BehaviorLog Pro

Sure Step Education — Privacy Policy

← Back to BehaviorLog Pro

Effective Date: April 10, 2026  |  Material update effective: July 10, 2026  |  Last Updated: September 4, 2026

1. Introduction

BehaviorLog Pro is a web-based behavior tracking and analysis application developed by Sure Step Education for use by special education professionals in K–12 school settings. The application enables teachers to record student behavioral data (frequency, duration, intensity) during classroom observations and to write the behavior goals tracked for their students, and enables licensed behaviorists and school psychologists to conduct structured behavioral observations, administer functional assessment screening tools (QABF, FAST), score assessment results, manage behavioral goals, and generate Behavior Intervention Plans (BIP) and Functional Behavior Assessments (FBA). Access is organized by school district and by user role (teacher, behaviorist, school psychologist, district administrator, and Sure Step administrator), as described in §7.5–§7.6.

BehaviorLog Pro is accessible at blp.surestepeducation.com and is designed exclusively for educational purposes.

This Privacy Policy describes how Sure Step Education collects, uses, stores, and protects information in connection with BehaviorLog Pro. This policy is designed to comply with:

2. Definitions

Local Educational Agency (LEA): A school district, county office of education, or charter school that contracts with or authorizes the use of BehaviorLog Pro.

Pupil Records: Any information directly related to a student that is maintained by the LEA or by a party acting for the LEA, as defined under FERPA and California Education Code § 49061.

Personally Identifiable Information (PII): Information that can be used to distinguish or trace an individual student's identity, including but not limited to: name, date of birth, student identification number, behavioral records, and assessment data.

Operator: Sure Step Education, the entity that operates BehaviorLog Pro and processes pupil records on behalf of the LEA.

Third Party / Provider: Any external service that processes data on behalf of the Operator in connection with BehaviorLog Pro, as referenced in Education Code § 49073.1.

3. Information We Collect

3.1 Student / Pupil Records

3.2 Teacher / Staff Information

3.3 Technical Information

4. How We Use Information

All information collected through BehaviorLog Pro is used exclusively for the following educational purposes:

Notification of Behavior Emergency Reports. When a Behavior Emergency Report is filed, BehaviorLog Pro notifies the administrators of that organization in two ways. Within the application, the report appears in an administrator's messages panel, where it remains flagged as requiring attention until an administrator has reviewed and finalized it; the identity of the finalizing administrator and the time are recorded on the report. Separately, an email is sent to each administrator of that organization. That email contains no student information. It states only that a Behavior Emergency Report has been filed, names the organization, and directs the recipient to sign in to BehaviorLog Pro to read it; the student's name, the circumstances of the emergency, and the report's contents are never placed in the message, and the recipient must authenticate before any of it is visible to them. Routine event-log entries generate no email of any kind; they appear in the administrator's messages panel only.

5. Prohibited Uses

Sure Step Education will NOT:

  1. Use any student PII for targeted advertising or marketing purposes
  2. Create or build non-educational profiles of students
  3. Sell, rent, trade, or otherwise transfer student PII to any third party
  4. Disclose student PII to unauthorized parties
  5. Use student data for any purpose unrelated to the educational services provided
  6. Use student data for commercial purposes of any kind
  7. Retain student data beyond the period required to fulfill educational purposes or as required by applicable law

6. Ownership and Control of Pupil Records

All pupil records collected, maintained, or generated through BehaviorLog Pro remain the property of and under the control of the Local Educational Agency, in accordance with California Education Code § 49073.1.

Sure Step Education acts solely as a custodian of pupil records and operates as a School Official with a legitimate educational interest under FERPA (34 CFR § 99.31(a)(1)). Sure Step Education does not claim ownership of any student data processed through BehaviorLog Pro.

The LEA retains full authority to access, review, correct, and request deletion of any pupil records maintained by BehaviorLog Pro.

