Get Full Government Meeting Transcripts, Videos, & Alerts Forever!
Get email alerts on the Policies topic
No spam. Unsubscribe anytime.
Board tables policy 05-24 after security concerns; approves other policy edits
Summary
Board members reviewed multiple policies. A security-minded member objected to language in draft policy 05-24 suggesting account information and passwords be kept 'on file' with an official; the board will seek MSBA/legal clarification and table that policy. Three other policies moved forward after edits.
Get email alerts on the Policies topic
No spam. Unsubscribe anytime.
During second-reading policy review, the Houston Independent School District 294 board flagged technical and legal concerns in the draft internet acceptable use policy (referred to as policy 05-24).
A board member said the policy’s wording reads, in part, “users must keep all account information and passwords on file with the designated school district official,” and called that a “huge red flag,” arguing that passwords should be encrypted and administrators should not know students’ passwords. Colleagues and administrators discussed alternatives: forced password reset mechanisms, third-party encrypted systems, and administrative reset privileges that do not reveal the actual password. The board directed staff to consult MSBA and legal counsel and to table policy 05-24 until clarifying language is provided.
Separately, the board reviewed several other policies for formatting and missing contact information (including policies 5-15, 5-16, 5-21 and 5-32). Members asked staff to correct typographical issues, add missing coordinator contact information in policy 521, and confirm legal alignment for sections that appear tailored to specific statutory contexts. The board then approved a set of policies on second reading (three items noted in the meeting), with a motion by Nikki and second by Mark.
Board members asked staff to return with revised language that (1) removes any implication that administrators store plaintext passwords, (2) documents acceptable administrative reset procedures and encrypted vendor arrangements, and (3) clarifies which notes or cross-references should be retained in district policy documents.

