Your profile.Your rules.

The career context layer only works if you trust what leaves it. These are the concrete guarantees: what is stored, what agents can read, and how to undo everything.

Consent first

Nothing is shared until you grant a scope, per client and per layer. Revoking takes effect on the next read.

Layers, not dumps

Raw answers, scores, and summaries are stored and shared as separate layers — agents read what was shared, and nothing more.

Every read is logged

Each API and MCP read is recorded with client, scope, and time. Your audit log is exportable at any time.

How your data is handled

The short version — the full detail lives in the privacy policy.

What we storeYour assessment answers, derived dimension scores, evidence you attach, and the integrations you connect. Nothing else.
What agents can readOnly the layers you granted to that specific client — for example scores and summaries, never raw answers, unless you say so.
How long we keep itProfile data lives until you delete it. Audit logs are kept for 12 months, then purged.
How to leaveExport or delete your entire profile from settings in one action — integrations and agent access die with it.

Compliance posture

In place

GDPR-aligned

Data processing agreements, EU hosting options, and DSAR handling built into the product.

In place

Encrypted end to end

TLS 1.3 in transit, AES-256 at rest. Integration tokens are scoped and stored encrypted.

In place

Auditable by design

Consent changes and context reads are append-only events — we can't quietly rewrite history.

Data requests

Access, correction, export, or deletion — we respond within 30 days, usually faster.

Contact trust team

Before you hand over your data,see the exact boundaries.

01

You set the scope

Summary, scores and raw answers stay in separate layers

02

Every read is traceable

Which agent, which layer, when

03

Revoke anytime

Revocation takes effect immediately, no copies

Three consent layers·Per-read audit trail·Immediate revocation