Your Data = Our Responsibility
We take data privacy seriously—like, really seriously. Our team is constantly leveling up our security game to protect your info and stay in step with the highest privacy standards out there.

SOC 2 Compliance at Find Your Grind
Find Your Grind follows the rigorous standards of SOC 2 compliance, which means our systems, processes, and policies are independently audited to ensure the highest levels of security, availability, processing integrity, confidentiality, and privacy. Your data is handled with industry-leading safeguards every step of the way.
VISIT OUR TRUST CENTER TO LEARN MORE!

CISA Secure by Design Pledge
Find Your Grind is proud to be a signer of the CISA Secure by Design Pledge, joining a national effort to build safer technology from the ground up. This means we’re committed to putting security first—baking it into every step of our design and development process to protect our users and help create a safer digital world for all.

FERPA Compliance at Find Your Grind
We are fully FERPA compliant, meaning we protect the privacy of student education records in accordance with the Family Educational Rights and Privacy Act. We only collect and use student data for educational purposes, never sell personal information, and ensure schools always retain control over their students’ data.

COPPA Compliance at Find Your Grind
Find Your Grind complies with the Children’s Online Privacy Protection Act (COPPA) by ensuring the privacy and protection of users under the age of 13. We collect minimal personal information, obtain required consent from schools or parents, and use data solely to support learning experiences in a secure, age-appropriate environment.
Find Your Grind Security Practices
At Find Your Grind, safeguarding student and educator data is a top priority. We’ve designed our platform and internal systems to align with the highest standards of security, privacy, and compliance.

Data Encryption & Protection
We use industry-standard encryption to secure data both in transit and at rest. Whether stored in our systems or moving across networks, sensitive information is protected and accessible only to authorized users.
Regular Security Audits & Assessments
To maintain a strong security posture, we conduct routine internal audits and work with independent third-party experts to assess our systems. These evaluations help us identify vulnerabilities early and stay ahead of evolving security threats.
Penetration Testing & Continuous Scanning
Find Your Grind partners with external security firms for annual penetration testing, simulating real-world attack scenarios. Additionally, we run continuous vulnerability scans to detect and address system weaknesses proactively.
Access Control & Authentication
We enforce strict access controls to ensure that only the right people have access to sensitive information. Our use of multi-factor authentication (MFA) and role-based permissions helps prevent unauthorized access at every level.

Secure Development Lifecycle (SDLC)
Security is built into every stage of our product development. Our engineering team follows a secure development lifecycle that includes code reviews, automated testing, and security checkpoints throughout the build process.
24/7 Monitoring & Incident Response
Our systems are continuously monitored for unusual activity. We leverage real-time alerts and automated monitoring tools, supported by a dedicated incident response team trained to act swiftly in the event of any potential threats.
Data Minimization & Retention
We follow data minimization principles, collecting only what’s necessary to deliver impactful learning experiences. Our data retention policies ensure information is stored only as long as needed to support schools and comply with applicable laws.

Employee Security Training
Every FYG team member completes security onboarding and annual training on secure data handling, cyber hygiene, and platform-specific safety practices—ensuring everyone plays a role in protecting user information.
Privacy & Transparency
We are committed to transparency and trust. Our Privacy Policy clearly outlines how data is collected, used, and shared. We never sell user data and only work with partners who meet our rigorous privacy and security standards.