Across campuses
Sorted by how far it reaches, because scope is your daily question
A single school thinks about who can open something. A network thinks about how far it travels: one campus, the whole network, or outside it entirely. The second filter is the one only a publicly funded school needs. Every choice is an ordinary link, so this works with nothing switched on.
Narrow it
How far it reaches
What kind of record it is
Showing 3 of 6.
- Working
One campus cannot read another
The daily fact of a multi-campus operator, and the wall that has to hold without anybody thinking about it.
Who it reaches. Campus staff see their campus. Network staff see what their role permits across the campuses they are responsible for. Those are different permissions rather than one permission with a wider label.
- Working
Your own family-facing agreement
Your document, not a district's, and frequently the same one across every campus.
Who it reaches. Each campus, for its own students, from one network-level document. The permission itself is held per student, defaults closed, and is consulted at the moment of use rather than remembered from signing.
- Closed by the age floor
Enrolment marketing
Charters recruit, which makes this a live problem rather than a theoretical one.
Who it reaches. Nobody, outward, for students under the floor. Your campuses, your classrooms in use, student work without a name, and staff with their own agreement are all available and are what a serious enrolment collection is actually made of.
One campus cannot read another
- What it is
- A network running four campuses on one back office has staff whose roles are campus-scoped and staff whose roles are not, and the difference has to be enforced somewhere other than in a screen. Here it sits in the storage layer: a request from outside a campus’s own area returns no student rows because the storage refuses it, which is re-checked every time the system is built.
- Who it reaches
- Campus staff see their campus. Network staff see what their role permits across the campuses they are responsible for. Those are different permissions rather than one permission with a wider label.
- Where it stops
- It is a mechanism, not a legal conclusion. We can tell you exactly where the wall is and what re-checks it. Whether that arrangement satisfies your state’s requirements for a network of your shape is a question for your counsel.
The design question worth asking about your own roles
Filter for the whole network and you get one entry, and it is deliberately the least imagery-heavy thing on the list.
The network-level job is almost never “show me the students”. It is whether every campus ran its picture day, how many students are still unphotographed in week six, and which campus has a permission-collection problem. Those are counts and states. They can be answered without anybody at the central office opening a single photograph.
So the question worth putting to your own systems is not what they permit, it is what they grant by default. A network dashboard that quietly gives every central-office account image access across all campuses is the most common way a multi-campus operator ends up with wider exposure than any of its individual schools would have on its own. Most operators have never checked.
The least risky access is the access nobody needed. That is not a feature we sell you; it is a role design you do, and it is worth an afternoon regardless of what software you end up with.
Why the record-type filter exists at all
Because a privately funded school never has to categorise its material this way, and you do.
A student’s own education record and an operational record of the school are different things with different rules attached, and imagery can be either depending on what it is and why it was made. A photograph attached to a student’s record is one thing; a photograph of a classroom in use, taken to document that a programme exists, is another.
The third category is the honest one: genuinely unsettled. Whether a photograph of an identifiable student is reachable by a public-records request varies by state, by material and by the specific request. We have given it its own value in the filter rather than quietly sorting it into one of the other two, because a product that resolved that ambiguity on your behalf would be making a legal judgement it has no standing to make.
What we will say is the operational half. Holding imagery as records with permissions attached is what lets you answer such a request precisely. The alternative — producing a folder against a statutory deadline — is a much worse position, and which one you are in is decided long before any request arrives.
What this list is not
It is our description of our own capability. There are no students’ photographs on this site, no example records, no sample rosters and nothing resembling any real child’s data. Nothing typed into the address bar reaches what you are reading.
A demonstration against your own network is a different thing: real setup work, after a conversation with a person, never before.