Trust & Compliance

Security & Data Protection

How TC Evaluator protects institutional and student data — from encryption and access controls to FERPA-aligned processing and full audit trails.

Last updated: August 19, 2026

TC Evaluator processes some of the most sensitive information a college or university holds: student academic records. Security is not a feature we added later — it is a constraint the platform was designed around from the first line of code.

Data Encryption

All data moving between your institution, your students, and TC Evaluator is encrypted in transit using TLS. Data at rest — transcripts, evaluation records, and institutional policy data — is encrypted using AES-256.

Access Controls

The platform enforces role-based access controls. Your institution decides who can view, evaluate, approve, and override — and staff see only what their role requires. Internally, TC Evaluator follows least-privilege access: our personnel access institutional data only when required to deliver and support the service.

FERPA Alignment

TC Evaluator is designed to support your institution's obligations under FERPA. Student education records are processed only on behalf of, and at the direction of, the client institution under a written agreement. Your institution remains the owner of its records at all times. Evaluation workflows keep humans in control: AI-generated recommendations are reviewable and overridable by your staff.

Audit Trails

Every evaluation decision and manual override is logged. That gives registrars a complete, reviewable history for internal accountability, appeals, and accreditation reviews.

Infrastructure

TC Evaluator is hosted on Amazon Web Services (AWS) cloud infrastructure in the United States, with hardened configurations and routine patching.

Data Handling and Retention

Institutional data is used solely to deliver the service. We do not sell it, and we do not use student records to train models for other customers. At the end of an engagement, data is returned or deleted according to the terms of your agreement.

Reporting a Vulnerability

If you believe you have found a security vulnerability in TC Evaluator, please email info@tcevaluator.com with the details. We investigate all good-faith reports promptly.

Security Reviews

Evaluating TC Evaluator through a procurement or IT security review? We are happy to complete security questionnaires and walk your team through our architecture — contact us at info@tcevaluator.com or book a demo.