GradeBud

Legal

Privacy Policy

Student work is the most sensitive thing you will ever hand a piece of software. Here is exactly what happens to it.

Last updated September 8, 2026

1.Who this covers

This policy explains what GradeBud, Inc. (“GradeBud”, “we”, “us”) does with personal data on gradebud.com and in the grading app. It covers two groups of people, and the difference matters.

  • Teachers and administrators — our customers. We are the controller of your account data and decide how it is used, as described here.
  • Students — whose work you upload. We process that data on behalf of you and your school, only on your instructions, and never for our own purposes. Your school stays in control of it.

2.What we collect

Account data

Your name, email, school and role, and your password (hashed) or your Google sign-in. Plan, credit balance and credit history. A Paddle customer reference so payments can be matched to your account.

Class and roster data you enter

Class names, student names and — if you add them — student emails, plus your rubrics and assignment instructions. We ask for the minimum that makes grading work; there is no field for a student ID, birth date, address, grade history or anything about a student’s background.

Student work

The pages you upload, as images. PDFs are converted to page images in your browser before anything leaves your device. Alongside them we store what grading produced: rubric scores, margin comments, the overall grade, and an AI-writing likelihood.

Technical and usage data

Standard server logs (IP address, browser, timestamps, errors) for security and debugging, and per-grading token counts and model cost so we can meter credits and keep the service solvent. We run no advertising trackers and no third-party analytics.

3.How we use it

  • To grade the papers you upload and show you the results.
  • To run your account: sign-in, credits, subscriptions, invoices, receipts.
  • To keep the service working and safe — debugging, backups, abuse and fraud prevention, and spend limits that stop a runaway batch.
  • To support you when you write in, and to send service messages such as billing notices or changes to this policy. Marketing email only if you opt in, and you can leave any time.
  • To meet legal obligations such as tax and accounting records.

Where the GDPR applies, our bases are performance of a contract (running the service), legitimate interests (security, fraud prevention, improving the product with aggregate figures), consent (optional cookies and marketing), and legal obligation.

We do not sell personal data, share it for cross-context behavioural advertising, or use it for automated decisions with legal effects — a teacher approves every grade.

4.How the AI part works

Grading sends the page images of one submission, along with your rubric and assignment instructions, to Anthropic’s API, where a Claude model reads and scores them. That call carries no student name, no email, no class and no account identifier — just the pages and the rubric.

Anthropic does not train models on data submitted through its API, and neither do we. We do not use your papers, rubrics or grades to train, fine-tune or evaluate any model, and we do not let anyone else do so. If a model declines a paper, the request may be retried on a substitute model within the same API call under the same terms.

Output is a draft for you to review. What that means for grading decisions and academic-integrity findings is set out in the Terms.

5.Student records and FERPA

Student work and grades are education records. When you use GradeBud we act as a school official with a legitimate educational interest under FERPA’s outsourcing exception — we perform a function the school would otherwise use its own staff for, we are under the school’s direct control as to the use and maintenance of the records, and we do not redisclose them without authorisation.

  • Student records are used only to provide the service to you.
  • They are never sold, rented, used for advertising, or used to build a profile of a student for any purpose other than grading the work in front of us.
  • They are never used to train AI models — ours or anyone else’s.
  • Access requests, corrections and complaints from parents or eligible students are handled by the school, which controls the records. Send them to your school; we will support the school in answering them.

Districts that need a signed data privacy agreement, a data protection addendum or a state-specific student-privacy contract can reach us at privacy@gradebud.com.

6.Children

GradeBud is for educators, not students: children cannot create accounts, log in, or interact with the service. Where the work you upload belongs to a child under 13, we process it only on your school’s instructions, and the school is responsible for the notice and consent COPPA requires — schools may give that consent on a parent’s behalf for educational services like this one. We ask for no more information about a student than a name, and even that is optional.

7.Who else processes your data

We keep the list short on purpose. Each of these is bound by contract to process data only on our instructions and to protect it:

AnthropicGrades papers (Claude)
Page images, the rubric and assignment instructions. No name, email or class is sent with them. Anthropic does not train models on API inputs.
SupabaseDatabase, sign-in and file storage
Everything in your account: profile, roster, uploaded pages, grades and credit history. Hosted in the United States.
PaddlePayments and invoicing
Your name, email, billing address and payment details, which you give to Paddle directly. As Merchant of Record they are a controller of that data.
GoogleOptional sign-in
Your name, email and profile picture, only if you choose “Continue with Google”.
SanityMarketing site content
Nothing from your account — it stores the copy on our public pages.

We will post changes to this list here before a new sub-processor starts handling student data. Institutions on a signed agreement get notice by email.

8.How it is protected

  • Everything is encrypted in transit (TLS) and at rest on our database and storage provider.
  • Uploaded pages sit in a private bucket. They are never publicly addressable; the app opens them through links that expire in an hour.
  • Row-level security in the database, not just checks in the app, is what stops one teacher reading another’s classes, papers or grades.
  • Payment card details never reach our servers — Paddle collects them directly.
  • Administrative access to production data is limited to the people who need it to operate the service.

9.How long we keep it, and how to delete it

Your content stays until you remove it, because a graded paper is worth keeping for the term it belongs to. You can delete classes, students and rubrics yourself in the app; deleting a class removes the assignments, submissions and grades under it.

To have uploaded page images and grading records erased — for a term you have finished, or altogether — write to privacy@gradebud.com and we will delete them within 30 days. Closing your account deletes your profile and everything hanging off it on the same timetable.

Two things outlive that: backups, which roll off within 30 days, and billing and tax records, which we keep for as long as the law requires them — those hold transactions, not student work.

10.Your rights

Depending on where you live you can ask us for a copy of your personal data, correct it, delete it, get it in a portable format, object to or restrict certain processing, or withdraw consent. Write to privacy@gradebud.com and we will answer within 30 days. We will not treat you differently for asking.

Requests about a student’s records go to the school rather than to us — the school controls those records and we act on its instructions. If you are in the EEA or UK you may also complain to your data protection authority.

11.Where data is processed

GradeBud is operated from the United States and our providers process data there. If you use the service from outside the US, your data is transferred there. For transfers from the EEA, UK or Switzerland we rely on the European Commission’s Standard Contractual Clauses with our providers. Institutions with a data-residency requirement should talk to us before signing up.

12.Cookies

We set the cookies that keep you signed in and keep the app secure, and nothing else. There are no advertising cookies, no third-party analytics and no cross-site tracking, which is why the site has no cookie banner to click through.

13.Changes to this policy

We will post any update here with a new “last updated” date. If a change materially affects how we handle student work or your personal data, we will email account holders at least 30 days before it takes effect.

14.Contact

GradeBud, Inc. — privacy questions, data requests and district paperwork go to privacy@gradebud.com. Suspected security issues go to security@gradebud.com.

The contract you are on is the Terms of Service.