Privacy Policy
Last updated: September 23, 2026SELOR measures AI career risk. To do that, we need a small amount of your data. This policy says exactly what we take, why, and what we will never do with it. No padding. If anything here is unclear, email hello@selor.work and a human will explain it within 1 business day.
1. The short version
- We collect five things: your email, your first name, your account password (stored hashed — we can't read it), your quiz answers (or an uploaded résumé/LinkedIn PDF export), and first-party usage events — see §2 for exactly what those include. Payments go through Stripe — we never see your card number.
- Your data is never sold. Not to data brokers, not to anyone.
- Your data is never shared with recruiters or employers. Your score is yours. Nobody else sees it.
- No third-party analytics or ad-tracking scripts inside the product. The product keeps first-party usage events in our own database — see §2. Our marketing site, selor.work, runs session recording, heatmaps and (planned) a Meta ad pixel to understand visitors — never inside the product. See §5.
- Deletion. Request it from your account page ("Delete my data") — that starts a 72-hour window to change your mind, then your data is erased within the following hour, except a record of the request itself (your email and the request dates). Backups are deleted within about 16 days; hosting snapshots follow the provider's retention.
2. What we collect and why
Here is the complete list. If it is not in this table, we do not collect it.
| Data | Why we collect it | Legal basis, in plain words |
|---|---|---|
| Email address | To deliver your score and report, and verify your identity when you ask for your data. | You asked for the product. We can't deliver it without an address to deliver it to. |
| First name | To address you by name and to write your report — it's sent to the report writers named in §4. | You gave it at registration so we could personalize the product you asked for. |
| Account password | To secure your account and let you sign back in. Stored as a one-way hash — we cannot read it, and neither can Stripe or the report writers. | Necessary to protect the account you created. |
| Quiz answers, or an uploaded résumé/LinkedIn PDF export | This is the input to your score. Five answers or one uploaded PDF — that's what the model measures. | You typed it in, or uploaded it, on purpose so we could score it. That's consent, and it's necessary to do the job you asked for. |
| Product usage events (e.g. report viewed, checkout started) — app.selor.work only | To see how the product itself gets used and to debug problems. Separate from the marketing-site analytics below — see §5. | Our legitimate interest in running and fixing the product you're using. |
| Analytics & tracking events on selor.work, our marketing site only | To see which parts of the site work and which parts confuse people before someone signs up. Includes session recording and heatmaps — see §5 for the full detail. The product at app.selor.work sends none of this. | Our legitimate interest in not marketing a broken site. |
| Payment information — handled entirely by Stripe | To charge you for the Full Report. Stripe processes the card; we receive only a confirmation that payment succeeded. | Necessary to complete the purchase you initiated. We never see or store card numbers. |
3. What we do NOT collect
- Card numbers. Stripe handles all payment details. Card data never touches our servers.
- Biometric information. No face scans, no voiceprints, no fingerprints, nothing.
- Precise location. We don't ask for it and we don't infer it beyond ordinary city-level information any web server sees.
- Your contacts. We never ask for access to your address book, and we would refuse it if offered.
- Anything from your employer. We do not contact your employer, pull data from them, or tell them anything. Your employer does not know you use SELOR unless you tell them.
4. Who processes data for us
Here is every company that touches your data on our behalf, and exactly what each one gets. None of them may use your data for their own purposes.
- Stripe — processes payments and stores your payment method; also receives the email address you check out with. PCI-DSS Level 1 certified.
- Anthropic and OpenAI — write your report's narrative. They receive your first name, role title, domain, region, seniority and the tools you told us you use. OpenAI is used only as a fallback if Anthropic is unavailable.
- PostHog, and (planned) Meta — run analytics on selor.work, our marketing site, only. They never receive your score, band, report content, or profile — see §5.
- Google Workspace — sends our transactional email: the report-ready notification, password resets, and identity verification.
- SendPulse — manages our waitlist and marketing mailing list only. It never touches your account, score, or report.
- Our hosting provider — runs the servers your data lives on.
That is the full list. We do not share data with recruiters, employers, data brokers, or ad networks. Each processor above is under contract and limited to the purpose listed next to its name; we do not have a confirmed answer on which of them process data outside the United States, and we don't assert that they don't.
5. Analytics & cookies
This section is about selor.work, our marketing site — not the product. The product at app.selor.work loads no analytics or advertising script of any kind: your score, band, and report content are never sent to an analytics or advertising vendor.
