← Back to Profile Audit

Privacy Notice

Effective 10 September 2026 · Version 1.0

This notice explains what personal information Profile Audit collects, why, how long we keep it, and the choices you have. It is written to comply with the Protection of Personal Information Act 4 of 2013 (POPIA).

1. Who we are

Profile Audit is a South African service operated by A. Koetaan from this domain. For purposes of POPIA, the operator is the responsible party for the personal information described below.

2. Information Officer

Our Information Officer is Aidan Koetaan. You can reach the Information Officer by phone or WhatsApp on +27 83 783 4407 for any privacy request, question or complaint about this service, including requests under section 23 of POPIA.

3. What we collect

4. What we do not collect

We do not scrape LinkedIn profiles for free-tier users, we do not sell personal information, and we do not use your content to train AI models.

5. Why we process it (legal basis)

6. Who else sees your data

ProcessorWhat they getWhy
Anthropic / Cloudflare Workers AIProfile or CV text you submitGenerate the audit, cover letter or CV output
PayFastPayment details onlyProcess R149, R199 and R50 payments
ResendYour email addressVerification and password reset emails
Bright Data (Pro URL audits)The public LinkedIn URL you submitFetch public profile text for Pro-tier URL audits
Microsoft ClaritySession interaction dataUnderstand how the site is used

These processors are bound by their own data processing terms. We do not otherwise share your information with anyone.

7. How long we keep it

DataRetention period
Account (email, hashed password)Until you delete your account, then 30 days
Audit and application records12 months from creation
Payment records5 years (tax and accounting requirements)
Server logs90 days

Deleting your account removes your profile text, CV text, audits and applications from active storage. Backup copies age out within 30 days.

8. Your rights

Under POPIA you may request access to your personal information, correction or deletion of it, and an account of how it has been used. Contact the Information Officer above and we will respond within a reasonable period. You may also lodge a complaint with the Information Regulator of South Africa (inforegulator.org.za).

9. Security

Passwords are hashed, all traffic runs over HTTPS, and the database is encrypted at rest. No system is perfectly secure, but we store the minimum data needed to run the service, and we do not keep payment card data at all.

10. Your own obligations

Only submit your own profile and CV text, or content you have permission to submit. If you paste someone else's personal information, that is between you and them — do not use this tool to process other people's data without their consent.

11. Changes to this notice

If this notice changes, the new version and its effective date will be published on this page. Material changes that affect you directly will also be flagged in the service.