Legal

Privacy Policy

Version 2026-09-02 · Effective 2026-09-02

KnockHub (“KnockHub,” “we,” “us”) operates a video-first recruiting network for door-to-door sales professionals and the companies that hire them. This policy explains what personal data we process, why, how long we keep it, and the rights you can exercise. For the purposes of the EU/UK GDPR, KnockHub is the data controller of the personal data described here.

1. Data we collect

  • Account & identity: name, a public @handle (username), email, password (hashed by our auth provider), phone number, role (rep/company), and profile photo.
  • Professional profile: headline, bio, work history, markets, experience level, self-reported compensation and production ranges, optional professional-reference names and contact details, and optional verification evidence you upload (e.g. a license or award). Reference details are private verification data and are never shown in the marketplace. We do not collect government IDs, Social Security numbers, bank/payment details, or health data.
  • Content & communications: intro requests, direct messages between matched parties, feed posts and comments, likes, follows, matches, and uploaded intro videos. We also keep short-lived in-app activity receipts so you can see this network activity in your Notifications inbox; those receipts contain no message, post, or comment excerpt.
  • Coarse location: the city/state and markets you enter. We do not collect GPS coordinates or track your device location.
  • Technical & security: IP address, user-agent, and timestamps, captured in our security audit log and anti-abuse systems.
  • Diagnostics & bug reports: automatic crash and error reports (app version, device model, operating-system version, and the type of screen you were on — never the specific person or company you were viewing), plus anything you write or attach when you choose to report a problem. We never attach your name, email, phone number, messages, or location to a diagnostic report, and we never capture a screenshot automatically — you choose what to send. You can turn automatic crash diagnostics off at any time in Account → Diagnostics.
  • Waitlist (pre-launch): if you join the waitlist we collect your first and last name, email address, mobile number and the role you are interested in, verify the number with a one-time text, and keep a salted hash of your IP address for abuse prevention.
  • Affiliate program: if you apply to be an affiliate, we keep your referral code, the pitch you write, your monthly rate, our decision and any note we send you, and a monthly record of the commissions accrued and paid to you. If you create your account through an affiliate’s link or code, we record which affiliate referred you, your signup date and your account status. That affiliate sees your signup date and whether your account is active. If you are a company, they also see your company name and logo once your company is approved, whether your plan is currently active, and how many months your plan has earned them a commission (this determines what they are paid). If you are a standard rep, they see your name and photo, as they could elsewhere on KnockHub. A private rep stays a “Confidential candidate” unless they have already revealed themselves to that affiliate elsewhere on KnockHub (for example by approving their follow request or accepting an introduction). Affiliates never see your email or phone number.
  • Referral link cookie: if you open an affiliate’s referral link (a knockhub.ai/r/… address), we store one cookie, kh_ref, holding that affiliate’s code for 30 days, so the referral can be credited if you create an account. It contains nothing about you and is used for nothing else; clearing your cookies removes it.

2. Why we process it, and our lawful bases

  • To run the marketplace (create your profile, surface matches, deliver intros and messages, and show your in-app activity inbox) — performance of a contract.
  • To run the affiliate program (attribute signups to the affiliate who referred them and calculate commissions) — our legitimate interests, and for affiliates, performance of a contract.
  • To keep the platform safe (anti-scraping, fraud prevention, and the security audit log) — our legitimate interests.
  • To send optional SMS alerts — your consent, which you can withdraw at any time in Account settings.

3. Privacy by design

Reps choose one of two visibility lanes. A standard rep shows their full name and public @handle to approved companies and peers, but their email and phone stay withheld until they accept a company’s intro. A private rep is shown only as a “Confidential candidate” — name, @handle, face, and video all withheld — and does not appear in a company’s swipe deck at all until they choose to reach out to that company.

A private rep’s identity becomes visible to one company when that rep takes one of these steps: sending that company an intro request, swiping right on that company, accepting an intro from them, or (for a peer rep) approving their follow. Each step reveals the rep to that counterparty only, and each is permanent — a disclosure cannot be withdrawn, though adding a company to the employer conflict shield hides the rep from them again.

Revealing identity never discloses an account’s email or phone. Those stay withheld until an intro is accepted or two parties match. Messaging opens only after a mutual, accepted connection, and reps can hide themselves from specific employers. These rules are enforced at the database layer, not merely in the UI.

4. Who we share it with (sub-processors)

We do not sell your personal data. We share it only with vetted service providers acting on our instructions under data-processing agreements: Supabase (database, authentication, storage), Resend (email), Twilio (SMS), Cloudflare (bot protection), Sentry (error monitoring), Better Stack (logging), and Upstash (rate limiting). Our current list is at /legal/subprocessors.

5. How long we keep it (retention)

We retain your account data for as long as your account is active. When you delete your account, we permanently erase your profile, content, messages, and uploaded media after a 30-day grace window, except a minimal security audit record we are permitted to retain for accountability and fraud prevention (GDPR Art. 17(3)). Security audit logs are retained for up to 24 months; encrypted backups age out on a rolling 30-day cycle. In-app activity receipts are retained for up to 180 days; withdrawn or privacy-suppressed receipts are removed after 7 days. Your inbox remains available when optional push, email, or SMS delivery is disabled. Bug reports you send us, and any screenshot you attach, are kept for the life of your account and erased with it; a screenshot you upload but never send is deleted within 7 days. Automatic crash traces held by our error-reporting processor age out on their own ~90-day cycle. Waitlist entries: unverified submissions are deleted after 7 days; verified entries are kept until we have contacted you about launch, then erased. Affiliate records (code, pitch, rate, decision and commission ledger) are kept for the life of the affiliate’s account and erased with it. If a referred account is deleted, the referral record keeps only the signup date and role, with the link to the account removed. Full detail is in our internal data-retention schedule.

6. Your rights

Subject to applicable law (GDPR / UK GDPR / CCPA-CPRA), you may:

  • Access & export a machine-readable copy of your data (including your retained in-app activity receipts) from Account → Your data & account → Export.
  • Delete your account and data, or temporarily deactivate it (same settings page). See how to delete your account.
  • Rectify inaccurate data by editing your profile.
  • Object to or restrict certain processing, and withdraw consent for SMS at any time.

We respond to verified requests within one month. You also have the right to lodge a complaint with your local data-protection authority.

7. Security

Access to production data is least-privilege and logged. Privileged and service-role operations, and administrative access to private profiles and verification evidence, are recorded in a tamper-resistant audit ledger.

8. International transfers, children, and changes

Data may be processed in the United States; where required we rely on appropriate safeguards. KnockHub is not directed to children under 18. We may update this policy; material changes bump the version above and re-prompt you for consent on your next visit.

9. Contact

Privacy questions or rights requests: privacy@knockhub.app.