Privacy Policy
Last updated: June 2026
Who we are
Five Wells is a school recognition and analytics platform. For pupil and staff roster data, your school is typically the data controller; Five Wells processes data on the school's instructions as a processor.
What we process
We process account data (names, emails, roles), platform usage (credits, logins), and optional roster or demographic data supplied by the school. We do not sell personal data.
Roster and demographic data
Schools choose how roster data enters Five Wells:
Option A: CSV upload
Only fields present in the file you upload are stored. Typical columns:
- Roster CSV: role, email, full name, optional class label
- Student sheet: names, email (or no-email), class, optional PP/SEND/EAL/FSM flags
- Demographics CSV: student ID plus PP, SEND, EAL, FSM flags
CSV does not accept DOB, ethnicity, UPN, safeguarding, medical records, or photos.
Option B: Wonde MIS sync
When enabled by your platform administrator and connected by your school, Five Wells syncs from your MIS via Wonde: pupil and teacher names, class/group membership, work emails for staff, and impact flags (pupil premium, FSM, EAL, SEND/EHCP). Safeguarding, medical, ethnicity, photos, and other extended MIS fields are not imported.
See the full inventory in School roster data notice.
Who can access what
- Teachers: students in their school and standard demographic flags on profiles
- School administrators: full school roster and class membership; no safeguarding MIS store
- Students and parents: only data your school exposes through the product
Subprocessors
Supabase (hosting/database), Vercel (application hosting and anonymous visitor analytics on public marketing pages only), Resend (invite email), and Wonde when MIS sync is enabled.
Contact
Contact your school administrator or Five Wells support for data questions. Schools should maintain their own privacy notices for pupils and parents.