Privacy Policy

Last updated: June 17, 2026

This Privacy Policy explains how CloudIngest, Inc. (“CloudIngest”, “we”, “us”) handles information in connection with StaffSync, our staffing-requirement tracking platform (the “Service”). It applies to the StaffSync web application and the accounts, organisations, and data managed within it.

1. Information we collect

We collect the following categories of information:

  • Account information — name, work email address, role(s), and the organisation a user belongs to, used to authenticate and authorise access.
  • Customer content — the staffing data your organisation enters or uploads, including job requirements, candidate submissions, résumés, screening and interview notes, comments, and related documents.
  • Usage and diagnostic data — log records such as requests, timestamps, the acting user and organisation, and error reports, used to operate, secure, and troubleshoot the Service.

2. How we use information

We use information to:

  • provide, maintain, and secure the Service;
  • authenticate users and enforce role- and organisation-based access controls;
  • maintain audit trails of sensitive actions for security and compliance;
  • diagnose, debug, and improve reliability through error and uptime monitoring;
  • communicate with you about your account and service-related notices.

We do not sell personal information, and we do not use customer content to train third-party advertising or generative-AI models.

3. Roles: controller and processor

For customer content, your organisation is the data controller and CloudIngest acts as a processor — we process that data on your organisation’s instructions to deliver the Service. For account and diagnostic data needed to run StaffSync itself, CloudIngest is the controller.

4. Tenant isolation and access

StaffSync is multi-tenant. Each organisation’s data is logically isolated and scoped to that organisation; access is governed by user roles. Platform administrators may access an organisation’s data only for support and operational purposes, and such access is recorded in the audit log.

5. Sub-processors and hosting

The Service is hosted on Google Cloud Platform. We engage a limited set of sub-processors (such as cloud infrastructure, logging, and error-reporting providers) under agreements that require appropriate confidentiality and security protections. A current list is available on request.

6. Data retention

We retain information for as long as needed to provide the Service and to meet legal and operational obligations. Specific periods are described in our Data Retention policy.

7. Security

We use technical and organisational measures appropriate to the risk, including encryption in transit, access controls, audit logging, and least-privilege administration. No system is perfectly secure; we work to promptly investigate and remediate issues.

8. Your rights

Depending on your jurisdiction, you may have rights to access, correct, export, or delete personal information. Because much of the data in StaffSync is controlled by your organisation, please direct such requests to your organisation administrator; we will assist our customers in responding.

9. Changes to this policy

We may update this policy from time to time. Material changes will be reflected by the “Last updated” date above and, where appropriate, communicated through the Service.

10. Contact

Questions about this policy can be sent to privacy@cloudingest.info.