Effective Date:

Privacy Policy for Rise2Role

We comply with the EU General Data Protection Regulation (GDPR) and are committed to protecting your personal information. This policy explains how we collect, use, and safeguard your data when you use our services.

1. Data We Collect

Personal Data You Provide:

  • Account Information: Email address, name (when registering via Supabase authentication)
  • User Content: Job applications, notes, and status updates in your kanban board

Automatically Collected Data:

  • Technical Data: IP address, browser type, device information
  • Usage Data: Timestamps, feature interactions, error logs

2. Legal Basis & Purpose of Processing

We process your data under GDPR Article 6(1)(b) (contractual necessity) and 6(1)(a) (consent) for:

  • Account creation and service provision
  • Job application management and synchronization
  • Service improvement and security
  • Legal compliance and fraud prevention

3. Data Sharing & International Transfers

We use Supabase for data storage and authentication. Your data may be transferred to countries with adequacy decisions or using Standard Contractual Clauses. We never sell your data to third parties.

4. Data Retention

We retain your data until account deletion. Upon deletion request, we:

  • Immediately remove active data
  • Delete backups within 30 days
  • Keep minimal logs for 12 months for legal compliance

5. Your GDPR Rights

You have the right to:

  • Access and receive your data (Article 15)
  • Rectify inaccurate data (Article 16)
  • Erase your data ("Right to be Forgotten", Article 17)
  • Restrict processing (Article 18)
  • Data portability (Article 20)
  • Object to processing (Article 21)
  • Withdraw consent (Article 7(3))

To exercise these rights, contact us at support@rise2role.com.

6. Security Measures

We implement:

  • End-to-end encryption via Supabase
  • Regular security audits
  • Access controls and 2FA for staff
  • HTTPS/TLS for data transmission

7. Cookies & Tracking

We use:

  • Session cookies for authentication
  • Persistent cookies for preferences
  • Local Storage for kanban board state

You can manage cookies through browser settings. Essential cookies cannot be disabled.

8. Children's Privacy

Our service is not directed at children under 16. We do not knowingly collect data from minors.

9. Policy Updates

We will notify users of material changes via email or in-app notice 30 days before implementation.

Contact Information

Data Controller: Rise2Role
Email: support@rise2role.com
EU Representative: [Add if required by Article 27]

By using Rise2Role, you acknowledge reading this policy and agree to its terms. For complaints, contact your local Data Protection Authority.