Privacy Policy
Last Updated: June 22, 2025
1. Introduction
Jobs Bringer ("we," "our," or "us") operates a job board platform that connects job seekers with employers. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal data when you use our platform at jobsbringer.com (the "Service").
We are committed to protecting your privacy and ensuring transparency about our data practices in compliance with the EU General Data Protection Regulation (GDPR) and Romanian data protection laws.
2. Data Controller Information
3. Personal Data We Collect
3.1 Account Registration Data
- First name, middle name (optional), last name
- Email address
- Date of birth (for age verification - 18+ requirement)
- Geographic location (country and city)
- Interface mode preference (Job Seeking, Recruiting, or Page Administration)
- Language and locale preferences
3.2 Professional Profile Data
- Professional headline and job titles
- Work experience (company, role, dates, location, description)
- Education history (institution, degree, dates, location)
- Skills and competencies
- Language proficiency levels
- Portfolio projects and descriptions
- Resume/CV file uploads
- Profile and company images
3.3 Job and Application Data
- Job postings and descriptions
- Job application submissions and responses
- Work offer negotiations and status updates
- Interview scheduling and attendance records
- Communication preferences and history
3.4 Communication Data
- Messages between users on our platform
- Support ticket communications
- Notification preferences and delivery status
- System messages and platform communications
3.5 Technical and Usage Data
- IP address, browser type, and device information
- Session information and authentication tokens
- Platform usage patterns and feature interactions
- Error logs and technical diagnostic data
- Cookie preferences and consent records
4. Legal Basis for Processing
We process your personal data based on the following legal grounds under GDPR:
- Contract (Article 6(1)(b)): To provide our job platform services, facilitate job applications, enable messaging between users, and fulfill our contractual obligations to you.
- Legitimate Interest (Article 6(1)(f)): For platform security, fraud prevention, service improvement, analytics, and technical maintenance.
- Consent (Article 6(1)(a)): For marketing communications, optional analytics, and non-essential cookie usage.
- Legal Obligation (Article 6(1)(c)): For compliance with employment laws, tax obligations, and other legal requirements.
5. How We Use Your Data
- Service Provision: Operating our job platform, matching job seekers with employers, facilitating applications and communications, managing user accounts.
- Communication: Sending platform notifications, interview reminders, work offer updates, and customer support responses.
- Security & Fraud Prevention: Protecting against unauthorized access, spam, and malicious activities.
- Service Improvement: Analyzing usage patterns to enhance platform functionality and user experience.
- Legal Compliance: Meeting regulatory requirements, employment law obligations, and audit purposes.
6. Data Sharing and Disclosure
We do not sell your personal data. We may share data only in the following circumstances:
6.1 With Other Platform Users
- Profile information when you make it public or apply for jobs
- Job applications shared with relevant employers
- Messages sent between communicating parties
- Work offer details when negotiating employment
6.2 With Service Providers
- Supabase: Database hosting, authentication, and file storage (EU-based servers)
- LiveKit: Video interview services (US-based with EU Standard Contractual Clauses)
- Stripe: Payment processing for wallet top-ups and premium features
- Email Service Providers: For transactional emails and notifications
- Google Analytics: Anonymous usage analytics (with consent)
6.3 Legal Requirements
- When required by Romanian or EU law
- In response to valid legal process or government requests
- To protect our rights, property, or safety and that of our users
- In connection with business transfers (with continued data protection)
7. International Data Transfers
Our primary data processing occurs within the European Union (Supabase EU-Central region). For certain services, data may be transferred outside the EEA:
- LiveKit (Video Interviews): Data may be processed in the US under EU Standard Contractual Clauses and appropriate safeguards to ensure GDPR compliance.
- Email Services: Transactional emails may be processed through US-based providers with adequate data protection measures.
8. Data Retention Periods
We retain personal data for the shortest time necessary for our legitimate purposes:
Data Type | Retention Period | Justification |
---|---|---|
User Accounts | Until deletion + 7-day grace period | Service provision & account recovery |
Unsuccessful Job Applications | 6 months from application | GDPR proportionality principle |
Successful Applications | 1 year after employment ends | Employment law compliance |
Messages | 1 year from last activity | Dispute resolution |
Interview Records | 6 months after completion | Metadata only, no recordings |
Support Tickets | 1 year | Customer service needs |
System Logs | 6 months | Security and debugging |
Consent Records | 3 years | GDPR compliance demonstration |
9. Your Rights Under GDPR
As a data subject, you have the following rights:
9.1 Right of Access (Article 15)
9.2 Right to Rectification (Article 16)
9.3 Right to Erasure (Article 17)
9.4 Right to Data Portability (Article 20)
9.5 Right to Restrict Processing (Article 18)
9.6 Right to Object (Article 21)
9.7 Right to Withdraw Consent
9.8 Right to Lodge a Complaint
We will respond within one month and may request verification of your identity.
10. Data Security
We implement appropriate technical and organizational measures to protect your data:
- Encryption: Data is encrypted in transit (HTTPS/TLS) and at rest in our databases.
- Access Controls: Limited access to personal data based on role and necessity.
- Authentication: Secure user authentication through Supabase Auth with password hashing.
- Monitoring: Regular security assessments and monitoring for unauthorized access.
- Backup & Recovery: Secure data backups with encryption and access controls.
11. Cookies and Tracking
We use cookies and similar technologies with your consent. For detailed information, please see our Cookie Policy and Cookie Preferences.
- Essential Cookies: Required for platform functionality, security, and authentication (always active).
- Functional Cookies: Remember your preferences and settings (with consent).
- Analytics Cookies: Google Analytics for anonymous usage analysis (with consent).
- Third-party Cookies: Payment processing (Stripe) and video calls (LiveKit) as needed.
12. Children's Privacy
13. Automated Decision Making
We may use automated processing for:
- Job Matching: Algorithm-based job recommendations based on your profile and preferences.
- Fraud Detection: Automated security screening to protect against spam and abuse.
- Content Moderation: Automated filtering of inappropriate content.
14. Data Breach Notification
In the event of a data breach that poses a risk to your rights and freedoms, we will:
- Notify the Romanian supervisory authority (ANSPDCP) within 72 hours of becoming aware of the breach.
- Inform affected individuals without undue delay if the breach is likely to result in high risk.
- Take immediate steps to contain and mitigate the breach and prevent future incidents.
15. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of material changes by:
- Posting the updated policy on this page with a new "Last Updated" date
- Sending an email notification for significant changes that affect your rights
- Requesting renewed consent where required by law
16. Contact Information
For questions about this Privacy Policy, to exercise your rights, or to report privacy concerns:
This Privacy Policy is designed to be GDPR-compliant and reflects our commitment to protecting your personal data. We regularly review and update our privacy practices to ensure continued compliance with applicable laws.