Effective Date: 2026-09-03
Last Updated: 2026-09-03
This policy covers the proctoring product only: the Endpoint Proctoring Chrome extension, the candidate check-in flow, and the exam monitoring that goes with them. For our device-monitoring and BYOD product, which is a separate service with its own desktop agent, see https://endpoint.solutions/privacy.
This Privacy Policy describes how Endpoint Solutions ("we", "us", "our") collects, uses, stores and shares information when you take a proctored examination that uses the Endpoint Proctoring Chrome extension ("the Extension") and the Endpoint check-in flow.
We provide this service to the institution, employer or certification provider that administers your exam. That organisation decides that your exam will be proctored, chooses several of the settings described below, and reviews the results. In this policy we refer to it as "the institution".
The Extension is distributed through the Chrome Web Store at
https://chromewebstore.google.com/detail/endpoint-proctoring/idhddiimegopogcbepnbbipjkojdnnbm.
During a proctored exam the Extension records a continuous video stream from your camera, at approximately 1280x720 and 15 frames per second.
Your microphone is recorded as part of that stream. The camera recording is encoded with both a video track and an audio track, and both are uploaded to our servers in short segments, roughly every five seconds, for the duration of the exam. The audio is retained with the video and is available to reviewers. It is not automatically analysed, transcribed or matched against anything.
The Extension also records your screen or browser window continuously, at up to 1920x1080 and up to 10 frames per second, and uploads it in the same way. The screen recording captures video only - no system audio and no tab audio is included.
Whether the screen recording is kept after the exam is an institution setting. Where the institution has not enabled screen-recording retention, the screen recording is deleted from our servers when the exam session is finalised.
Separately from the recordings above, the Extension captures a still image from your camera - 640x480, JPEG - starting 60 seconds after monitoring begins and then approximately every 30 seconds for the rest of the exam.
Each of these frames is sent to our servers and then on to OpenAI for automated analysis (see section 4.1). The frames themselves are not stored; only the result of the analysis is kept - an event record and any violation it raises.
Before the exam starts, the check-in flow captures and stores:
Accepted formats are JPEG, PNG and WebP for images and WebM for video. Stills are limited to 10 MB each and the room-scan video to 50 MB.
You may be permitted up to three check-in attempts. The media from every attempt is stored, not only the attempt that succeeded.
The identity document, the five selfie frames and all six room-scan photographs are transmitted to OpenAI for automated verification, as described in section 4.1. The room-scan video is not sent to OpenAI.
While the exam is in progress, the Extension monitors and reports:
These monitors become active only on the armed exam page and on the check-in pages. They are not active on other sites you visit.
We collect:
When you accept the exam rules and the recording notice, we record that you accepted, the time you accepted, the IP address you accepted from, and the point in the flow at which you accepted.
Your name and email address are supplied to us by the institution or the exam platform when your session is created, so that the session can be matched to you. We store them with the session record.
To be clear about the limits of the monitoring:
Your exam and check-in imagery is sent to OpenAI. This is the most significant third-party disclosure in this policy, and it applies to every proctored session.
We send the following to OpenAI's API (api.openai.com), using the gpt-4o-mini model:
The camera recording, the microphone audio, the screen recording and the room-scan video are not sent to OpenAI.
This analysis cannot be switched off by the institution and there is no candidate opt-out. If the analysis service is unavailable, check-in fails rather than continuing without it.
The institution has a console of its own. In that console it can see a list of its exam sessions, and for each session your name, your email address, the exam name, the session status, the date and your compliance score. The console does not show your check-in media, your recordings, or the detail of individual violations.
The institution receives the fuller record through the channels below, not through that console.
Where the institution has configured a notification endpoint, we send that endpoint a summary at the end of your session. It contains your name and your email address, the exam and course names, your compliance score, every violation with its description, and a reference to each recording. Those messages are cryptographically signed. If the institution configures an endpoint that does not use HTTPS, that information travels without encryption.
Where the institution has not configured its own storage bucket, that summary can include a time-limited download link to a recording. The link is valid for seven days and requires no login, so anyone who holds it can download the recording during that period.
The institution can configure its own Amazon S3 bucket, or an S3-compatible bucket, in which case we copy your recordings into its bucket. The stored object carries metadata that includes your email address. Once a recording has been copied successfully, our own copy is deleted.
Where the institution configures a bucket that is not Amazon S3 but an S3-compatible service at an address of its own choosing, we do not verify the certificate of that address when we upload.
We do not operate an object-storage bucket of our own for proctoring recordings.
Where your exam is delivered by an integrated exam platform - for example TrueAbility - we send that platform your session identifier, your compliance score, the list of violations with their descriptions, severities and timestamps, and the type, duration and storage reference of each recording. We also use that platform's interface to start, pause, extend or stop your exam at the institution's direction.
