Security and privacy

Clear answers about how admissions information is protected.

DataSolv Admissions Leads is a separate, school-scoped application supported by layered safeguards, controlled access and defined responsibilities between DataSolv and each client school.

Our security position

Practical safeguards, honestly explained.

No responsible technology provider can promise that a connected system is immune from every possible cyber incident. DataSolv therefore focuses on reducing risk through layered technical and operational controls, limiting access, keeping schools' data separated, testing important security boundaries and maintaining clear incident-response responsibilities.

Separate from Ed-admin: DataSolv Admissions Leads has its own hosting environment, database, application code and user accounts. It does not require a live connection to a school's Ed-admin database.

Frequently asked questions

Can DataSolv guarantee that the system will never be compromised?

No responsible software provider can make that guarantee. DataSolv reduces risk through layered safeguards, monitoring, controlled access, testing and recovery processes. Security is treated as an ongoing operational responsibility rather than a once-off claim.

Is DataSolv Admissions Leads part of Ed-admin?

No. Admissions Leads is a separate DataSolv application with its own hosting environment, database, source code and user accounts. It operates independently of Ed-admin.

Would an Ed-admin security incident automatically affect Admissions Leads?

No. Because the two platforms are separate, an incident affecting one does not automatically provide access to the other. Information moves to Ed-admin only when an authorised school user generates the verified workbooks and imports them through the school's normal Ed-admin process.

Is DataSolv POPIA certified?

POPIA does not provide a general product certification badge. The school remains the responsible party for its admissions information, while DataSolv acts as an operator under the parties' agreement. DataSolv applies appropriate safeguards and processes information only to deliver and support the agreed service.

Who owns the school's information?

The school retains ownership and control of its information. DataSolv uses it only to provide and support the contracted Admissions Leads service and does not claim ownership of client data.

Can a user see another school's leads?

Not unless that user has been expressly authorised for that school. Records and operational activity are scoped to the active school. Where an approved user needs to work across multiple schools, access to each school is assigned deliberately.

How are passwords and reset links protected?

Passwords are stored as secure hashes rather than readable text. Account invitations and password-reset links are time-limited and single-use, helping to reduce the risk of reused or intercepted links.

How is information sent to Ed-admin?

Admissions Leads creates verified Excel workbooks for authorised school staff to download and import through the school's supported Ed-admin workflow. There is no live connection to the Ed-admin database.

What happens if unauthorised access is suspected?

DataSolv will investigate, contain and document the event, restore secure operation and communicate with the affected school without undue delay. This supports the school in meeting its own legal, governance and notification responsibilities.

What security assurance is performed?

The application is subjected to automated functional, tenant-isolation, authentication, recovery, notification and production-hardening tests before release. These internal controls support release confidence, but they are not represented as independent certification or a third-party penetration test.

Shared responsibility

Security also depends on safe use by the school.

The strongest outcome comes from DataSolv's platform safeguards working together with sensible account, device and information-handling practices at the school.

Recommended school controls

  • Remove or update access promptly when staff roles change.
  • Use unique passwords that are not shared across services.
  • Protect staff email accounts and the devices used to access the application.
  • Store downloaded Excel and PDF files securely.
  • Verify parent recipients before sending a message.
  • Report suspicious activity to DataSolv promptly.

Need the formal security overview?

Download the client-ready document or contact DataSolv if your school has additional governance or due-diligence questions.