Formative assessment that lives inside your own tenant

Nurture, deployed inside your own tenant: your Entra ID, your Azure OpenAI, your region. Assessments and Signal run inside the tenant your IT team controls; the enterprise option for school organisations, dioceses and education authorities.

Diagram: a boundary labelled “Nurture, inside your tenant” contains the three things that stay inside it: your logins, single sign-on with existing accounts; your own AI resource, where all AI inference runs so no data leaves the tenant; and your data, meaning student work, feedback and results held in your tenant and region.

  • Data sovereignty
  • In-region AI
  • Your identity
  • Admin control
  • Revocable access
  • Data residency
  • One-week setup
  • Data sovereignty
  • In-region AI
  • Your identity
  • Admin control
  • Revocable access
  • Data residency
  • One-week setup
  • Data sovereignty
  • In-region AI
  • Your identity
  • Admin control
  • Revocable access
  • Data residency
  • One-week setup
Why on-tenant

Everything an on-tenant deployment gives you.

The same Nurture your teachers know, Assessments and Signal, running under the governance your organisation already trusts.

Your platform

Runs inside your Microsoft or Canvas environment.

Nurture installs into the environment your school already runs, Microsoft or Canvas, so it lives inside the tenant your IT team controls, and teachers work with it right inside Teams or Canvas.

Nurture deploys into either a Microsoft Teams tenant or a Canvas tenant.

Nurture Microsoft Teams Canvas

Deployed on-tenant

Already running on-tenant.

Education offices and school systems already run Nurture inside their own tenant, the same apps their teachers rely on, under their own governance.

Toowoomba Catholic Schools logo

Toowoomba Catholic Schools

Catholic Education Western Australia logo

Catholic Education Western Australia

Catholic Education Archdiocese of Canberra & Goulburn logo

Catholic Education Archdiocese of Canberra & Goulburn

Technical FAQ

What data does Nurture store, and where?

Nurture handles the assessment, feedback and classroom data your apps generate: tasks, student work and results in Assessments, and the checks and responses in Signal. On an on-tenant deployment this is held inside your own tenant, so it stays in the environment you control. If your review needs the exact storage service and record-level detail in writing, contact us and we will provide it.

What permissions does Nurture request in our tenant?

Nurture is installed as a Microsoft Teams app, so the permissions it requests are presented to your administrator for review at the point of consent, before any staff member can use it. We can supply the current permission list ahead of that if you would like to review it earlier in your process.

Can we review or revoke Nurture’s access?

Yes. Because Nurture is consented to like any other Teams app, your administrators can review its access and revoke it through the same Microsoft admin tooling they use for every other app in the tenant. No separate process, and no dependency on Nurture to action it.

Does any data leave our tenant for AI processing?

No. On an on-tenant deployment, all AI inference runs on your own Azure OpenAI resource, inside your tenant and region, so no data leaves it. On the standard hosted service, AI processing runs in a region Nurture operates in. We will confirm the exact configuration for your deployment in writing as part of your review.

What happens to our data if we stop using Nurture?

On an on-tenant deployment, data held inside your own tenant remains yours and stays under your control. The handling of anything processed outside it is governed by our Data Protection Agreement. See GDPR & DPA, and ask us for the agreement covering your specific deployment.

Do you sign a Data Processing Agreement, and where can we review it?

Yes. A Data Protection Agreement is available to schools. Our GDPR approach, sub-processor list and security policies are published in the Security Centre, and describe our standard hosted service. For an on-tenant deployment, ask us and we will provide the documentation covering your own environment.

Which identity providers do you support?

Single sign-on through Microsoft Entra ID, via the Teams-native install. Staff and students sign in with the accounts they already use, so your existing SSO, MFA and conditional access policies apply without additional configuration.

Bring Nurture to your organisation.

We provision into your tenant and stand it up with your IT team, typically within a week.