Audit log and traceability

Schoolysoft continuously records sensitive actions performed in the application, to guarantee your school’s traceability and compliance.

An internal Schoolysoft tool

The audit log is not accessible from your school’s interface — there is no “Audit log” menu for administrators or directors. It is an internal tool, reserved for Schoolysoft teams, used for security investigations and legal traceability obligations.

If you need an action history (for example for an internal investigation or a GDPR request), contact Schoolysoft support: your request will be handled by the authorized teams.

What is tracked

  • Sign-ins (successful and failed, with IP address).
  • Creation, modification, deletion of pupil, parent, and staff records.
  • Access to health data and care plans (PAI).
  • Publication of reports and grades.
  • User role changes.
  • Data exports.
  • School configuration changes.

Immutability

The audit log is write-only: no entry can be modified or deleted, even by a Super Admin. This constraint is enforced at the database level.

Retention period

Entries are retained for between 5 and 10 years depending on the type of action, in accordance with applicable legal traceability obligations.