Service Delivery:

  • Providing assessment functionality
  • Generating performance reports
  • Creating learning analytics
  • Supporting educational decision-making


b) Service Improvement:

  • Enhancing assessment tools
  • Improving user experience
  • Developing new features
  • Fixing technical issues


c) Research and Analytics:

  • Conducting educational research (with anonymized data only)
  • Generating aggregate performance metrics
  • Creating institutional insights
  • Developing educational best practices


Article 9—DATA STORAGE AND SECURITY

We implement comprehensive security measures to protect your data:


a) Technical Safeguards:

  • End-to-end encryption
  • Secure socket layer (SSL) technology
  • Firewalls and intrusion detection
  • Regular security audits
  • Automated threat monitoring


b) Administrative Controls:

  • Role-based access control
  • Employee security training
  • Regular security reviews
  • Incident response procedures
  • Data handling protocols


c) Physical Security:

  • Secure data centers
  • Environmental controls
  • Backup power systems
  • Disaster recovery plans
  • Physical access restrictions


Article 10—DATA SHARING AND THIRD PARTIES

We limit data sharing to essential operational purposes:

a) Educational Institutions:

  • Data sharing within authorized school districts
  • Secure data transfers between authorized administrators
  • Integration with approved educational systems
  • Reporting to authorized educational officials


b) Service Providers:

  • Cloud hosting providers
  • Authentication services
  • Analytics tools
  • Technical support services
  • All service providers are bound by strict data protection agreements.


c) Legal Requirements:

  • Compliance with court orders
  • Response to valid legal requests
  • Protection of legal rights
  • Prevention of harm or illegal activities


Article 11—USER RIGHTS AND CONTROLS

You have the following rights regarding your data:

a) Access Rights:

  • View your personal data
  • Download your assessment data
  • Review usage history
  • Access analytics reports


b) Control Rights:

  • Update personal information
  • Modify privacy settings
  • Adjust notification preferences
  • Control data sharing options


c) Deletion Rights:

  • Request data deletion
  • Remove assessment history
  • Delete user-generated content
  • Withdraw consent for data processing


d) Educational Institution Rights:

  • Manage student data access
  • Control data sharing settings
  • Request institutional data exports
  • Maintain FERPA compliance


Article 12—DATA RETENTION

We maintain specific data retention policies:

a) Active Accounts:

  • Personal data retained while account is active
  • Assessment data maintained per institutional requirements
  • Analytics data kept for service improvement
  • User-generated content preserved until deletion


b) Account Closure:

  • Personal data deleted within 30 days
  • Assessment data archived per legal requirements
  • Analytics data anonymized
  • User content removed upon request


c) Legal Requirements:

  • Data retained as required by law
  • Educational records maintained per FERPA
  • Audit logs preserved as needed
  • Compliance documentation maintained


Article 13—INTERNATIONAL DATA TRANSFER

For users outside the United States:

a) Data Transfer Mechanisms:

  • Standard contractual clauses
  • Privacy Shield certification
  • Adequate safeguards
  • Data processing agreements


b) International Compliance:

  • GDPR compliance for EU users
  • Country-specific data protection laws
  • International privacy standards
  • Cross-border data protection


Article 14—BREACH NOTIFICATION

In the event of a data breach:

a) Notification Timeline:

  • Users notified within 72 hours
  • Authorities informed as required
  • Educational institutions contacted immediately
  • Regular status updates provided


b) Response Procedures:

  • Immediate security measures
  • Investigation and assessment
  • Remediation actions
  • Prevention strategies


c) Support Provided:

  • Technical assistance
  • Security guidance
  • Account protection
  • Identity monitoring where applicable


Article 15—CHANGES TO PRIVACY POLICY

We maintain the right to modify this Privacy Policy:

a) Update Procedures:

  • Notice provided 30 days before changes
  • Email notification to active users
  • Website announcements
  • Administrative notifications to institutions


b) User Rights:

  • Review of changes before implementation
  • Option to accept or decline changes
  • Data export before changes take effect
  • Account closure rights if changes are unacceptable


c) Institutional Notifications:

  • Advance notice to educational institutions
  • Impact assessments provided
  • Compliance documentation updated
  • Implementation support offered


Article 16—CONTACT INFORMATION

For questions about this Privacy Policy, please contact us.

Article 17—ACCEPTANCE OF TERMS

By using our Website and Services:

a) You acknowledge:

  • Reading this Privacy Policy
  • Understanding its terms
  • Accepting its conditions
  • Consenting to data collection and use


b) You understand:

  • How your data is collected
  • How your data is used
  • Your rights regarding your data
  • The scope of our responsibilities


Article 18—JURISDICTION AND GOVERNING LAW

a) Governing Law:

  • This Privacy Policy is governed by New Hampshire law
  • Federal education privacy laws (FERPA, COPPA)
  • Applicable state privacy laws
  • International data protection regulations where applicable


b) Jurisdiction:

  • Courts of NH
  • Federal courts where applicable
  • Educational privacy authorities
  • Data protection regulators


Article 19—SPECIAL PROVISIONS FOR EDUCATIONAL INSTITUTIONS

a) FERPA Compliance:

  • Educational records protection
  • Parent/guardian rights
  • Student data privacy
  • Institutional obligations


b) Data Processing Agreements:

  • Custom institutional agreements available
  • Specific data handling protocols
  • Security requirements
  • Compliance documentation


c) Institutional Controls:

  • Administrative dashboard
  • User management tools
  • Data access controls
  • Audit capabilities


d) Educational Use:

  • Restricted to educational purposes
  • Professional development support
  • Assessment tools
  • Analytics for educational improvement


Article 20—FINAL PROVISIONS

a) Severability:

  • Invalid provisions shall be replaced
  • Remaining provisions remain in force
  • Legal requirements prevail
  • Educational obligations maintained


b) Complete Agreement:

  • This Privacy Policy constitutes the entire agreement regarding data privacy
  • Supersedes previous versions
  • Incorporates all current requirements
  • Subject to regular review and updates


Last Updated: June 18, 2025.