What Course++ can and can't see
Version what-it-can-see-1.0.0 · in force from 18 September 2026
Short answer: it reads the course content you write. It cannot read anything about your students.
Here is exactly what that means.
01
What it cannot read
Course++ refuses these before it even builds a request. Not "we choose not to" — the request is never made.
- Grades and the gradebook
- Student submissions and quiz responses
- Your roster — who is enrolled, their names, their email addresses
- Discussion replies your students wrote
- Course analytics and per-student statistics
- Your Canvas inbox and messages
33 address patterns, refused on every kind of request.
02
What it does read
The content you create and manage:
- Pages, assignments, quizzes and question banks
- Modules and their items
- Discussion topics — the prompt you wrote, never the replies
- Files, the syllabus, and course settings
03
Don't take our word for it — run the tests
We publish the actual list of blocked addresses and a test suite that proves each refusal works.
It is small enough to read in a few minutes. It is generated from the shipping source code, so it cannot drift away from what the product actually does.
We do not know of another tool in this category that publishes this.
04
Three more things worth knowing
It never sees your Canvas password or an API token. Course++ works through the Canvas session already open in your browser. There is nothing to generate, paste or store, and no IT request to file.
It does not grade. Course++ builds course content. It makes no judgment about student work — it cannot read student work in the first place.
Personal data is stripped from everything it reads. Course content can legitimately contain someone's email address or phone number — a TA's contact details in a syllabus, say. Course++ removes those before anything is sent to the AI. This runs on everything, every time, and nothing in the product can turn it off.
It is a pattern filter, not a mind reader. It cannot recognise a person's name written in an ordinary sentence.
05
The one thing you control, and should think about
Course++ lets you attach a file — a chapter PDF, a scanned handout, a photo of a whiteboard — so it can build from your own material.
Whatever you attach goes to the AI model, the same as anything you type. The address blocking above protects what Course++ fetches from Canvas. It cannot look inside a file you hand it.
So: don't attach student work, grades, or a roster export. We say this at the moment you attach something, and we are saying it again here.
06
A note on FERPA
We are often asked whether Course++ is "FERPA compliant."
FERPA places obligations on educational institutions, not on software vendors, and there is no such thing as a FERPA certification for a product. So we do not claim one — the claim would be meaningless, and you should be wary of any tool that makes it.
What we can do is tell you precisely what the software touches, and let you verify it. That is what this page is.
If your institution has policies about third-party AI tools, please follow them. We cannot know what your institution allows.
07
Questions
CoursePlusPlus LLC · 392 E Todd Pl, Washington, UT 84780 · 435.817.7873
Course++ is not affiliated with, endorsed by, or sponsored by Instructure, Inc. Canvas is a trademark of Instructure, Inc.