Security & IT
Role-based access control: keeping school data on a need-to-know basis
Teachers, finance, admissions, and families should each see a scoped workspace — with audit trails when sensitive records change.
Least privilege is not optional
Student records, fee balances, and payroll data require different access patterns. A teacher’s homeroom scope should not expose school-wide finance; a bursar should not edit exam papers.
What Schoolyi enforces
- Permission matrix gating pages and API routes
- Teacher scoping to assigned classes and subjects
- Parent access limited to linked children
- Activity log with export for operational review
- Secure session auth with password reset flows
Operational trust
When staff know the system enforces scope automatically, they spend less time requesting access and more time serving students.