Talecto

Privacy Policy

Your privacy matters. Learn how we protect and handle your data.

Last updated: June 4, 2026

Introduction

At Talecto, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our applicant tracking system (ATS) and related services.

We are committed to GDPR compliance and protecting the personal data of all users, candidates, and organizations using our platform.

Information We Collect

Account Information

When you create a Talecto account, we collect:

  • Name, email address, and contact details
  • Company name and organizational information
  • Payment and billing information (processed securely by our payment partners)

Candidate Data

Our customers upload candidate information including:

  • Resumes and CVs
  • Contact information and application details
  • Interview notes and assessments
  • Communication history and evaluation scores

Usage Data

  • Log data (IP addresses, browser type, access times)
  • Device information and operating system
  • Cookies and similar tracking technologies (with your consent)

How We Use Your Information

  • Provide, maintain, and improve our ATS platform
  • Process recruitment workflows and candidate evaluations
  • Send service updates, security alerts, and support messages
  • Analyze platform usage to enhance features and user experience
  • Prevent fraud, abuse, and security incidents
  • Comply with legal obligations and enforce our terms

Legal Basis for Processing (GDPR)

Under GDPR, we process personal data based on:

  • Contract Performance: Processing necessary to provide our services to you
  • Consent: Where you have given explicit consent (e.g., cookies, marketing)
  • Legitimate Interests: Platform improvement, fraud prevention, and security
  • Legal Compliance: Meeting regulatory and legal requirements

Data Sharing and Disclosure

We do not sell your personal data. We may share information with:

  • Service Providers: Trusted third parties who help us operate our platform (hosting, analytics, payment processing) under strict confidentiality agreements
  • Legal Requirements: When required by law, court order, or to protect rights and safety
  • Business Transfers: In connection with a merger, acquisition, or sale of assets (with notice to you)

Data Security

We implement industry-standard security measures:

  • End-to-end encryption for data in transit (TLS/SSL)
  • Encryption at rest for stored data
  • Regular security audits and penetration testing
  • Access controls and authentication mechanisms
  • SOC 2 Type II, ISO 27001, and GDPR compliance

Support Chat Data

What Data We Collect

Our support chat system is built in-house. When you use it, we collect:

  • Chat messages and conversation history
  • Timestamps of messages
  • Chat ratings and feedback you provide
  • User identification information (name, email, account ID)

Why We Store This Data

  • To provide quality customer support and resolve your issues
  • To improve our support service and AI assistant capabilities
  • To analyze common issues and enhance our platform

Data Retention and Control

All chat sessions are automatically deleted after 90 days. You can manually delete any chat session at any time from your user settings. Our AI assistant helps provide faster, more accurate support responses.

Who Can Access Chat Data

  • Support agents assigned to your case
  • System administrators for quality assurance
  • Authorized personnel for security and compliance reviews

Your Rights

You can delete individual chat sessions anytime in your user settings. You also have the right to request complete deletion of all your chat data by contacting us at privacy@talecto.com.

Your Privacy Rights

Under GDPR and data protection laws, you have the right to:

  • Access: Request a copy of your personal data
  • Rectification: Correct inaccurate or incomplete data
  • Erasure: Request deletion of your personal data ('right to be forgotten')
  • Restriction: Limit how we process your data
  • Data Portability: Receive your data in a machine-readable format
  • Object: Object to processing based on legitimate interests
  • Withdraw Consent: Withdraw consent at any time (where processing is based on consent)

Data Retention

We retain personal data only as long as necessary:

  • Account data: For the duration of your subscription plus legal retention periods
  • Candidate data: As controlled by our customers (data controllers) within their retention policies
  • Usage logs: Typically 12-24 months for security and analytics purposes

Contact Us

For privacy questions, data requests, or to exercise your rights, contact our Data Protection Officer:

Email: privacy@talecto.com

Privacy Policy | Talecto ATS | Talecto