Teacher / Staff Privacy Policy

Teacher & Staff Privacy Policy

Effective Date: August 23, 2025

At NoteArch, we are committed to protecting the privacy, security, and professional information of teachers, faculty members, administrators, and institutional staff ("Staff"). As an AI-powered Intelligent Academic Lifecycle Management System (IALMS), NoteArch enables educators and institutions to manage academic activities efficiently while ensuring that all personal and professional information is handled responsibly and in accordance with applicable privacy laws.

This Teacher & Staff Privacy Policy explains how NoteArch collects, uses, stores, shares, and protects Staff information while supporting the Intelligent Academic Lifecycle (IAL).


1. Purpose of This Policy

This policy applies to all teachers, faculty members, administrators, and institutional staff who use NoteArch through an educational institution or authorized organization.

The purpose of this policy is to explain how Staff information is processed while supporting educational and administrative responsibilities, including:

  • Course and curriculum management

  • Note creation and distribution

  • Student assessments and grading

  • Attendance management

  • Academic reporting

  • Outcome-based education (OBE) processes

  • Student advising

  • Institutional administration

  • Research and academic collaboration

All Staff information is processed only for legitimate educational, administrative, operational, and legal purposes.


2. Information We Collect

Depending on your role within NoteArch, we may collect the following information.

Personal Information

  • Full name

  • Employee or faculty ID

  • Email address

  • Phone number

  • Professional profile information

  • Institutional affiliation

  • Department and designation

Professional Information

  • Teaching schedules

  • Course assignments

  • Academic responsibilities

  • Assessment records

  • Grades submitted

  • Lecture notes and educational content

  • Course materials

  • Research-related information where applicable

Administrative Information

  • Staff roles

  • Access permissions

  • Department assignments

  • Approval history

  • System activity logs

  • Login history

  • Administrative actions

Financial Information

Where applicable, we may process limited employment-related information such as:

  • Payroll references

  • Employment records

  • Tax-related information

  • Institutional payment records

NoteArch does not process payroll information beyond what is necessary for authorized institutional operations.

Technical & Usage Information

We automatically collect:

  • Device information

  • Browser information

  • IP address

  • Login history

  • Session activity

  • Platform usage

  • Error logs

  • Performance analytics


3. How We Collect Information

Information may be collected:

  • During account registration

  • Through institutional onboarding

  • When creating academic content

  • During grading and assessments

  • Through administrative activities

  • Through authorized integrations

  • Automatically through platform usage and security monitoring


4. How We Use Your Information

Staff information is used to:

  • Deliver educational services

  • Manage courses and academic programs

  • Create and distribute learning materials

  • Conduct grading and assessments

  • Track student progress

  • Support institutional administration

  • Generate academic reports

  • Facilitate communication with students and colleagues

  • Provide AI-assisted teaching tools

  • Improve platform performance

  • Maintain security

  • Prevent fraud and unauthorized access

  • Comply with institutional and legal obligations

Staff information is never used for unrelated commercial purposes.


5. AI Features

NoteArch uses Artificial Intelligence to support educators through features such as:

  • Intelligent grading assistance

  • Automated feedback suggestions

  • Learning analytics

  • Student performance insights

  • Curriculum recommendations

  • Academic reporting

  • Teaching effectiveness analytics

Our AI systems are developed according to four guiding principles:

  • Transparency - Staff are informed whenever AI contributes to educational workflows.

  • Fairness - AI models are regularly evaluated to minimize bias.

  • Privacy - AI training data is anonymized or de-identified whenever possible.

  • User Control - Staff may opt out of optional AI-powered features where permitted.

AI is designed to assist-not replace-professional academic judgment.


6. Data Sharing

NoteArch does not sell Staff information.

Information may be shared only with authorized parties, including:

Educational Institutions

Schools, colleges, universities, and authorized educational organizations using NoteArch.

