GDPR Compliant

Privacy Policy

Last updated: January 20, 2026

1Introduction

Waarheid Marketing ("Company", "we", "us", or "our") operates RolePatrol (the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your personal data when you use our Service, in compliance with the General Data Protection Regulation (GDPR) and other applicable data protection laws.

We are committed to protecting your privacy and ensuring transparency about our data practices. Please read this policy carefully to understand how we handle your personal data.

2Data Controller

The data controller responsible for your personal data is:

Waarheid Marketing

Email: contact@rolepatrol.de

Country: Netherlands

3Personal Data We Collect

We collect the following categories of personal data:

3.1 Account Information

  • - Email address
  • - Name (if provided)
  • - Profile picture (if uploaded)
  • - Authentication credentials (securely hashed)

3.2 Career Information

  • - CV/Resume content (skills, work history, education)
  • - Cover letters
  • - Job applications and tracking data
  • - Career preferences and goals

3.3 Usage Data

  • - Log data (IP address, browser type, pages visited)
  • - Device information
  • - Feature usage and interactions
  • - AI feature usage history

3.4 Payment Information

  • - Billing address (processed by Stripe)
  • - Transaction history
  • - Subscription status

Note: We do not store full credit card numbers. Payment processing is handled by Stripe.

4Legal Basis for Processing

We process your personal data based on the following legal grounds:

PurposeLegal Basis
Account creation and service deliveryContract performance
Payment processingContract performance
AI content generationContract performance
Service improvement and analyticsLegitimate interest
Marketing communicationsConsent
Legal complianceLegal obligation

5How We Use Your Data

We use your personal data to:

  • Provide, maintain, and improve our Service
  • Process your job applications and generate AI-assisted documents
  • Personalize your experience and recommendations
  • Process payments and manage subscriptions
  • Send transactional emails (account updates, security alerts)
  • Send marketing communications (with your consent)
  • Analyze usage patterns to improve our Service
  • Detect and prevent fraud or abuse
  • Comply with legal obligations

6AI Processing and Automated Decisions

Our Service uses AI (powered by Anthropic's Claude) to process your career data and generate content.

What AI processes:

  • - CV/Resume content for parsing and generation
  • - Job descriptions for matching and analysis
  • - Cover letter generation based on your profile and job requirements

Your rights regarding AI:

  • - You can request human review of AI-generated content
  • - AI outputs are not used to make legally binding decisions about you
  • - You maintain full control over using or discarding AI-generated content

7Data Sharing and Third Parties

We share your data with the following categories of recipients:

Service Providers

  • Firebase/Google Cloud - Authentication, database, hosting
  • Stripe - Payment processing
  • Anthropic - AI processing (Claude API)
  • Vercel - Web hosting and analytics

Legal Requirements

We may disclose data when required by law, court order, or to protect our rights and safety.

We do not sell your personal data to third parties.

8International Data Transfers

Some of our service providers are located outside the European Economic Area (EEA). When transferring data internationally, we ensure appropriate safeguards through:

  • EU-approved Standard Contractual Clauses (SCCs)
  • Adequacy decisions by the European Commission
  • Data Processing Agreements with all processors

9Data Retention

We retain your data for the following periods:

Data TypeRetention Period
Account dataUntil account deletion + 30 days
Career documents (CVs, cover letters)Based on subscription tier (30 days - unlimited)
Usage logs90 days
Payment records7 years (legal requirement)
Marketing consent records3 years after consent withdrawal

10Your Rights (GDPR)

Under the GDPR, you have the following rights:

Right of Access

Request a copy of your personal data

Right to Rectification

Correct inaccurate or incomplete data

Right to Erasure

Request deletion of your data ("right to be forgotten")

Right to Restrict Processing

Limit how we use your data

Right to Data Portability

Receive your data in a machine-readable format

Right to Object

Object to processing based on legitimate interests

Right to Withdraw Consent

Withdraw consent at any time for consent-based processing

Right to Lodge Complaint

File a complaint with a supervisory authority

To exercise these rights, contact us at contact@rolepatrol.de. We will respond within 30 days.

11Data Security

We implement appropriate technical and organizational measures to protect your data:

  • Encryption in transit (TLS/HTTPS) and at rest
  • Secure authentication with Firebase Auth
  • Regular security assessments
  • Access controls and audit logging
  • Data minimization practices

12Cookies

We use cookies and similar technologies to enhance your experience. For detailed information about our cookie usage, please see our Cookie Policy.

13Children's Privacy

Our Service is not intended for users under 16 years of age. We do not knowingly collect personal data from children. If we discover that we have collected data from a child, we will delete it promptly.

14Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes via email or a prominent notice on our Service. We encourage you to review this policy periodically.

15Contact Us

For privacy-related inquiries or to exercise your rights, contact us:

Waarheid Marketing - Data Protection

Email: contact@rolepatrol.de

For complaints, you may also contact the Dutch Data Protection Authority (Autoriteit Persoonsgegevens) at autoriteitpersoonsgegevens.nl