Privacy policy
Last updated: 16 September 2026
SafeHire is built for people whose safety can depend on who knows where they work. We collect as little as we can, keep real identity separate from everything else, and delete it on a schedule. This page explains what we collect, why, and who can see it.
SafeHire is in development. This policy describes how the service works today and will be updated before public launch.
What we collect
| Data | Why | How it is kept |
|---|---|---|
| Email address or phone number you sign in with | To send you a sign-in code | Not stored as written. We keep only a one-way, keyed fingerprint so we can recognise your account next time. |
| Worker profile: chosen name, languages, skills, preferred work and area | So employers you apply to can see if you suit the job | Kept while your account exists. It must not contain your real name. |
| Application details: your real name, phone number, identity document type and number, a message, and an optional CV | Given by you to the one employer you apply to | Encrypted in a separate identity store. Shown only to that employer, and deleted automatically after 90 days. |
| Employer details: company name, registration, address and documents | To check the employer is real before its jobs are shown | Kept as the verification record. |
| Job reports | To stop unsafe or fake jobs | We do not record who sent a report. |
| Basic technical logs: request time, page and result | To keep the service working and secure | No request contents, names or contact details are logged. |
Who can see your details
- Employers see your chosen profile when you apply. They see your real name, phone, document and CV only for an application you sent them, until it is deleted. Every view is recorded.
- SafeHire staff see employer verification records and job reports. They do not have a way to browse workers' real identities.
- No one else. We do not sell personal data or use it for advertising.
Service providers
We use a small number of providers to run SafeHire. They process data only to provide their service to us.
| Provider | What for |
|---|---|
| Amazon Web Services (Singapore region) | Hosting, databases and sending email (Amazon SES) |
| Twilio | Sending sign-in and verification codes by text message |
| "Continue with Google" sign-in for employers and staff, and address lookup on the employer job form. Not used on worker pages. | |
| Cloudflare | Website delivery and security |
Emails and messages
We send sign-in codes when you ask for them, and invitations to people added to the SafeHire team. We do not send marketing. We will never ask you for a code, a password or money.
Your choices and rights
- You can check which employers hold your application details, and until when, on the My applications page.
- You can ask us to see, correct or delete your data by contacting us. Application details are deleted automatically after 90 days whether or not you ask.
- You can stop using SafeHire at any time.
Security
Real identity is encrypted and stored separately from the rest of SafeHire. Access is limited, checked and recorded. Sign-in uses one-time codes, so there are no passwords to steal.
Contact
Questions about privacy, or a request about your data: see the contact page.