Privacy baseline

How ITA Platform handles data in the current product

The platform stores role-scoped workspace data for students, companies, and admins. Public visibility is limited by the current product rules: companies only see approved public profile data, and private student records stay inside the authenticated workspace.

Legal review note: this page reflects the current product behavior and still needs final business-specific review before public launch.

What the platform currently records

This build persists the operational data needed to support the product workflows that already exist in the app.

  • Authenticated user accounts and role assignments.
  • Student profiles, visibility settings, tasks, labs, interviews, bookmarks, messages, notifications, and audit records.
  • Admin review actions for task, lab, and profile-image moderation.

How visibility works today

The current access model is server-side enforced. Hiding data in the UI is not the control mechanism.

  • Students only receive their own linked student data and approved public status where applicable.
  • Companies see public student profile information and approved profile imagery only.
  • Admins can access operational review and audit surfaces inside protected routes.

What still needs legal review

These points are intentionally conservative and should be replaced with final business/legal language before external launch.

  • No claim is made here about formal compliance certification, legal coverage, or jurisdiction-specific obligations.
  • Data deletion, export, retention, and incident-response policies may need dedicated product and legal documentation.
  • Any future lead capture, email delivery, or external integrations should be documented in their own notices if implemented.