Privacy Policy

What we collect

Information you give us

Information we generate

Information from your use of the agent surface

If you authorize a third-party application over MCP, we record the shape of each call and never its contents: which account, which application, which tool, whether it succeeded, and how long it took. We do not log the job description you sent or the profile that came back.

What we do not collect

Cookies

One cookie, for your login session. It is what keeps you signed in between pages. There is no tracking cookie to opt out of because we do not set one.

Who we send your information to

We do not sell your information, and we do not share it for anyone else's marketing. We do send it to the services that make the product work:

Each of these providers has its own terms governing what it may do with what it receives. We do not send your content to anyone for model training.

The public role library

Publishing a role is opt-in and per role. When you publish, that role profile becomes a public web page at a stable URL, and search engines can index it. This is the one part of the product that deliberately makes your content public, so it is worth reading twice.

Connected applications

Authorizing an application over MCP gives it a token scoped to what you approved on the consent screen: reading your account, running assessments, or generating roles. It cannot publish anything publicly and it cannot reach anything administrative, because those permissions do not exist on that surface.

Applications register themselves, so the name one shows you is its own claim rather than something we vouched for. Check the address the consent screen shows you, which is where your authorization is actually delivered. You can see and revoke every connected application in settings.

How long we keep it

Your choices

Security

Passwords are hashed. Traffic is encrypted in transit, and the database requires an encrypted connection. Repeated failed sign-ins lock an account temporarily. Verification and password reset links expire after an hour.

No system is perfect, and we are not going to claim otherwise here. If you find a security problem, write to privacy@talentguard.com and we will take it seriously.

Children

This is a product for people doing hiring and HR work. It is not directed at children, and we do not knowingly collect information from anyone under 16. If you believe a child has created an account, write to us and we will remove it.

Where your information is processed

TalentGuard is based in the United States and the services above process information in the United States and other countries. Using the product means your information is handled there.

How the AI features work

Both features are AI-generated and neither is reviewed by a person before you see it. An assessment score is a prediction about how cleanly a description can be transformed, not a judgment about the job or whoever wrote it. A generated role profile is a draft. Skills come from public labor-market data or from the description you uploaded, never invented by a language model.

We keep a fuller algorithmic transparency document covering the models, inputs, outputs, known limitations and human oversight. Ask support@talentguard.com for a copy.

Changes to this policy

We will update this page when what we do changes, and we will move the date at the top when we do. If a change is significant, we will say so rather than relying on you to notice a date.