Your student's story is yours. We do not sell family data, build advertising profiles from it, or use it to train AI models — unless a parent opts the household into Bloom's training program, which is off by default, described on the teaching-improvement program page, and can be left at any time with the contribution deleted. We disclose it only to people your family authorizes and the service providers needed to run Bloom.
How Bloom improves its teaching
Bloom keeps de-identified usage data about how its teaching is working — which lesson steps get retried, which misconceptions come up, how long a study session runs. It is kept under a pseudonym that never identifies a student, parent, or counselor, and it never includes names, emails, essays, chats, or journals.
It is used only to improve Bloom's teaching. It is never sold and never shared, and it is not used to train AI models: this is de-identified usage analytics, not training data. Bloom still does not use your family's content to train models, and that promise is unchanged.
A family can turn this off at any time in Settings, under “Help improve Bloom's teaching,” and what that family contributed is deleted. Our teaching-improvement program page lists exactly what is collected and what never is.
1. Who we are and what this covers
Bloom is a hosted college-guidance platform made by Taspara Solutions LLC (“Bloom,” “we,” or “us”). This policy covers the Bloom website, family accounts, counselor sharing, AI features, live sessions, and notifications.
Bloom is not a zero-knowledge service. Our systems must process readable data to show your plan, run the feature you request, support your account, export your records, or delete them. We say that plainly because “private” should not mean “mysterious.”
2. One family, one isolated database
Each household's private Bloom records live in its own family database, not beside other families' records in one shared family-data table. Uploaded files use a separate namespace assigned to that family. Login routing connects an authenticated account only to its household's store.
The control plane holds the limited information needed to route accounts, manage subscriptions, and secure sessions. Family databases hold the student's college journey. Keeping those jobs separate is a deliberate privacy boundary.
3. Information we collect
What Bloom holds depends on the features your family chooses to use:
- account details such as name, email, role, and sign-in provider identifier;
- student profile, school, course, grade, testing, interest, activity, goal, and citizenship information;
- college lists, visits, applications, deadlines, essays, notes, counselor-session records, and family planning;
- financial inputs used for aid estimates and scholarship ROI analysis;
- documents you upload, such as transcripts, score reports, and awards.
Bloom no longer runs an invitation waitlist: families sign up directly and start a free trial. Contact details submitted to the earlier waitlist are being retired, and are used for nothing else in the meantime. To have yours removed sooner, use the support channel described in section 13.
4. How we use information
We use information to provide and personalize Bloom, authenticate people, maintain the shared plan, run requested AI and document features, support live counselor sessions, match colleges and scholarships, estimate costs, send notifications an account holder chooses, prevent abuse, bill paid plans, answer support requests, and protect the service.
Public college and scholarship sources do not receive your student's data when Bloom looks up their information.
5. What the AI sees — and what it does not
When someone asks Bloom to use an AI feature, Bloom assembles the context needed for that request. Depending on the feature, this can include relevant profile facts, the current conversation, an essay passage being coached, or extracted text from a document the family selected.
The AI does not receive your password, sign-in token, payment card, or automatic access to browse the family's entire database. It receives the request context Bloom sends. Requests pass through Bloom's managed control plane to an AI request gateway, which routes them to the configured model provider. Bloom does not use prompts or responses to train models — unless a parent opts the household into Bloom's training program, which is off by default, described on the teaching-improvement program page, and can be left at any time with the contribution deleted.
Whether Bloom's background agent has anything worth saying at all is decided by rules in code, not by the model: when nothing in the family's plan has moved and nothing is due, the run ends before a single word is generated, and output the service cannot read cleanly is delivered to nobody.
Bloom also keeps its own working understanding of the family: short, durable conclusions such as “essays gain momentum after campus visits,” each recorded with the evidence it was drawn from. These notes stay inside the family's own database, follow the same privacy walls as everything else — a conclusion drawn from a student's private writing is withheld from parents — and are deleted with the family store. They are not hidden: the Memory Map in the app shows parents every connection Bloom has drawn, and its privacy lens shows exactly what the AI is shown after names, city, and exact income are stripped or bracketed.
