chainwork
Legal

Privacy Policy

chainwork Labs ("chainwork", "we") operates the registry at chainwork.dev. This policy explains what personal information we process and your rights over it. It is written to meet the disclosure requirements of the Republic of Korea's Personal Information Protection Act (PIPA), including the Commission's 2026 processing-policy guidance on overseas transfers and generative-AI services.

Effective July 19, 2026

1. What we collect

We collect the minimum needed to run a job registry. We do not require an account to browse or to search via the API or MCP server.

DataWhen & why
Email addressWhen you subscribe to job alerts, sign in, or submit/post a role — to send alerts, authenticate you, and follow up on submissions.
GitHub profile / CV (resume)When you use AI matching — to extract a skill graph and rank roles by fit. Processed for the match; see §7.
Job submission detailsWhen a company submits or posts a role — company name, role, contact email, application link.
Payment recordsFor Featured/paid posts — handled by our payment processors (Stripe, NowPayments). We do not store card or wallet credentials.
Usage & device dataAutomatically via analytics — pages viewed, referrer, approximate region, coarse device/browser. Used in aggregate to improve the product.

2. How we use it

  • Deliver job alerts and the services you request.
  • Authenticate sign-in and secure your account.
  • Rank roles against a profile you voluntarily provide.
  • Process payments for Featured/paid job posts.
  • Measure aggregate usage to improve the catalog and surface fresh roles.

We do not sell personal information, and we do not use it for automated decisions that produce legal effects about you.

3. Retention

We keep personal information only as long as needed for the purpose it was collected, then destroy it.

DataRetention
Alert subscriptionUntil you unsubscribe (every alert email carries an unsubscribe link).
Account / emailUntil you delete your account or request deletion.
CV / GitHub for matchingProcessed transiently for the match and not retained as a stored profile beyond your session unless you save results.
Payment recordsRetained for the period required by applicable tax and commercial law.

4. Sharing & entrustment (처리위탁)

We do not provide personal information to third parties for their own purposes. To operate the service we entrust processing to the vendors below. Each processes data only on our instructions and under a data-processing agreement.

ProcessorTask
Vercel Inc.Application hosting & delivery
Neon Inc.Managed Postgres database
ResendTransactional & alert email delivery
Google LLCAggregate usage analytics (GA4)
Stripe, Inc.Card payment processing
NowPaymentsCrypto payment processing

5. Overseas transfer (국외 이전)

chainwork is operated from the Republic of Korea, but the processors in §4 store and process data outside Korea — primarily in the United States. By using the service you are informed of this transfer, which is necessary to perform the contract of providing the registry to you (PIPA Art. 28-8).

Recipient / countryItems & legal basis
Vercel, Neon, Resend, Google, Stripe, NowPayments — United StatesEmail, usage, submission and payment data as applicable. Basis: performance of the service contract; you may object (see §6), though this may limit functionality.

6. Your rights

As a data subject you may, at any time, request to access, correct, delete, or suspend the processing of your personal information, and withdraw consent. Exercise any of these by emailing hello@chainwork.dev. We respond without undue delay. You also have the right to lodge a complaint with Korea's Personal Information Protection Commission (privacy.go.kr / 118).

7. AI matching & generative processing

When you opt into AI matching, a GitHub profile or CV you provide is sent to a large-language-model service to extract a structured skill graph used only to rank the current catalog for you. This input is not used to train third-party models, is not retained as a persistent profile beyond the match, and matching is entirely optional — the catalog is fully usable without it. This section reflects the Commission's 2026 generative-AI processing guidance.

8. Cookies & automatic collection

We use only the cookies needed to keep you signed in and privacy-respecting analytics to count aggregate visits. You can block cookies in your browser; sign-in features may then not work.

9. Security

We apply reasonable technical and administrative safeguards: encrypted transport (HTTPS), access controls on the database, and reliance on SOC-2-class infrastructure providers. No method of transmission is perfectly secure, but we work to protect your data.

10. Privacy officer & contact

For any privacy question or to exercise a right, contact our privacy officer at hello@chainwork.dev.

11. Changes

If we change this policy we will update the effective date above and, for material changes, give notice on the site at least seven days before the change takes effect. See also our Terms of Service.