Legal

Privacy Policy

Last updated: 1 April 2026  ·  Effective date: 1 April 2026  ·  Version 1.2

Your data is never sold

We do not sell, rent, or trade your personal data to any third party. Ever.

You control visibility

You decide what's public on your Passport. Private entries are never shown to employers.

Right to delete

Request full account deletion at any time. We process it within 30 days.

1Who We Are

Veryfy is operated by LeaDe Technologies Ltd, a company registered in England and Wales (Company No. 14892371), with registered address at 20 Finsbury Street, London, EC2Y 9AQ.

LeaDe Technologies Ltd is the data controller for personal data processed through the Veryfy platform. For privacy enquiries, contact our Data Protection Officer at verified@veryfy.io.

2Data We Collect

We collect data in the following categories:

CategoryExamplesSource
Account dataName, email address, profile photo, location, job titleYou provide directly
Professional dataWork history entries, skills, qualifications, outcomesYou provide, or imported via integrations
Evidence artifactsUploaded files, linked repos, data exports, document metadataYou provide, or auto-imported via integrations
Verification dataVerifier responses, timestamps, source trust signalsThird-party verifiers and platform integrations
Usage dataPage views, feature interactions, session durationAutomatically collected
Device dataIP address, browser type, operating systemAutomatically collected

We do not collect: payment card numbers (processed by our payment provider), government ID numbers, biometric data, or the raw content of files beyond what is necessary for artifact processing.

3How We Use Your Data

We use your data for the following purposes and legal bases:

PurposeLegal Basis (UK GDPR)
Creating and maintaining your Capability PassportContract performance
Calculating and displaying your LeaDe ScoreContract performance
Processing verification signals from connected platformsContract performance / Consent
Showing your Passport to employers (where public)Legitimate interests / Consent
Sending account notifications and product updatesContract / Legitimate interests
Improving the platform and scoring model (anonymised)Legitimate interests
Complying with legal obligationsLegal obligation

4Verification Data

Verification is central to the Veryfy platform. When you request verification from a manager, peer, or platform integration, the following data is processed:

  • Verifier identity:The name and email of the person you invite to verify. We use this only to send the verification request and record the response. Verifiers' email addresses are not displayed publicly.
  • Verification response: Whether the verifier confirmed, declined, or did not respond, along with a timestamp. No free-text comments from verifiers are stored without explicit consent.
  • Platform signals: When you connect GitHub, Jira, Figma, or other services, we receive metadata (commit counts, file names, sprint IDs) — not the raw content of your code or documents.

Verification data contributes to your LeaDe Score. You may withdraw a verification request at any time before it is confirmed. Confirmed verifications may remain on your Passport unless you delete the associated work entry.

5Third-Party Integrations

When you connect a third-party service (e.g. GitHub, LinkedIn, Figma, Google Workspace, Jira, Notion, Linear, Mixpanel), you authorise us to receive data from that service via OAuth. The specific data we receive depends on the permission scope you approve during connection.

We process this data to:

  • Import evidence into your Passport entries;
  • Assign Platform Pull verification signals;
  • Suggest entry descriptions based on imported metadata.

We do not pass your integration data to any other third party. You can disconnect any integration at any time from your Integrations settings, which revokes our access token. Previously imported evidence is not automatically deleted — you can remove it manually from your Passport.

Each third-party service operates under its own privacy policy. We recommend reviewing their policies before connecting.

6Who Can See Your Passport

Your Capability Passport has two visibility modes, which you control:

  • Public Passport: Visible to anyone with the link, including employers searching the Veryfy talent portal. This includes your name, work entries, skills, verification signals, and LeaDe Score.
  • Private entries: Individual work entries can be marked private. Private entries are visible only to you and never shared with employers or search.

Employer visibility: When an employer views your public Passport, we log the event (employer name, timestamp, pages viewed) and make this available to you in your Analytics dashboard under Profile Visibility.

Employers using the Veryfy talent portal agree to use Passport data only for legitimate hiring purposes and may not download, store, or redistribute it outside the platform.

7Data Retention

We retain your data for as long as your account is active. When you delete your account:

  • Your public Passport is taken offline immediately;
  • Your personal data is deleted from our primary systems within 30 days;
  • Anonymised, aggregated data derived from your usage (e.g. for scoring model improvement) may be retained indefinitely — this data cannot identify you;
  • We may retain certain records for up to 7 years where required by law (e.g. financial records, legal disputes).

Verification records linked to third parties (e.g. a manager who confirmed your work entry) are anonymised upon account deletion — the verifier's name is removed but the verification signal status may be retained for audit purposes.

8Cookies and Tracking

We use a minimal set of cookies necessary to operate the platform:

  • Session cookies: Required to keep you signed in. These expire when you close your browser or after 30 days of inactivity.
  • Preference cookies: Store your UI preferences (e.g. theme, chart period). These are non-essential and can be cleared.
  • Analytics cookies: We use privacy-respecting first-party analytics to understand how features are used. No third-party advertising cookies are used.

We do not use cross-site tracking pixels, advertising networks, or fingerprinting technologies. You can clear all cookies by logging out and clearing your browser storage.

9Your Rights

Under UK GDPR and applicable data protection law, you have the following rights:

  • Right of access: Request a copy of all personal data we hold about you.
  • Right to rectification: Correct inaccurate data at any time (most data is editable directly in your profile).
  • Right to erasure: Request deletion of your account and personal data.
  • Right to portability: Export your Passport data in a structured, machine-readable format (JSON or PDF) from Account Settings.
  • Right to restrict processing: Ask us to pause processing your data in certain circumstances.
  • Right to object: Object to processing based on legitimate interests.
  • Right to withdraw consent: Where processing is based on consent, withdraw it at any time without affecting prior processing.

To exercise any of these rights, contact verified@veryfy.io. We will respond within 30 days. If you are not satisfied with our response, you may lodge a complaint with the UK Information Commissioner's Office (ICO) at ico.org.uk.

10Data Transfers

Veryfy's primary infrastructure is hosted in the European Economic Area (EEA). In some cases, data may be processed by sub-processors outside the EEA (e.g. cloud providers with global infrastructure). Where this occurs, we ensure appropriate safeguards are in place, including Standard Contractual Clauses (SCCs) approved by the UK ICO.

We maintain an up-to-date sub-processor list available on request at verified@veryfy.io.

11Changes to This Policy

We may update this Privacy Policy from time to time. When we make material changes, we will notify you by email and display a notice in the platform at least 14 days before the changes take effect.

Continued use of the platform after the effective date constitutes acceptance of the updated policy. You can always find the current version at veryfy.io/privacy.

12Contact and DPO

For any privacy-related questions, data requests, or complaints:

  • Email: verified@veryfy.io
  • Data Protection Officer: Taiwo Adeyemi
  • Address: LeaDe Technologies Ltd, 20 Finsbury Street, London, EC2Y 9AQ

For general legal matters, see our Terms of Service.