Overview
IQVer provides proctored learning and exam software for schools and training organisations. This policy describes what data we process, why we process it, and the choices available to institutions and users.
Data we collect
- Account data — email, display name, role (admin, teacher, proctor, student), and bcrypt-hashed passwords for email/password sign-in.
- Session data — class titles, join codes, activities posted by teachers, and session lifecycle events.
- Monitoring events — integrity signals such as tab visibility changes, copy/paste attempts, and exam-app events, timestamped per session.
- Recordings — when enabled, video or screen captures uploaded during a session.
- Technical data — httpOnly session cookies, server logs, and deployment health metrics.
How data is stored
Production deployments typically store application state and recordings in encrypted cloud object storage (for example Vercel Blob). Self-hosted or institutional deployments may use local files, Postgres, or other backends configured by your IT team. Your administrator controls which storage backend is active.
Retention
Recordings are automatically deleted after 90 days unless your administrator runs an earlier cleanup. Monitoring events and session metadata are retained for audit purposes for the life of the deployment unless removed by an admin.
Who can access data
Teachers see their own sessions. Proctors see monitoring timelines across sessions they are permitted to view. Admins manage accounts and org-wide activity. Students see only their joined classes and posted activities. IQVer does not sell personal data.
Your rights & deletion requests
Students and staff should contact their school administrator for account changes or data removal. Institutions may also email support.iqver@gmail.com for deployment-level questions. We respond to verified institutional requests within a reasonable timeframe.
FERPA, GDPR & school agreements
IQVer is designed to be operated by the institution as the data controller. Schools should review this policy alongside their own student privacy obligations (including FERPA in the United States, GDPR in the EU, and PDPA in Australia) before procurement. A data processing agreement can be provided on request.
Contact
Questions about this policy: support.iqver@gmail.com. See also our Terms of Service and Cookies & storage pages.
