AI Education Operating System

Run your entire institute on one intelligent platform.

The single system schools and coaching institutes run their academic life on — admissions to exams to results — with a fully isolated tenant and an accountable AI workforce built in. One domain. One login. No bolt-on tools.

One domain, one loginIsolated per instituteEvent-sourced exams
The problem

Right now, your institute runs on a dozen disconnected things.

Spreadsheets, WhatsApp groups, paper registers, and half a dozen tools that don't talk to each other — with no real wall between your data and everyone else's. Every handoff is a copy-paste, and every report is done twice.

  • spreadsheet
    Marks in Excel
  • chat
    Notices on WhatsApp
  • register
    Admissions on paper
  • third-party
    A separate exam tool
  • manual
    Attendance registers
  • manual
    Reports typed by hand
  • scattered
    Student data everywhere
  • fragmented
    A login for every tool
The solution

Everything, connected on one intelligent core.

Testdona replaces the pile of tools with a single operating system — admissions to exams to results — that every role shares and the AI plugs straight into.

One domain, one login
Everyone signs in at testdona.com with a User ID. The backend resolves the organization, role and dashboard — no subdomains, no portal picker.
Fully isolated per institute
Every institute's data is walled off by Postgres row-level security. One tenant can never see another's — even through a bug.
An AI workforce, reviewed
Named agents draft questions and evaluate answers; a teacher approves. Nothing AI-made reaches a student unreviewed.
TOne workspace
  • Directory
    students & staff
  • Academics
    courses · batches
  • Exams
    author · publish
  • AI Agents
    draft · evaluate
  • Results
    auto-graded
  • Analytics
    live dashboards
  • Billing
    plans · invoices
  • Notifications
    email · in-app
One connected flow
How it works

From sign-up to results — one straight line.

Six steps, one system. Each hands off to the next automatically — no copy-paste, no second tool.

  1. Create your institute

    Register once — your organization, owner account, roles and a 14-day trial are provisioned in one step. You get an owner User ID to sign in with.

  2. Onboard students & staff

    The owner or a center head uploads the roster (or adds people one by one). Each account gets a generated User ID, a temporary password, and a batch/section.

  3. AI drafts your questions

    The AI Question Generator writes questions into a review queue — targeted to your exam — so a blank page is never where you start.

  4. A teacher reviews & approves

    Nothing AI-made reaches a student unreviewed. Approve, edit, or reject each item; only approved questions go into the exam.

  5. Publish, attempt, auto-grade

    Publish to a batch; students attempt on a timer. Every answer is an immutable event, and objective papers are auto-graded instantly — negative marking included.

  6. Analytics update themselves

    Scores, averages and activity flow onto live dashboards off the same event stream everything writes — no exports, no double entry.

AI
AI Question Generator
Role: teacher · Testdona AI
active
Tool allowlist
get_exam_contextpropose_questions

Every model call and tool call is written to an immutable agent_actions audit log.

  1. Agent drafts
    AI Question Generator proposes
  2. Human review gate
    A teacher approves, edits, or rejects
  3. Live to students
    Only approved questions ship
The AI workforce

AI that does real jobs — and answers for every one.

Not a chat widget bolted on the side. Named agents do real work — generating questions, reviewing them, evaluating written answers, and auditing answer keys — under the same rules your staff work under.

Every agent holds a role
An agent literally carries an RBAC role and can only call the APIs that role allows — the same engine that governs humans.
Declared tools, nothing implicit
Each agent ships with an explicit tool allowlist. It can't reach for anything it wasn't granted.
Reviewed, then audited
A human approves before anything reaches a student, and every model call and tool call is written to an immutable audit log.
Try it live

Auto-grading you can feel — right here.

Attempt this mini exam and hit submit. It grades instantly, shows the per-question breakdown, and applies negative marking — exactly like the real engine, no account needed.

TScience Quiz — Motion & Force
15:000/3
Q1. What is the SI unit of force?
Q2. An object at rest stays at rest unless acted on by an external force. This is…
Q3. Acceleration is the rate of change of…

Pick your answers — then submit to see instant auto-grading.

Under the hood

Everything an institute needs — on one core.

Exam engine

Objective & subjective, timed attempts, negative marking — every attempt event-sourced for audit-proof results.

DB-driven RBAC

Five roles with permissions stored in the database and cached — never a hardcoded role→permission map.

Metadata-driven screens

New admin screens and their APIs are generated from a definition, not hand-built per use case.

Analytics

Live dashboards read the same event stream everything writes to — no exports, no double entry.

Billing built in

Plans, trials, student limits, and online payments (Razorpay) — metering per institute.

Notifications

An email outbox plus an in-app feed, triggered by domain events — modules never compose messages themselves.

Isolation you can't break.

Four layers deep. One institute can never see another's data — even through a bug. The moment a query isn't scoped to a tenant, the runtime role sees nothing at all.

Fails closed by default

  1. Tenant-bound session
    Every JWT carries exactly one organization.
  2. Per-request guard
    Handlers resolve the org from the session, never the URL.
  3. Row-Level Security
    Postgres RLS scopes every query; the app role sees zero rows otherwise.
  4. Scoped references
    Foreign keys validate under RLS — a record can't point at another tenant's.
Where it stands

Built to obey the architecture — and still growing.

0
Isolation layers
0
RBAC roles
0
Domain & login
0%
Event-sourced attempts

Shipped

  • Single-domain login (User ID)
  • Multi-tenant RLS isolation
  • Event-sourced exam engine + auto-grade
  • AI agents with a human review gate
  • Owner-managed roster & bulk upload
  • Billing, notifications, analytics
  • Migrations, Redis, CI, tests

On the roadmap

  • Live proctoring
  • Mobile exam client (offline-capable)
  • More AI agents (insights & evaluation)
  • OMR & offline exams
  • Timetable & attendance
Pricing

Simple pricing. Every plan is the full platform.

Start free for 14 days — no card needed. Plans differ only by how many students you onboard; every feature is included on all of them.

Free Trial
₹0/ 14 days
Up to 25 students
Start free
  • Full exam engine (objective + subjective)
  • AI Question Generator + Evaluator
  • Live analytics dashboards
  • RBAC, roles & tenant isolation
  • Email + in-app notifications
Starter
₹999/ per month
Up to 100 students
Choose Starter
  • Full exam engine (objective + subjective)
  • AI Question Generator + Evaluator
  • Live analytics dashboards
  • RBAC, roles & tenant isolation
  • Email + in-app notifications
Most popular
Growth
₹2,499/ per month
Up to 500 students
Choose Growth
  • Full exam engine (objective + subjective)
  • AI Question Generator + Evaluator
  • Live analytics dashboards
  • RBAC, roles & tenant isolation
  • Email + in-app notifications
Pro
₹4,999/ per month
Up to 2,000 students
Choose Pro
  • Full exam engine (objective + subjective)
  • AI Question Generator + Evaluator
  • Live analytics dashboards
  • RBAC, roles & tenant isolation
  • Email + in-app notifications

Billed monthly in INR via Razorpay. Upgrade or downgrade anytime from your portal — your data stays put.

Questions

The things institutes ask first.

  • No. Isolation is four layers deep and ends at Postgres row-level security: every query is scoped to your organization, and the runtime database role sees zero rows if a query isn't scoped. It fails closed — one institute can't reach another's data even through a bug.

Ready when you are

Give your institute one system to run on.

Set up in a minute. Free for 14 days — no card, no subdomains, no bolt-on tools.