Security & Compliance
Quibench is an EU-based company committed to protecting your data and your candidates' information.
EU-Based Company
Quibench is registered in Poland (EU), operating under European data protection laws.
EU Data Hosting
All data is hosted in AWS EU (Frankfurt, Germany) within the European Economic Area.
AES-256 Encryption
All data is encrypted at rest using AES-256 encryption and in transit using TLS 1.2+.
GDPR Compliant
Full compliance with the General Data Protection Regulation as an EU data controller.
Data Protection
We implement industry-standard security measures to protect your data:
- Encryption at Rest: All stored data is encrypted using AES-256 encryption
- Encryption in Transit: All data transfers use TLS 1.2 or higher
- Access Controls: Role-based access controls limit data access to authorized personnel only
- Secure Authentication: Industry-standard authentication mechanisms protect user accounts
Infrastructure
Our infrastructure is designed with security in mind:
- Cloud Provider: Amazon Web Services (AWS) EU region (Frankfurt, Germany)
- Data Residency: All primary data remains within the European Economic Area (EEA)
- Backups: Regular encrypted backups with secure storage
- Monitoring: Continuous security monitoring and logging
AI Processing
CV data is processed using AI services from trusted providers:
- Anthropic (Claude): AI processing for CV formatting and editing
- OpenAI: AI processing for CV formatting and editing
- Microsoft Azure: Additional cloud services
These providers process data according to their respective data processing agreements and security standards. Data sent to AI providers is used solely for processing your requests and is not used to train AI models.
GDPR Compliance
As an EU-based company, we are fully subject to and compliant with the General Data Protection Regulation (GDPR):
Right to Access
Request a copy of your personal data
Right to Erasure
Request deletion of your data
To exercise your data rights, contact us at [email protected]
Candidate Data Protection
We understand that you process sensitive candidate information. We provide features to help you maintain compliance:
- Anonymization Feature: One-click redaction of personal information (names, contact details, photos)
- Data Control: You control when to delete processed CVs from your account
- No Data Sharing: We never share or sell candidate data to third parties
- Purpose Limitation: Data is only used to provide the CV formatting service you request
Your Responsibilities
As a user processing candidate CVs, you are the Data Controller for candidate personal data. You are responsible for:
- Obtaining appropriate consent or legal basis to process candidate CVs
- Informing candidates about how their data is processed
- Responding to candidate data access or deletion requests
- Maintaining your own GDPR compliance obligations
Contact
For security concerns or questions about our data protection practices:
Privacy Contact: [email protected]
General Support: [email protected]