Legal
Data handling
Last updated 1 October 2026. For schools, and for the people who approve software on their behalf. Covers the Toddle Enhancement Extension and the data Nyuchi holds.
The short version. The extension processes student data only inside the teacher's own browser, reading it from Toddle for the teacher at the screen. It stores none of it and sends none of it to us or anyone else. The personal data Nyuchi does hold is about the people who buy a licence, send feedback or ask for support, never about students.
What the extension reads, and why
It reads from Toddle, using the teacher's own signed-in session, only what it needs to draw the view the teacher has opened, and only what that teacher's Toddle account can already see:
- The gradebook: assessments, their criteria and scales, and each student's results and submission status, to draw per-criterion columns and the CSV export.
- Classes and staff: each class's teachers, with display titles and emails, to show primary teachers, My classes and the class view.
- The student sidebar, when a teacher opens a student: name, photo, year group and age (the date of birth is never shown), email, student ID, enrolment date, contacts with relationship, phone numbers and email, homeroom advisor, the school's Student Group and Room number fields, and today's timetable and attendance marks.
A student's flags are fetched only when a staff member chooses to show them, and are forgotten when the sidebar closes. Every query it can send is on a fixed, read-only list; it never writes to Toddle.
Where it is processed
In the browser on the teacher's own device, and nowhere else. Answers from Toddle are held in the page's memory for a few minutes so that one view does not ask twice, then discarded, and are gone when the tab closes.
What it stores
The teacher's switch settings and licence key, in Chrome's storage for the extension on that device; and a few housekeeping values in Toddle's site storage (a copy of the switches and of which features the licence allows, whether flags are hidden, the My classes choice, the academic year Toddle is showing, and the style of Toddle's message button). No student data is stored.A CSV export is a file the teacher chooses to save, and is then the school's to manage like any other download.
What leaves the browser
Nothing it reads from Toddle. Its requests go to Toddle, with two outside connections, neither carrying anything from Toddle:
- Feedback, only when the teacher presses Send in the extension's menu: what they typed and the extension's version number, to Formspree.
- A daily check for cancelled keys, only while a licence is entered: one plain request from the extension's background worker to
https://licences.nyuchi.dev/v1/revocations, sending no licence key, no identifiers, no cookies and no Toddle data. It downloads a list, signed by Nyuchi, of the SHA-256 fingerprints of cancelled keys and checks its own key locally. Cloudflare sees the IP address, as with any web request; Nyuchi does not log it. If the check fails, the extension keeps working.
Licence keys are tied to their owner: an individual key carries the buyer's email address and an organisation key the school's email domain. The extension compares that with the Toddle account signed in, inside the browser only, and sends it nowhere.
What Nyuchi holds
None of this comes from Toddle, and none of it is about students.
Licence purchases
Nyuchi's licence server and its database, on Cloudflare
The email address the key was issued to, and the address that paid if different; the plan; how many were bought; for an organisation licence, the seat count and the buyer's answer to the order question (the school and roughly how many teachers); Buy Me a Coffee's purchase and item references; the key itself; when it was issued, emailed and refunded, its expiry, and its status.
The order and payment
Buy Me a Coffee, with cards handled by Stripe
What Buy Me a Coffee collects at checkout. It passes us the email address, the item bought and the answer to the order question. We never see card details.
Licence emails
Sent through Resend
The recipient's address and the email carrying the key.
Feedback
Formspree, then recorded in our private GitHub repository
What the person typed (topic, message, an email address if they gave one), plus the extension's version number, or the website page they came from.
Support
Intercom
Conversations and emails people send us.
Website analytics
Google Analytics, only with the visitor's consent
Pages viewed, approximate location and device, on this website only.
Who is responsible for what
- Student data in Toddle. The school remains its controller and Toddle its processor, exactly as before the extension was installed. The extension's processing happens on the school's own device, for its own staff, and Nyuchi receives none of it, so Nyuchi does not act as a processor of that data.
- Purchase, feedback and support data.Nyuchi Africa (Private) Limited is the controller of the data listed under What Nyuchi holds.
Who processes data for us
These services handle the data Nyuchi holds, on our behalf. None of them receives student data from the extension.
- Cloudflare
- Runs the licence server, its database, and the daily list of cancelled keys the extension checks.
- Resend
- Sends licence-key emails.
- Buy Me a Coffee
- Checkout for licences. Stripe processes cards on its behalf.
- Formspree
- Receives feedback forms from the website and the extension.
- GitHub
- Holds feedback as issues in a private repository.
- Intercom
- Support messenger and support conversations.
- Website analytics, with consent; website fonts.
- Vercel
- Hosts this website.
International transfers
Nyuchi is in Zimbabwe. The services above operate internationally, and most are based in the United States, so the data they handle for us may be processed outsideZimbabwe and outside the country of the school. Student data from the extension is not part of this: it does not leave the teacher's browser. If your rules require particular safeguards for these transfers, ask us and we will tell you what applies to each service.
How long it is kept
- Licence and order records: for as long as tax and accounting law requires, and no longer for any other purpose. On a refund (a full refund within 30 days of purchase, for any reason related to the product), the record is marked refunded and the key is cancelled.
- Feedback and support conversations: as long as we need them to act on them, or until you ask us to delete them.
- Website analytics: under Google Analytics' retention settings for this site.
- Student data: not held by Nyuchi, so there is nothing to keep.
Access, correction and deletion
A school, a teacher or anyone else can ask what we hold about them, ask us to correct it, or ask us to delete what we are not legally required to keep. Write toprivacy@nyuchi.com. Requests about student data in Toddle belong with the school and with Toddle, because that is where the data is.
If there is a data breach
If a breach affects personal data Nyuchi holds, such as purchase or feedback data, we will tell the customers and schools affected without undue delay and, where the law requires it, within 72 hours of becoming aware of it. We will say what happened, what data was involved, what we are doing about it, and who to contact.
Because the extension stores and sends no student data, a breach on our side cannot expose student data from Toddle.
Data processing agreement
A data processing agreement is available on request fromprivacy@nyuchi.com. It sets out, in contract form, the data flows on this page: what the extension does and does not process, what Nyuchi holds, the services that process it for us, security, breach notification and deletion.
Related
- Student privacy — FERPA, COPPA and the questions schools ask about children's data.
- Security — how these guarantees are enforced and tested.
- Privacy policy.
- Cookie policy.