Privacy Policy
At HireSmart (operated by StartupStreet), we respect your privacy and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and protect your information when you use our platform.
1. Information We Collect
1.1 Information You Provide
- Account Information: Name, email address, password, account type (job seeker/employer/agency)
- Profile Data: Resume, skills, experience, education, certifications, location, job preferences
- Neural Assessment Data: IQ, EQ, SQ assessment responses and calculated scores
- Job Postings (Employers/Agencies): Job titles, descriptions, requirements, company information
- Payment Information: Billing details processed via third-party payment processors (Razorpay, PayPal, Stripe)
- Communications: Messages, support tickets, feedback, and correspondence with us
- Integration Data: LinkedIn, GitHub, Behance, Canva profile URLs and synced data (with your permission)
1.2 Information We Collect Automatically
- Usage Data: Pages viewed, features used, time spent, clicks, search queries, application activity
- Device Information: IP address, browser type, operating system, device identifiers
- Cookies and Tracking: Session cookies, preference cookies, analytics cookies (see Cookie Policy)
- Log Data: Server logs, error reports, API requests
1.3 Information From Third Parties
- Social Login: Profile data from Google, LinkedIn, GitHub (name, email, profile picture) when you connect accounts
- Payment Processors: Transaction confirmations and payment status from Razorpay, PayPal, Stripe
- Integration Partners: Data from LinkedIn, GitHub, Behance, Canva when you authorize sync
2. How We Use Your Information
We use collected information for:
- Platform Operation: Account management, authentication, service delivery
- AI Matching: Intelligent job-candidate matching based on profiles, skills, neural scores, preferences
- Neural Profiling: Calculating and storing IQ, EQ, SQ scores from your assessment responses
- Communication: Sending notifications, job alerts, application updates, billing reminders, support responses
- Payment Processing: Managing subscriptions, processing AI coin purchases, invoicing
- Analytics and Improvement: Understanding usage patterns, improving features, optimizing performance
- Security: Fraud prevention, abuse detection, account protection, compliance monitoring
- Legal Compliance: Meeting regulatory obligations, responding to legal requests
- Marketing (with consent): Promotional emails, feature announcements, special offers
3. Legal Basis for Processing (GDPR)
For users in the EU/EEA, we process personal data based on:
- Contractual Necessity: Processing required to provide services per our Terms
- Consent: Optional features like marketing emails (you can withdraw consent anytime)
- Legitimate Interests: Platform improvement, security, fraud prevention (balanced against your rights)
- Legal Obligations: Compliance with laws, responding to legal requests
4. How We Share Your Information
4.1 Within HireSmart Platform
- Job Seekers: Profile visible to employers/agencies when viewing directory or receiving applications
- Employers/Agencies: Company profiles visible to job seekers in directory
- Application Sharing: When you apply for jobs, your profile/resume is shared with hiring employers
4.2 Third-Party Service Providers
- Payment Processors: Razorpay, PayPal, Stripe (for subscription and coin purchase processing)
- Cloud Hosting: Server infrastructure providers for data storage and platform hosting
- Email Services: Transactional and notification email delivery
- Analytics Tools: Website analytics and performance monitoring
- Security Services: DDoS protection, SSL certificates, security monitoring
All third-party providers are contractually bound to protect your data and use it only for specified purposes.
4.3 Legal Requirements and Business Transfers
We may disclose information when required by law, to:
- Comply with legal processes (subpoenas, court orders)
- Enforce our Terms of Service
- Protect rights, property, and safety of HireSmart, users, or public
- Prevent fraud or security threats
- Complete business transactions (mergers, acquisitions) - you'll be notified
4.4 We Never Sell Your Data
Important: We do not sell, rent, or trade your personal information to third parties for marketing purposes.
5. Data Security and Storage
5.1 Security Measures
- Encryption: HTTPS/SSL encryption for all data transmission
- Password Protection: Secure password hashing (bcrypt)
- Access Controls: Role-based access, authentication requirements
- Payment Security: PCI DSS compliant payment processing (we don't store full card details)
- Regular Audits: Security reviews, vulnerability testing, penetration testing
- Firewalls and Monitoring: Real-time threat detection and response
5.2 Data Storage
Your data is stored on secure servers. Data may be transferred to and stored in countries outside your residence for cloud infrastructure purposes. We ensure adequate data protection regardless of location.
