Canvas establishes identity
Signed LTI 1.3 launches identify the Canvas tenant, deployment, user, course, and role.
For technical evaluators
Each system keeps the responsibility it is best positioned to enforce.
Signed LTI 1.3 launches identify the Canvas tenant, deployment, user, course, and role.
Instructor settings, course defaults, and school presets become the approved SEB configuration.
A current Config Key proof is required before the Canvas access code is released inside the approved session.
Canvas keeps its own authorization and assessment behavior while SEB enforces the device and URL policy.
These are the details most technical evaluators need before moving into installation and operations documentation.
NestJS 11 on Express, React 19 with Vite, and a Node.js 24 container.
PostgreSQL 17 stores assessments, courses, OAuth grants, sessions, transient state, operation locks, and administrator data.
Cloud Run with Cloud SQL and Docker Compose on a VPS use the same released container image and migration model.
Certificate wrapping is the stronger default. Compatibility mode supports instances that cannot distribute a private identity to BYOD devices.
v1.0.1 ships immutable release artifacts for Cloud Run and Docker Compose with checksums and provenance.
Safe Online Exam is source-available under PolyForm Noncommercial. Safe Exam Browser is a separate open-source project.
The marketing overview stops here. The security model and operator documentation retain the exact routes, variables, timing, deployment, and recovery details.
Launch validation, Config Key proof, secret handling, key custody, rate limits, and known limits.
Cloud Run, Cloud SQL, Docker Compose, PostgreSQL, migrations, cleanup, backup, and device responsibility.
The LTI identity and session bridge between Canvas and Safe Exam Browser.
The complete install, connect, verify, operate, troubleshoot, and reference path.
A demo can cover the user experience first, then move into deployment, device policy, source review, and operational responsibility.