TheFinanceRoom legal
Privacy Policy and GDPR
How TheFinanceRoom collects, uses, stores and protects personal data.
1. Controller
TheFinanceRoom acts as controller for personal data processed to operate the marketplace, manage accounts, process bookings, provide support, improve safety and comply with legal obligations.
2. Data collected
TheFinanceRoom may process identity data, contact data, account roles, profile details, CV uploads, booking history, availability, messages, reviews, support requests, payment status, Stripe identifiers, meeting metadata, device data, security logs and cookie data. TheFinanceRoom does not store raw card details.
3. LinkedIn data
Where a user signs in with LinkedIn, TheFinanceRoom may process the data returned by the official LinkedIn API, such as name, email and profile image where available. TheFinanceRoom does not perform unauthorised LinkedIn scraping.
4. CV and profile data
Users may upload a CV or profile information to complete their profile and receive AI-assisted suggestions. CV data is used to help populate profile fields, improve matching and support the service requested by the user.
5. Session data
Where disclosed, TheFinanceRoom may process meeting metadata, recordings or transcripts for attendance verification, quality assessment, dispute prevention and platform safety. Raw transcripts should be deleted after internal quality assessment unless limited retention is required for legal, fraud, accounting or dispute reasons.
6. Purposes and legal bases
Data may be processed to create and manage accounts, perform contracts, process bookings and payments, provide support, prevent fraud and abuse, comply with legal obligations, improve service quality and send lawful service or marketing communications.
7. Recipients
Data may be shared with hosting providers, storage providers, payment providers such as Stripe, email providers such as Resend, Microsoft services for meetings, analytics providers, professional advisers and authorities where required.
8. International transfers
Some providers may process data outside the European Economic Area. TheFinanceRoom relies on appropriate safeguards such as standard contractual clauses where required.
9. Retention
Data is retained only for as long as necessary for the relevant purpose, including account operation, accounting, legal obligations, security, disputes, fraud prevention and audit logs. Users may request deletion where applicable.
10. User rights
Users may request access, rectification, deletion, restriction, objection and portability where applicable. Users may also lodge a complaint with the CNIL or their local data protection authority.
11. Contact
Privacy requests may be sent to hello@thefinanceroom.io.