Your HT & governors should refer to Keeping Children Safe in Education guidance https://assets.publishing.service.gov.uk/media/68add931969253904d155860/Keeping_children_safe_in_education_from_1_September_2025.pdf
ChatGPT summary:
Short answer: No — “class logins” (shared accounts) are not compliant.
KCSIE (2025) expects schools to run robust online safety, filtering and monitoring, and aligns with DfE cyber security standards to achieve this. Shared logins undermine accountability and monitoring per user.
DfE Cyber Security Standards are explicit: “Users must be authenticated with unique credentials before they access devices or services.” This rules out class/shared accounts. For younger pupils or those with SEND/EAL, the DfE suggests alternatives to passwords (e.g., a PIN) or teacher-assisted login that still identifies the individual pupil, rather than a single class login. GOV.UK
NCSC guidance also advises unique user accounts for work systems. NCSC
What to do instead
Use individual pupil accounts and, where needed, age-appropriate sign-in aids (e.g., PINs or teacher-assisted sign-in that preserves per-pupil identification) so your filtering/monitoring and audit remain meaningful.