Skip to main content
CareerID

Privacy Policy

Last updated

CareerID is a hiring platform. To do its job it handles genuinely sensitive information about you — your resume, your answers to assessments, and in proctored tests your camera and screen. This page explains exactly what we collect, why, who can see it, and how to get it back or get rid of it. It is written to be read, not to be skimmed past.

Draft pending legal review

This document describes how CareerID actually works today and is published so you are never left without one. It has not yet been reviewed by counsel. If anything here conflicts with a signed agreement you hold with us, that agreement takes precedence.

What we collect

We only collect what the product needs to match you with work or to let an employer evaluate you fairly.

Account data

  • Your name, email address and password (stored only as a salted hash — we never store or can read your plaintext password).
  • Your role on the platform: candidate, recruiter or administrator.
  • For recruiters, your work email domain, which we use to associate you with a company.

Candidate profile data

  • Resumes you upload, and the text we extract from them.
  • Profile photo, headline, skills, work experience, education, projects, certifications, awards and external links.
  • Optional personal details you choose to add, including phone number, date of birth and gender. We do not verify your phone number — it is stored exactly as you type it and is shown to employers as self-reported.
  • Job preferences, saved searches, job alerts, saved and applied roles.

Assessment and interview data

  • Your answers, code, queries, diagrams, spreadsheets and written responses, plus autosaved intermediate versions.
  • Scores and AI-generated evaluations derived from those answers.
  • For proctored assessments only, and only after you have granted browser permission: periodic webcam stills, screen recording, and audio. We also log integrity events such as switching tabs or leaving full screen.
  • For live interviews, audio and video streams, in-room chat, and a recording if the recruiter starts one. Recording is always visibly indicated in the room.

Technical data

  • A session cookie so you stay logged in. This is strictly necessary and cannot be disabled while you are signed in.
  • Server logs containing IP address, browser user-agent, timestamps and error diagnostics.

Camera, screen and microphone

This deserves its own section because it is the most intrusive thing the platform can do.

  • We never access your camera, screen or microphone without an explicit browser permission prompt that you control.
  • Proctoring only runs during an assessment that the employer has configured as proctored. You are told before it starts, and you can decline — though the employer may then not accept your submission.
  • Live interview video is peer-to-peer through our real-time provider and is not recorded unless the recruiter starts a recording, which is shown on screen to everyone present.
  • Capture stops when the assessment or interview ends. We do not run background capture anywhere else in the product, ever.

How we use your data

  • To create and secure your account, and to keep you signed in.
  • To show your profile and application to employers you apply to, or to recruiters searching candidates if you have enabled that in Settings.
  • To score assessments and generate skill evaluations, including using automated and AI-assisted evaluation of your answers.
  • To run interviews, including live audio/video, shared task workspaces and chat.
  • To send you transactional messages: application updates, interview invitations, and job alerts you have asked for.
  • To detect fraud and abuse, enforce our Terms, and keep assessments credible.
  • To debug, monitor and improve the product in aggregate.

Automated evaluation

Parts of CareerID score your work automatically, including with AI models. You should know exactly where you stand on this:

  • Automated scores are shown to the employer alongside your actual submitted work, never instead of it.
  • We do not make the final hiring decision. Employers do. A score is an input to a human decision.
  • We do not use your race, religion, caste, gender, date of birth or photograph as an input to any score.
  • If you believe an automated evaluation of your work was wrong, contact us and a human will review it.

Who can see your data

  • Employers you apply to see your profile, resume, application answers and any assessment results for their role.
  • Recruiters using candidate search see your profile only if you have turned on recruiter visibility in Settings. You can turn it off at any time, and you can block specific companies.
  • Our administrators can access records to investigate abuse reports, verify employers and provide support. Administrative actions are recorded in an internal audit log.
  • Service providers who process data strictly on our instructions. These are named individually below.
  • We do not sell your personal data, and we do not share it with advertisers.

Who processes data for us

We use a small number of third-party providers to run the platform. Each one only receives the data it needs for the job listed here, and only processes it on our instructions. We do not authorise any of them to use your data for their own purposes.

Supabase

Primary database, authentication and file storage

Data it can see: Account credentials, profile data, resumes, applications, assessment answers and scores

Microsoft Azure

Application hosting, file/recording storage (Blob Storage), and the AI models that generate and grade assessments (Azure OpenAI)

Data it can see: All data above in transit and at rest; assessment answers and interview transcripts sent for automated evaluation

LiveKit

Real-time audio and video for live interviews, and recording

Data it can see: Interview audio, video and screen share while a session is live; the recording file when a recruiter starts one

Deepgram

Speech-to-text transcription of interview audio

Data it can see: Interview audio, and the transcript produced from it

Judge0

Isolated sandbox that compiles and runs code you submit in coding tasks

Data it can see: The source code and queries you submit, plus program output

Resend

Transactional email delivery — sign-in and verification mail, application updates, interview invitations and job alerts

Data it can see: Your email address and the contents of those messages

Some of these providers operate infrastructure outside India, so your data may be processed abroad. We choose providers that offer contractual data-protection terms, and we will update this list when it changes.

How long we keep it

  • Account and profile data: until you delete your account.
  • Applications and assessment results: retained while the employer's role is active, and afterwards as a record of the hiring process.
  • Proctoring stills, screen and audio recordings: kept only as long as needed to validate the assessment result, then deleted.
  • Interview recordings: kept for the employer's evaluation of that role.
  • Server logs: a short rolling window for security and debugging.
  • When you delete your account we remove your profile, resumes and personal details. We may retain a minimal record where we are legally required to, or to prevent abuse.

Your rights and controls

You can exercise most of these directly in the product:

  • Access and correct — edit any field from your profile.
  • Control visibility — turn recruiter search off, and block specific companies, in Settings.
  • Withdraw — pull back any application from your tracker.
  • Deactivate or delete — both are available in Settings. Deletion is permanent.
  • Export or object — ask us for a copy of your data, or object to a particular use, via Contact.

Security

  • All traffic is encrypted in transit over HTTPS.
  • Passwords are stored only as salted hashes.
  • Uploaded files are scanned for malware and served over expiring signed URLs rather than public links.
  • Access to production data is limited to staff who need it, and administrative actions are logged.
  • No system is perfect. If you find a security issue, please report it to us before disclosing it publicly and we will work with you on it.

Questions, complaints and our grievance contact

If you have a question about how we handle your data, or you want to complain about it, contact us first — we would rather fix it than have you escalate.

  • Grievance Officer: Harish, Career Identity Private Limited support@careerid.in
  • We aim to acknowledge a data-protection request or complaint within 7 days, and to resolve it within 30 days.
  • You can also reach us through the contact page, which has ready-made templates for access, correction, objection and deletion requests.
  • If we cannot resolve your complaint, you have the right to escalate it to the Data Protection Board of India.

Age

CareerID is for people seeking or offering employment and is not intended for children. Do not create an account if you are under 16, or under the minimum working age where you live if that age is higher. If we learn that we hold a child’s data we will delete it.

Changes to this policy

If we change how we handle your data in a way that materially affects you, we will update the date at the top of this page and notify you in the product before the change takes effect.

Questions about this document? Contact us.