Institutional Data Governance

Enterprise Privacy & Data Processing Policy

Last Updated: September 26, 2026 • Version 2.4.0 (Enterprise GA)

Executive Summary: How VOUCHIR Treats Enterprise & Candidate Data

Data Processor Role

Your hiring organization is the Data Fiduciary / Data Controller. VOUCHIR acts strictly as a certified Data Processor.

Zero Public Data Brokerage

We never monetize candidate data, sell candidate contact details, or train public cross-customer AI models on resumes.

Zero Persistent Storage

Resumes are ingested, parsed for referral attribution, and securely transferred straight into your enterprise ATS.

1. Regulatory Stance & Data Roles (DPDP Act 2023 & GDPR)

VOUCHIR Technologies ("VOUCHIR", "we", "us", or "our") provides verified employee referral distribution and attribution software to enterprise customers. In providing our platform:

  • Data Fiduciary / Data Controller: The enterprise hiring organization subscribing to VOUCHIR is the Data Fiduciary under the Indian Digital Personal Data Protection Act, 2023 (DPDP Act) and the Data Controller under the General Data Protection Regulation (EU GDPR) and UK GDPR.
  • Data Processor: VOUCHIR operates strictly as a Data Processor under standard enterprise Data Processing Addenda (DPA), processing personal data solely in accordance with explicit customer instructions and configured integration webhooks.

2. Candidate Information Processed

When a candidate applies through a VOUCHIR verified referral link (e.g., at /apply), we collect and process only the minimal information required to verify attribution and route the candidate to the corporate Applicant Tracking System (ATS):

Identifiers: Full legal name, professional email address, phone number, and LinkedIn / portfolio URLs provided directly by the applicant.
Application Documents: Resume / Curriculum Vitae (PDF/DOCX format). Binary payload is transferred via TLS 1.3 to the ATS without long-term retention on public VOUCHIR proxies.
Referral Provenance: Cryptographic attribution token (vchr_ref_*) correlating the referral to the specific employee advocate and requisition ID.

3. Data Retention & Auto-Purge Cycles

Candidate resumes and raw submission files are ephemeral in VOUCHIR's distribution pipeline. Once ingested by the customer's ATS (e.g., Workday, Greenhouse, Lever, SAP SuccessFactors), raw binary payloads are marked for automatic deletion.

Attribution ledger logs (containing referral verification timestamps, advocate IDs, and requisition IDs) are preserved for 90 days to resolve duplicate referral conflicts, after which tenant configurations determine archival or crypto-shredding.

4. Zero Tracking Cookies & No Cross-Site Beacons

VOUCHIR believes in zero surveillance analytics. We do not use third-party advertising pixels, behavioral trackers, or marketing analytics trackers (such as Facebook Pixel, Google AdServices, or data aggregator SDKs) on our candidate intake or dashboard interfaces.

Only strictly essential session cookies and anti-CSRF authentication tokens required for operational integrity are stored.

5. Candidate Rights (Access, Correction & Erasure)

Under the DPDP Act 2023 and GDPR, candidate data subjects retain rights to:

  • Right to Confirmation & Access: Review personal data processed through our referral gateway.
  • Right to Correction & Erasure: Request immediate rectification or deletion of candidate profiles and uploaded resumes.
  • Right to Withdraw Consent: Withdraw candidate consent at any stage of the recruitment screening lifecycle.
  • Right to Grievance Redressal: Direct compliance inquiries to our certified Data Protection Officer.

Because the hiring employer is the Data Controller, requests submitted to VOUCHIR will be processed in coordination with the respective employer's recruiting operations.

6. Technical & Organizational Security Controls

Encryption at Rest & TransitAll application traffic is protected via TLS 1.3. Tenant datastores utilize AES-256 cryptographic volume encryption with customer-controlled KMS keys.
Single-Tenant VPC DeploymentEnterprise tiers allow complete stack isolation within the customer's AWS, Azure, or GCP private cloud boundary.
Role-Based Access Control (RBAC)Strict principle of least privilege governs all internal administrative tooling with multi-factor authentication (MFA) and SAML/SSO enforcement.
Immutable Audit LoggingEvery attribution match, status webhook, and candidate link access generates a tamper-evident audit record streamable to customer SIEMs.

7. Contact Our Data Protection Team

For privacy inquiries, DPA requests, or to exercise candidate rights under DPDP or GDPR, please contact our Data Governance team:

VOUCHIR Technologies — Office of the Data Protection Officer

Email: privacy@getvouchir.com

Legal: legal@getvouchir.com

Physical Address: VOUCHIR Technologies Inc., Enterprise Privacy Operations, Bengaluru & Delaware

System Architecture Powered by VOUCHIR Integration Engine