Techinvenso
Compliance & Legal Policy

Privacy Policy & Data Processing Agreement

Last Updated: September 2026 • Version 2.0 • PulseHR Governance Framework

1. Scope and Tenant Data Protection

PulseHR operates under strict multi-tenant data isolation. Each customer organization's personnel data, resumes, compensation figures, and biometric records are partitioned with mandatory tenant identifiers on every database transaction. PulseHR never accesses, aggregates, or trains generalized AI models on tenant personnel records without explicit written authorization.

2. Data Processing & GDPR Compliance

For clients in the European Economic Area (EEA) and United Kingdom, PulseHR acts as a Data Processor under GDPR Article 28. Standard Contractual Clauses (SCCs) are incorporated by default into all enterprise subscriptions. Data subjects retain the full right to access, rectify, port, and erase personal data through our platform administrative controls.

3. Artificial Intelligence & Candidate Privacy

Our AI recruitment screening features employ deterministic scoring rubric pipelines. No sensitive attributes (including age, gender, race, disability status, or national origin) are provided to screening graphs. Recruiter manual score overrides are permanently logged with audit timestamps and mandatory justifications.

4. Data Retention and Deletion

Upon subscription termination or customer request, all tenant data—including employee records, documents, payslips, and attendance logs—will be permanently purged from operational databases and cloud object stores within 30 days, following cryptographic sanitization standards.

Have compliance or security questions?

Our security team responds to all inquiries within 24 hours.

Contact Security Team