7. Data Storage and Security

7.1 Data Storage

All data processed by BehaviorLog Pro is stored on servers located within the United States:

7.2 Security Measures

7.3 AI-Powered Features

BehaviorLog Pro uses the Anthropic API (Claude) to generate draft Behavior Intervention Plan (BIP), Functional Behavior Assessment (FBA), and behavioral goal documents from the behaviorist's own structured observation data for a student.

Before any data is transmitted, BehaviorLog Pro de-identifies it within the user's browser: the student's name, the names of other students on the user's roster, and staff names known to the application are removed and replaced with neutral placeholders (for example, "[STUDENT]" and "[BEHAVIORIST]"). Only this de-identified text is sent to the Anthropic API through a secure server-side proxy. The real names are re-inserted locally, on the user's own device, after the draft is returned — they are not part of the transmitted request. The de-identified text is presented to the user for review and requires the user's explicit confirmation before any transmission occurs, and the user may edit that text to remove additional details at that point.

This de-identification operates on the names known to the application and is not a guarantee that every possible identifier has been removed. Names of individuals who are not on the user's roster, or other identifying details typed into free-text notes, may remain unless the user removes them at the review step. Users are instructed to review the de-identified text and remove any remaining identifying details before sending.

Anthropic does not train its models on, or retain, data submitted through its API for these requests. All generated documents are drafts that must be reviewed, edited, and approved by a licensed behaviorist before use in any official record.

In organizations where the administrator has enabled AI features, BehaviorLog Pro also uses the same de-identified, server-side proxy pathway for two smaller drafting aids: (1) analyzing the text of a written behavior goal to pre-fill the goal's tracking setup (behavior, measurement type, and target date) for the author's review, and (2) generating a short written summary of a goal's recorded progress data. Because behavior goals may be written by any staff member with access to the student, including a teacher, these two aids are available to any such staff member — unlike BIP and FBA document generation, which remains restricted to behaviorists, school psychologists, and administrators. A goal written by any role may be included, reproduced as written, in a BIP or FBA drafted by a specialist. For the progress summary, the data transmitted consists of the de-identified goal text, the goal's de-identified baseline statement where the team has entered one, and de-identified weekly aggregate figures only — for each week, the week's date, counts, targets and met/not-met status; together with the length in days of the span the goal is scored over (taken from the goal's own text), the current streak, and average prompt counts. No figure is transmitted that is not one of these aggregates, and never free-text observation notes or session records. A baseline statement is text a staff member composes to describe the student's starting point for that goal, ordinarily transcribed from the student's IEP; it is treated exactly as the goal text is, and the same in-browser removal of student, peer, and staff names is applied to it before transmission. The summary is presented as a data-based suggestion for the education team; determinations about goal mastery are made by staff, not by the AI. The same in-browser de-identification described above is applied before transmission, and each request is recorded in the audit log as metadata only (document type and model — never student data).

7.4 Designated Responsible Individual

Name: Nicholas Crabtree
Title: Co-Founder, Sure Step Education
Email: nicholas@surestepeducation.com

7.5 User Roles and District Organization

Access is organized by school district, and each user holds a role that determines what they can see and do:

Shared-caseload organizations. Some nonpublic-school organizations operate a shared caseload, enabled per organization at the school's direction. In such an organization, student records, recorded sessions, and goals entered by any staff member are visible to all of that school's authorized staff, rather than staying visible only to the staff member who entered them; each entry remains attributed to the staff member who created it. Organizations that have not enabled this mode are unaffected, and it does not change the confidential and private controls on event-log entries described in §7.1.

Individually subscribed accounts. An educator or clinician who purchases an individual BehaviorLog Pro subscription operates as a single-user organization. Student records in an individually subscribed account are never shared with any other account: these accounts cannot share students with other users, cannot receive students shared by other users, and have no organization caseload — restrictions enforced both in the application and at the database layer (Row-Level Security).

