Legal

Trust Center

Viva Proof, Inc. · Last updated: September 2026

법적 고지

신뢰 센터

Viva Proof, Inc. · 최종 업데이트: 2026년 9월

FERPACompliant
COPPACompliant
K-PIPAReady
GDPR
UK/EU
Ready
SOC 2In progress

At Viva, security, privacy, and responsible AI are built into the platform, not added on top. We serve educational institutions across the world, and our approach to compliance is designed to meet the highest standards in every jurisdiction we operate in.

Questions? Contact privacy@vivaproof.com or request our full Vendor Security Overview.

Jump to Security & Data Protection Education Privacy Compliance Data & AI Ethics

Section 1 — Security & Data Protection

How We Protect Student Data

Encryption

All data is encrypted in transit using TLS 1.2+ and at rest using AES-256. This includes voice recordings, transcripts, grades, and all other student information.

Tenant Isolation

Each institution's data is kept strictly separate from every other institution's through row-level security in the database.

Access Controls

Access to student data is limited to personnel who need it to operate the service. All access is logged and auditable. Admin access requires multi-factor authentication.

Vulnerability Management

Automated dependency scanning on every code change (GitHub Dependabot). Critical vulnerabilities patched within 7 days; high-severity within 30 days. Security reviews at every major release; a third-party penetration test is commissioned ahead of our SOC 2 audit.

Breach Notification

If a data breach affects student data, we notify affected institutions within 72 hours of becoming aware, consistent with GDPR Article 33 (EEA/UK), Korea PIPA Article 34, and equivalent national requirements elsewhere.

Data Deletion

Voice recordings are automatically deleted within 90 days of the grade being released for that interview — sooner if the student requests it once grading is complete and there is no open review — and the countdown pauses while an integrity flag or grade appeal is open on that interview, or while the institution holds a documented, time-limited retention hold on the class. Voice ID / voiceprints (if enabled) are deleted on the first of: purpose satisfied; 30 days after consent withdrawal; 90 days after account closure or contract end; or three years after the student's last interaction. Camera Check signals and any flagged still images (if enabled) are deleted on the same schedule as the associated interview record. All student data is deleted or anonymised after the contract period. Written deletion confirmation provided on request.

Optional Integrity Features

Voice ID is offered to every student during onboarding by default, for students aged 14 and over — it isn't something an institution switches on or off. A short voice sample confirms the student taking the interview is the student who submitted the work; never used for grading, only to flag possible impersonation to the instructor. Individual student consent is always required, given on Voice ID's own standalone screen, before anything is captured. Illinois is the one exception: not offered to students at an Illinois institution until that institution has signed a BIPA Rider, as Illinois law requires.

Camera Check remains institution-controlled — off by default, switched on only if the institution enables it, limited to students 14 and over, with the same standalone student consent required before anything is captured.

A student may decline either feature, or withdraw consent, at any time, with no penalty and no effect on their grade; the institution assesses them another way, and that alternative may not be more burdensome than the declined feature would have been.

Our Subprocessors

We work with a small number of trusted technology providers to operate the platform. Subprocessors are primarily based in the United States; Supabase and PostHog each offer EU/UK data residency options. Each is bound by a written data processing agreement with terms no less protective than our own.

ProviderRoleLocationSOC 2
Anthropic (Claude)AI interviewing, question generation, grading (inputs/outputs deleted within 30 days; not used for model training)USType II ✓
AWSSecondary AI evaluation and QA cross-checks (tie-breaker model)USType II ✓
CartesiaKorean voice synthesis for live interviewsUSType II ✓
Daily.coReal-time audio transport (WebRTC)USType II ✓
DeepgramSpeech-to-text and English voice synthesisUSType II ✓
Fal.aiAI image generation for anti-cheat visual questionsUSType II ✓
GoogleSecondary AI evaluation; anti-cheat image generationUSType II ✓
MicrosoftOffice document viewer (legacy format fallback)USType II ✓
Modal LabsHosting for the speech models Viva runs itself in live interviews (English voice synthesis, speech-to-text); audio is processed in transit and not storedUSType II ✓
OpenAISecondary AI evaluation and QA cross-checksUSType II ✓
PostHogProduct analytics (consent-gated)US / EUType II ✓
RenderSpeaker-verification (Voice ID), document text extraction, OCRUSType II ✓
ResendTransactional emailUSType II ✓
SentryError monitoring (PII scrubbed before write)USType II ✓
StripeBilling (no card data stored by Viva)USType II ✓
SupabaseDatabase, authentication, file storageUS / EU-UK availableType II ✓
VercelApplication hostingUSType II ✓

