Privacy and Security Hub | Toddle

Privacy and Security Hub

We understand how much trust it takes to share your school’s most sensitive data with us.
This page explains the robust measures we take to uphold that trust and keep you and your community safe online.

Your school’s most critical, sensitive data flows through our system everyday—and protecting it is our foremost priority. We uphold rigorous standards and employ state-of-the-art security measures, all with the goal of creating a safe teaching and learning space for your community.”

Deepanshu Arora, School Leader and CEO at Toddle

Toddle Privacy & Security Pack

Get a detailed breakdown of all key measures we take to protect your data.

AI Privacy & Security Pack

Dive into how Toddle AI is built, the data it uses, and the robust guardrails in place to protect privacy, ensure fairness, and keep educators in control.

Our four promises to you

Privacy

Privacy

Privacy is our fundamental promise to every school — we maintain the highest standards in privacy, ensuring full transparency of your data.
Learn moreButton arrow
Security.

Security

We employ advanced security measures — multi-factor authentication, and continuous monitoring — to protect your data.
Learn moreButton arrow
Reliability

Reliability

1,000,000+ teachers, students, and families work on Toddle every day. We continuously invest in our infrastructure to support this.
Learn moreButton arrow
Compliance

Compliance

We adhere to all major global, regional, and industry regulations to ensure your data is handled with utmost care.
Learn moreButton arrow

Upholding the highest standards of privacy

Privacy
policy

Find out in detail how Toddle handles your data—from what we collect to how we protect it,  where it’s used (where it’s not), and your rights to access and control.

Learn moreButton arrow
Data
governance

Our Role-Based Access Control (RBAC) system ensures users have only the necessary privileges to perform their tasks on Toddle.

Data
residency

Toddle offers global data residency options with data centers in Australia, the US, Europe, and other regions, giving schools complete control over where and how their data is stored.

Privacy
controls

Toddle enforces robust privacy controls to protect your data. We accept pseudonymized data, implement strict measures to prevent data disclosure, and maintain detailed logs to monitor access and modifications.

Advanced security across every front

Data security

With end-to-end encryption, secure APIs - we enforce strict access controls to ensure only authorized users can access sensitive information.
Application security

Application security

Integrated security at every stage of development through a SSDLC, along with adherence to OWASP Top 10 guidelines.
Operational security

Operational security

Our security team continuously monitors systems, identifies and neutralizes vulnerabilities, manages incident response and business continuity plans.
AI security

AI security

Our self-hosted LLMs keep your data within Toddle’s trust boundaries. Interactions with third-party LLMs are pseudonymized.

Always on. Always reliable.

Guaranteed availability and uptime

Guaranteed availability and uptime

With 24/7 support and 99.9% uptime, Toddle ensures minimal disruptions to your school’s operations.
Realtime data backup

Realtime data backup

Our infrastructure is built on Amazon Web Services (AWS), known for its industry-leading reliability and performance. All your data is continuously backed up, ensuring valuable information is protected and easily recoverable in the event of an unavoidable outage.

Compliant with all global and regional regulations

SOC 2 Type 2

SOC 2 Type 2

Assurance of robust controls for security, availability, and confidentiality of data.
ISO 27001

ISO 27001

Certification demonstrating effective information security management systems.
ISO 27701

ISO 27701

Certification demonstrating effective privacy information management aligned with GDPR and other privacy regulations.
ISO 27017

ISO 27017

Cloud security standards ensuring secure management of cloud-based information.
ISO 27018

ISO 27018

Compliance for protecting personally identifiable information (PII) in the cloud.
COPPA

COPPA

Compliance with the Children's Online Privacy Protection Act.
GDPR

GDPR

Data protection and data subject rights for EU residents.
FERPA

FERPA

Overview of adherence to Family Educational Rights and Privacy Act.
DPDPA

DPDPA

Data protection and data subject rights for schools in India.
Student Privacy Pledge

Student Privacy Pledge

Principles to ensure highest standards in safeguarding student privacy.
CCPA

CCPA

Compliance with the California Consumer Privacy Act, ensuring transparency, access, and control over personal data.
Australian Privacy Principles

Australian Privacy Principles

Adherence to the 13 privacy principles of the Australian Privacy Act 1988 (Cth).
Hong Kong PDPO

Hong Kong PDPO

Compliance with Hong Kong’s Personal Data (Privacy) Ordinance for data protection.
ST4S

ST4S

Safer Technologies 4 Schools (ST4S) Product Badge Program.
Saudi Arabia PDPL

Saudi Arabia PDPL

Adherence to Saudi Arabia’s Personal Data Protection Law.

Ready to see
Toddle in action?

Schedule a product demo with a fellow educator.

Schedule a product demo with a fellow educator.

Get a demo
Screenshot of product demo