7.6 Administrative Access, Support Sessions, and Audit Logging

To provide technical support and troubleshooting, authorized Sure Step personnel may temporarily sign in to and use the application as a specific user (a "support session"). Consistent with Sure Step Education's role as a School Official with a legitimate educational interest under FERPA (34 CFR § 99.31(a)(1)), such access is limited to legitimate support and educational purposes. Every support session requires a stated reason, is limited to a fixed period after which it closes automatically, displays a persistent on-screen banner naming the account being accessed, and is recorded in the audit log described below. A support session that cannot be recorded is not started.

There are two kinds, and they differ in what the person may do:

An administrator acting as a user in DailyWins may carry that support session into BehaviorLog Pro through the single sign-on link described in §7.7. Such a session is subject to the same reason, banner, time limit, and audit requirements, and its audit record identifies the administrator rather than the user being acted as.

BehaviorLog Pro maintains an audit log of sensitive administrative actions — including support sessions of either kind, data export, data deletion, and changes to a user's role or district assignment — recording who performed the action, the affected account, the reason given, and the time it occurred. Audit records are available to Sure Step Administrators and, for actions scoped to a single district, to that District Administrator.

7.7 Connection with DailyWins (Sure Step Single Sign-On)

BehaviorLog Pro and DailyWins are both products of Sure Step Education. Where an LEA uses both, an authorized DailyWins user may open BehaviorLog Pro directly from DailyWins through a secure single sign-on (SSO) link. When this occurs, DailyWins transmits to BehaviorLog Pro a short-lived, cryptographically signed token containing: the educator's email address and role, the school's DailyWins identifier and name, and — when a teacher opens a specific student — that student's DailyWins identifier, first and last name, and grade level.

BehaviorLog Pro uses this information solely to sign the educator in, associate them with the correct district, and create or update the corresponding student's name and grade in that teacher's roster (kept in sync with DailyWins at each sign-on). The SSO token itself carries no behavioral observation data, assessment responses, goals, or generated reports. Each SSO sign-in is recorded in the audit log described in §7.6.

Event log synchronization. Separately from sign-on, where an LEA has linked its DailyWins school account to its BehaviorLog Pro organization, timestamped student event entries recorded in DailyWins (what happened, people involved or notified, follow-up, and the entry author) are transmitted to BehaviorLog Pro over an authenticated, server-to-server connection and stored in the same per-student event log described in §7.1. These synchronized entries are read-only within BehaviorLog Pro — they can be viewed by the organization's authorized staff but not edited or deleted there; corrections are made in DailyWins, where the entry originated. No data flows from BehaviorLog Pro back to DailyWins through this channel.

Because DailyWins is a Sure Step Education product and not a third party, this is an internal transfer between systems operated by Sure Step Education on behalf of the same LEA; the data remains subject to this policy and the LEA's agreements. Data collected within DailyWins itself is governed by the DailyWins privacy policy.

8. Breach Notification

In the event of an unauthorized disclosure of, or access to, pupil records, Sure Step Education will:

9. Parental Rights

Parents and guardians of students whose data is maintained in BehaviorLog Pro have the right to:

All parental requests should be directed to the student's school or LEA. Sure Step Education will cooperate promptly with any LEA request to facilitate parental rights under FERPA and California Education Code § 49061 et seq.

10. Pupil-Generated Content

BehaviorLog Pro does not collect content directly generated by students. All data in the system is entered by authorized school personnel (teachers, behaviorists, administrators) or by assessment respondents (parents, teachers, staff) completing functional assessment screening tools.

If future features introduce pupil-generated content, this policy will be updated to describe how students retain possession and control of such content and how it may be transferred to personal accounts.

11. Data Retention and Deletion

Sure Step Education retains pupil records only for as long as necessary to fulfill the educational purposes described in this policy, or as required by the LEA or applicable law.

Archived students. In shared-caseload organizations, a site administrator may archive a student. Archiving removes the student and their records from staff working rosters; the student's sessions and goals are retained in full and remain available to site administrators through the archived-students view. All of the student's records, including event-log entries, are retained and are not automatically deleted; deletion happens only at the school's request, under its data-processing agreement (see §17).

