This policy explains how New Jobs 4 You collects, uses, shares, and protects your personal data when you use our website and services.
1. Information We Collect
Account and authentication data from Google/Firebase (such as email, display name, and uid).
Career profile data, uploaded documents (resume/CV/transcript), and application-related information.
AI usage data, including interview history, job matching outputs, gap reports, and generated documents.
Credit wallet and credit transaction history.
Feedback submission data, including category, subject, message, optional page path, and contact email.
Organization, team-role, job, interview-criteria, activity-reporting, and ATS connection or synchronization data.
Employer-verification evidence, including a business registration certificate, tax identification document, proof of physical address, government-issued ID of the account creator, and letter of authorization (LOA), together with extracted fields, verification results, and review history.
Basic technical and usage diagnostics (for reliability, security, and troubleshooting).
2. How We Use Information
To provide core product features such as AI interviews, job matching, and writing assistance.
To authenticate users, enforce access controls, and secure active sessions.
To process credits, billing workflows, and payment confirmation events.
To improve service quality, respond to support issues, and operate platform safety controls.
To operate employer workspaces, verify organizations, enforce team roles, import jobs, and support human-led recruiting workflows.
To confirm employer identity and authority, prevent fraud, extract evidence fields using automated tools, and compare registration or tax identifiers with official sources when configured. Automated results support human review and do not approve an organization by themselves.
To show anonymized candidate information to verified organizations only when discovery consent is active, and to disclose contact details only through the candidate-controlled approval flow.
3. Data Sharing
We do not sell your personal information.
We share limited data with service providers only when required to run the product, such as Firebase (auth/storage), Stripe (payments), Google Gemini API (AI processing), and Resend (optional feedback notifications).
Employer-verification evidence may be shared on a limited basis with document-processing providers. Registration or tax identifiers may be submitted to the Department of Business Development, Revenue Department, or an authorized registry provider for verification when those integrations are enabled.
Job data may be received from Greenhouse, Lever, or Ashby when an organization configures a connection; those providers process data under their own terms and policies.
We may disclose data if required by law or to protect platform security, users, and legal rights.
4. Payment and Billing Data
Payments are processed by Stripe, including supported methods like card and PromptPay.
We do not store full credit card details on our servers.
We retain only payment metadata needed for reconciliation, credit fulfillment, and fraud prevention.
Candidate and organization balances and their associated ledgers are stored separately.
5. Data Retention
We retain personal data only as long as needed to provide services, maintain security, and meet legal obligations.
Employer-verification evidence, verification results, and audit history may be retained while the organization uses the service and afterward as reasonably necessary for fraud prevention, disputes, audits, and legal compliance, after which they are deleted or de-identified as appropriate.
You may request deletion or export of your data, subject to applicable law and operational constraints.
Deleting candidate-workspace data does not necessarily delete organization activity, payment, security, or audit records that must be retained for legal or legitimate operational purposes.
6. Your Rights and Choices
Depending on your jurisdiction, you may have rights to access, correct, export, or delete your personal data.
You may also request restrictions or object to certain processing where legally supported.
Candidates can withdraw discovery and contact-sharing consent in the product. Withdrawal limits future access subject to legal obligations and retained audit records.
7. Security
We apply technical and organizational safeguards to protect data from unauthorized access, alteration, or disclosure.
No internet-based system is perfectly secure, and residual risk may remain.
8. Cookies and Tracking
We use essential cookies required for authentication and application operation.
Aggregated usage analytics may be used to improve product performance and user experience.
9. Contest and Eligibility Data
When you enter a contest, we collect institution details, submitted work, source and presentation files, rationale, generative AI disclosure, terms-acceptance time, screening status, votes, and prize or payment-administration data where applicable.
We use institutional email addresses to verify academic status. If an account does not use a qualifying address, we may collect a student card as a PDF or image for eligibility review by authorized administrators and committee members. Student cards are not shown to other participants.
Contest files and verification evidence are stored in Firebase Storage. Source files and student cards are access-controlled and may be viewed by the submitter, authorized administrators, and assigned committee members as required for their roles.
When an entry becomes a finalist or winner, signed-in users may see its presentation images, title, rationale, AI disclosure, status, and aggregate vote count. We do not publish voter identities or individual voting records.
Committee members may see display name, institution, entry files, verification information, and scoring data needed for review. Administrators may see email, screening state, aggregate scores, votes, winners, prize-payment status, and payment references.
Contest records and files are retained with contest history for operations, dispute review, fraud prevention, and legal compliance unless removed under an applicable request, retention policy, or legal requirement.
10. Children's Privacy
The service is not intended for children under 13.
If we learn that a child has provided personal information, we will take steps to remove it.
11. Policy Updates
We may revise this policy from time to time and will publish updates on this page.
Your continued use after updates indicates acceptance of the revised policy.