AI can be wrong or out of date. Bloom may research public sources and show citations, but families should verify important deadlines, costs, eligibility rules, and requirements with the official source.
6. Parents, students, counselors, and sharing
Parents or guardians manage the household. Students use their own login and see the parts of the family plan intended for them. Additional parents can have separate logins. A family may invite or share selected journey context with a counselor through a permissioned link or live session.
The wall runs in the student's direction too, and it is enforced in code rather than left to good manners. A student's Journal and Rewind are private to their own login: a parent sees counts, such as three journal entries this month, never the words. Chat conversations belong to whoever opened them, so a parent's conversations with Bloom and the student's are not visible to each other; when Bloom recalls an earlier conversation to answer a new question, it recalls only conversations the person asking opened themselves. A student who has claimed their own login can also turn on privacy mode, which withholds essay drafts from the household — and only that student can turn it on or off, because a switch a parent can flip is not privacy. What a parent sees is how the journey is going: progress, deadlines, and what is coming next, not a transcript of everything typed.
We do not make a student's record public. A counselor can see only the family content made available through that relationship. Families should treat a share link like any other private invitation and remove access when it is no longer needed.
7. The companies that help us operate Bloom
We use a short list of service providers for specific jobs. They process information under their own terms and our instructions:
- Our cloud infrastructure provider — application hosting, managed databases, and hosted storage infrastructure;
- An AI request gateway — routing requested AI prompts and responses to the configured model provider;
- Our email delivery service — sending account emails and optional notifications;
- Stripe — processing subscription payments; Bloom does not receive full payment-card numbers; and
- the sign-in provider you choose, such as Google, for authentication.
The complete, named list of these providers is available to any family on request. We may replace a provider when needed to operate the service responsibly. If that materially changes how family data is handled, we will update this policy.
8. Email notifications are account-controlled
Each parent, student, or counselor controls their own email-notification preferences in Bloom. Turning email off does not turn off essential account, security, billing, or legal messages. One family member's choice does not silently subscribe every other family member.
9. Students and minors
Bloom is built for families guiding high-school students, many of whom are minors. A parent or legal guardian creates and manages the household and authorizes a student's use. A child under 13 may not independently create or manage a household.
We handle minors' information only to provide the family-directed service, not to advertise to children, sell profiles, or train models — unless a parent opts the household into Bloom's training program, which is off by default, described on the teaching-improvement program page, and can be left at any time with the contribution deleted. If you believe a child provided information without appropriate parent or guardian involvement, contact us so we can investigate and remove it where required.
Bloom does not claim a COPPA certification, SOC 2 certification, or any certification we have not earned.
10. Security and retention
Bloom uses encrypted transport, access controls, isolated family databases, namespaced file storage, rate limits, audit records, and revocable signed sessions. No online service can promise perfect security.
We retain family content while the account is active and as needed to provide exports, resolve billing or security issues, and meet legal obligations. A verified whole-family deletion makes the family store unroutable, removes its file namespace and database, and deletes its identity and routing records. Narrow fraud-prevention, payment, security, or legal records may remain where required.
Contact details left with the retired invitation waitlist are kept only until that retirement is complete, or until you ask us to remove yours sooner.
11. Access, correction, export, cancellation, and deletion
Families can correct information in Bloom, control email notifications, cancel a paid plan at any time, request a portable data export, and request deletion of the whole household. A student export masks household financial fields. Whole-family deletion is a parent or guardian instruction.
Canceling a subscription stops future renewal but does not, by itself, delete the family's records. This gives a family time to export before closing the account. Tell us separately when you want deletion.
12. Cookies and basic technical data
Bloom uses necessary cookies for sign-in, secure session state, account setup, and preferences. Signup rate limits use the request's network address to count attempts, but Bloom does not store that address with the account it creates. We do not use third-party advertising cookies.
13. Changes and questions
We may update this policy as Bloom changes. We will change the date above, and a material change to the legal documents used inside the app will require a fresh acceptance.
For account data — including export, deletion, and removal of a contact detail left with the retired waitlist — use the support channel shown inside Bloom. We verify requests before disclosing or deleting family data.
See also our Terms of Service and Data & Disclaimers.