How we collect, use, and protect your personal data
Last updated: 2026-01-01
GDPR Compliant
1. Introduction
Montessori Staffing Agency ("we," "our," or "us") is committed to protecting your privacy and ensuring the security of your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website and services.
We comply with the General Data Protection Regulation (GDPR) and other applicable data protection laws. By using our services, you consent to the practices described in this policy.
2. Data Controller
The data controller responsible for your personal data is:
Montessori Staffing Agency
privacy@montessoristaffing.com
Contact address available upon request
3. Data We Collect
3.1 Information You Provide
Account Information: Name, email address, password, role (employer/candidate)
Profile Information: Professional headline, skills, experience, resume/CV
Usage Data: Pages visited, features used, time spent on site
Log Data: IP address, access times, referring URLs
4. How We Use Your Data
We process your personal data for the following purposes:
Service Delivery: To provide our staffing and recruitment services
Account Management: To create and manage your account
Job Matching: To connect candidates with suitable job opportunities
Communication: To send you service-related updates and notifications
Marketing: To send newsletters and promotional content (with your consent)
Analytics: To improve our services and user experience
Legal Compliance: To comply with applicable laws and regulations
5. Legal Basis for Processing
We process your personal data under the following legal bases:
Contract Performance: Processing necessary to provide our services to you
Consent: Where you have given explicit consent (e.g., marketing emails)
Legitimate Interest: For fraud prevention, security, and service improvement
Legal Obligation: To comply with applicable laws and regulations
6. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected. Our retention periods are:
Data Type
Retention Period
User Account Data
Until deletion request or 3 years of inactivity
Job Postings
2 years after closing
Job Applications
2 years after submission
Messages
3 years or until deletion request
Contact Submissions
1 year after resolution
Newsletter Subscriptions
Until unsubscribed
Analytics Data
1 year (anonymized after 90 days)
7. Your Rights Under GDPR
Under the GDPR, you have the following rights regarding your personal data:
Right of Access (Article 15): You can request a copy of all personal data we hold about you.
Right to Rectification (Article 16): You can request correction of inaccurate or incomplete data.
Right to Erasure (Article 17): You can request deletion of your personal data ("right to be forgotten").
Right to Restriction (Article 18): You can request restriction of processing in certain circumstances.
Right to Data Portability (Article 20): You can receive your data in a structured, machine-readable format.
Right to Object (Article 21): You can object to processing based on legitimate interests or for direct marketing.
Rights Related to Automated Decision-Making (Article 22): You have the right not to be subject to solely automated decisions.
To exercise your rights: Log in to your account and visit the Privacy & Data Settings page, or contact us at privacy@montessoristaffing.com.
8. Data Sharing
We may share your personal data with:
Employers/Candidates: To facilitate job matching and applications
Service Providers: Cloud hosting, email services, analytics providers
Legal Authorities: When required by law or to protect our rights
We do not sell your personal data to third parties.
9. International Data Transfers
Your data may be transferred to and processed in countries outside the European Economic Area (EEA). When we transfer data internationally, we ensure appropriate safeguards are in place, including:
Standard Contractual Clauses approved by the European Commission
Adequacy decisions by the European Commission
Binding Corporate Rules where applicable
10. Data Security
We implement appropriate technical and organizational measures to protect your personal data, including:
Encryption of data in transit and at rest
Regular security assessments and audits
Access controls and authentication mechanisms
Employee training on data protection
Incident response procedures
11. Cookies
We use cookies and similar technologies to enhance your experience. These include:
Essential Cookies: Required for the website to function
Analytics Cookies: Help us understand how visitors use our site
Preference Cookies: Remember your settings and preferences
You can manage cookie preferences through your browser settings.
12. Children's Privacy
Our services are not directed to individuals under 16 years of age. We do not knowingly collect personal data from children. If we become aware that we have collected data from a child without parental consent, we will take steps to delete that information.
13. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last Updated" date. We encourage you to review this policy periodically.
14. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us:
You also have the right to lodge a complaint with your local data protection authority if you believe we have not handled your personal data in accordance with applicable law.