Legal

Privacy Policy

Last updated: 1 March 2026

1. Who we are

Pivotum LLC (“we”, “us”, “our”) is a US-registered limited liability company that operates the PivotAI career assessment service at pivotum.ai. We are the data controller for the personal information collected through this service.

For any privacy-related questions, contact us at support@pivotum.ai.

2. What data we collect

When you purchase and complete a Career Positioning Brief, we collect:

  • Identity & contact data: your name and email address (via Google Sign-In or Stripe checkout).
  • Professional data: your job title, industry, seniority, organisation size, years in role, and time allocation across work categories.
  • Career context data: authority signals (budget control, KPI ownership, decision rights), AI capability level, trajectory, and career goals.
  • Payment data: processed directly by Stripe. We do not store card details.
  • Usage data: pages visited, session identifiers, and browser information collected automatically.

3. How we use your data

We use your data to:

  • Generate your personalised Career Positioning Brief PDF.
  • Deliver the brief to you and process your payment.
  • Authenticate your account and protect against fraud.
  • Respond to support enquiries.
  • Improve our scoring models and report quality (using anonymised, aggregated data only).

We do not sell, rent, or share your personal data with third parties for marketing purposes.

4. Legal basis for processing

We process your data based on your consent and contractual necessity when you purchase and use our service. Where applicable law requires a stated legal basis (such as GDPR for users in the EU or UK), we rely on the following:

  • Contract performance: to deliver the service you have purchased.
  • Legitimate interests: to improve our service and prevent fraud.
  • Legal obligation: to comply with applicable law, including financial record-keeping requirements.

If you are a resident of California, you may have additional rights under the California Consumer Privacy Act (CCPA), including the right to know what personal information we collect and to request deletion. Contact us at support@pivotum.ai to exercise these rights.

5. Third-party processors

We use the following third-party services to operate PivotAI. Each acts as a data processor under our instruction:

  • OpenAI — processes your professional and role data to generate the narrative sections of your brief. Data is transmitted securely and not used to train OpenAI’s models under our API agreement.
  • Stripe — handles payment processing. Subject to Stripe’s own privacy policy.
  • Google Firebase — handles authentication (Sign in with Google).
  • Vercel — hosts and delivers the web application.

6. Data retention

We retain your submission data and generated brief for 12 months from the date of purchase, after which it is permanently deleted. Payment records are retained for 7 years to comply with applicable financial record-keeping requirements.

7. Your rights

Depending on where you are located, you may have the right to:

  • Access the personal data we hold about you.
  • Rectification of inaccurate data.
  • Erasure — request deletion of your personal data.
  • Restriction of processing in certain circumstances.
  • Data portability — receive your data in a structured, machine-readable format.
  • Object to certain types of processing.

To exercise any of these rights, email support@pivotum.ai with the subject line Data Request. We will respond within 30 days.

EU and UK residents may also lodge a complaint with their local data protection authority (e.g. the UK ICO at ico.org.uk).

8. Cookies

We use essential cookies only — for authentication sessions and payment processing. We do not use tracking or advertising cookies. You can disable cookies in your browser settings, but this may prevent the service from functioning correctly.

9. Security

All data is transmitted over HTTPS. Your submission data is stored in an access-controlled database. We apply industry-standard security practices and review them regularly.

10. Changes to this policy

We may update this policy from time to time. Material changes will be indicated by an updated “Last updated” date. Continued use of the service after changes constitutes acceptance of the revised policy.

11. Contact

For any privacy-related enquiries: support@pivotum.ai