Privacy Policy
Last Updated: March 25, 2024
Introduction
RoleGrade is committed to protecting the privacy and personal data of our users. This Privacy Policy outlines our practices regarding the collection, use, and protection of personal data within the RoleGrade platform.
What is Personal Data?
"Personal Data" refers to any information that can identify an individual directly or indirectly, including names, contact details, online identifiers, and location data as defined by the GDPR.
Information We Collect
From Public Sources
- Publicly accessible information from professional networks (e.g., LinkedIn)
- Professional profiles and work history
- Public social media profiles related to professional activities
Provided by You
- Account information (name, email, password)
- Company details and preferences
- Job descriptions and requirements
- Communication preferences
Automatically Collected
- IP addresses and device information
- Usage patterns and interactions
- Browser type and settings
- Cookies and similar technologies
Authentication Services
RoleGrade offers multiple authentication options for user convenience:
- Google Sign-In: When you choose to sign in with Google, we collect your name, email address, and profile picture. This data is used solely for authentication and account creation.
- LinkedIn Sign-In: Using LinkedIn authentication provides us with basic profile information necessary for account creation and platform functionality.
Use of Personal Data in AI Models
RoleGrade employs artificial intelligence to enhance recruitment processes. Our AI models:
- Process job descriptions and candidate profiles to generate matches
- Analyze professional qualifications and experience
- Generate insights while maintaining data privacy
All AI processing adheres to strict privacy guidelines and data protection regulations.
Data Storage and Processing Locations
RoleGrade stores and processes data in both the United States and Europe:
- Primary data centers are located in the US and EU regions
- Data transfers between regions follow approved mechanisms under GDPR
- We implement appropriate safeguards for international data transfers
Your Rights Under GDPR
As a data subject, you have the following rights:
- Right to access your personal data
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Right to withdraw consent
Data Security
We implement robust security measures to protect your data:
- Encryption of data in transit and at rest
- Regular security audits and assessments
- Access controls and authentication mechanisms
- Employee training on data protection
Data Retention
We retain personal data only for as long as necessary to:
- Provide our services
- Comply with legal obligations
- Resolve disputes
- Enforce our agreements
Third-Party Services
We work with trusted third-party services for:
- Authentication (Google, LinkedIn)
- Analytics and performance monitoring
- Cloud infrastructure and hosting
- Customer support tools
Changes to Privacy Policy
We may update this Privacy Policy periodically. Significant changes will be communicated through:
- Email notifications to registered users
- Notices on our platform
- Updated "Last Updated" date
Contact Information
For privacy-related inquiries or to exercise your rights, contact our Data Protection Officer:
- Email: [email protected]