Authorized Personnel

Depending on role-based permissions, information may be accessed by:

  • Department heads

  • Academic administrators

  • Institutional leadership

  • IT administrators

  • Student services personnel

  • Quality assurance teams

Students

Students may access only educational materials, grades, feedback, and communications intentionally shared by authorized Staff.

Service Providers

Trusted providers supporting:

  • Cloud infrastructure

  • Authentication

  • Email delivery

  • Security monitoring

  • Data backup

  • Technical support

All providers are contractually obligated to protect Staff information and comply with applicable privacy regulations.

Legal Authorities

Information may be disclosed when required to:

  • Comply with legal obligations

  • Protect institutional interests

  • Prevent fraud

  • Respond to lawful requests

  • Maintain platform security


7. Data Security

Protecting Staff information is a core responsibility of NoteArch.

Our security measures include:

  • Secure HTTPS/TLS communications

  • Encryption at rest using AES-256 or XChaCha20-Poly1305-IETF

  • Multi-factor authentication (MFA)

  • Role-based access control

  • Continuous security monitoring

  • Regular penetration testing

  • Independent security audits

  • Secure backup systems

  • Disaster recovery procedures

If a security incident affects Staff information, affected users will be notified as required by applicable law.


8. Staff Rights

Subject to applicable law and institutional policies, Staff may have the right to:

  • Access personal information

  • Correct inaccurate information

  • Update professional profiles

  • Request deletion of eligible information

  • Restrict certain processing activities

  • Withdraw consent where applicable

  • Receive a portable copy of personal information

  • Opt out of optional AI-powered features or analytics

Requests may be submitted through the NoteArch platform or by contacting the Privacy Office.


9. Data Retention

Staff information is retained only as long as necessary to support institutional operations and comply with legal requirements.

Examples include:

  • Employment and academic records are retained according to institutional policies.

  • Assessment records are retained as required for academic quality assurance.

  • Administrative logs are maintained for security, compliance, and audit purposes.

  • Information that is no longer required is securely deleted or permanently anonymized.


10. Legal Compliance

NoteArch is designed to comply with applicable education and privacy regulations, including where relevant:

  • FERPA

  • COPPA

  • GDPR

  • UK GDPR

  • CCPA/CPRA

  • SOPIPA

  • HIPAA (where applicable)

  • Other applicable national and regional privacy laws.


11. Professional Responsibilities

All Staff members using NoteArch are expected to maintain the confidentiality and integrity of educational information.

Staff responsibilities include:

  • Protecting student and institutional data.

  • Using NoteArch only for authorized educational purposes.

  • Following institutional security policies.

  • Reporting suspected privacy or security incidents promptly.

  • Participating in required privacy and security training.

Failure to comply with these responsibilities may result in institutional disciplinary action or legal consequences where applicable.


12. Policy Updates

We may update this Privacy Policy periodically to reflect:

  • Changes in applicable laws

  • New platform features

  • Security enhancements

  • Institutional requirements

Material updates will be communicated through email, in-platform notifications, or institutional announcements before they become effective.

Continued use of NoteArch after the effective date constitutes acceptance of the revised policy.


13. Contact Us

For questions, concerns, or to exercise your privacy rights, please contact:

NoteArch Privacy Office

Email: privacy@notearch.com

Website: https://notearch.com

Address: NoteArch Headquarters (Official address to be updated)

If your concern cannot be resolved, you may also contact your educational institution or the appropriate data protection authority in your jurisdiction.


14. Accountability

NoteArch is committed to maintaining a strong culture of privacy, security, and accountability.

We regularly:

  • Conduct privacy impact assessments.

  • Perform independent security audits.

  • Review access permissions.

  • Monitor compliance with applicable privacy laws.

  • Provide ongoing privacy and cybersecurity training.

  • Maintain designated privacy personnel responsible for overseeing compliance and protecting institutional information.


Our Commitment

By accessing or using NoteArch, Staff acknowledge that they have read and understood this Teacher & Staff Privacy Policy.

We are committed to providing a secure, transparent, and privacy-first academic platform that empowers educators and institutional staff while protecting the confidentiality, integrity, and availability of their information.