On selor.work, we use PostHog, configured first-party, to understand how visitors use the site before they sign up: pages viewed, autocapture of clicks and form interactions, session recording and heatmaps (typed field values are always masked), and — planned, not live yet — a Meta ad pixel. That is a heavier capture posture than a typical "we just count page views" setup, so we are naming it plainly rather than calling it "basic analytics."
- No advertising pixels are live yet. Meta is planned; nothing else runs today.
- No cross-site tracking beyond what a Meta pixel does once it is live — what you do elsewhere on the internet, outside selor.work, is not tracked by us.
The only cookies we set are functional cookies (keeping you signed in, remembering your quiz progress) and first-party analytics cookies on selor.work. We honor the Global Privacy Control signal and the older Do Not Track signal: if your browser sends either, PostHog never loads on selor.work at all — it doesn't load and then stop, it doesn't load. You don't have to click anything.
6. How long we keep data
We keep your data until you ask us to delete it — there is no automatic inactivity purge today.
You do not have to wait for one. Request deletion from your account page ("Delete my data") — only that creates the request; emailing us does not start anything on its own. Once requested, you have 72 hours to cancel it; after that, your personal data is erased within the following hour, except a record of the deletion request itself (your email address and the request dates), which we keep as proof the deletion was carried out. Backups containing it are deleted from our nightly dumps within about 16 days; hosting snapshots follow the provider's retention.
7. Your rights
These rights apply to every SELOR user, in every state. We do not check your zip code before honoring them.
- Access — get a copy of everything we hold about you.
- Correction — fix anything we have wrong.
- Deletion — request it from your account page; after a 72-hour window to change your mind, it's erased within the following hour, except a record of the request itself. Backups follow within about 16 days.
- Portability — your data in a machine-readable format you can take elsewhere.
- No sale — this one requires no action from you, because we never sell data in the first place.
How to exercise them: for deletion, use your account page, as above. For access, correction and portability, email hello@selor.work. We verify it's really you by confirming the request from your registered email address — nothing more invasive than that. We respond within 30 days as the law requires; in practice it's usually within 72 hours.
8. California notice
Under the CCPA and CPRA, California residents are entitled to know the categories of personal information a business collects. Ours are short:
- Identifiers — your email address.
- Professional information — your quiz answers, or the résumé/LinkedIn PDF export you uploaded.
- Internet activity — on selor.work, our marketing site: page views, autocapture, session recording and heatmaps. The product at app.selor.work sends nothing to an analytics vendor.
- Commercial information — your purchase history (which product, when). Card details stay with Stripe.
We do not sell personal information, and we do not share it for cross-context behavioral advertising. There is nothing to opt out of, because the thing you'd opt out of doesn't happen here.
You will never be treated worse for exercising a privacy right. Same product, same price, same support — whether you've asked us for your data zero times or ten.
As noted above, we extend these rights to all users regardless of state.
9. Security
- Your data is encrypted in transit (TLS).
- It is stored on secure servers in the United States.
- Access inside Quantum Edge L.L.C-FZ is limited to people who need it to help you.
- Payments run through Stripe, a PCI-DSS Level 1 certified processor — the highest certification level in the payment industry.
Honest caveat: no system on earth is unbreakable, and anyone who promises otherwise is selling something. What we promise is that we collect little, encrypt it in transit, and delete fast when asked. Small data is the best security policy.
A note for Illinois users: we do not collect biometric information of any kind, so the Illinois Biometric Information Privacy Act (BIPA) does not apply to SELOR.
10. Children
SELOR is for working adults. You must be 18 or older to use it. We do not knowingly collect data from anyone under 18. If you believe a minor has given us data, email hello@selor.work and we will delete it within 72 hours.
11. Changes to this policy
If we change this policy, we update the "Last updated" date at the top and, for any change that matters — new data collected, new processor, new use — we email you before it takes effect. We will never quietly weaken this policy and hope you don't notice. Continued use after a change means you accept it; if you don't, email us and we'll delete your data instead.
12. Contact
Questions, requests, complaints — all go to the same place, and a human answers within 1 business day.
Quantum Edge L.L.C-FZ (operator of SELOR)
Meydan Grandstand, 6th floor, Meydan Road, Nad Al Sheba, Dubai, U.A.E.
Company No. 2526337 · License No. 2526337.01 · Tax Registration No. 104834529000001
hello@selor.work
Support hours: 9:00–18:00 CT, Monday–Friday
This policy is governed by the laws of the State of Illinois, USA.