Classroom GuardianComplete product guide

One source for product evaluation

See the whole platform before you schedule a call.

This guide documents current Classroom Guardian capabilities, the people who can use them, the deployment model, plan boundaries, and known gaps. It is written for school technology, teaching, safeguarding, privacy, and procurement teams.

FilteringDomains, paths, categories, classes, groups, and explicit priority
Live screensClass-scoped viewing with current page and teacher action
Tab controlsOpen, close, focus, message, and reusable scenes
District controlsShared policy, connected schools, and emergency scenes

Complete feature matrix

Implemented capabilities, stated precisely.

"Available" means the capability exists and is enabled by the applicable plan. It does not mean every configuration or district scale has been independently validated.

01

Web filtering and access

Policy that follows the managed student identity and current class.

CapabilityWhat it doesPrimary userStatus
Exact, wildcard, and path rulesAllows or blocks a complete domain, matching subdomains, or a specific website section.School administratorAvailable
Policy prioritySchool allow rules take priority, then school blocks, class and group rules, managed catalogs, and automated signals.School and districtAvailable
Managed categoriesApplies platform-maintained categories with school and district decisions.AdministratorAvailable
Proxy and bypass defenseCombines the managed proxy catalog, exact/wildcard/path rules, and proxy or evasion signals. Known matches can be enforced; uncertain new sites remain allowed while awaiting administrator review.AdministratorAvailable
Unknown-site reviewKeeps unknown sites allowed by default and sends uncertain classifications for human review.Platform and school adminAvailable
Safe YouTubeApplies strict restricted mode and suppresses Shorts, comments, and live chat in supported managed Chrome and Edge sessions.School administratorAvailable
Blocked-page access requestsLets students request access and staff approve a bounded class or student exception.TeacherSchool plan
Temporary unlock credentialsCreates time-limited username, password, and key access that can be revoked.Teacher or administratorSchool plan
02

Classroom monitoring and control

Teacher tools remain limited to assigned classes and enrolled students.

CapabilityWhat it doesPrimary userStatus
Live student screen wallShows current class-scoped screen images, page title, URL, connection state, and latest capture time.TeacherSchool plan
Student screen detailOpens a larger current image with active-tab context and actions for the selected student.TeacherSchool plan
Paused-frame annotationLets a teacher pause the current frame, draw with adjustable color and brush size, clear marks, and download the annotated image. Marks remain local to the teacher view and are not sent to the student.TeacherSchool plan
Open and close tabsPushes a URL or closes a selected active tab for one student or the class.TeacherSchool plan
Focus and messagingFocuses students on a resource and sends announcements, private messages, or shared links.TeacherSchool plan
Classroom scenesSaves approved sites, blocked distractions, starting URL, tab limit, and automatic expiration.TeacherSchool plan
Ready-made policy profilesLoads Elementary Focus, Middle and High School Focus, Open Research, Video Lesson, or Assessment Preparation category decisions into a class policy for teacher review before saving. Administrator-locked categories remain unchanged.TeacherAvailable
Co-teachersAdds another authorized teacher to the same class without expanding access to unrelated classes.TeacherSchool plan
Digital hall passesIssues a student pass with a destination, duration, current status, and class-scoped history.TeacherSchool plan
Assessment modeApplies time-limited assessment resource restrictions to an authorized class.TeacherSchool plan
Explicit recordingRecords a selected screen only when the school enables recording and a teacher starts it.TeacherSchool plan
03

Safety, writing, reporting, and operations

Evidence supports trained people; automation does not make disciplinary decisions.

CapabilityWhat it doesPrimary userStatus
Safety CenterCombines staff reports, student reports, and deduplicated sensitive signals in a scoped review queue, including self-harm, violence, exploitation, substance, and bullying or harassment patterns.Teacher and school adminSchool plan
Safety case workflowSupports assignment, acknowledgement, escalation, resolution, dismissal, reopen, notes, and audit history.Authorized school staffSchool plan
Explainable review priorityOrders the queue with a visible triage score, contributing factors, repeated-signal correlation, response target, and overdue state. It does not diagnose or decide.Authorized school staffSchool plan
Essay DetectionAnalyzes long submissions, passage consistency, quoted material, prior context, and humanizer-associated signals; it can abstain.TeacherOptional
Daily, weekly, and monthly class insightsLets teachers switch between 1-, 7-, and 30-day website, learning-time, active-student, and block summaries.TeacherAvailable
Student history and CSV exportShows recent activity with website names, actions, and timestamps and exports a bounded record.School administratorAvailable
Student activity trendsCompares descriptive 7-, 30-, and 90-day time, visit, website, and blocked-event totals, a 13-week activity history, and current-versus-prior website patterns. It does not predict risk or infer intent.School administratorAvailable
Activity investigations and audited exportsFilters school-scoped records by student, class, group, activity, reported platform, website text, and 1-, 7-, 30-, or 90-day window. The console shows the newest 250 matches; CSV exports include up to 5,000 and record the administrator, scope, time, and exported row count.School administratorAvailable
AI governance dashboardShows a rolling 30-day aggregate view of classifier versions, recommendations, approval volume, abstentions, Essay Detection review routing, safety-signal sources, and explicit human-decision boundaries. It does not present these operational measures as an independent accuracy benchmark.Platform administratorAvailable
Monthly school reportsGenerates school activity PDFs with optional school-controlled email delivery.School administratorSchool plan
Public service statusPublishes current component health, response measurements, incidents, and updates.IT and procurementAvailable

Role and permission model

Every workspace has an explicit boundary.

Role checks are enforced by the service, not only by hiding navigation.

