u/CoffeeandChecklist

Canvas: things to do

  1. Do not take their status page as truth for a secure environment

  2. Terminate all API access - your SIS, Google, Microsoft…

  3. Terminate your SSO connections

  4. Block traffic

  5. Call your insurance and state agency

  6. Tell your district YOU do not feel comfortable with allowing access. Your job is to protect data, do it. Yes it’s inconvenient for staff but there are alternatives. Google Classroom, Teams, paper and pencil.

  7. Notify staff and families if you haven’t

  8. Check your canvas API logs for anything strange

  9. Advocate for the safety and security of your data. They’ve been breached TWICE in less than a week.

Lean into your community. We’re all here to support one another.

reddit.com
u/CoffeeandChecklist — 5 days ago