Privacy Policy
Last updated: 2/26/2026
1. Introduction
JobMatch ("we", "us", "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our job matching platform.
This policy complies with the General Data Protection Regulation (GDPR) for users in the European Union and other applicable data protection laws.
2. Information We Collect
2.1 Information You Provide
We collect information that you provide directly to us:
- Account Information: Name, email address, password, user type (candidate/company)
- Profile Information: For candidates
- Communication Data: Messages sent through the Platform
- Payment Information: For companies with subscriptions (processed by third-party payment processors)
2.2 Automatically Collected Information
We automatically collect certain information when you use the Platform:
- Usage Data: Pages visited, time spent, features used, swipe actions, matches
- Device Information: IP address, browser type, device type, operating system
- Location Data: General location based on IP address (if permitted)
- Cookies and Tracking: See our Cookie Policy for details
- Push Notification Subscriptions: If you enable push notifications (PWA), we store your push subscription endpoint and encryption keys to deliver notifications to your device. You can disable push notifications at any time in Settings.
2.3 Information from Third Parties
We may receive information from:
- Google OAuth (if you sign in with Google): Name, email, profile picture
- Payment processors: Transaction information
- Analytics providers: Usage statistics
3. How We Use Your Information
We use your information for the following purposes:
- Service Provision: To provide, maintain, and improve the Platform
- Matching: To calculate compatibility scores and suggest matches
- Communication: To facilitate messaging between users and send service-related notifications (including push notifications if enabled)
- Account Management: To create and manage your account, verify your identity
- Personalization: To personalize your experience and show relevant content
- Analytics: To analyze usage patterns and improve our services
- Legal Compliance: To comply with legal obligations and enforce our Terms
- Marketing: To send promotional emails (with your consent, which you can withdraw at any time)
4. Legal Basis for Processing (GDPR)
For users in the EU, we process your data based on:
- Consent: When you consent to marketing emails or cookies
- Contract Performance: To provide the services you requested
- Legitimate Interests: For analytics, security, and service improvement
- Legal Obligation: To comply with applicable laws
5. How We Share Your Information
We share your information only in the following circumstances:
5.1 With Other Users
- Your profile information is visible to potential matches
- CVs/resumes are only shared after a mutual match
- Messages are shared between matched users
5.2 With Service Providers
We share data with trusted service providers who assist us in operating the Platform:
- Cloud hosting providers (Supabase)
- Email service providers
- Payment processors
- Analytics providers
These providers are contractually obligated to protect your data and use it only for specified purposes.
5.3 Legal Requirements
We may disclose information if required by law, court order, or government regulation, or to protect our rights, property, or safety.
5.4 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity.
6. Data Security
We implement appropriate technical and organizational measures to protect your data, including:
- Encryption of data in transit (SSL/TLS) and at rest
- Secure authentication and access controls
- Regular security assessments and updates
- Limited access to personal data on a need-to-know basis
- Secure data storage with reputable cloud providers
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
7. Data Retention
We retain your data for as long as necessary to provide our services and comply with legal obligations:
- Account Data: Until account deletion or 3 years of inactivity
- Profile Data: Until account deletion
- Messages: Until account deletion or 1 year after last message
- Transaction Records: 7 years (for tax and legal compliance)
- Analytics Data: Aggregated and anonymized, retained indefinitely
You can request deletion of your data at any time through your account settings.
8. Your Rights (GDPR and Data Protection)
You have the following rights regarding your personal data:
8.1 Right to Access
You can request a copy of all personal data we hold about you. You can export your data through your account settings.
8.2 Right to Rectification
You can update your information at any time through your account settings or by contacting us.
8.3 Right to Erasure
You can request deletion of your account and data. We will comply unless we have a legal obligation to retain certain data.
8.4 Right to Data Portability
You can request your data in a structured, machine-readable format. Use the data export feature in your settings.
8.5 Right to Object
You can object to processing of your data for marketing purposes or based on legitimate interests.
8.6 Right to Restrict Processing
You can request that we limit how we process your data in certain circumstances.
8.7 Right to Withdraw Consent
You can withdraw consent for data processing at any time, including marketing emails and cookies.
8.8 Right to Lodge a Complaint
If you believe we have violated your data protection rights, you can lodge a complaint with your local data protection authority. For EU users, this is your national data protection authority.
9. Cookies and Tracking
We use cookies and similar tracking technologies. For detailed information, please see our Cookie Policy. Cookie Policy.
You can manage cookie preferences through your browser settings or our cookie consent banner.
10. International Data Transfers
Your data may be transferred to and processed in countries outside your country of residence. We ensure appropriate safeguards are in place, including:
- Standard Contractual Clauses (SCCs) for EU data transfers
- Compliance with applicable data protection laws
- Secure data storage and transmission
11. Children's Privacy
Our Platform is not intended for users under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child, we will delete it immediately.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or through the Platform. Your continued use after such changes constitutes acceptance of the updated policy.
13. Contact Us
If you have questions about this Privacy Policy or wish to exercise your rights, contact us at:
Email: privacy@job-matchmm.com
Data Protection Officer: dpo@job-matchmm.com
Address: [Your Company Address]