Candidate & client data
Data Handling Statement
A plain-language description of how candidate personal data is collected, stored, accessed, and removed as it moves through our recruitment pipeline.
Template content — for business review.
This statement describes the practices the platform was built to enforce. It must be reviewed and approved by the business before launch, and updated with the company's registered legal name, registration number, and effective date.
1. Why this statement exists
Recruitment runs on personal data: resumes, contact details, salary expectations, interview notes, and occasionally interview recordings. Because candidates trust us with that data before they have any relationship with the companies we recruit for, we hold ourselves to explicit handling rules. This statement explains them in plain English; our Privacy Policy covers the legal framework.
2. What candidate data we hold
For each candidate in our pool we may hold: full name, email address, phone number, resume file, skills and work history, years of experience, salary expectation, availability, English proficiency, timezone, the channel through which we found them, recruiter notes, screening outcomes (pass, fail, hold), structured interview records, weighted scorecards, and a written recommendation when they are shortlisted. Optional interview recordings are stored only as links, and only when the candidate has been informed.
3. Where data lives and who can open it
Storage. Data is stored in a managed relational database, and resume files are stored in a private object store outside any public webroot. Files are served only through an authenticated, policy-checked download endpoint.
Access control. Every read and write happens under a signed-in user account with one of four roles — admin, recruiter, client, or candidate — enforced on the server, not by hiding buttons. Recruiters and admins can manage the pipeline; a client account can only ever see its own requirements and the candidates shortlisted to them, with scorecards and recommendations attached; a candidate account can see only their own profile and application status.
Audit trail. Every stage change, decision, and access-control-relevant action is written to an append-only activity log with the user, action, subject, and timestamp, so handling practices can be reviewed.
4. How data moves through the pipeline
A candidate profile is created at sourcing and is visible only to agency staff. It stays internal through screening, interview, and scoring. The first time a client sees a candidate is at shortlist, when the client-facing view — the candidate's profile, their weighted scorecard, and the recruiter's written recommendation — is generated for that client's eyes only. If the client rejects or puts the candidate on hold, the candidate returns to the internal pool, not to any shared list.
Salary expectation data is never shown to the client; compensation discussion happens between the client and the candidate. Resume files are never emailed as attachments — clients download them through the authenticated platform.
5. Cross-border handling
Candidate data is collected in the Philippines and may be viewed by client users outside the Philippines when a shortlist is shared. That transfer is inherent to the service candidates sign up for, is limited to shortlisted candidates, and is covered by the consent captured at intake and our contracts with client companies.
6. Retention and removal
Candidate profiles remain in the talent pool after an individual requirement closes, so we can propose strong runners-up for future roles. Any candidate can ask to be removed at any time by emailing hello@phtalentpartner.test; removal deletes the profile, its resume file, and associated application records that are no longer needed for legal or financial reporting.
Placement-related financial records (such as fee calculations) are retained for the period required by Philippine tax and commercial law, without the underlying resume or interview material.
7. Security measures
All traffic to the platform is encrypted with TLS. Passwords are stored only as salted hashes. The API requires token or session authentication on every request, and the public intake endpoint is rate-limited. Resume uploads are restricted to document file types and a size limit, with filenames sanitized before storage. Access to the database and file store is limited to the application layer — there is no public bucket.
8. If something goes wrong
If we become aware of a breach that affects candidate or client personal data, we will contain it, assess the impact, notify affected individuals and the National Privacy Commission as required by the Philippine Data Privacy Act of 2012 (RA 10173), and document what happened and what we changed.
9. Contact
Questions about how we handle data, or a request to access, correct, or delete your data:
hello@phtalentpartner.test
Makati City, Philippines
Effective date placeholder — to be set when the business approves this statement for publication.