← Back to home

Privacy Policy

Last updated: April 2026

Your privacy matters. This policy explains what personal data Selfpage ("we", "us", or "our") collects, how we use and share it, and your rights under applicable data protection laws, including the General Data Protection Regulation (GDPR).

1. Data Controller

For the purposes of the GDPR, Selfpage acts as the Data Controller of the personal information you provide when using our service.

2. Data We Collect

We collect information you directly provide to us, including your name, email address, and the CV/resume content you submit. We also automatically collect analytics data, such as IP addresses, browser types, and usage patterns to optimize our services.

3. Lawful Basis and How We Use Your Data

We process your data based on the following legal grounds:

  • Contractual Necessity: To generate your portfolio, host your subdomain, and manage your account or subscription.
  • Legitimate Interests: To improve our service functionality, ensure security, and conduct product analytics.
  • Consent: When you subscribe to our newsletters or optional marketing communications, which you can revoke at any time.

4. Cookies and Tracking

We use essential cookies to maintain user sessions and security. We also use functional cookies to analyze site traffic. You can adjust your browser settings to refuse cookies, though some features of the service may not function properly.

5. Third-Party Services and International Transfers

We rely on third-party service providers for AI processing, analytics, and payment processing (e.g., Stripe). These partners may process your data outside the European Economic Area (EEA). When this happens, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses, to protect your privacy.

6. Data Retention

We retain your account and portfolio data only for as long as your account is active or as needed to provide you the services. Once you request account deletion, your data is permanently removed from our active systems within 30 days, except where legally required to retain transaction records.

7. Your Privacy Rights

Under the GDPR and similar laws, you have the right to:

  • Access the personal data we hold about you.
  • Request correction of inaccurate or incomplete data.
  • Request deletion of your personal data ("Right to be Forgotten").
  • Restrict or object to our processing of your data.
  • Request data portability (receive your data in a structured, machine-readable format).
  • Lodge a complaint with a supervisory data protection authority in your jurisdiction.

To exercise these rights or ask questions, contact us at [email protected]