Delete your account and data
Candidate and recruiter accounts can be permanently deleted inside the app from Account and privacy → Delete account. This removes the Auth identity, profile/contact data, payout secrets, CV access, messages, notification registrations, and associated personal data.
If you no longer have the app, use the deletion-request email below. Include only the email address, phone/WhatsApp contact, application reference, or recruiter code needed to find the account. We verify requests to prevent unauthorized deletion; you will not be required to reinstall the app.
After identity verification, an external deletion request is normally completed within 30 days, or sooner where applicable law requires. If a lawful retention exception applies, we will explain what is retained and why.
Deleting Customer Service Guy does not delete a separate Google account or an account or referral record held independently by Teleperformance or another employer. If a referral was already submitted, that recipient handles its copy under its own privacy notice and applicable hiring-record obligations. Contact the recipient directly or ask our privacy contact for help identifying or relaying the appropriate request route.
The fixed platform-owner account requires assisted deletion so ownership and security controls can be transferred safely. Candidate and recruiter deletion is not limited by this exception.
Who can see what
- Platform owner / ultimate recruiter: sees all candidates, recruiters, conversations, statuses, attribution, commissions, moderation reports, and audit history. Only the owner can retrieve CV bytes.
- Approved recruiter: sees only candidates attributed to their permanent referral code, candidate-safe fields, owner-set status, supervised chat, announcements, language rules, and their commissions. Recruiters cannot open/download CVs or set official statuses.
- Candidate: sees their own application, status, and conversation. A referral code is optional; leaving it blank creates a direct owner candidate.
Information processed
Candidates
Anonymous or Google-linked account ID; name; email or phone/WhatsApp contact; target language; eligibility confirmations; CV file/type/size/security result; optional referral code; application reference, status, timestamps, timeline, messages, reports and blocks; notification token and delivery state. A CV can itself contain an address, work and education history, skills, contact details, and an optional photograph.
Recruiters
Account ID and email; legal and public name; phone/WhatsApp; country; permanent referral code; candidate activity; payout account-holder and IBAN; approval state; language rules; commission/payment records; announcements, messages, reports, and audit events.
Purposes
We use this data to operate secure accounts, employee-referral attribution, candidate statuses, supervised messaging, owner CV submission, recruiter approval, payout administration, notifications, moderation, deletion, audit, fraud/spam prevention, and security. The recruiter share is 25% of net referral income the owner actually receives, payable only after the candidate starts and that payment clears.
Personal data is not sold. The app has no third-party advertising SDK.
Limited network and security records can include IP address, request time, user agent, app/account identifiers, and security-event metadata.
CV storage
Before private storage, the server checks the CV's supported format, file signature, size, and filename. CV bytes are stored in private platform Storage and are not sent to a third-party file-scanning provider. Include only information needed for the job application; do not include government ID numbers, bank details, health information, or other unnecessary sensitive data.
Payout and financial protection
Recruiter IBAN and account-holder values are encrypted server-side and excluded from normal app reads, logs, analytics, and notifications. Other recruiters never receive them. Only the owner can reveal them in an audited, confirmed action. Payout secrets are erased on recruiter account deletion. Minimal pseudonymous ledger evidence can remain for applicable accounting, tax, dispute, fraud-prevention, or legal duties.
Messaging and Community Rules
Candidates and recruiters accept rules prohibiting spam, harassment, threats, sexual or exploitative content, child endangerment, hate or discriminatory abuse, impersonation, fraud, illegal content, and misuse of candidate or payout information. A participant can report a specific message and block the other participant. Blocking is enforced by the database and stops new one-to-one messages.
Reports enter the owner's moderation/audit workflow. The owner can review conversations, delete an abusive candidate dossier and its conversation, or suspend or remove recruiter access. Official application-status updates remain separate from chat.
Service providers and international transfers
- Supabase: Auth, Postgres, Row Level Security, private Storage, Edge Functions, cleanup, and sessions.
- Google: optional Google sign-in.
- GitHub Pages: public privacy/deletion hosting and the HTTPS OAuth return page.
- Firebase Cloud Messaging: push notifications.
- Android email/phone apps: only when the user opens an explicit external contact action.
External referral recipient: when a candidate requests an employee referral, the owner may manually provide the CV, contact details, and relevant application information to Teleperformance or another clearly identified employer or referral platform. That recipient acts under its own privacy notice and is not a Customer Service Guy service provider. CVs are not automatically published or made visible to recruiters.
During Google sign-in, the GitHub Pages return page receives normal HTTPS request metadata plus the short-lived authorization code (or limited OAuth error details), one-time state, and selected account-access route in the return URL. PKCE prevents the page or another app from exchanging the code without the encrypted verifier held by Customer Service Guy. The page never receives an access token, refresh token, CV, candidate contact, referral code, or payout information, and removes the one-time response from browser history before opening the app.
Data is transmitted using HTTPS. International processing requires the provider's applicable contractual and transfer safeguards. Server secrets, payout encryption keys, full push tokens, and raw IBANs are not embedded in the Android application.
Retention
- Account deletion erases personal application, contact, CV, answer, and conversation data, subject only to minimum lawful pseudonymous records.
- Active application records otherwise carry a 365-day retention deadline unless removed sooner or a documented legal reason requires a different period.
- Recruiter payout secrets are removed and referral codes retired on account deletion.
- Pseudonymous financial, moderation, and audit evidence is kept only for applicable accounting, tax, fraud-prevention, dispute, security, or legal duties, then deleted or irreversibly anonymized.
Where a service provider holds associated data on behalf of Customer Service Guy, it is deleted or the provider is instructed to delete it in accordance with the applicable contract and legitimate retention requirements.
Children
Customer Service Guy is intended for people who can lawfully participate in an employment application or employee-referral process. It is not designed for children. Do not submit a child's personal data. If we learn that a child's data was submitted, we will remove it subject to any legally required verification or retention.
Security and choices
Controls include encrypted transport, private Storage, owner-only CV retrieval, Row Level Security, protected server functions, encrypted local sessions, PKCE Google sign-in with one-time state validation, active owner-session checks, server-only secrets, abuse quotas, messaging rate limits, audit events, and scheduled CV cleanup.
Users may apply without a referral code, use anonymous candidate access, decline form consent and not submit, report or block in chat, disable Android notifications, and request access, correction, deletion, restriction, or another applicable privacy right.
Contact and changes
Privacy contact: algorise@usa.com.
Material changes update the date at the top. Where required, users will be notified or asked for renewed consent before new processing begins.