11.1 Behavior Emergency Reports

A Behavior Emergency Report is a formal record of a behavioral emergency and may be produced to a governing body. Accordingly, BehaviorLog Pro provides no facility for any user — including an organization's administrators — to delete one. A report that was filed in error is corrected by an administrator under §7.1, which leaves the record and any amendment to it visible, rather than removed.

This limitation governs what users of the application can do. It does not place Behavior Emergency Reports beyond the LEA's control or outside the deletion obligations set out below: they are pupil records, they belong to the LEA under §6, and on the LEA's instruction or on termination they are returned and deleted on the same terms and within the same periods as every other pupil record. Nor does it exempt them from a parent's rights under §9.

Upon termination of the agreement with an LEA, or upon request by the LEA:

12. FERPA Compliance

Sure Step Education operates as a School Official with a legitimate educational interest under 34 CFR § 99.31(a)(1). In this capacity:

13. SOPIPA Compliance

In compliance with the Student Online Personal Information Protection Act (Cal. Bus. & Prof. Code § 22584), Sure Step Education:

14. COPPA Compliance

BehaviorLog Pro is a teacher-facing and staff-facing application. Students do not directly interact with or input data into BehaviorLog Pro. All student behavioral data is entered by authorized school personnel.

The QABF and FAST assessment forms are completed by adult respondents (parents, teachers, staff) and do not collect information directly from children under 13.

Accordingly, COPPA's parental consent requirements for direct collection from children do not apply. If future features introduce student-facing functionality, Sure Step Education will obtain verifiable parental consent or rely on the school consent exception under 16 CFR § 312.5(c)(1).

15. Third-Party Services and Subprocessors

ServicePurposeData Processed
SupabaseDatabase hosting, user authentication, cloud storageAll user and student data, authentication tokens
Google OAuthOptional user sign-in (email/password, handled by Supabase Auth, is the alternative)Email address, display name, profile avatar
VercelApplication hosting and serverless function executionHTTP requests, environment variables (API keys)
ResendTransactional email delivery (assessment links, share notifications, invites, password resets, and Behavior Emergency Report notifications)Recipient email address and email content. Because some of these messages identify the student they concern (for example, an assessment request or a "student shared with you" notice), a student's name may appear in the subject line or body of those emails. No other student records (behavioral data, assessments, goals) are sent through Resend. Behavior Emergency Report notifications are the exception in the other direction: they carry no student identifier at all — only the organization's name and an instruction to sign in — so no pupil record reaches Resend through them. Unlike the Anthropic transmission, these emails are not de-identified.
StripeSubscription payments for individual (standalone) subscribers only. District- and agency-licensed accounts are invoiced directly and no data about them reaches Stripe.Subscriber name, email address, billing address, and payment-card details — entered on Stripe's own hosted checkout page. Card data never passes through or is stored by BehaviorLog Pro. Sure Step receives back only the subscription status, the card brand and last four digits, and Stripe's customer and subscription identifiers. No student data is sent to Stripe.
Anthropic (Claude API)AI-assisted report generation (BIP, FBA, Goals)De-identified behavioral data — student, peer, and staff names are removed and replaced with placeholders before transmission (see §7.3)

Sure Step Education ensures that all third-party subprocessors maintain security practices consistent with the obligations described in this policy. No subprocessor is authorized to use student data for any purpose other than providing the specific service described above.

16. Changes to This Privacy Policy

Sure Step Education will provide at least thirty (30) days written notice to all affected LEAs before making material changes to this privacy policy. The updated policy will be posted at the BehaviorLog Pro website with a revised effective date.

Non-material changes (typographical corrections, formatting) may be made without advance notice.

17. Data Processing Agreements

Sure Step Education is prepared to enter into Data Processing Agreements with LEAs to formalize data protection obligations. We support:

18. Contact Information

For questions, concerns, or requests regarding this Privacy Policy or BehaviorLog Pro's data practices, please contact:

Organization: Sure Step Education
Contact: Nicholas Crabtree, Co-Founder
Email: nicholas@surestepeducation.com
Product URL: https://blp.surestepeducation.com