1. Introduction
This Privacy Policy explains how CompliChef Recruit (“we”, “our”, “us”) collects, uses, and protects your personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
2. Data Controller
The data controller for CompliChef™ Recruit is:
Nicholas Richards (CompliChef™)
Email: support@complichef.co.uk
3. Personal Data We Collect
3.1 Candidates
- Name, email, phone
- CVs, work history, qualifications
- Saved jobs, applications, messages
- Login history, usage data, IP address
3.2 Employers
- Business name, address, contact details
- Billing information, subscription data
- Job postings and applicant interactions
3.3 Website Usage
- IP address & device identifiers
- Cookies and session data
- Analytics (aggregated and anonymised)
4. How We Use Your Data
We process personal data for the following purposes:
- Providing recruitment matching between candidates and employers
- Account management and authentication
- Payment processing and billing
- Platform security, fraud monitoring, and performance optimisation
- Sending job alerts, notifications, and service emails
- Compliance with UK law
5. Legal Basis for Processing
We rely on the following legal bases under UK GDPR:
- Contract: managing your account and applications
- Legitimate Interests: improving platform functionality, fraud prevention
- Consent: marketing emails and optional alerts
- Legal Obligation: financial, security, and audit requirements
6. Sharing Your Data
We share data only when necessary:
- With employers when candidates apply for jobs
- With candidates when employers respond to applications
- With payment processors (Stripe/PayPal)
- With hosting, analytics, and security providers
We do not sell your personal data under any circumstances.
7. International Transfers
If data is transferred outside the UK, we ensure lawful safeguards such as Standard Contractual Clauses (SCCs).
8. Data Retention
We retain data only as long as necessary:
- Candidate accounts: while active + 24 months
- Employer accounts: while active + 6 years for financial compliance
- Analytics/cookies: 1–24 months depending on type
9. Cookies
We use essential cookies for login, security, and preferences. Optional analytics cookies are used only with consent.
10. Your Rights
You have the following UK GDPR rights:
- Access your data
- Correct inaccurate data
- Delete your data (“right to be forgotten”)
- Object to processing
- Restrict processing
- Data portability
- Withdraw consent at any time
11. Security
We implement strong technical and organisational measures including encryption, access control, monitoring, and secure data hosting within the UK/EU.
12. Children
CompliChef Recruit is not intended for individuals under 16.
13. Changes to This Policy
We may update this policy occasionally. Continued use of the Platform indicates acceptance of changes.
14. Contact Us
If you have any questions or wish to exercise your rights, contact:
support@complichef.co.uk