Skip to content
Trust Centre

Trust Centre

Data Protection

Your school owns its data. This page explains what we collect, how it is kept private, and how to get all of it back whenever you need to.

Data ownership

Your school owns its data: students, staff, parents, grades, attendance, fees, and every other record you create. 1410SMS processes that data to provide the service to you; it is never sold, and it is never used to build products for anyone else. This is set out formally in our Privacy Policy and Terms.

Data privacy & tenant isolation

1410SMS is multi-tenant: every school's data is logically isolated from every other school's. Every query that touches school-scoped data is filtered by that school's identifier, taken from the authenticated user's session and never from the client, so one school cannot see or reach another school's records, on any plan.

Data retention

We retain your school's data for as long as your account is active. Records for a deactivated student, teacher, or parent are preserved rather than deleted outright, so historical grades, attendance, and fee records stay intact and the person simply can no longer log in. An admin can reverse a deactivation at any time. Records generated as PDFs for download (invoices, receipts) are treated as transient files and cleared automatically after a short retention window; the underlying data they were generated from is not affected.

Customer data

"Customer data" covers everything your school enters into the platform: student and staff records, parent contact details, grades, attendance, timetables, fee invoices and payments, and messages sent through the platform. We also process a small amount of account and technical data of our own, namely login activity, audit trail entries and support communications, in order to operate and secure the service.

Data export

You are never locked in. Students, teachers, classes, subjects, grades, attendance, parents, and timetables can each be exported to CSV or XLSX directly from the dashboard, at any time, by an admin. For a complete, account-wide export beyond these built-in exports, contact our support team and we will provide one.

Data deletion

A school that stops using 1410SMS has the right to request permanent deletion of its account and all associated records. To request account deletion, please email our support team directly at [email protected] from your registered email address.

Upon receiving your verified request, we will permanently purge your authentication credentials, user profiles, and school records from our active databases within 30 days. We do not retain historical user data once an account is deleted, except where legally required for institutional record-keeping.

Short of full deletion, individual records (a student, a teacher, a parent) can be deactivated by an admin at any time, which removes their ability to log in while preserving the historical record for the rest of the school.

Student information

Student records are entered and managed by the school, not by students themselves. We collect only what a school needs to enrol and teach a student: name, date of birth, class, admission number, and optional guardian contact details. Students log in with an admission number and password and have no email or phone number on file by default, minimising the personal data attached to a minor's account.

Parent information

Parent accounts are created by staff rather than by parents themselves. A school creates or links the account, usually while enrolling the child, and the parent is emailed a link to set their own password. Parents have read-only access to their own children's records and can opt out of the weekly digest email at any time from their own account settings.

Staff information

Staff (admin and teacher) accounts hold name, email, phone, and role/department information needed to run the school. Staff manage their own passwords, and an admin can deactivate a staff account immediately if someone leaves the school, revoking their access while preserving the grades and attendance records they created.

Financial information

Fee invoices, line items, and payment records are stored so your school can track what's owed and what has been collected. We do not process or store card details ourselves. Subscription payments go through Paystack, a PCI-DSS compliant payment processor, and what comes back to us is a transaction reference and a status, never a card number.

Have a security or privacy question?

Our team is happy to walk you through anything on this page.