Trust & security

Specific about what exists. Careful about what comes next.

TeachBack is in its waitlist stage. This page separates controls in the current site from safeguards planned for the learning product.

See How It Works
Current public surface

The waitlist endpoint is implemented. Full product accounts, note uploads, and spoken sessions have not launched.

01

Authentication

Planned product authentication will use hashed passwords or a managed identity provider, expiring sessions, and short-lived reset tokens. The current public waitlist does not create user accounts.

02

Data access

The product is planned around ownership checks on every protected resource. Public clients will not receive unrestricted database read access.

03

Server-side secrets

The Make webhook URL and optional API key remain server-side. Neither value is included in the browser bundle or API responses.

04

Encryption in transit

Production hosting uses HTTPS for traffic between the browser and the application. TeachBack does not claim a separate encryption certification.

05

Integration exposure

Waitlist submissions pass through a validated server route before being relayed to Make. There is no public endpoint for reading the waitlist or discovering the webhook.

06

Logging

The endpoint returns structured, non-sensitive error messages. Expanded authentication and anomaly logging are planned before product accounts launch.

07

Abuse prevention

The current form includes a hidden honeypot, server-side Zod validation, normalized emails, required device selection and consent, and upstream response checks.

08

Data minimization

Email, a preferred device, and consent are required. Every other personalization field is optional. Raw provider responses and integration details are not returned to the browser.

09

Waitlist data

The relay sends the submission timestamp, email, preferred devices, consent state, and any optional name, school, subject, graduation, study-challenge, or feedback fields the student provided.

10

User deletion

Waitlist members can request removal by emailing support@teachback.dev. Product-stage deletion tools will be documented before full launch.

Questions or incidents

Tell us directly.

For security, privacy, deletion, or data-handling questions, contact support@teachback.dev. For general product questions, use hello@teachback.dev.

TeachBack does not display compliance certifications or badges it has not legitimately earned and documented.

Early access

Be first to try TeachBack.

No fake launch date. No spam. Just product updates and early-access invitations sent in batches.