New QuantoByte is building the future of learning and assessment.
Explore the platform
PRIVACY & DATA PROTECTIONEffective Date: August 2026

Privacy Policy

Comprehensive information on how QuantoByte collects, processes, secures, and retains your identity, source code submissions, and assessment metrics.

1. Scope & Data Controller

QuantoByte Inc. ("QuantoByte", "we", "us", or "our") provides a developer education platform, automated code execution engine, and institutional assessment infrastructure. This Privacy Policy governs all personal data processed when you visit quantobyte.com, register for an account, participate in proctored coding assessments, or access our cloud IDE runtimes.

For institutional subscriptions managed by universities, colleges, or enterprise training programs, QuantoByte acts as a Data Processor, and the contracting institution acts as the Data Controller under applicable data protection frameworks including GDPR, FERPA, and CCPA.

2. Information We Collect

We collect information necessary to deliver seamless code evaluation and educational metrics:

A. Information You Provide Directly

  • Account Credentials: Full name, institutional or work email address, organization name, role (student, educator, admin), and encrypted password hashes.
  • Profile Metadata: Programming language preferences, bio details, connected GitHub or LinkedIn profile links.
  • Communications: Messages sent via support tickets, contact forms, or feedback inquiries.

B. Automated Assessment & Code Telemetry

  • Source Code Submissions: Code snippets, multi-file solution repositories, test execution output (stdout/stderr), runtime duration, and memory utilization statistics.
  • IDE Telemetry: Code typing frequency, error diagnostic occurrences, hint requests, and problem completion velocity.
  • Proctoring & Integrity Signals: Browser tab switch timestamps, copy-paste event counts, and focus loss duration during active timed assessments.

C. Technical & System Logs

  • Device IP address, operating system, browser user-agent, session tokens, HTTP referral headers, and API call latency logs.

3. Source Code Privacy & AI Model Guarantee

Strict Code Isolation Promise: Your submitted code repositories and assessment solutions belong to you or your institution. QuantoByte does NOT sell student source code, nor do we use private institutional repositories to train public commercial AI models.

Code submitted during assessments is processed transiently inside isolated containers solely to run test cases, generate automated feedback, and compute objective grading rubrics.

4. How We Process & Use Data

We process your data strictly under the following legal bases and operational requirements:

  • To execute untrusted source code safely inside containerized micro-VM sandboxes.
  • To compute real-time test pass rates, algorithmic complexity scores, and automated grading reports.
  • To provide faculty and institutional administrators with cohort performance analytics and accreditation metrics.
  • To deliver adaptive AI assistance, intelligent bug diagnostics, and customized learning recommendations.
  • To maintain zero-trust cloud infrastructure security and prevent denial-of-service or malicious container escape attacks.

5. Data Retention & Automatic Destruction

We retain personal data and code execution logs only for as long as necessary to fulfill educational SLAs or as dictated by institutional contract terms:

  • Active Account Data: Retained while your student or institutional account remains active.
  • Transient Execution Containers: Destroyed instantly upon completion of test case evaluation (max container TTL: 30 seconds).
  • Assessment Telemetry: Retained for 12 months following academic cohort completion, after which logs are anonymized or purged.

6. Encryption & Storage Security

QuantoByte implements enterprise-grade physical, technical, and administrative safeguards:

  • Data in Transit: Encrypted using TLS 1.3 with modern cipher suites.
  • Data at Rest: Encrypted using AES-256 across all primary database clusters and cloud backups.
  • Isolation: Code execution runtimes run in isolated gVisor/Docker sandboxes with zero external network egress.

7. Third-Party Sharing & Sub-processors

We do not sell, rent, or trade your personal data. We share data only with verified sub-processors necessary to operate our cloud infrastructure (e.g. AWS/GCP for hosting, Cloudflare for WAF DDoS protection, SendGrid for transactional emails). All sub-processors undergo strict security vetting and are bound by data processing agreements (DPAs).

8. Your Privacy Rights

Depending on your jurisdiction, you hold the following rights regarding your personal data:

  • Access & Export: Request a copy of your personal data and code submission history in a structured JSON/CSV format.
  • Correction: Update inaccurate account details or institutional affiliations.
  • Erasure ("Right to be Forgotten"): Request the complete deletion of your account and personal telemetry logs.

9. FERPA & Educational Compliance

For educational institutions operating in the United States, QuantoByte complies fully with the Family Educational Rights and Privacy Act (FERPA). Student educational records are handled as confidential data under institutional direction.

10. Contact Our Data Protection Officer

If you have questions, concerns, or data erasure requests regarding this Privacy Policy, please contact our Data Protection Officer at:

QuantoByte Privacy Office
Email: privacy@quantobyte.com
Response SLA: Within 24-48 Business Hours