1. Shared responsibility
The school determines why student and staff information is collected and how it is used for education. Nettiqa processes information to provide the platform according to the school’s authorized use, contractual instructions and applicable law.
2. Data-protection principles
The platform is designed around lawful and fair use, purpose limitation, data minimization, accuracy, limited retention, transparency, security and accountability. In Uganda, schools should also consider the Data Protection and Privacy Act, 2019 and the Data Protection and Privacy Regulations, 2021.
3. Children and school records
Because school systems contain children’s information, access should be limited to people with a genuine educational or administrative need. Schools should explain their record practices to parents and obtain any consent or other authority required by law.
4. Access controls
- Head Teachers and school administrators control their workspace.
- Teacher functions are limited by role and class responsibility.
- Parent access uses a student-specific code and published reports.
- Nettiqa support access is limited to authorized operational purposes.
5. Security expectations for schools
Schools must use strong passwords, avoid shared accounts, remove former staff promptly, protect printed reports and access codes, verify recipients before sharing links, and report suspected compromise quickly.
6. Incidents
If a security incident is suspected, Nettiqa will investigate, contain the issue, preserve relevant evidence and communicate with affected schools as appropriate. Schools should provide timely contact information and cooperate with response steps.
7. Requests and complaints
Parents, students and staff should normally begin with the relevant school. A school requiring platform assistance may contact info@nettiqa.com.