Parents report Class Charts data leak
Learn More
The UK Information Commissioner’s Office (ICO) is examining a reported data leak involving the Class Charts platform, a tool widely utilized by educators across the United Kingdom. Class Charts faced issues last week where parents, upon logging in, were inadvertently shown details pertaining to students other than their own. The ICO has openly acknowledged receipt of a report concerning this breach and is in the process of evaluating the provided information.
The situation gained attention through discussions on Edugeek, a forum for school IT professionals, where numerous posts detailed instances of parents accessing information related to children from different schools. It was reported that a parent encountered data for completely unrelated pupils from distinct institutions, while another instance involved schools being alerted by parents who recognized the school logo within the misdirected data, thereby realizing the data pertained to students not their own.
Initially, a notification appeared on the Class Charts platform acknowledging the data breach, assuring users that the issue was being addressed and that affected parties would be contacted regarding their data security. This message, however, was later removed, and subsequent communications attempted to minimize the perception of the incident as a data breach.
The company suggested that a brief lapse occurred due to an update, during which some users received incorrect information, but argued against the occurrence being classified as a malicious attack or data breach.
In light of these events, the education and technology communities are awaiting further developments, including the outcome of the ICO's assessment and any potential measures that may be undertaken to prevent future occurrences.