Privacy Policy

Last updated: August 1, 2026

SurveySim is a browser-based land surveying simulator with an optional classroom tier for instructors and their students. This policy describes exactly what we collect, why, and what we will never do with it. It is written to be read, not skimmed — it is short because we collect very little.

The short version

What we collect

WhoWhatWhy
Instructors Email address, a password (stored only as an argon2 hash), plan level, and the classes, rosters, and assignments they author. Sign-in, account verification, and running their classes.
Students The display name their instructor put on the roster, a self-chosen PIN (stored only as an argon2 hash), coursework — simulated measurements, digital field book entries, attempt telemetry from inside the simulator — and grades. Letting a student sign in with a class code and letting their instructor see and grade their work. Nothing else.
Everyone Standard transient server logs, including IP addresses, kept briefly for rate limiting and abuse prevention. Keeping the service up and secure.

We do not collect student email addresses, dates of birth, photos, location, or contact information, and there is no field anywhere that asks for them. Instructors are invited to use nicknames or aliases on rosters — the service never needs legal names.

What we never do

For schools: the school-official basis (FERPA)

Where a class roster comes from an educational institution's records, SurveySim operates as a school official with a legitimate educational interest under 34 CFR §99.31(a)(1):

Age

SurveySim is built for college and career-technical surveying programs. It is intended for users 13 and older, or younger students only where a school has authorized use under its own authority consistent with COPPA guidance. We do not knowingly collect personal information from children under 13 outside that school authorization, and we collect no birth dates from anyone.

Service providers

Retention and deletion

Security

All traffic is encrypted in transit (TLS). Passwords and student PINs are stored only as argon2 hashes and cannot be recovered — only reset. Accounts lock after repeated failed sign-ins. The single most effective protection is structural: we minimize what exists to breach — no student emails, no legal-name requirement, no payment card data (there are no paid checkout flows in the product today).

Changes and contact

If this policy changes in a way that affects student data, we will post the change here with a new date, and material changes will be announced to instructors on sign-in. Questions, deletion requests, or institutional agreements: rickasmith@gmail.com.