Effective: May 31, 2026
Privacy Policy
WeHireAnywhere ("we", "us", "our") respects your privacy. This Privacy Policy explains how we collect, use, share, and protect your personal data when you use our site at wehireanywhere.com (the "Service").
1. Who we are
WeHireAnywhere is operated by Rob (sole proprietor). Contact: hello@wehireanywhere.com. We act as a data controller for personal data we collect directly, and as a data processor for data we handle on behalf of recruiters.
2. What data we collect
- Account data: email, name, password (hashed)
- CV/resume data: if you upload one — your name, work history, skills, education, contact details
- Usage data: pages viewed, search queries, jobs viewed (via Vercel Analytics — anonymized)
- Technical data: IP address, browser type, device — used for security only
- Payment data: if you subscribe, processed entirely by Stripe — we never see your card details
- Communications: emails you send us, chat messages with our AI agent
3. Why we collect it (legal bases)
Under GDPR and UK GDPR, we rely on the following legal bases:
- Contract: to provide the Service you signed up for (Article 6(1)(b))
- Legitimate interest: to operate, secure, and improve the Service (Article 6(1)(f))
- Consent: for optional cookies, marketing emails, and CV processing (Article 6(1)(a)). You can withdraw consent any time.
- Legal obligation: to comply with tax, fraud prevention, and lawful requests (Article 6(1)(c))
4. How we use AI
We use Anthropic's Claude AI to:
- Power the chat assistant on our site
- Parse uploaded CVs and extract structured profile information
- Match your profile against open jobs and produce a fit score
- Generate personalized cover letters (Pro only)
AI Transparency (per EU AI Act): Our job-matching is an algorithmic assistance tool. All match scores are estimates — humans (you) make the final hiring/applying decisions. You have the right to human review of any automated decision. Email hello@wehireanywhere.com to request human review.
Anthropic does NOT train its models on data sent through their commercial API. CV text leaves your browser, is sent to Anthropic for processing, and is not retained by Anthropic after processing.
5. Who we share data with
We share personal data only with these service providers ("sub-processors"):
- Vercel (USA) — hosting and analytics. Privacy
- Anthropic (USA) — AI processing. Privacy
- Resend (USA) — email delivery. Privacy
- Stripe (USA, paid users only) — payment processing. Privacy
International data transfers: All processors are based in the United States. We rely on EU Standard Contractual Clauses (SCCs) and the EU-US Data Privacy Framework for these transfers, where applicable.
6. How long we keep data
- Account data: while your account exists, plus 30 days for backups
- CV data: while your account exists. You can delete it any time from your dashboard.
- Match history: 90 days
- Analytics: aggregated, anonymized indefinitely
- Payment records: 7 years (tax/accounting requirement)
7. Your rights
If you're in the EU, UK, California, or one of several US states with privacy laws, you have the right to:
- Access — request a copy of your personal data (GDPR Art. 15 / CCPA right to know)
- Rectification — correct inaccurate data (GDPR Art. 16)
- Erasure — delete your account and data (GDPR Art. 17 / CCPA right to delete)
- Portability — receive your data in a portable format (GDPR Art. 20)
- Object — opt out of certain processing (GDPR Art. 21 / CCPA opt-out)
- Withdraw consent — for any consent-based processing (GDPR Art. 7)
- Not be subject to solely automated decisions (GDPR Art. 22)
- Lodge a complaint with your local data protection authority
To exercise any of these rights, visit your dashboard or email hello@wehireanywhere.com. We respond within 30 days.
"Do Not Sell or Share My Personal Information" (CCPA): We do not sell your personal data. We do not share it with third parties for cross-context behavioral advertising.
8. Cookies & tracking
We use a minimal set of cookies. See our Cookie Policy for details. You can manage consent at any time from the cookie banner or your dashboard.
9. Security
We use HTTPS everywhere, hash passwords, and limit data access. No system is 100% secure — please use a strong unique password and enable any available account protections.
10. Children
Our Service is not directed to children under 16. We do not knowingly collect data from anyone under 16. If you believe we have, contact hello@wehireanywhere.com and we will delete it.
11. Changes
We may update this policy. The "Effective" date at the top reflects the latest version. Material changes will be announced via email or on the site.
12. Contact
For privacy questions, email hello@wehireanywhere.com. Designated point of contact for EU/UK GDPR matters: same address.
Disclaimer: This is a template policy. Before launching commercially, please have it reviewed by a qualified privacy attorney in your jurisdiction.