Privacy Policy
Last updated: January 2026
1. Introduction
Assistant Support Ltd. ("Company," "we," "us," or "our") is committed to protecting the privacy of your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered HR platform ("Service").
We act as a data processor on behalf of our customers (data controllers) for employee and candidate data, and as a data controller for our customers' account and billing information.
2. Information We Collect
We collect the following categories of information:
- Account information: name, email address, company name, job title, and billing details when you create an account
- HR data: employee records, candidate profiles, job descriptions, and other HR-related data you upload to the Service
- Usage data: information about how you interact with the Service, including pages visited, features used, and actions taken
- Technical data: IP address, browser type, device information, and operating system
- Communication data: records of your communications with our support team
3. How We Use Your Information
We use your information to:
- Provide, maintain, and improve the Service
- Process AI-powered matching and analytics as requested by you
- Process payments and manage your subscription
- Send transactional communications (account notifications, security alerts, billing updates)
- Provide customer support and respond to your inquiries
- Detect, prevent, and address technical issues and security threats
- Comply with legal obligations and enforce our Terms of Service
4. Legal Basis for Processing (GDPR)
For individuals in the European Economic Area (EEA), we process personal data under the following legal bases:
- Contract performance: processing necessary to provide the Service under our agreement with you
- Legitimate interests: improving the Service, fraud prevention, and marketing our products to existing customers
- Consent: where you have given explicit consent for specific processing activities
- Legal obligation: where processing is required to comply with applicable laws
5. Data Sharing and Disclosure
We do not sell your personal data. We may share your information with:
- Service providers: trusted third parties who assist us in operating the Service (cloud hosting, payment processing, analytics), bound by data processing agreements
- Legal requirements: when required by law, court order, or governmental authority
- Business transfers: in connection with a merger, acquisition, or sale of assets, with notice to affected users
- With your consent: when you have given explicit permission for a specific disclosure
6. International Data Transfers
Your data may be transferred to and processed in countries outside your country of residence, including the United Kingdom and the United States. When we transfer data outside the EEA, we ensure appropriate safeguards are in place, including Standard Contractual Clauses approved by the European Commission and the UK International Data Transfer Agreement.
7. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected. Account data is retained for the duration of your subscription and for 30 days after termination to allow data export. Usage and analytics data is retained for 24 months. We may retain certain data longer where required by law or for legitimate business purposes.
8. Your Rights (GDPR & CCPA)
Depending on your jurisdiction, you may have the following rights:
- Access: request a copy of the personal data we hold about you
- Rectification: request correction of inaccurate or incomplete data
- Erasure: request deletion of your personal data ("right to be forgotten")
- Portability: receive your data in a structured, machine-readable format
- Restriction: request that we limit processing of your data
- Objection: object to processing based on legitimate interests
- Non-discrimination (CCPA): we will not discriminate against you for exercising your privacy rights
- Opt-out of sale (CCPA): we do not sell personal information, but you may contact us to confirm this at any time
To exercise any of these rights, contact us at privacy@assistantsupport.me. We will respond within 30 days (or sooner if required by law).
9. Cookies and Tracking
We use cookies and similar tracking technologies to operate and improve the Service. These include:
- Essential cookies: required for the Service to function (authentication, security)
- Analytics cookies: help us understand how users interact with the Service
- Preference cookies: remember your settings and preferences
You can manage cookie preferences through your browser settings. Disabling certain cookies may limit your ability to use some features of the Service.
10. Children's Privacy
The Service is not intended for individuals under the age of 18. We do not knowingly collect personal data from children. If we become aware that we have collected data from a child under 18, we will take steps to delete that information promptly. If you believe a child has provided us with personal data, please contact us at privacy@assistantsupport.me.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page and updating the "Last updated" date. For significant changes, we will provide additional notice via email or an in-app notification.
For questions about this Privacy Policy, contact our Data Protection Officer at privacy@assistantsupport.me.