← Back to Home

Privacy Policy

Last updated: 26 October 2025

1. Introduction

Welcome to CareerTopia. We respect your privacy and are committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you use our platform.

This policy complies with the EU General Data Protection Regulation (GDPR) and applies to all users of CareerTopia.

2. Data Controller

Stolzenburg Ventures UG (haftungsbeschränkt)
c/o IP-Management #7306
Ludwig-Erhard-Straße 18
20459 Hamburg, Germany
Email: privacy@careertopia.de
Responsible for data processing: Markus Stolzenburg

For complete company information, see our Impressum (Legal Notice)

3. Data We Collect

3.1 Information You Provide

  • Account information (name, email address, password)
  • Profile information (career history, skills, education)
  • Uploaded documents (CV, cover letters)
  • Communications with us
  • Waiting list signup information (email, consent preferences)

3.2 Automatically Collected Information

  • Usage data (pages viewed, features used)
  • Device information (browser type, IP address)
  • Cookies and similar technologies

4. How We Use Your Data

We process your personal data for the following purposes:

  • Service Delivery: To provide our career development platform and AI-powered insights
  • Account Management: To create and manage your account
  • Communication: To send you service-related notifications and updates
  • Analytics: To improve our services and user experience
  • Marketing: With your explicit consent, to send promotional materials
  • Legal Compliance: To comply with legal obligations

5. Legal Basis for Processing

We process your data based on:

  • Contract Performance: Processing necessary to provide our services
  • Consent: Where you have given explicit consent (e.g., marketing)
  • Legitimate Interest: For analytics and service improvement
  • Legal Obligation: Where required by law

6. Data Sharing

We do not sell your personal data. We may share your data with:

  • Service Providers: Third parties who help us operate our platform (e.g., cloud hosting, email services)
  • AI Services: OpenAI and Anthropic for CV analysis (data is processed securely and not used for AI training)
  • Analytics Providers: Google Analytics 4 and Mixpanel for usage analytics (with your consent, data anonymized)
  • Legal Requirements: When required by law or to protect our rights

All third-party processors are GDPR-compliant and bound by data processing agreements.

7. Data Retention

We retain your data for as long as:

  • Your account is active
  • Needed to provide services to you
  • Required by law or for legitimate business purposes

You can request deletion of your account at any time. Some data may be retained for legal compliance (e.g., financial records).

8. Your GDPR Rights

Under GDPR, you have the following rights:

  • Right to Access: Request a copy of your personal data
  • Right to Rectification: Correct inaccurate or incomplete data
  • Right to Erasure: Request deletion of your data ("right to be forgotten")
  • Right to Restriction: Limit how we process your data
  • Right to Data Portability: Receive your data in a machine-readable format
  • Right to Object: Object to processing based on legitimate interests
  • Right to Withdraw Consent: Withdraw consent at any time

To exercise these rights, contact us at privacy@careertopia.de. We will respond within 30 days.

9. Data Security

We implement appropriate technical and organizational measures to protect your data:

  • End-to-end encryption for data transmission
  • Encrypted data storage
  • Regular security audits and penetration testing
  • Access controls and authentication
  • Regular staff training on data protection

10. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience and analyze platform usage. Our cookie consent banner appears when you first visit our site, and you can manage your preferences at any time through our Cookie Preferences modal.

10.1 Cookie Categories

Necessary Cookies (Always Active)

Essential for platform functionality and cannot be disabled. These cookies enable core features like authentication, security, and remembering your cookie preferences.

  • cookie_consent - Stores your cookie preferences (2 years)
  • next-locale - Stores your language preference (1 year)

Functional Cookies (Optional)

Enhance your experience by remembering your preferences and settings. You can enable or disable these through our Cookie Preferences modal.

  • theme_preference - Stores light/dark mode (6 months)
  • ui_preferences - Stores UI layout preferences (6 months)

Analytics Cookies (Optional - Requires Consent)

Help us understand how you use our platform so we can improve your experience. Only active if you grant consent.

  • _ga - Google Analytics user identification (13 months)
  • _ga_* - Google Analytics 4 session state (13 months)
  • mp_* - Mixpanel analytics tracking (1 year)

Marketing Cookies (Optional - Not Currently Used)

Would be used for advertising and remarketing. We do not currently use marketing cookies.

10.2 Managing Your Cookie Preferences

You have full control over your cookie preferences:

  • Cookie Consent Banner: Appears on your first visit with options to accept, reject, or customize
  • Cookie Preferences Modal: Access detailed settings anytime to enable/disable specific categories
  • Browser Settings: Most browsers allow you to block or delete cookies through settings
  • Automatic Expiry: Your consent expires after 2 years, and you'll be asked to consent again

Note: Disabling necessary cookies may affect platform functionality. Analytics and functional cookies are only active with your explicit consent and can be withdrawn at any time.

11. International Data Transfers

Your data may be transferred to and processed in countries outside the EU. We ensure adequate safeguards are in place, including Standard Contractual Clauses (SCCs) approved by the European Commission.

12. Children's Privacy

Our services are not intended for children under 16. We do not knowingly collect data from children. If you believe we have collected data from a child, please contact us immediately.

13. Changes to This Policy

We may update this policy from time to time. We will notify you of significant changes by email or through our platform. Continued use of our services after changes constitutes acceptance of the updated policy.

14. Contact Us

For questions about this privacy policy or to exercise your rights, contact us:

Email: privacy@careertopia.de
Address: Stolzenburg Ventures UG (haftungsbeschränkt)
c/o IP-Management #7306, Ludwig-Erhard-Straße 18, 20459 Hamburg, Germany
Data Protection Officer: Markus Stolzenburg (contact@careertopia.io)

See our Impressum for complete company information.

15. Supervisory Authority

You have the right to lodge a complaint with your local data protection authority if you believe we have not handled your data appropriately.

For users in Germany:
Bundesbeauftragter für den Datenschutz und die Informationsfreiheit (BfDI)
Website: www.bfdi.bund.de