Privacy Policy
Last updated: June 2026
Operator: Erika Labs
Product: Eosord (eosord.com)
Introduction
- Eosord is recruitment software operated by Erika Labs. This Privacy Policy explains how we handle personal data when you use our website and platform.
- We respect UK GDPR, EU GDPR, the California Privacy Rights Act (CPRA), and other applicable data protection laws.
Who this applies to
- Recruiters and hiring teams who create an Eosord account and use the platform.
- Candidates who apply to jobs through our application forms.
- Visitors to our public website (landing page, sign-up, sign-in).
Personal data we process
- We process personal data provided by recruiters with Eosord accounts and by candidates who apply to jobs through our application forms.
- Recruiters: name, email, organisation and profile details, account information, jobs, applicant pipeline data, notes, and emails sent through the platform.
- Candidates: name, email, phone, resume or CV, application answers, and application status.
- Website visitors: we do not currently use third-party analytics or advertising trackers on our website. Essential technical data (e.g. server logs) may be processed to keep the site secure and running.
- We do not sell personal data.
How we use personal data
- Provide and operate the Eosord hiring platform.
- Authenticate users and manage accounts.
- Publish jobs and collect applications.
- Support recruiter workflows (shortlisting, email, AI-assisted review where enabled).
- Maintain security and prevent misuse.
- Respond to support and privacy requests.
- Comply with legal obligations.
- Applicant data is processed for the recruiting organisation's hiring process and is not shared with unrelated third parties for marketing.
Legal basis (UK / EU GDPR)
- Contract — to provide the service to recruiters.
- Legitimate interests — to operate, secure, and improve the platform (balanced against your rights).
- Consent — where required (e.g. certain optional communications).
- Legal obligation — where the law requires us to retain or disclose data.
- For job applications, candidates provide data voluntarily when applying; recruiters are responsible for their hiring process and lawful basis for reviewing applicants.
Service providers
- We use trusted providers to run Eosord, who process data on our instructions.
- AI processing is limited to relevant job and application context.
- These providers may process data in the UK, EU, US, or other countries with appropriate safeguards where required.
AI features
- Where AI features are enabled (e.g. match scoring, applicant Q&A), relevant job description and application content may be processed to generate results for recruiters.
- AI outputs support hiring decisions; recruiters remain responsible for final decisions.
Data retention
- We keep personal data only as long as needed to provide the service, meet legal requirements, and resolve disputes.
- Recruiters may delete jobs and related data subject to platform capabilities. Retention may vary during beta.
Security
- We use appropriate technical and organisational measures to protect personal data, including access controls, encrypted connections (HTTPS), and secure cloud infrastructure.
- No system is completely secure; please use a strong password and keep account access confidential.
International transfers
- If personal data is transferred outside the UK or EEA, we use appropriate safeguards (such as standard contractual clauses or equivalent mechanisms) where required by law.
Your rights
- Depending on where you live, you may have the right to access, correct, delete, restrict, or object to certain processing of your personal data.
- You may have the right to data portability where applicable, and to withdraw consent where processing is consent-based.
- You may complain to a supervisory authority (e.g. the ICO in the UK).
- California residents (CPRA): you may have rights to know, delete, and correct personal information, and to opt out of sale or sharing. We do not sell or share personal data for cross-context behavioural advertising.
- To exercise your rights, contact us using the details below. We may need to verify your identity.
Children
- Eosord is not intended for individuals under 16. We do not knowingly collect data from children.
Changes to this policy
- We may update this Privacy Policy from time to time. The last updated date will change when we do.
- Continued use of Eosord after changes means you accept the updated policy.
Contact
- Email: contact@erikalabs.com (subject line: Eosord Privacy Request).
- Erika Labs — operator of Eosord.