← Back to Eosord

Privacy Policy

Last updated: June 2026

Operator: Erika Labs

Product: Eosord (eosord.com)

Introduction

  • Eosord is recruitment software operated by Erika Labs. This Privacy Policy explains how we handle personal data when you use our website and platform.
  • We respect UK GDPR, EU GDPR, the California Privacy Rights Act (CPRA), and other applicable data protection laws.

Who this applies to

  • Recruiters and hiring teams who create an Eosord account and use the platform.
  • Candidates who apply to jobs through our application forms.
  • Visitors to our public website (landing page, sign-up, sign-in).

Personal data we process

  • We process personal data provided by recruiters with Eosord accounts and by candidates who apply to jobs through our application forms.
  • Recruiters: name, email, organisation and profile details, account information, jobs, applicant pipeline data, notes, and emails sent through the platform.
  • Candidates: name, email, phone, resume or CV, application answers, and application status.
  • Website visitors: we do not currently use third-party analytics or advertising trackers on our website. Essential technical data (e.g. server logs) may be processed to keep the site secure and running.
  • We do not sell personal data.

How we use personal data

  • Provide and operate the Eosord hiring platform.
  • Authenticate users and manage accounts.
  • Publish jobs and collect applications.
  • Support recruiter workflows (shortlisting, email, AI-assisted review where enabled).
  • Maintain security and prevent misuse.
  • Respond to support and privacy requests.
  • Comply with legal obligations.
  • Applicant data is processed for the recruiting organisation's hiring process and is not shared with unrelated third parties for marketing.

Legal basis (UK / EU GDPR)

  • Contract — to provide the service to recruiters.
  • Legitimate interests — to operate, secure, and improve the platform (balanced against your rights).
  • Consent — where required (e.g. certain optional communications).
  • Legal obligation — where the law requires us to retain or disclose data.
  • For job applications, candidates provide data voluntarily when applying; recruiters are responsible for their hiring process and lawful basis for reviewing applicants.

Service providers

  • We use trusted providers to run Eosord, who process data on our instructions.
  • AI processing is limited to relevant job and application context.
  • These providers may process data in the UK, EU, US, or other countries with appropriate safeguards where required.

AI features

  • Where AI features are enabled (e.g. match scoring, applicant Q&A), relevant job description and application content may be processed to generate results for recruiters.
  • AI outputs support hiring decisions; recruiters remain responsible for final decisions.

Data retention

  • We keep personal data only as long as needed to provide the service, meet legal requirements, and resolve disputes.
  • Recruiters may delete jobs and related data subject to platform capabilities. Retention may vary during beta.

Security

  • We use appropriate technical and organisational measures to protect personal data, including access controls, encrypted connections (HTTPS), and secure cloud infrastructure.
  • No system is completely secure; please use a strong password and keep account access confidential.

International transfers

  • If personal data is transferred outside the UK or EEA, we use appropriate safeguards (such as standard contractual clauses or equivalent mechanisms) where required by law.

Your rights

  • Depending on where you live, you may have the right to access, correct, delete, restrict, or object to certain processing of your personal data.
  • You may have the right to data portability where applicable, and to withdraw consent where processing is consent-based.
  • You may complain to a supervisory authority (e.g. the ICO in the UK).
  • California residents (CPRA): you may have rights to know, delete, and correct personal information, and to opt out of sale or sharing. We do not sell or share personal data for cross-context behavioural advertising.
  • To exercise your rights, contact us using the details below. We may need to verify your identity.

Children

  • Eosord is not intended for individuals under 16. We do not knowingly collect data from children.

Changes to this policy

  • We may update this Privacy Policy from time to time. The last updated date will change when we do.
  • Continued use of Eosord after changes means you accept the updated policy.

Contact

  • Email: contact@erikalabs.com (subject line: Eosord Privacy Request).
  • Erika Labs — operator of Eosord.