Tutor Platform

Data Processing Agreement

Last updated October 3, 2026

Pilot draft. Schools sign a copy of this document with us before any student data is shared; contact us for the current version.

This agreement covers personal data Tutor Platform (“we”) processes on behalf of a school or business (“the School”) under the School Terms.

1. Roles

For School data, the School decides why and how it is used and we process it only to provide the service. For a student's own Tutor Platform account (their study plan, tutor conversations, reports), the student is our customer and our Privacy Policy applies.

2. What we process

3. Purpose

Only to run the service for the School and its students: tailoring the tutor and study plan, the school portal, mapping course content to the ACS, billing, and keeping the service secure. Never for advertising, selling data, or training AI models.

4. Security

5. Subprocessors

We use the providers on our subprocessor list, each bound to protect the data. We'll give at least 30 days' notice of new subprocessors that handle School data, and the School may object and end the agreement.

6. Students' requests

We'll help the School answer requests from its students to see, correct or delete their School data. Students can also export or delete their ownTutor Platform account themselves in Settings.

7. Breaches

We'll tell the School without undue delay, and within 72 hours of confirming a breach that affects its data, with what we know and what we're doing about it.

8. Deletion

When the School's plan ends, we delete its School data within 30 days (backups roll off on our providers' schedules), except what we must keep for billing records or the law.

9. Contact

contact@email.hickshost.com