The Trust Centre.
GDPR, security, infrastructure, data lifecycle, auditability, client isolation. Everything an enterprise or agency buyer needs to green-light Talent Hub Intelligence. Transparent. Auditable. Yours.
Six principles.Engineered in, not bolted on.
We comply with the UK GDPR, the EU GDPR (where applicable), and the Isle of Man Data Protection Act 2018. Each statute sets out the same six principles — and each one shapes how the platform is designed, not just what the policy says.
Lawful, fair and transparent
Every candidate sees clear, plain-language consent screens. Every recruiter action is logged. Nothing happens silently.
Purpose limitation
Data collected for one purpose isn't reused for another. Candidate data is for matching candidates to roles — full stop.
Data minimisation
We only store what the platform actually needs to work. Optional fields stay optional. Nothing is harvested in the background.
Accuracy
Candidates can update their own profile any time. Recruiters can correct records on request. Inaccurate data is never load-bearing.
Storage limitation
You set the retention rules per data category. Old records are flagged for review or auto-purged on schedule.
Integrity & confidentiality
Encryption in transit (TLS 1.3) and at rest (AES-256). Isolated instances. Role-based access control. Daily backups, geographically redundant.
Six rights.All built into the platform.
Under UK GDPR, every data subject has six rights. We don't make you fill in a form to exercise them — they're surfaced inside the candidate portal.
All fields, all communications, all applications — visible in the portal in plain English.
One-click export of the full record. Delivered within statutory timeframes.
Candidates update their own profile fields directly in the portal.
Every edit timestamped. The before/after is preserved for audit.
Candidates initiate erasure from inside the portal — no email chains required.
Deletion cascades into backup rotations on the documented schedule.
The platform flags any record under legal hold so you can act compliantly.
Toggle a candidate out of all automated workflows with a single setting.
Frozen records are clearly flagged for every recruiter who views them.
Complete profile data delivered in both human-readable and machine-readable formats.
Your data isn't held hostage — export anytime, regardless of subscription status.
Per-channel and per-category opt-outs — not all-or-nothing.
Objections take effect in real-time. No queued sends, no exceptions.
Hosted on certifiedEuropean infrastructure.
Talent Hub Intelligence runs on OVHcloud — Europe's largest sovereign cloud provider. Your data stays in UK or EU data centres, governed by UK and EU law.
Certifications & Audits
Information security management.
Cloud-specific security controls.
Personal-data protection in the cloud.
Privacy information management.
Audited service organisation controls.
Healthcare-grade data hosting.
Payment-card industry security.
Full statutory compliance, audited annually.
Defence in depth —at every layer.
Encryption, isolation, audit, backup, access control — engineered in from day one. Not a bullet point added when the contract demanded it.
In transit & at rest
TLS 1.3 for all traffic. AES-256 encryption at rest. Keys rotated on the documented schedule, never reused across instances.
Single-tenant by design
Each client runs on its own dedicated instance. No shared database. No cross-client query paths. No accidental data bleed.
Every change recorded
Every recruiter action, every candidate edit, every system event — timestamped and stored in an immutable audit trail.
Daily, geographically redundant
Automated daily backups to a separate OVH region. Restore-tested on a defined cadence. Documented RTO and RPO.
Role-based, MFA-enforced
Granular roles and permissions. Multi-factor authentication for all recruiter accounts. SSO integration available.
48-hour breach notification
Documented incident-response process. We commit to notifying you within 48 hours of becoming aware of a personal data breach — ahead of the statutory 72-hour window — so you can meet your own ICO obligations with time to spare.
From collectedto erased.
Every piece of candidate data follows a defined journey — and a defined end. You configure the retention rules; the platform honours them automatically.
Collected — with explicit consent
Candidates choose what to share. Optional fields stay optional. Consent records are timestamped and version-tracked.
Processed — for matching only
Data is used to score the candidate against open roles. No silent secondary use. No external sharing without explicit additional consent.
Retained — on your schedule
You define retention periods per data category. Candidates can also set their own opt-out date.
Reviewed — when retention hits
The platform surfaces records approaching their retention limit. Recruiters can extend (with renewed consent) or let the auto-purge proceed.
Erased — across all systems
Deletion cascades to primary storage, backup rotations, and indexes. Audit logs retain the fact of deletion, not the deleted data itself.
Retrievable — for 30 days after exit
If your subscription ends, your Client Platform is preserved offline for a 30-day Retention Period. During that window we can return your data in a commonly used, machine-readable format. After 30 days, the instance is permanently and securely destroyed.
Have compliance questions? Talk to our DPO.
We're happy to walk through our security posture, share our DPA template, or answer specific questions about how your team's data would be handled. No salesperson — just a direct conversation.