Controlled data

Employee, candidate, payroll, attendance, transcript, and audit data stay scoped to the tenant.

Purpose bound

Processing supports authentication, HR workflow, AI assistance, billing, support, security, and audit.

Retention review

Export, deletion, and retention should be reviewed before offboarding or workspace closure.

Data categories

Data may include user identity, account profile, tenant profile, employee record, payroll preparation data, attendance, leave, documents, candidate data, assessment, transcript metadata, support messages, billing reference, and audit events.

Processing purpose

Data is processed for authentication, tenant isolation, role access, HR workflow, payroll preparation, recruitment workflow, AI assistance, analytics, billing, support, security, and audit evidence.

Employee and candidate data

Customer controls employee and candidate data entered into the tenant. Customer is responsible for notice, consent, lawful basis, retention policy, and internal access review.

AI processing

AI features may process approved tenant context for summary, scoring, draft generation, question generation, and recommendations. AI output is stored or audited only where the product workflow requires it.

Security controls

Controls include SSO, 2FA, RBAC, httpOnly sessions where applicable, tenant-aware routing, upload limit, audit log, provider readiness checks, and secure payment redirects.

Retention and export

Data retention, export, and deletion follow product features, contract terms, operational audit needs, and legal obligations. Customer should export needed records before deleting a tenant or workspace.

Subprocessors and providers

Payment, email, AI, storage, video, and integration providers may process limited data required for enabled features. Provider readiness surfaces should show missing or degraded configuration without exposing secrets.

MeetsIn Hire

Run people operations with evidence.