PRIVACY POLICY
Infradone
Last updated: September 24, 2026
Website: https://infradone.com
This Privacy Policy explains how Infradone (“Infradone,” “we,” “us,” or “our”) collects, uses, shares, and protects personal information when you visit our websites, use our software, complete our AI onboarding experience, or engage us to design, install, or support a Recruiting Operating System for your staffing or recruiting firm (collectively, the “Services”).
By using the Services, you agree to this Privacy Policy. If you do not agree, do not use the Services.
WHO THIS POLICY COVERS
This policy applies to:
• Prospects and website visitors who browse our site, book a call, or receive sales outreach.
• Customers and authorized users of our onboarding product, dashboards, documentation, and related tools.
• Business contacts at recruiting and staffing firms (owners, operators, recruiters, ops staff).
Infradone is a business-to-business service. We do not knowingly market to children under 16, and we do not intentionally collect children’s personal information.
If you provide us information about candidates, clients, or employees of your firm (for example inside ATS exports, transcripts, or uploads), you represent that you have the right to share that information with us for the purposes described here.
INFORMATION WE COLLECT
2.1 Information you provide
• Contact and account details: name, work email, company name, role, phone number, calendar booking details.
• Onboarding and desk configuration data: firm type, team size, tools/stack (e.g. ATS, CRM, email, billing), where jobs and candidates live, channels, invoice practices, process answers, chat transcript with our onboarding agent, and related slot values.
• Business content you upload or link: documents, spreadsheets, SOPs, Loom links, Drive/Doc URLs, screenshots, and other files you submit during onboarding or delivery.
• Credentials and connection metadata (when you choose to share them): account emails, workspace identifiers, connection status for tools we help configure. We ask you not to send passwords in chat; prefer secure invite/OAuth flows when available.
• Support and project communications: emails, calls, meeting notes, Slack/email threads related to delivery.
• Billing and contract information: invoicing contacts, company billing address, payment references (card or bank details are typically handled by our payment processor, not stored in full by us).
2.2 Information collected automatically
• Device and log data: IP address, browser type, device type, referring URL, pages viewed, timestamps, and approximate location derived from IP.
• Cookies and similar technologies: essential cookies for security and session continuity; optional analytics cookies if enabled on our site (see Section 8).
2.3 Information from third parties
• Scheduling tools (e.g. Calendly) when you book a diagnosis or kickoff call.
• Payment or commerce platforms if you purchase through them.
• Public business information (company website, LinkedIn) used for legitimate B2B outreach and onboarding context.
• AI model providers that return model outputs based on prompts we send (see Section 5).
HOW WE USE INFORMATION
We use personal information to:
• Provide, operate, and improve the Services (including AI-assisted onboarding and Export Bundles / Process Blueprints).
• Diagnose your desk, configure systems, write SOPs, and deliver the Recruiting Operating System engagement you purchase.
• Communicate with you about onboarding, delivery, support, scheduling, and account changes.
• Send service-related notices and, where permitted, marketing about Infradone offers (you may opt out of marketing at any time).
• Secure the Services, prevent fraud and abuse, and troubleshoot issues.
• Comply with law, enforce agreements, and protect our rights and users.
• Create aggregated or de-identified insights about desk patterns (e.g. common tool stacks) that do not identify you or your firm.
We do not sell your personal information for money. We do not use customer onboarding content to train public foundation models for unrelated third parties, except as described in Section 5 regarding our AI subprocessors’ own terms.
AI PROCESSING
Parts of the Services use artificial intelligence (currently including models provided by Anthropic and possibly other providers we engage) to:
• Interview you about how your desk works.
• Extract structured process steps, integrations, and rules into a Process Blueprint.
• Draft documentation and configuration guidance.
When AI features run, relevant portions of your prompts, answers, transcripts, and uploaded text may be sent to our AI subprocessors to generate outputs. Treat sensitive credentials, medical data, and unnecessary candidate PII as out of scope—do not paste secrets or large candidate databases into the chat.
You remain responsible for reviewing AI-generated outputs before relying on them in production systems.
HOW WE SHARE INFORMATION
We share personal information only as needed for the Services:
• Service providers / subprocessors — hosting, storage, email, analytics (if enabled), customer support tools, scheduling, payment processing, AI inference.
• Integration platforms you authorize — configuring or connecting tools such as ATS, CRM, email, Slack, Zapier, billing systems during delivery.
