DRAFT – REQUIRES LEGAL REVIEW BEFORE PUBLIC LAUNCH
What this version uses
Account data can include your email, optional phone and verification state, account and session information, adult and policy attestations, public name, general city/state, optional ZIP, selected modes and professional profile details. We record an adult attestation rather than requesting your date of birth. We also process the jobs, applications, choices about what to share, conversations, community activity, reports and account controls you use.
You may add a professional headline, experience, work categories, skills, certifications, languages, and availability to your worker profile. Employer profiles may include a public name, organization description, industry, and professional website. These fields are optional additions to your base account profile.
Public and private information
Approved open jobs display their work details and general location. Public employer profiles can show the business information selected for publication. Your public name may appear with community posts and other content you choose to publish. There is no public worker directory. Your email and phone are private unless you explicitly share them for an application. Employers can see worker professional details only through the application access rules described below.
Search and saved jobs
Search uses manual city, state and ZIP filters. Voccora does not store these filters as account search history. When the service is available, selected terms and location filters are sent to the backend to find matching jobs. Optional radius search uses a public Census city/place reference point, not your device location or home address; distances are approximate between place points. Search URLs can remain in your browser history. Hosting and database providers may maintain operational request logs; their identities and log retention settings have not been verified, so this draft makes no claim about how long those logs retain query values. Saved jobs are a private list tied to your account, and unavailable listings no longer reveal their earlier details.
If you choose recommendations, the backend compares approved listings with the categories, skills, experience and availability saved in your worker profile at the time of each request. It uses fixed, explainable rules rather than an AI model, shows the matching reasons only to you, does not share them with employers and does not store them.
Sharing by application
The application form explains what an employer can see. Optional email sharing starts unchecked. You can revoke contact sharing from Applications. Information already viewed or copied by another person cannot be recalled.
Applying lets that employer view your saved worker professional details while the application is submitted, accepted, or completed. Declining or withdrawing closes that access. Blocking or account restrictions also limit visibility. Revoking contact permission controls contact details separately from professional profile access. There is no public worker directory.
Private resumes
Resumes are private files. Uploads enter quarantine and cannot be downloaded or shared until the server approves the file analysis. Each upload creates an immutable version. When applying, you can choose one approved version and explicitly allow that employer to access it for up to 30 days. Anything inside the file, including contact information, is included in that choice.
Revoke resume access separately in Applications, or delete the resume to close access to all versions and request file erasure. Declining or withdrawing an application, blocking, and account restrictions also close access. Previously downloaded copies cannot be recalled. Remove home addresses, identity numbers, and unnecessary personal information before uploading.
Work time and pay statements
Voccora Pay records work sessions, breaks and a straight-time estimate from the rate in accepted work terms. You may upload a PDF pay statement to a private, scanned document library and enter gross-pay comparison details. Pay statements and comparisons are visible only to you; Voccora does not process salary, run payroll, calculate taxes or decide whether pay complies with law. The estimate is not a wage determination.
Sessions and service providers
Necessary session cookies keep you signed in. Supabase is the intended authentication, database and private-file service, but the separate Voccora Development project has not yet been provisioned. Final service providers, data locations, international transfers and provider-specific handling must be confirmed before this notice can be published. The current source has no configured advertising tracker or third-party analytics provider. Voccora's Admin analytics use threshold-suppressed regional aggregates, not row-level user records. Sensitive account and conversation content must not be written to application logs.
Notifications and device push
In-app notices, optional email, and optional device push are separate choices. Push categories start off. If device push is enabled for your account and you grant your phone's notification permission, the app registers a device token so Voccora can send a generic alert that directs you to the signed-in notification center. The push message does not include message text, job details, or profile information. Device tokens are encrypted in Voccora's database and removed when you revoke the device, request account deletion, or the provider reports that the token is no longer valid. Firebase Cloud Messaging processes the token and delivers push messages when that service is configured. Turning off every push category cancels pending alerts and removes registered device tokens; turning off one category keeps the token only for any other category you still enabled. You can manage the operating-system permission in your device settings. Essential account verification and security emails are separate from optional email and push preferences. Optional email categories, including marketing, start off and require separate consent; creating an account does not opt you into marketing. Each category can be changed or unsubscribed independently. Email and push delivery providers are not configured, so delivery has not been verified.
Your choices
You can edit your profile, change communication preferences, revoke application contact permission, block people, sign out sessions, and request account deletion. Optional email and device push categories, including marketing email consent, are separate and off by default.
Deletion and retention
A deletion request immediately disables account access and is recorded for follow-up. A worker can delete exact queued resume and pay-statement files after its grace period. That does not erase all profile, application, conversation, community, safety, billing or authentication records. Whole-account erasure or anonymization is not yet automated. A reviewed retention and legal-hold schedule is required before publication; this draft does not promise a completed deletion time.
Request account deletion on the web
Data export and questions
Signed-in active users can download a versioned JSON export from Settings or the native Account screen. Uploaded resume and pay statement files remain available in their private libraries and are not embedded in the export. The export excludes credentials, session tokens, internal moderation deliberations, provider references and unrelated users' information. Its live-service behavior and platform file-save behavior are not verified. Public contact details and the responsible legal party must be supplied and reviewed before public launch. This draft does not assume a registered business entity.
AI and personal data
Your profile and messages are not automatically sent to an AI service. In the private resume builder, you may review an editable profile import, confirm the facts you want to use, and request suggestions from a configured worker using those facts. Formatting without AI is also available. Drafts and suggestions are private to you; employers receive only a file version you explicitly share. Private resumes, chats, pay statements and profiles are not used to train models. No hosted AI provider is configured for production; the final provider and processing details must be reviewed before enabling one. Product policy is not to sell personal data; the final notice and supporting controls still require owner and legal review.
Open privacy settings