5.3 Data Retention
- Active Accounts: Data retained while account is active and for service provision
- Closed Accounts: Personal data deleted within 90 days of account closure (except legal requirements)
- Backup Retention: Backups may retain data up to 180 days for disaster recovery
- Legal Requirements: Some data retained longer for compliance (e.g., financial records: 7 years)
6. Your Privacy Rights
You have the following rights regarding your personal data:
6.1 Access and Portability
- Access: View all personal data we hold about you (Settings > Account)
- Download: Export your data in JSON/CSV format (Settings > Data Export)
- Portability: Request machine-readable data transfer to another service
6.2 Correction and Deletion
- Update: Correct inaccurate information (Settings > Profile)
- Delete: Request account deletion and data removal (Settings > Account > Delete Account)
- Right to be Forgotten (GDPR): EU/EEA users can request complete data erasure
6.3 Consent and Preferences
- Marketing Opt-Out: Unsubscribe from promotional emails (Settings > Notifications)
- Cookie Preferences: Manage cookie settings (Cookie Policy)
- Withdraw Consent: Revoke permissions for optional integrations or data processing
6.4 Restriction and Objection
- Restrict Processing: Request temporary limits on data processing
- Object to Processing: Object to data use for direct marketing or legitimate interests
6.5 Automated Decision-Making
HireSmart uses AI algorithms for job matching and neural profiling. While these are automated processes, humans (employers) make final hiring decisions. You can request human review of matching decisions.
6.6 How to Exercise Rights
Email privacy@hiresmart.pro with your request. We'll respond within 30 days. Identity verification may be required. No fees unless requests are excessive.
7. Children's Privacy
HireSmart is not intended for users under 18 years old (or age of majority in your jurisdiction). We do not knowingly collect data from children. If we discover a child's information was collected, we'll delete it immediately. Parents/guardians should report underage accounts to privacy@hiresmart.pro.
8. International Data Transfers
HireSmart operates globally. Your data may be transferred to countries outside your residence for cloud hosting and service provision. We ensure adequate protection through:
- Standard Contractual Clauses (EU-approved)
- Adequacy decisions by regulatory authorities
- Privacy Shield framework (where applicable)
- Binding Corporate Rules for data processors
9. California Privacy Rights (CCPA/CPRA)
California residents have additional rights under CCPA/CPRA:
- Know: Request details about personal information collected, used, shared
- Delete: Request deletion of personal information
- Opt-Out: Opt out of sale (we don't sell personal information)
- Non-Discrimination: Equal service regardless of privacy rights exercise
- Authorized Agent: Designate an agent to make requests on your behalf
Contact privacy@hiresmart.pro to exercise California privacy rights.
10. Data Breach Notification
In the unlikely event of a data breach affecting your personal information, we will:
- Notify affected users within 72 hours of discovery
- Provide details of compromised data and potential impact
- Recommend protective actions (password reset, monitoring)
- Report to relevant regulatory authorities as required by law
- Implement additional security measures to prevent recurrence
11. Third-Party Links and Integrations
HireSmart may contain links to third-party websites (LinkedIn, GitHub, Behance, etc.) and integrations. We are not responsible for their privacy practices. Review their privacy policies before sharing information. Our Privacy Policy applies only to data collected by HireSmart.
12. Changes to Privacy Policy
We may update this Privacy Policy periodically. Material changes will be notified via email and dashboard alert 30 days before taking effect. Continued use after changes constitutes acceptance. Review regularly for updates. Last updated: February 15, 2026.
13. Contact Us About Privacy
For privacy-related questions, concerns, or requests:
- Privacy Officer: privacy@hiresmart.pro
- Data Protection Officer (DPO): dpo@hiresmart.pro
- General Support: support@hiresmart.pro
- Data Subject Requests: Include "Privacy Request" in subject line
Questions About Your Privacy?
We're committed to protecting your privacy. Contact our privacy team for any concerns or questions.
Contact Privacy Team