• Professional advisers — legal, accounting, or insurance, under confidentiality.
• Business transfers — merger, acquisition, financing, or sale of assets.
• Legal / safety — when required by law, court order, or to protect rights, safety, and security.
We require processors to use information only to provide services to us and to implement appropriate safeguards.
A current list of core subprocessors can be requested at privacy@infradone.com. Material changes will be reflected in this policy or communicated to customers.
CUSTOMER DATA AND YOUR RESPONSIBILITIES
For information you submit about your business (“Customer Data”):
• You retain ownership of Customer Data.
• You grant Infradone a limited license to host, process, transmit, and display Customer Data solely to provide the Services and fulfill our contract with you.
• You are responsible for the accuracy of Customer Data and for obtaining any consents required from your employees, contractors, candidates, or clients before sharing their information with us.
• Export Bundles, blueprints, and install docs we generate for you are Customer Data, except for Infradone’ underlying templates, software, and methodologies, which remain ours.
DATA RETENTION
We retain personal information for as long as needed to:
• Provide the Services and complete your engagement.
• Meet legal, tax, and accounting requirements.
• Resolve disputes and enforce agreements.
Onboarding sessions, blueprints, uploads, and project files are typically retained for the life of the customer relationship and a reasonable period afterward (for example, up to 24 months after the engagement ends, unless a longer period is required by law or agreed in writing). You may request earlier deletion subject to Section 9 and legal holds.
COOKIES AND TRACKING
We may use:
• Essential cookies required for login, security, and core functionality.
• Analytics cookies (if enabled) to understand site usage.
• Preference cookies to remember settings.
Where required by law, we will request consent before non-essential cookies. You can control cookies through your browser settings; blocking essential cookies may break parts of the Services.
YOUR RIGHTS
Depending on where you live, you may have rights to:
• Access, correct, or delete personal information.
• Export a copy of personal information (portability).
• Object to or restrict certain processing.
• Withdraw consent where processing is consent-based.
• Opt out of marketing communications.
• Appeal a denied privacy request (where applicable).
• Lodge a complaint with a supervisory authority.
To exercise rights: email privacy@infradone.com with enough detail to verify your identity and locate your data. We will respond within the time required by applicable law.
If you are an employee or candidate of an Infradone customer, contact that company first—they are typically the controller of your information in their systems; we process it as their service provider where applicable.
California / US state privacy notices (summary)
If you are a resident of California or another US state with a comprehensive privacy law, you may have rights to know, delete, correct, and opt out of “sale” or “sharing” for cross-context behavioral advertising. Infradone does not sell personal information as commonly defined. We do not use sensitive personal information for inferring characteristics beyond what is needed to deliver B2B Services.
EEA / UK / Switzerland (summary)
Where GDPR/UK GDPR applies, Infradone processes personal data under one or more of: contract performance, legitimate interests (B2B sales, securing systems, improving Services in a privacy-respecting way), consent (where required), and legal obligation. For international transfers, we use appropriate safeguards (such as Standard Contractual Clauses) with subprocessors as needed.
SECURITY
We implement administrative, technical, and organizational measures designed to protect personal information (access controls, least-privilege practices, encryption in transit where supported, and restricted internal access to customer projects). No method of transmission or storage is 100% secure. Please use strong unique passwords, enable MFA on connected tools, and avoid sharing secrets in chat.
If we become aware of a breach affecting your personal information, we will notify you and regulators as required by law.
INTERNATIONAL TRANSFERS
We may process information in the United States, the European Economic Area, the United Kingdom, and other countries where we or our subprocessors operate. Those countries may have different data-protection laws than your home country. We take steps designed to ensure an adequate level of protection as required by applicable law.
THIRD-PARTY LINKS AND CUSTOMER SYSTEMS
Our site and docs may link to third-party sites or tools (ATS, CRM, payment processors, scheduling). Their privacy practices are governed by their own policies. When we help you configure your systems, data in those systems remains subject to your policies and the vendor’s terms.
CHANGES TO THIS POLICY
We may update this Privacy Policy from time to time. The “Last updated” date will change when we do. Material changes will be posted on this page and, where appropriate, communicated by email or in-product notice. Continued use of the Services after the effective date constitutes acceptance of the updated policy.
CONTACT
General: hello@infradone.com
If you have an unresolved concern, you may contact your local data-protection authority.
