Legal & Compliance
Transparent policies regarding enterprise-grade security and absolute data sovereignty. Because your students' data is not the product.
Security & Infrastructure
Hybrid Edge Architecture
Cortex deploys a state-of-the-art hybrid architecture designed to meet the strictest educational compliance standards. For Campus Standard and Enterprise API clients, physical Edge Servers are deployed on-premise. All evaluation processing of sensitive documents happens locally, acting as a physical firewall between institutional records and the broader internet.
Advanced Cryptographic Encryption
All platform data is encrypted at rest using industry-standard AES-256. Data in transit between local edge servers, student interfaces, and our secure cloud layer is protected by TLS 1.3 protocols, ensuring immunity to interception and man-in-the-middle vulnerabilities.
Continuous Auditing
Our infrastructure undergoes weekly automated vulnerability scanning and bi-annual rigorous penetration testing by independent CREST-certified cybersecurity firms. Cortex maintains strictly audited adherence to SOC2 Type II frameworks.
Privacy & Data Sovereignty
The Zero Training Policy
Cortex explicitly guarantees that institutional data, student submissions, evaluation outputs, and proprietary assessment logic are never used to train, retrain, or fine-tune foundational AI models. Your academic data remains strictly transactional and isolated.
PII Isolation & Anonymization
Personally Identifiable Information (PII) is intentionally decoupled from evaluation payloads. Through our Edge Server architecture, student names, IDs, and metadata are stripped locally. The Cortex Core processes fully anonymous cryptographic hash tokens only.
Global Compliance Frameworks
Our data processing environments are isolated, independently audited, and structurally compliant with FERPA (Family Educational Rights and Privacy Act), GDPR, and international data residency regulations.
Data Retention & Expungement
Cortex employs ephemeral processing for cloud evaluations. Assessment data transmitted to the cloud is automatically expunged within 30 days post-grading unless local archival is explicitly enabled on your institution's edge server. Schools retain complete sovereignty to request instant cryptographic data deletion at any moment.
Platform Reliability & SLA
We believe that academic assessment infrastructure must be as reliable as a power grid. For institutions deployed on the "Campus Standard" or "Enterprise API" tiers, Cortex delivers unmatched system reliability to ensure uninterrupted continuous academic operations.
Uptime Guarantee
We guarantee 99.99% core platform availability, ensuring your institution, educators, and students maintain continuous, unfettered access to our ecosystem during pivotal exam periods.
Hallucination Mitigation
Our grading models are restricted by strict deterministic logic frameworks. We implement exhaustive validation buffers to prevent evaluative deviations, guaranteeing fair and predictable grading outputs.
Terms of Service & AUP
Intellectual Property Rights
The educational institution retains 100% intellectual property rights over all submitted mock exams, curriculum rubrics, student responses, and generated feedback reports. Cortex claims absolutely no ownership over the academic outputs generated through our platform.
Acceptable Use Policy (AUP)
The Cortex API, Edge Servers, and dashboard toolings are strictly restricted to academic, certification, and enterprise training evaluations. To maintain system integrity, the following actions are strictly prohibited:
- Attempting to reverse-engineer our proprietary pedagogical forensics matrix.
- Exploiting logic-checking buffers to force AI hallucinations.
- Employing the grading engine for non-evaluative, generalized generative tasks.
Violation of these terms will result in immediate API key revocation, Edge Server lockdown, and breach of enterprise contract.