Maficheclasse refers to a set of websites that claim to reveal class compositions before the start of the school year. These platforms have no access to the databases of educational institutions or digital workspaces (ENT). Their operation relies on the collection of personal data voluntarily provided by families, in exchange for information that they cannot technically possess.
Data collected by fake class sites: what fuels the fraud
The mechanics of these platforms have evolved. The most recent versions, reported as early as summer 2026, no longer just ask for the child’s first name and the name of the institution. They now require an expanded data set: last name, first name, date of birth, school, and contact details of the parent.
This volume of information goes beyond simple advertising profiling. It opens the door to two distinct risks. The first is the resale of qualified files to third parties, often telemarketing or spam networks. The second, more serious, is targeted identity theft, made possible by the combination of name-date of birth-institution.
To better understand the steps against maficheclasse on Carnet de Bébé, it is essential to realize that the danger does not stop at filling out the form. The collected data then serves as the basis for targeted phishing campaigns: emails imitating the school or town hall, personalized with the child’s name, requesting payment or identification.

Recognizing a fraudulent site related to the school year
The interface of these sites mimics the visual codes of the administration: blue-white-red, institutional typography, logos resembling those of the National Education. This graphic imitation is enough to deceive the majority of visitors, especially on mobile where the URL is partially hidden.
Several signals can help identify the scam before any data entry:
- The URL does not correspond to any official domain (.gouv.fr, .ac-[academy].fr or the specific domain of your academy’s ENT). A site in .fr or .com without institutional affiliation has no legitimacy to distribute class lists.
- The site asks for personal information (date of birth, phone number) while an authentic school portal identifies you through your existing ENT credentials, never through an open form.
- The access link circulates exclusively via social networks, especially TikTok, and not through an official channel of the institution (communication notebook, email from the administration, posting at the town hall).
- “Missions” or sharing steps are imposed before accessing the promised result, a mechanism designed to amplify the viral spread of the site.
No external site can access class compositions. These lists are established by school principals or heads of institutions, stored in internal software, and communicated only through the school’s own channels. Neither maficheclasse nor any other third-party platform has technical access to these systems.
TikTok and virality: why the 2026 school year replicates the pattern
The phenomenon is not new, but it renews itself each school year with slightly modified domain names. Le Journal des Femmes reported in August 2026 that sites already identified as fraudulent the previous year reappeared under new addresses, with the same mechanics.
The spread mainly occurs through TikTok, where short videos promise to “reveal your class” in just a few clicks. The target audience is young, often middle or high school students, who share the link without verifying the source. Parents discover the problem after data entry, when their child has already filled out the form.
This virality relies on a simple psychological trigger: the impatience to know one’s class before the official date. Institutions usually communicate assignments in the last days of August, leaving a window of several weeks during which these sites thrive.
Steps to take after entering data on a fake school portal
If information has already been transmitted to one of these sites, several concrete actions can limit the consequences:
- Immediately change the passwords for the email account and ENT account if the same credentials have been used. Enable two-factor authentication wherever available.
- Monitor emails and SMS received in the following weeks. Any message claiming to come from the school or town hall that requests payment, an identity document, or a click on a link should be considered suspicious.
- Report the site on the official platform internet-signalement.gouv.fr (Pharos) and, if financial harm has occurred, file a complaint online via the Thésée platform dedicated to internet fraud.
The guideline relayed by Magicmaman and TF1info in August 2026 remains the basic rule: only use the institutional channels of the institution or ENT for any information related to schooling. If a link does not come directly from the school, it does not deserve a click.

The most effective reflex remains the simplest: wait for the official communication from the institution. A class composition has never been public data, and no online platform will change this technical reality. A few days of impatience are not worth the transmission of personal data to strangers.