Slack. Viva uses Slack for internal operational alerting (system health, usage metrics, and de-identified product-feedback summaries). No Student Data or other personal data is transmitted to Slack, so Slack is not acting as a subprocessor of personal data.

SOC 2 Readiness

Viva is currently in the SOC 2 Type II readiness phase. Our controls are operating today. The formal audit period and Type II report are targeted for 2027.

Deployment Options

Managed cloud (standard). Signed DPAs, the subprocessor list, zero-retention AI processing, encryption in transit and at rest, regional hosting commitments available under contract.

Private deployment (enterprise, in rollout). Single-tenant deployment inside your institution's own cloud environment and region, with AI running through your institution's own AWS Bedrock service. Prompts and responses are not sent to Anthropic or Viva's shared infrastructure. Contact us to scope a private deployment.

Section 2 — Education Privacy Compliance

Viva is designed to comply with education privacy laws across every jurisdiction we serve. Below we explain our obligations under the two primary US frameworks. If your institution is located outside the US, we work with you to put the appropriate compliance documentation in place. Contact privacy@vivaproof.com for details relevant to your country.

FERPA (United States)

What Is FERPA?

The Family Educational Rights and Privacy Act (FERPA) is a US federal law that protects the privacy of student education records. It gives parents and eligible students the right to inspect, correct, and control access to education records.

Viva's Role Under FERPA

Viva acts as a "school official" with a "legitimate educational interest" in student data, as defined under 34 CFR § 99.31(a)(1)(i)(B). This means:

What We Do Not Do

Parental and Student Rights

Students who are 18 or older (or who attend a post-secondary institution) hold their own FERPA rights. Parents hold FERPA rights for students under 18. Through their school, parents and eligible students may inspect, request correction of, and control disclosure of education records.

For questions about FERPA rights, contact your school's registrar or data protection contact, who will liaise with Viva.

COPPA (United States — Under-13 Students)

For students under age 13, Viva operates as a service provider to schools under the Children's Online Privacy Protection Act (COPPA). Schools are responsible for obtaining verifiable parental consent before enrolling students under 13. Viva does not knowingly collect data from under-13 students without school authorisation.

Other Jurisdictions

Viva maintains equivalent compliance documentation and contractual addenda for other jurisdictions, including (but not limited to):

Contact privacy@vivaproof.com for compliance documentation specific to your institution's jurisdiction.

Section 3 — Data & AI Ethics

Our Approach to AI in Education

The Instructor Always Decides

Every AI-generated grade and piece of feedback in Viva is advisory. An instructor is responsible for every grade and can override any AI suggestion at any time, for any reason, without explanation.

Transparency

When Viva generates a suggested grade, the AI also produces a structured rationale explaining why. Students can request access to their interview recording and transcript through their institution.

Camera-Based Integrity, and the Line We Do Not Cross

Responsible Data Use

We do not sell student data, ever. We do not use it for advertising. We do not use it to train our AI models without explicit written permission from the institution.

Student Voice and Agency

Students are informed about how Viva works before their first interview through the Privacy Policy's Students & Families section. They consent explicitly to voice recording. Voice ID and Camera Check each require their own separate, standalone consent, given at the point that feature's data is actually captured — and a student may decline or withdraw either at any time without penalty. They can request access to their recording. They can raise concerns about their assessment with their instructor. Viva does not make educational decisions about students; institutions do.

Contact Us

For questions about our security practices, compliance, or AI ethics:

privacy@vivaproof.com
Viva Proof, Inc., Boston, MA, USA
vivaproof.com/legal/trust-center

© 2026 Viva Proof, Inc. All rights reserved.
Also see our Privacy Policy · Terms of Service · Acceptable Use Policy.

