← Autograder

Privacy Policy

Last updated 30 August 2026

Autograder is a classroom tool for teachers. It exists to mark student work and send the result to a school’s gradebook — nothing else. This page says exactly what it holds, what it refuses to hold, and how to make it let go.

01Who this is

Autograder is built and operated by Bits Bolts and Volts, a sole proprietorship in Perris, California. Questions about anything on this page, including a request to delete data, go to richard.santana@bitsboltsandvolts.com.

When a school or district uses Autograder, the school decides what student information reaches it and why. Autograder processes that information on the school’s behalf and for no other purpose.

02What is never collected

These are not choices made per customer. There is nowhere in the system to put them.

No student email addresses. When a school uses Canvas, Canvas sends the emails and Autograder never records one. There is no student email field in the database.

  • No student names are asked for. A student signing in with a class code gets a username and a password. There is no name field on that form or in that table.
  • No advertising, ever. Student information is never sold, rented, or used to target anything.
  • No analytics or trackers. The app loads no tag manager, no analytics script, and no third-party pixel.
  • No behavioural profiling. Nothing is inferred about a student beyond the answers they typed for their teacher.

03What is collected, and why

For students, when a school uses Canvas. Canvas supplies:

  • The student’s Canvas user id — so their work returns to the right person.
  • The name Canvas holds for them — so their teacher sees who a paper belongs to.
  • Which class period they are in — so group work can be kept within a period.
  • Whether they are still enrolled — so a class list stays current.

For students using a class code instead — a club, or a class with no LMS — Autograder holds a username and a password, and nothing else. No name, no address, no year group.

For everyone doing an assignment, Autograder stores the work itself: the answers typed, the units chosen, which checkpoints a teacher approved, when it was turned in, and the score.

For teachers, it stores an email address, a name, the school or program typed at sign-up, and which sign-in method is used. A teacher’s email is used to confirm the account and, if they have not opted out, for occasional product news. It is never sold or shared.

04Where it is kept

  • The database is hosted by Supabase on servers in the United States.
  • The application runs on Railway.
  • Teacher email is delivered by Resend. Student addresses are never given to it, because none are held.
  • Sign-in may go through Google when a teacher chooses that method. Google learns only that someone signed in to Autograder.
  • Backups of the database are taken to a single machine and kept for fourteen days. They are not stored in any cloud drive and are not shared with anyone.

The landing page loads a font from Google Fonts, which means Google’s servers see the request. No page a student works on does this.

05Who can see student work

  • The teacher who owns the assignment. Every query is scoped to that teacher; a teacher cannot reach another teacher’s students.
  • The student who wrote it — and, on group work, the others in that group, which is what a shared paper means.
  • The operator, only where it is needed to keep the service running or to answer a support request from the school.

Scores are sent to the school’s own gradebook. The gradebook, not Autograder, is the authoritative record of a grade.

06Deleting it

A teacher can erase student data at any time, from inside the product, without asking anyone. It is a real deletion — rows are removed, not hidden and not anonymised.

Clearing can be scoped to one assignment, one course, one student across every course, or everything. Before it happens the screen shows exactly what will go, counted.

Autograder keeps a record that a clearing happened — counts only. It holds no names, no answers, and no student identifiers, so the record cannot become a second copy of what was deleted.

Nothing is anonymised and kept instead. A “de-identified” score in a class of thirty is re-identifiable by anyone holding the roster, so claiming otherwise would be worse than useless.

A school or parent can also write to richard.santana@bitsboltsandvolts.com. Requests from a parent are passed to the school, which holds the relationship with the family and decides what its records should contain.

07How long it is kept

  • Student work stays until a teacher clears it or deletes the assignment, so a class can be reviewed across a year.
  • Launch records from a school’s LMS, which briefly carry a name and an address supplied by that LMS, are deleted automatically after one day.
  • Backups roll off after fourteen days.
  • Teacher accounts stay until the teacher asks for deletion, which removes their courses, assignments and every student row beneath them.

08Children

Autograder is used in schools, and the students using it are usually minors. It is provided to the school, not marketed or sold to children or families, and a student never creates an account for themselves — a teacher or the school’s LMS admits them.

Where a school asks for a data protection agreement, one will be signed and its terms govern that school’s data. Nothing on this page is offered as a legal conclusion about any particular law; that is a determination for the school and its counsel.

09Changes

Material changes will be reflected in the date at the top of this page. Schools with a signed agreement are told directly rather than being expected to re-read a web page.