Privacy Policy
Effective 23 August 2026 · CPEMIS v3.4.3
This policy explains how the Central Province Education Division uses information in CPEMIS. The system supports authorized school administration, provincial monitoring, reporting, communication and education-service delivery.
Information we process
- Account information, including name, verified email, role, workplace and school assignment.
- School, staff, learner-enrolment, operational, academic, infrastructure, inspection and financial records.
- Documents, images and other files intentionally uploaded by authorized users.
- Messages, notices, acknowledgements and communication metadata.
- Security, audit, device, synchronization and access-event information needed to protect and operate the service.
How information is used
Information is used to administer schools, maintain official records, coordinate education services, monitor standards, prepare reports, manage approved users, protect the platform, investigate misuse and meet lawful government or education requirements. CPEMIS does not sell personal information.
Google and Cloudflare Access
Google may be used to verify a user's identity through Cloudflare Access. CPEMIS receives identity claims such as a verified email address and provider identifier. Google passwords are not stored by CPEMIS. Google and Cloudflare process authentication data under their own applicable privacy terms.
Offline and cloud storage
CPEMIS is offline-first. Authorized records may be stored locally on a user's device until synchronization. Production records are managed using Cloudflare services, including D1 for structured data and a private R2 bucket for files. Users must protect devices, sign out when finished and promptly report loss or unauthorized access.
Sharing and disclosure
Information may be shared only with authorized education officers, school authorities, service providers acting under instruction, or public authorities where required by law or official duty. Role and school scope controls are used to limit access.
Retention and security
Records are retained according to operational need, approved records-management requirements and applicable law. Safeguards include encrypted transport, identity verification, role-based access, private file storage, audit records, session controls, backups and recovery procedures. No system can guarantee absolute security.
Children and student records
CPEMIS is an education administration system, not a service for children to create public accounts. Learner information must be entered and used only by authorized adults for legitimate education purposes, with additional care given to sensitive documents and identifying information.
Your responsibilities and requests
Users must provide accurate information and may request correction of inaccurate account or personal information through their school administration or the Central Province Education Division. Access, correction, retention or complaint requests will be assessed against identity, authorization and official recordkeeping obligations.
Changes and contact
This policy may be updated as CPEMIS, applicable requirements or operational practices change. Material changes will be published on this page.
Privacy and access enquiries: inspector.cpssi25@gmail.com
