PandaCheckout logo PandaCheckout
  • Features
  • How it works
  • Pricing
  • FAQ
  • Hardware
  • Get started free

Privacy Policy

Last updated: August 31, 2026

Contents

  1. Overview & Roles
  2. Information We Collect
  3. How We Use Information
  4. How We Share & Subprocessors
  5. Student & Children’s Privacy
  6. Data Retention
  7. Security
  8. Breach Notification
  9. Your Rights
  10. International Transfers
  11. Cookies
  12. Changes to This Policy
  13. Contact

This Privacy Policy explains how PandaCheckout (“we,” “us”) collects, uses, and protects personal information in connection with the PandaCheckout platform (the “Service”). It should be read together with our Terms of Service and Data Processing Agreement.

1. Overview & Roles

PandaCheckout is a tool used by schools and youth programs to manage student check-in/check-out, attendance, signatures, and related operations. The school or program that signs up (“you” or the “tenant”) is the controller of the Customer Data it enters. We act as a processor on your behalf and, for student education records, as a “school official” under the Family Educational Rights and Privacy Act (FERPA) with a legitimate educational interest, under your direct control.

2. Information We Collect

Customer Data you enter

  • Student information: names, IDs, grades, rooms/homerooms, attendance and check-in/check-out events, club/EDP assignments, and emergency-attendance status.
  • Parent/guardian information: names, relationships to students, contact details, and digital signatures captured at pickup.
  • Staff/user information: names, email addresses, roles, and authentication data. Passwords are hashed; single sign-on (SSO) uses OAuth and does not expose your password to us.
  • Tenant/school information: school name, parent access code, timezone, and per-tenant settings.
  • Integration credentials: Veracross API credentials, where you choose to connect Veracross. These are stored encrypted and used only to perform the sync you configure.

Information collected automatically

  • Usage & logs: approximate location (region/country), device type, browser, pages viewed, and timestamps, for security, reliability, and abuse prevention.
  • Marketing analytics: on our public marketing pages we use a third-party analytics provider to understand aggregate traffic. See our Cookie Policy.

Billing information

Subscription billing is processed by our PCI-compliant payment processor. We receive limited details needed to manage your account (such as your email and subscription status); card numbers are handled by the processor and are not stored on our servers.

3. How We Use Information

  • To provide, operate, and maintain the Service for your tenant;
  • To record check-in/check-out events, attendance, and signatures as you direct;
  • To calculate and process per-student subscription billing and proration;
  • To send service, account, verification, and security notices;
  • To secure, audit, and troubleshoot the Service and prevent abuse;
  • To comply with legal obligations, including student-records laws.

We do not sell Customer Data or personal information, and we do not use it to train advertising models or for advertising targeting.

4. How We Share & Subprocessors

We share Customer Data only as needed to provide the Service and as described here. We do not sell data. We use the following categories of service providers, under written agreements that require them to protect data in line with applicable law, including student-privacy requirements where applicable:

  • Cloud hosting & database infrastructure: the provider that hosts the Service and its database.
  • Cloud object storage: used to store digital signature images.
  • Payment processing: a PCI-compliant processor for subscription billing and the billing portal.
  • Authentication: a provider used when a user signs in with single sign-on.
  • Analytics: a provider used on our public marketing pages only.
  • Integrations you enable: the third-party student-information system you connect for roster sync, where you choose to use it.

We may also disclose information when required by law or to protect rights, safety, or property. We do not disclose Customer Data for advertising purposes.

5. Student & Children’s Privacy

The Service is designed to be used under a school’s direction. Student records are treated as education records under FERPA, and we access and process them only as a school official with a legitimate educational interest under your direct control. We do not knowingly collect personal information directly from children under 13 for commercial purposes; any child information in the Service is provided and controlled by the school or parent/guardian. Where the Children’s Online Privacy Protection Act (COPPA) applies, we act as an operator only with the school’s authorization and within the permitted “school authorization” exception. We do not use student data for targeted advertising or sell it. See our Data Processing Agreement for the specific commitments.

6. Data Retention

We retain Customer Data for as long as your tenant is active, and afterward only as needed to comply with legal obligations, resolve disputes, and maintain records (for example, attendance and signature logs that schools may be required to keep). You may request deletion of your Customer Data at any time, except where we are legally required to retain it. When retention ends, we delete or anonymize the data within a reasonable period.

7. Security

We use reasonable administrative, technical, and physical safeguards: encryption in transit (TLS), access controls, role-based permissions, hashed passwords, encrypted integration credentials, audit logging, and isolated tenant data. Signature images are stored in private cloud storage with restricted access. No method of transmission or storage is fully secure, but we work to protect your data in line with FERPA’s reasonable-safeguards expectations.

8. Breach Notification

If we become aware of a security incident affecting Customer Data, we will investigate and, where required by law or our agreements, notify affected tenants and authorities without undue delay so you can meet your own notification obligations.

9. Your Rights

Depending on where you operate, you may have rights to access, correct, export, or delete personal information, and to object to or restrict certain processing. School administrators can manage most Customer Data directly in the Service. For other requests, contact us at privacy@pandacheckout.com.

California (CCPA/CPRA)

California residents may have rights to know, delete, correct, and opt out of the “sale” or “sharing” of personal information. We do not sell personal information. To exercise rights, email us.

EEA, UK & Switzerland (GDPR)

You may have rights to access, rectify, erase, restrict, port, and object to processing, and to withdraw consent. Our lawful basis is contract (to provide the Service) and, where applicable, legitimate interests and legal obligation. If you have concerns, you may contact your supervisory authority or us at privacy@pandacheckout.com.

10. International Transfers

Because our hosting and subprocessors may be located in the United States or other regions, Customer Data may be transferred outside your country. We use appropriate safeguards, such as standard contractual clauses where required, for such transfers.

11. Cookies

Our public marketing pages use cookies for essential functionality and a third-party analytics provider. The logged-in Service uses essential session cookies. See our Cookie Policy for details and choices.

12. Changes to This Policy

We may update this Privacy Policy from time to time. We will post the updated policy with a new “Last updated” date and, for material changes, provide notice. Continued use constitutes acceptance.

13. Contact

Questions or requests about privacy? Email privacy@pandacheckout.com.