Where your exam is launched from a learning management system over LTI, we report violation flags to that system, including a severity and a reason description, and we report identity-verification failures with a reason code. Where recordings have been copied to an institution-controlled bucket, we register the bucket name and the object key with that system. We do not send the recording data itself and we do not send a download link.
We may disclose information where the law requires it - in response to a court order or other legal process, or to a government authority acting with proper authority - and where it is necessary to protect our legal rights or to prevent fraud or a security threat.
We use the information described above to:
The Extension does not end your exam. It records and reports. A human reviewer and the institution decide what follows, and any termination is carried out by the exam platform.
/storage/ path on our servers are refused outright.Our application enforces HTTPS for all connections in production, so your information is encrypted while it travels between your browser and our servers, and while it travels to OpenAI.
We prefer to be accurate here rather than reassuring.
Our system does not currently perform any automated deletion of proctoring data based on age. There is no scheduled job, task or timer that removes exam sessions, check-in media, recordings, violations or event logs after a set period. Your check-in media, your recordings, your violation records and your event logs are retained until the institution or we delete them, and a deletion request is carried out by hand.
The deletions our system does perform are operational, not time-based:
Deleting a session record from our database does not remove any copy that an institution already holds in its own bucket. That copy is subject to the institution's own retention practices.
If you want your proctoring data deleted, contact the institution that administered your exam, or write to us at the address in section 12. We will act on a verified request.
Where you are in a jurisdiction that gives you statutory rights over your personal information - for example under the GDPR or the California Consumer Privacy Act - those rights apply, and we will act on a verified request. Note that the institution has its own obligations as the organisation that decided to proctor your exam, so a request that concerns the exam record itself is often best directed there.
These are the measures our system applies:
To avoid a misleading impression: we do not currently apply application-level encryption to stored check-in media, to recordings, or to the session fields that hold your name and email address. Those rely on the protections of our hosting platform and our database. Administrator access is single-factor, as section 8 states.
If we become aware of a breach that affects your information, we will notify the institution and, where we are required to, you and the relevant authorities.
Children. This service is not directed at children under 13 years of age. Where an exam involves a minor, the institution is responsible for obtaining any consent that the law requires, including under COPPA and FERPA.
International transfers. Your information can be transferred to and processed in countries other than the one in which you sit the exam, including the United States. In particular, the automated image analysis described in section 4.1 is performed by OpenAI in the United States.
California. If you are a California resident, you have the right to know what personal information we collect and how it is disclosed, to request deletion, and not to be treated differently because you exercised those rights. We do not sell personal information.
Endpoint Solutions - Proctoring
Email: support@endpoint.solutions
Suggested subject line: "Proctoring Privacy Request"
For the device-monitoring and BYOD product, see https://endpoint.solutions/privacy.
The Extension requests these Chrome permissions, and it uses all of them:
The Extension also declares an optional permission to access any HTTPS site. Because it is optional, Chrome does not grant it when you install the Extension. It is requested only if you press the button that allows it, only for the single web address that hosts your exam, and only where the launching institution's own configuration vouches for that address. The Extension gives the permission back when the exam session ends.
The Extension contains no remotely loaded code.
When you install the Extension and complete check-in, you acknowledge that you have read this policy, that you understand what is collected and who receives it, and that you agree to the collection and the use described here for the purpose of sitting a proctored exam.
We can update this policy. When we do, we will change the "Last Updated" date at the top and record the change in the table below. The current version of this policy is the one that applies to your exam, and it is the version linked from the Extension's Chrome Web Store listing. Where a change is material, we will tell the institutions that use the service.
Our consent record keeps the fact that you accepted the exam rules, the time and the IP address. It does not keep a copy of the text you accepted or a version number for it, so we cannot show which revision of this policy was in force for a past session.
| Date | Change |
|---|---|
| 2026-09-03 | First published version. Rewritten against the current system. Corrected the description of how check-in media is stored and protected; disclosed the OpenAI image-analysis processor and exactly what is sent to it; disclosed the capture of clipboard text, full web addresses and IP addresses; replaced the stated 30-day and 90-day retention periods with an accurate statement that no automated age-based deletion is implemented; and removed claims of multi-factor authentication, at-rest encryption, end-to-end encryption, security certification and audit programmes that the system does not implement. |
If you have a question about this policy, or about the data we hold, write to support@endpoint.solutions.
(c) 2026 Endpoint Solutions.
This policy covers the Endpoint Proctoring browser extension and exam sessions. The policy for the Endpoint device-monitoring platform is at /privacy.