PRIVACY POLICY
The Patch
Last updated: 27/01/2026
This Privacy Policy is intended to explain, clearly and transparently, how The Patch (“we”, “us”, “our”) collects, uses, stores, and protects the personal data of users (“you”) in connection with the use of the The Patch platform (the “Services”).
By using The Patch, you agree to the practices described below.
If you do not agree with this policy, please refrain from using our Services.
For any questions: contact@thepatch.ai
1. Key Points Summary
- We collect only the data necessary for the operation and improvement of The Patch
- We process no sensitive personal data within the meaning of the GDPR
- You retain full control over your data (access, deletion, objection)
- User content is used to support training, provide relevant opportunities, and improve the service
2. What Data Do We Collect?
2.1 Data You Provide Directly
When using The Patch, you may provide us with the following data:
- Identity data: first name, last name, email address
- Account data: username, password (encrypted)
- Application-related data:
- résumés (CVs)
- cover letters
- targeted job descriptions
- Training data:
- written responses
- oral responses (audio files)
- generated feedback and scores
- Platform usage history
These data are necessary to deliver the Services offered.
2.2 Data Collected Automatically
When you browse the platform, certain technical data may be collected automatically, including:
- IP address
- browser type and device type
- operating system
- navigation and usage data
These data are used for security purposes, service operation, and service improvement.
3. Purposes of Data Processing
We process your personal data in order to:
- create and manage your user account
- analyze your résumé and cover letters
- generate personalized résumés
- generate personalized cover letters
- simulate job interviews and provide feedback
- suggest job opportunities relevant to your profile
- enable, where applicable, direct job applications via The Patch
- improve the quality, relevance, and performance of the Services
- ensure security and prevent fraudulent use
- comply with our legal obligations
Important:
The Patch is a training and preparation tool.
The analyses, scores, and recommendations provided do not constitute recruitment decisions and do not guarantee employment.
4. Legal Bases for Processing (GDPR)
In accordance with the GDPR, our processing activities are based on:
- your consent (e.g. account creation, data submission)
- the performance of a contract (delivery of The Patch services)
- our legitimate interest (service improvement, security)
- compliance with legal obligations
You may withdraw your consent at any time.
5. Data Sharing with Third Parties
Your data may be shared only with:
- technical service providers (hosting, cloud services, AI, analytics)
- partners strictly necessary for the operation of the Services
- administrative or judicial authorities where legally required
All partners are bound by strict contractual obligations regarding confidentiality and data security.
6. Artificial Intelligence, Models, and Service Improvement
User-provided content (CVs, responses, feedback) may be used in an:
- anonymized or pseudonymized manner
- for the purpose of improving algorithms and service quality
No personally identifiable data is used to train models accessible to third parties.
7. Cookies and Similar Technologies
The Patch uses cookies necessary for the proper functioning of the platform and, where applicable, analytical cookies.
You may manage your preferences via your browser settings or through a dedicated cookie consent banner.
8. Third-Party Authentication
If you choose to register via a third-party service (Google, LinkedIn, etc.), we collect only the information strictly necessary for authentication.
We do not control the data practices of these platforms and invite you to review their respective privacy policies.
9. Data Retention Periods
- Active account data: retained as long as your account remains active
- Deleted account: data deleted or anonymized within a maximum period of 6 months
- Prolonged inactivity: data deleted after 3 years without login, unless otherwise instructed
Certain data may be retained for longer periods where required by law.
10. Data Relating to Minors
The Patch is intended exclusively for individuals aged 18 years or older.
We do not knowingly collect personal data relating to minors.
If such data are identified, they will be deleted without delay.
11. Your Rights
In accordance with the GDPR, you have the following rights:
- right of access
- right to rectification
- right to erasure
- right to restriction of processing
- right to object
- right to data portability
To exercise your rights, please contact: contact@thepatch.ai
You also have the right to lodge a complaint with the competent supervisory authority (e.g. CNIL, Swiss Federal Data Protection Authority).
12. Do-Not-Track Signals
At present, The Patch does not respond to “Do-Not-Track” signals, as no universally recognized standard exists.
13. Updates to This Policy
This Privacy Policy may be updated at any time.
In the event of a material change, you will be informed by email or via the platform.
14. Data Controller and Contact
Data Controller:
Ilyas Redjem
Email: ilyas@The Patch.ai