Teacher

Assigned classes

Views enrolled students, current screens, class activity, access requests, classroom tools, writing evidence, and class-related safety reports.

Cannot browse another teacher's classes
School administrator

One school

Manages people, licensing, school rules, categories, deployment, reporting, retention settings, integrations, and school safety review.

Cannot access a different school
District administrator

Connected schools

Manages district rules, inherited category decisions, connected-school oversight, and time-limited emergency scenes.

District membership is required
Platform administrator

Service operations

Manages plans, school records, catalogs, final category decisions, billing, trials, and service operations.

Internal operational role

Administrator guide

A practical path from pilot to daily operation.

  1. 1
    Create the school boundary

    Confirm the school, plan, purchased student and teacher licenses, active administrators, retention choices, and approved domains.

  2. 2
    Connect identity and rosters

    Register staff, create or import students and classes, test Google sign-in, and validate Google Classroom sync where configured.

  3. 3
    Deploy the managed browser

    Build the school-specific package, choose the generated Google Admin, Windows, macOS, or Linux policy, and verify Chrome or Edge policy status on pilot devices.

  4. 4
    Publish policy deliberately

    Set school allow and block rules, review managed categories, configure Safe YouTube, and test precedence with approved URLs.

  5. 5
    Validate classroom workflows

    Test screen targeting, image refresh, open and close tab commands, scenes, access requests, teacher boundaries, and command acknowledgements.

  6. 6
    Review evidence and operate

    Reconcile reports, review uncertain site classifications, monitor service status, document safety responsibilities, and record the pilot decision.

Technical architecture

Separate paths for policy, events, commands, and screens.

The diagram describes the current service design. It is not a claim of independent scale certification.

Policy efficiency

Clients check policy status and download the compiled policy only when its version changes.

Targeted screens

A current screen target is issued only for active authorized viewing. Recording is a separate feature and action.

Outage behavior

If the policy service is unreachable, filtering is designed to fail open rather than silently block unrelated academic access.

Human approval

Automated category signals create recommendations. A platform administrator controls final managed-catalog publication.

Deployment and integrations

Managed-browser coverage across the devices schools already use.

Supported deployment

ChromeOS, Windows, and macOS

  • Google Admin policy for ChromeOS and Chrome
  • Windows registry policy for managed Chrome and Edge
  • Apple MDM configuration profiles for managed Chrome and Edge
  • School-specific package, update channel, and platform-aware device inventory
Compatibility deployment

Linux Chrome, Edge, and Chromium

  • Generated managed-policy JSON
  • Browser, operating system, architecture, and extension-version reporting
  • Requires pilot validation before a school-wide assignment
Available integrations

Google identity and Classroom

  • Google sign-in for registered users
  • Google Classroom class and roster workflows when configured
  • Connection, refresh, disconnect, and role behavior should be pilot-tested
Validate before procurement credit

Clever and ClassLink

  • Configuration surfaces exist
  • No public production-ready roster-sync claim
  • Require an end-to-end demonstration for the school's tenant
Important boundary

Browser-level coverage is not full MDM

  • No native system-wide Windows, macOS, or iOS agent
  • No network filtering appliance or full MDM product
  • No current Microsoft Teams, Canvas, Schoology, PowerSchool, Infinite Campus, or OneRoster connector claim

Reporting and evidence

Reports answer specific operational questions.

Class insights

Which websites were used, for how long, by how many students, and which actions or problems occurred during the selected 1-, 7-, or 30-day window?

Student history and trends

Which named websites and actions were recorded for an authorized student, how do 7-, 30-, and 90-day totals compare, and can the bounded history be exported?

Activity investigation

Which school-scoped records match a specific student, class, group, activity, reported platform, website, and time window—and who exported that scope?

AI governance

Which classifier and model versions ran, how often did systems abstain or route work to a person, and what decisions are reserved for platform, school, or teacher review?

Monthly school report

What activity, blocks, classifications, and operational summaries should the school administrator review each month?

Safety audit history

Who created, reviewed, assigned, escalated, resolved, dismissed, or reopened a school safety report?

Service status

Which components are currently healthy, what response measurements are visible, and what incidents have been published?

Current boundary

A multi-year district data warehouse, parent portal, weekly guardian reports, and dedicated compliance dashboard are not currently offered.

Published pricing

Budget without waiting for a sales quote.

Current public USD pricing uses active student email licenses. Devices are unlimited. Standard paid subscriptions use a one-year contract unless the signed order says otherwise.

Starter$3/student/month

Core filtering, activity records, managed game catalog, licensing controls, and scalable device services.

Teacher accounts$1/teacher/month

Purchased teacher accounts are calculated separately from active student licenses.

Essay Detection$0.50/student/month

Optional writing-review capability. District and custom plan terms may differ.

Current limits

Do not assume what is not documented.

No independent benchmark yet

No independent filtering, essay-accuracy, or large-district performance study is publicly claimed.

No public certification claim

No SOC 2 or equivalent independent security certification should be inferred.

No general public SLA

Require availability and response commitments in the signed agreement when they are procurement requirements.

No 24/7 crisis analysts

The Safety Center supports school staff; it is not outsourced human monitoring or emergency dispatch.

No hidden or OS-wide surveillance

The product does not offer keystroke logging, TLS decryption, or native application, USB, print, and full-device remote control.

No predictive student score

Activity trends describe recorded use; they do not predict risk, infer intent, or replace authorized staff review.

Last reviewed July 31, 2026. The live platform, public legal pages, current plan configuration, and signed school agreement control when they differ from this guide.