이 한국어 버전은 이해를 돕기 위한 참고용 번역이에요. 법적 효력을 가지는 것은 영문 원본입니다.

Viva에서 보안, 개인정보 보호, 책임 있는 AI는 나중에 덧붙인 것이 아니라 플랫폼에 처음부터 설계되어 있습니다. 저희는 전 세계 교육 기관을 지원하며, 운영하는 모든 관할권에서 가장 높은 기준을 충족하도록 컴플라이언스 체계를 설계했습니다.

궁금한 점은 privacy@vivaproof.com 으로 문의하거나 전체 벤더 보안 개요(Vendor Security Overview)를 요청해 주세요.

바로 가기 보안 및 데이터 보호 교육 개인정보 보호 준수 데이터 및 AI 윤리

섹션 1. 보안 및 데이터 보호

학생 데이터를 보호하는 방법

암호화

모든 데이터는 전송 중 TLS 1.2+로, 저장 시 AES-256으로 암호화됩니다. 여기에는 음성 녹음, 트랜스크립트, 점수, 그 밖의 모든 학생 정보가 포함됩니다.

테넌트 격리

각 기관의 데이터는 데이터베이스의 행 수준 보안을 통해 다른 모든 기관의 데이터와 엄격하게 분리됩니다.

접근 통제

학생 데이터 접근은 서비스 운영에 그것이 필요한 인원으로 제한됩니다. 모든 접근은 기록되고 감사 가능합니다. 관리자 접근에는 다중 인증(MFA)이 필요합니다.

취약점 관리

모든 코드 변경에 대해 자동 의존성 스캔(GitHub Dependabot)을 실행합니다. 치명적 취약점은 7일 이내, 고위험 취약점은 30일 이내에 패치합니다. 주요 릴리스마다 보안 검토를 하며, SOC 2 감사에 앞서 제3자 침투 테스트를 의뢰합니다.

침해 통지

데이터 침해가 학생 데이터에 영향을 미치는 경우, 인지 후 72시간 이내에 영향을 받는 기관에 통지합니다. 이는 GDPR 제33조(EEA/영국), 한국 개인정보보호법 제34조 및 그 밖의 국가별 동등한 요건에 부합합니다.

데이터 삭제

음성 녹음은 해당 인터뷰의 성적이 공개된 후 90일 이내에 자동 삭제됩니다. 채점이 끝나고 진행 중인 검토가 없다면 학생이 요청할 때 더 일찍 삭제되며, 해당 인터뷰에 무결성 표시나 성적 이의가 열려 있는 동안, 또는 기관이 서면 근거와 기한을 두고 수업에 보관 연장을 설정한 동안에는 삭제 기한이 멈춥니다. 음성 ID 성문(설정한 경우)은 목적 달성, 동의 철회 후 30일, 계정 폐쇄 또는 계약 종료 후 90일, 학생의 마지막 이용 후 3년 중 가장 이른 시점에 삭제됩니다. 카메라 확인 신호와 표시된 정지 이미지(켜진 경우)는 관련 인터뷰 기록과 같은 일정으로 삭제됩니다. 모든 학생 데이터는 계약 기간 종료 후 삭제되거나 익명화됩니다. 요청 시 서면 삭제 확인서를 제공합니다.

하위 처리자

저희는 플랫폼 운영을 위해 소수의 신뢰할 수 있는 기술 제공업체와 협력합니다. 하위 처리자는 주로 미국에 소재하며, Supabase와 PostHog는 각각 EU/UK 데이터 레지던시 옵션을 제공합니다. 각 업체는 저희 못지않게 보호적인 조건을 담은 서면 데이터 처리 계약에 구속됩니다.

