Skip to content

Everything Your Vendor Review Needs — On One Page

Canoa // edu is a supplemental assignment tool for Latin, history, and data-literacy classes, built on an open scholarly catalog of ancient coinage. Below: our data practices, agreements, accessibility conformance, and technical requirements — ready for your review.

Download the review packet (PDF) Book a 20-minute walkthrough

No student names or emails collected · NDPA (SDPC) available · WCAG 2.2 AA with published ACR · LTI 1.3 (IMS/1EdTech standard)

Data We Do — and Don't — Collect

Student data inventory
Data element Collected? Details
Student name, email, photoNoNever requested via LTI claims.
Anonymous LTI identifier (sub)YesOpaque ID issued by your LMS; meaningless outside it.
Student responses & scoresYesAuto-deleted after the school year + 90 days; grades live in your LMS.
Teacher name/emailOnly with consentFor pilot coordination and lesson-plan emails.
Advertising, profiling, data saleNoContractually prohibited in our NDPA.
Third-party trackers on /edu/NoVerify with your browser's network inspector.

Full details: Student Privacy Policy · Subprocessor list

Agreements & Compliance

NDPA (SDPC Standard). We sign the National Data Privacy Agreement with a General Offer (Exhibit E) — once signed in your state, other districts join without renegotiation. NDPA for Districts.

FERPA. We operate as a school official with legitimate educational interest under your direction. COPPA: no student accounts, no direct collection from children. State laws: SOPIPA (CA) and NY Ed Law 2-d supplements available on request.

GDPR (international schools). Standard DPA under Art. 28 published at /edu/legal/dpa/.

The Vetting Packet

Every document your review process asks for, in one place:

Missing something your district requires (security questionnaire, HECVAT, state-specific exhibit)? Email privacy@canoanumis.org — we respond within two business days.

Accessibility

All Canoa // edu activities conform to WCAG 2.2 AA (covering Section 508 and ADA Title II requirements). Screen-reader users receive scholarly obverse/reverse descriptions as image alternatives; all tasks are keyboard-completable; no time limits without extension.

Accessibility Conformance Report (ACR) — self-assessed, based on the ITI VPAT; third-party audit planned.

Technical Requirements

Integration: LTI 1.3 (OpenID Connect launch; Deep Linking 2.0 and Assignment and Grade Services on the roadmap). Registration takes ~15 minutes: we provide the JWKS URL, login/launch endpoints, and step-by-step guides for Canvas, Schoology, and Moodle.

No installation, no student accounts, no roster sync. Rostering stays in your LMS; we never receive it.

Infrastructure: REG.RU data centers (Moscow, Russian Federation), TLS everywhere, signed JWT validation on every launch, per-deployment data isolation. Uptime and incident notification terms — in the NDPA. Security contact: privacy@canoanumis.org.

Content Licensing — Already Cleared

Coin type data (legends, dates, metrology) is open under the Open Database License (ODbL). Coin images belong to the contributing museums and are displayed only on canoanumis.org, with full attribution, consistent with each museum's access policy. Students never download, copy, or re-host images — assignments are completed on the site itself.

Practical consequence for your district: there is nothing for your copyright review to clear. No images enter student documents, LMS file storage, or printed handouts.

Pilots and Procurement

Pilots for the 2026–27 school year are free: one school, unlimited teachers, full feature set, NDPA signed before the first student launch. Typical timeline: week 1 — agreement and LTI registration; week 2 — teacher onboarding; weeks 3–8 — classroom use; then a decision call with usage summary (aggregate only — we can't report on individual students, by design).

Request a District Pilot Ask a procurement question

Questions Districts Ask Us

Do you sign our district's own DPA instead of the NDPA?

Yes. We offer the NDPA (SDPC Standard Version) because most districts recognize it and it saves both sides weeks of legal review — but we also review district-specific data privacy agreements. Send your agreement to privacy@canoanumis.org; expect a redline or signature within five business days. If your state has an SDPC alliance, check whether an Exhibit E General Offer for Canoa // edu already exists — joining it takes one signature and zero negotiation.

Where is student data hosted?

All Canoa // edu data is stored on servers in Moscow, Russian Federation, operated by REG.RU (see the Subprocessor List). Keep in mind what "student data" means here: an anonymous LTI identifier, assignment answers, and scores. We never store names, emails, rosters, or photos, so the risk profile of our hosting is categorically lower than that of a typical edtech vendor. If your district has a hosting-region requirement, tell us in the pilot request and we'll discuss options.

What happens to data when a teacher leaves or the contract ends?

Three layers of protection. First, automatic: all student submissions are deleted after the school year ends plus 90 days, whether or not anyone asks. Second, on request: your LMS administrator or district contact can request erasure of all data tied to your LMS deployment at any time — one operation, confirmed in writing within ten business days. Third, at contract end: deletion is performed and a written certificate of deletion is provided. The full procedure, including a copy-paste request template, is published at Data Deletion Procedure.

Has Canoa // edu ever had a security incident?

No security incidents involving student data have occurred to date. If one ever does, our NDPA commits us to notifying affected districts within the contractual timeframe stated in the agreement, with a description of the data involved, the scope, and remediation steps. Our security posture is deliberately simple: TLS everywhere, signed JWT validation on every LTI launch, per-deployment data isolation, no passwords stored, and — above all — almost nothing worth stealing, because we never hold student identities. Security researchers can reach us at privacy@canoanumis.org.

Do you use student data to train AI models?

No. Never. Student submissions are not used to train, fine-tune, or evaluate any AI model — ours or anyone else's. They are not shared with AI vendors, not included in datasets, and not retained beyond the deletion schedule above. This commitment is written into our Student Privacy Policy and our NDPA. Where Canoa // edu features involve AI (for example, optional research-agent curricula), the AI works with the open coin catalog — public scholarly data — never with student work or identifiers.

Who owns student work?

The district. Student submissions are stored only for grading and review and are deleted on the schedule above; we assert no ownership or reuse rights over student work.

Is there SSO for teachers?

The LTI launch is your SSO. Teachers and students enter through the LMS — no separate CANOA accounts or passwords are created or stored.

Ready to review or pilot Canoa // edu?

Download the review packet privacy@canoanumis.org

We answer district reviews within two business days · Procurement: edu@canoanumis.org