Self-hosting

Run Safe Online Exam on your infrastructure.

Choose the released Google Cloud or Docker Compose path, then own availability, upgrades, backups, secrets, and support.

Two maintained deployment paths

Choose the operating model that fits your team.

Both packages use the same product capabilities and database model. The difference is how your institution provisions, scales, and supports the service.

Google Cloud

Cloud Run and Cloud SQL provide the recommended cloud architecture, with separate migration, runtime, and scheduled cleanup responsibilities.

Read the deployment guide

Docker Compose

A Linux VPS runs the same application image with PostgreSQL 17, public HTTPS ingress, secrets, migrations, cleanup, and backups.

Read the deployment guide

Shared release architecture

  • The same released application image
  • PostgreSQL 17 for durable and transient state
  • A migration step before application traffic
  • Scheduled bounded cleanup for expired records

What self-hosting includes

The software is available. Your team owns the operation.

Installation is one part of a dependable service. Plan the application, Canvas, devices, and exam-window support as one implementation.

Application and database

Deploy the released image, run migrations before traffic, monitor readiness, back up PostgreSQL, and plan upgrades and rollback.

Canvas configuration

Create the LTI and API OAuth keys, install the app at account scope, configure the deployment ID, and load the detector script.

Device strategy

Distribute the private certificate identity for the strongest device binding or explicitly choose compatibility mode for BYOD devices.

Support process

Own student readiness, instructor questions, exam-window response, incident handling, and coordination with Canvas and device teams.

Managed fleets and BYOD

Certificate encryption is recommended, not a BYOD exclusion.

For managed devices, distribute the private certificate identity through MDM to bind the downloaded configuration to approved clients. If that is impractical for personal devices, compatibility mode is a supported choice that preserves the remaining launch, proof, URL, and lockdown controls.

Make the device decision before rollout

  1. 1Identify the macOS and Windows versions your institution supports.
  2. 2Decide whether MDM can distribute a non-extractable client identity.
  3. 3Test the selected mode with real student devices and supported SEB releases.

Release package

Safe Online Exam v1.0.7 is available now.

Download the Cloud Run or Docker Compose bundle, review its checksums and provenance, and follow the operator documentation for setup and verification.

Want the product without owning the platform?

Managed hosting provides the same capabilities with the service operation handled for your institution.