제공업체역할위치SOC 2
Anthropic (Claude)AI 인터뷰, 질문 생성, 채점(입력·출력 30일 내 삭제, 모델 학습에 미사용)USType II ✓
AWS보조 AI 평가 및 QA 교차 검증(타이브레이커 모델)USType II ✓
Cartesia실시간 인터뷰용 한국어 음성 합성USType II ✓
Daily.co실시간 오디오 전송(WebRTC)USType II ✓
Deepgram음성-텍스트 변환 및 영어 음성 합성USType II ✓
Fal.ai부정행위 방지용 시각 질문 AI 이미지 생성USType II ✓
Google보조 AI 평가, 부정행위 방지용 이미지 생성USType II ✓
MicrosoftOffice 문서 뷰어(구형 형식 대체 수단)USType II ✓
Modal LabsViva가 직접 운영하는 실시간 인터뷰용 음성 모델(영어 음성 합성, 음성 인식) 호스팅. 음성은 전송 중에만 처리되고 저장되지 않음USType II ✓
OpenAI보조 AI 평가 및 QA 교차 검증USType II ✓
PostHog제품 분석(동의 기반)US / EUType II ✓
Render화자 확인(음성 ID), 문서 텍스트 추출, OCRUSType II ✓
Resend거래 이메일USType II ✓
Sentry오류 모니터링(기록 전 개인정보 제거)USType II ✓
Stripe결제(Viva는 카드 정보를 저장하지 않음)USType II ✓
Supabase데이터베이스, 인증, 파일 저장US / EU·영국 선택 가능Type II ✓
Vercel애플리케이션 호스팅USType II ✓

Slack. Viva는 내부 운영 알림(시스템 상태, 사용 지표, 비식별 제품 피드백 요약)에 Slack을 사용합니다. 학생 데이터나 그 밖의 개인정보는 Slack에 전송되지 않으므로, Slack은 개인정보의 하위 처리자가 아닙니다.

SOC 2 준비 현황

Viva는 현재 SOC 2 Type II 준비 단계에 있습니다. 통제 장치는 현재 운영 중이며, 정식 감사 기간과 Type II 보고서는 2027년을 목표로 합니다.

도입 방식 안내

관리형 클라우드(기본). 서명된 DPA, 하위 처리자 목록, 무보존 AI 처리, 전송 중과 저장 시 암호화, 계약에 따른 지역 호스팅 약정을 제공합니다.

프라이빗 배포(기관 전용, 도입 진행 중). 기관 자체의 클라우드 환경과 리전 안에 단일 테넌트로 배포하며, AI는 기관의 AWS Bedrock 서비스를 통해 실행됩니다. 프롬프트와 응답은 Anthropic이나 Viva의 공용 인프라로 전송되지 않습니다. 프라이빗 배포 검토는 저희에게 문의해 주세요.

선택적 무결성 기능

음성 ID는 온보딩 과정에서 14세 이상의 모든 학생에게 기본으로 제공되며, 기관이 켜고 끄는 기능이 아닙니다. 짧은 음성 샘플로 인터뷰를 보는 학생이 과제를 제출한 학생 본인인지 확인하며, 채점에는 절대 쓰이지 않고 대리 응시 가능성을 교사에게 알리는 데만 쓰입니다. 어떤 것을 수집하기 전에 음성 ID 전용의 독립된 화면에서 학생 개인의 동의를 반드시 받습니다. 일리노이주만 예외로, 일리노이 법에 따라 기관이 BIPA 부속 계약에 서명하기 전까지는 그 기관의 학생에게 제공되지 않습니다.

카메라 확인은 여전히 기관이 관리합니다. 기본적으로 꺼져 있고 기관이 켠 경우에만 작동하며, 14세 이상 학생에게만 제공되고, 어떤 것을 수집하기 전에 같은 방식의 독립된 학생 동의가 필요합니다.

학생은 두 기능 중 어느 것이든 언제든지 거절하거나 동의를 철회할 수 있으며, 불이익이나 성적에 미치는 영향은 없습니다. 기관은 다른 방식으로 평가하며, 그 대체 방식은 거절한 기능보다 더 부담스러워서는 안 됩니다.

섹션 2. 교육 개인정보 보호 준수

Viva는 저희가 지원하는 모든 관할권의 교육 개인정보 보호법을 준수하도록 설계되었습니다. 아래에서는 미국의 두 가지 주요 프레임워크에 따른 저희의 의무를 설명합니다. 기관이 미국 외에 있는 경우, 저희는 해당 기관과 함께 적절한 준수 문서를 마련합니다. 거주국에 맞는 자세한 내용은 privacy@vivaproof.com 으로 문의해 주세요.

