Personomist Beta Version Privacy Policy
This privacy policy explains what data we collect, why we collect it, and how we protect it.
Some information is collected automatically through cookies (as with most websites) so that the service can function properly. Other information is provided by you, such as when creating an account, completing questionnaires, or choosing to share results.
We use this information to provide core services: delivering your test results and feedback, enabling group comparisons, and communicating with you through account notifications, updates, or support responses. Additionally, we use anonymous responses to improve the quality of our questionnaires and feedback.
We will never sell your information to advertisers or external partners for marketing purposes.
This policy complies with the General Data Protection Regulation (GDPR).
Contact: katlin@personomist.com
Types of Data Collected
| Data Type | Details | Purpose of Collection/Use | Legal Basis |
|---|---|---|---|
| Account Data | Name, email address, date of birth, account creation date, authentication method (e.g., Google account) | To create your account, enable login, password recovery, and communication | Contract fulfillment (GDPR Art 6(1)(b)); for Google authentication, consent (Art 6(1)(a)) requested by Google |
| Profile Data | Gender, country, education level, occupation, work experience, work satisfaction, language preference | To provide more accurate feedback based on demographic data | Contract fulfillment (GDPR Art 6(1)(b)) |
| Assessment Data | Your responses to questionnaires, completion date and time, calculated personality feedback and results | To create personality feedback and show changes over time | Contract fulfillment (GDPR Art 6(1)(b)) |
| Reputation Data (acquaintance responses to questionnaires) | If you invite acquaintances to respond: their age, gender, relationship to you, length of acquaintance, and responses to personality questionnaires about you. | To provide more accurate personality feedback from multiple perspectives. To calculate aggregate results, which are displayed only after at least 2 acquaintance responses are received | Consent (GDPR Art 6(1)(a)) |
| Group Comparison Data | Group participation links, results shared in groups (anonymously or with names, according to your choice), comparison parameters | To enable comparison of results with friends, colleagues, or team members | Consent (GDPR Art 6(1)(a)) |
| Organization Data | For organizations: name, email address, website, country, region, city, field of activity, names and titles of representatives, logo, description | To provide services to professionals (psychologists, career counselors, recruiters, etc.) | Contract fulfillment (GDPR Art 6(1)(b)) |
| Data for Research and Development | Anonymous copies of questionnaire responses | To improve algorithms underlying feedback, develop new functions | Consent (GDPR Art 6(1)(a)); Legitimate interest (GDPR Art 6(1)(f)) |
| Technical Data | Browser/device information, IP address, pages visited, system logs | To ensure proper website functioning, troubleshoot problems, maintain security and stability, detect abuse or attacks | Legitimate interest (GDPR Art 6(1)(f)) |
Use of Your Data
Your data is used for the following purposes:
- Account Management: creating and managing your account, enabling login.
- Assessment Services: generating detailed feedback based on your responses and demographic information.
- Communication: sending reminders to complete questionnaires or invite acquaintances, notifying about updates, customer support responses.
- Comparison Functions: enabling comparison of results with friends or team members.
- Development Activities: improving our algorithms, developing new functions, and conducting research using anonymous data.
- Services for Professionals: we enable trusted professionals to use assessment results in their work (e.g., career counseling), but only if you explicitly consent and have personally granted access to specific parts of your feedback to a particular professional.
Data Sharing
Only with Your Explicit Consent
- Acquaintances: if you invite people to rate you, they see only the questionnaire, not your results. You will see aggregate results only after at least 2 respondents provide answers.
- Group Members: if desired, you can create groups or join an existing group. Then your results are shared with members of the group you joined (you control joining and can leave or delete the group link at any time).
- Professionals: if desired, you can share your results with a professional affiliated with Personomist services. Your results are shared only with your explicit consent for a specified period (default: 30 days, revocable at any time).
Service Providers
- Servers and Management: University of Tartu Institute of Computer Science (servers located in the European Union).
- Authentication: Google OAuth 2.0 for login services. Google's data collection is subject to their privacy policy.
Additionally, information may be disclosed if required by law or to protect our rights and security.
Protecting Your Data
We protect your data with modern security measures:
- Secure Login: authentication through trusted services like Google.
- Limited Access: only authorized team members have access to data and only when necessary.
- Regular Backups: your data is backed up weekly to prevent loss.
- Secure Servers: data is stored on University of Tartu servers in the European Union.
- Monitoring: we monitor system activity to detect and prevent security issues.
- Confidentiality: our team is legally obligated to keep your information private.
Data Retention
| Data Type | Retention Period | After Account Deletion |
|---|---|---|
| Profile Data | Until you delete your account | Anonymous dataset (without your name and email address) is retained indefinitely for development work |
| Questionnaire Responses | Indefinitely while account is active | 30 days to create anonymous copy for research and development, then deleted |
| Group Links | Until group creator deletes the group | Access is closed immediately |
| Reputation Responses | Indefinitely while account is active | 30 days to create anonymous copy for research and development, then deleted |
| Research and Development Database | Indefinitely (anonymously) | Data is anonymized and personally unidentifiable |
| Technical Logs | 3 months | Deleted according to standard retention schedule |
Inactive Accounts: If you do not use your account for 5 years, we will send a reminder and then delete it.
Your Rights (GDPR)
Under GDPR, you have the following rights:
- Access to Data (Article 15) - request a copy of all personal data about you.
- Correction of Errors (Article 16) - update or correct your profile information at any time.
- Account Deletion (Article 17) - remove your account and data at any time (anonymous research data cannot be deleted as it is no longer identifiable).
- Data Download (Article 20) - export your information in standard format.
- Stop Sharing (Article 7) - revoke consent for research use, professional sharing, or group comparisons at any time.
- File a Complaint - if necessary, you can contact the Estonian Data Protection Inspectorate.
How to Exercise Your Rights:
- Update Profile: you can do this from your profile settings.
- Delete Account: use the account deletion function in your profile settings.
- Revoke Sharing Consent: manage your consent preferences on your account.
- Other Requests: contact us at katlin@personomist.com.
If you have questions, concerns, or wish to exercise any of these rights, please contact us.
International Data Transfers
- Primary Storage: All data is stored on servers in the European Union (University of Tartu IT Center).
- Third-Party Services: Some services we use (such as Google authentication) may process data internationally. In such cases, we ensure that appropriate legal safeguards are implemented (such as standard contractual clauses) so that your data remains protected under international law and GDPR standards.
Privacy of Minors
- To use Personomist, you must be at least 15 years old.
- 15-17 years old: you may use the service and provide your consent under GDPR Article 8 and European Union member state laws. Please note that feedback algorithms are scientifically developed primarily for adults (age 18 and older) and may not be as accurate for younger users.
- Under 15 years old: The service is not available to individuals under 15 years old, and we do not knowingly collect data from those under 15.
Cookies
- Cookies are small files that help remember your preferences, login status, and make your user experience smoother.
- You can control or disable some of them through your browser settings.
- Information about cookies and tracking technologies can be found in our separate Cookie Policy.
Changes to Privacy Policy
If we make changes to this privacy policy, we will:
- Post the updated version here with a new "Effective Date".
- If changes are significant, we will notify you directly by email or with a prominent notice on our platform.
By continuing to use Personomist after the updated policy takes effect, you agree to the new terms.
Contact and Consent
For questions regarding this privacy policy or your data rights, please contact:
Kätlin Anni katlin@personomist.com
By using Personomist, you confirm that you have read and understood this Privacy Policy and agree to the collection, use, and sharing of your information as described herein.