FERPA (미국)

FERPA란?

가족 교육 권리 및 사생활 보호법(FERPA)은 학생 교육 기록의 사생활을 보호하는 미국 연방법입니다. 부모와 자격 있는 학생에게 교육 기록을 열람, 정정, 그리고 그에 대한 접근을 통제할 권리를 부여합니다.

FERPA에서 Viva의 역할

Viva는 34 CFR § 99.31(a)(1)(i)(B)에 정의된 바와 같이 학생 데이터에 "정당한 교육적 이해관계"를 가진 "학교 관계자(school official)"로서 행위합니다. 이는 다음을 의미합니다:

저희가 하지 않는 것

부모와 학생의 권리

만 18세 이상이거나 고등교육 기관에 재학 중인 학생은 본인의 FERPA 권리를 가집니다. 만 18세 미만 학생의 FERPA 권리는 부모가 가집니다. 부모와 자격 있는 학생은 소속 학교를 통해 교육 기록을 열람하고, 정정을 요청하며, 그 공개를 통제할 수 있습니다.

FERPA 권리에 대한 질문은 소속 학교의 학적 담당자나 데이터 보호 담당자에게 문의해 주세요. 해당 담당자가 Viva와 협의합니다.

COPPA (미국, 만 13세 미만 학생)

만 13세 미만 학생에 대해, Viva는 아동 온라인 사생활 보호법(COPPA)에 따라 학교에 대한 서비스 제공자로서 행위합니다. 학교는 만 13세 미만 학생을 등록하기 전에 검증 가능한 부모 동의를 확보할 책임이 있습니다. Viva는 학교의 승인 없이 만 13세 미만 학생의 데이터를 알면서 수집하지 않습니다.

그 밖의 관할권

Viva는 다른 관할권에 대해서도 동등한 준수 문서와 계약 부속서를 유지하며, 여기에는 다음이 포함됩니다(이에 한정되지 않음):

기관의 관할권에 맞는 준수 문서가 필요하시면 privacy@vivaproof.com 으로 문의해 주세요.

섹션 3. 데이터 및 AI 윤리

교육에서의 AI에 대한 저희의 접근

항상 교사가 결정합니다

Viva의 모든 AI 생성 성적과 피드백은 참고용입니다. 모든 성적의 책임은 교사에게 있으며, 교사는 언제든, 어떤 이유로든, 설명 없이 AI 제안을 무시하고 바꿀 수 있습니다.

투명성

Viva가 제안 성적을 생성할 때 AI는 그 이유를 설명하는 구조화된 근거도 함께 만듭니다. 학생은 소속 기관을 통해 자신의 인터뷰 녹음과 트랜스크립트에 대한 접근을 요청할 수 있습니다.

카메라 기반 무결성, 그리고 저희가 넘지 않는 선

책임 있는 데이터 이용

저희는 학생 데이터를 절대 판매하지 않습니다. 광고에 사용하지 않습니다. 기관의 명시적인 서면 허가 없이 AI 모델 학습에 사용하지 않습니다.

학생의 목소리와 주체성

학생은 첫 인터뷰 전에 개인정보처리방침의 학생과 가족을 위한 안내를 통해 Viva가 어떻게 작동하는지 안내받습니다. 학생은 음성 녹음에 명시적으로 동의합니다. 음성 ID와 카메라 확인은 각각 해당 기능의 데이터가 실제로 수집되는 시점에 별도의 독립된 동의가 필요하며, 학생은 언제든 불이익 없이 거절하거나 철회할 수 있습니다. 학생은 자신의 녹음에 대한 접근을 요청할 수 있습니다. 평가에 대한 우려를 담당 교사에게 제기할 수 있습니다. Viva는 학생에 관한 교육적 결정을 내리지 않으며, 그 결정은 기관이 내립니다.

문의

저희의 보안 관행, 준수, 또는 AI 윤리에 대한 질문은:

privacy@vivaproof.com
Viva Proof, Inc., Boston, MA, USA
vivaproof.com/legal/trust-center

© 2026 Viva Proof, Inc. All rights reserved.
함께 보세요: 개인정보처리방침 · 이용약관 · 이용 정책.