Data Controller
Xander Marketing Limited (trading as FirstLook)
Company Number: 06921592
Registered in England and Wales
Data Protection Contact: privacy@firstlooknow.com
Our Commitment to Data Protection
FirstLook is committed to protecting your personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. This page explains your rights and how we handle your data.
Your Data Rights
Under UK GDPR, you have the following rights regarding your personal data:
Right to Access
You can request a copy of all personal data we hold about you.
Right to Rectification
You can request correction of any inaccurate or incomplete data.
Right to Erasure
You can request deletion of your personal data in certain circumstances.
Right to Restrict Processing
You can request limitation of how we process your data.
Right to Data Portability
You can request your data in a machine-readable format.
Right to Object
You can object to processing based on legitimate interests.
How to Exercise Your Rights
To exercise any of these rights, please contact us at privacy@firstlooknow.com with your request. We will respond within 30 days.
We may need to verify your identity before processing your request. In most cases, we will provide this service free of charge, but may charge a reasonable fee for repetitive or excessive requests.
Data We Collect
For Candidates
- Email address and name
- Assessment responses (written, audio, video, or code)
- CV and cover letter (if uploaded)
- Behavioural data during assessments (time spent, typing patterns, edit activity, paste events, tab focus)
For Employers
- Account information (name, email, company details)
- Billing information (processed securely via Stripe)
- Usage data and preferences
Legal Basis for Processing
We process personal data under the following legal bases:
- Contract: To provide our services to employers
- Legitimate Interest: To facilitate job applications and improve our services
- Consent: For candidates, who consent before submitting an application
- Legal Obligation: To comply with applicable laws
Data Retention
We retain personal data only for as long as necessary:
- Candidate submissions: Deleted within 30 days of role closure or rejection
- Candidate data on request: Deleted within 7 days
- Employer account data: Deleted within 30 days of account closure
Data Security
We implement appropriate technical and organisational measures to protect your data:
- Encryption in transit (TLS) and at rest
- Data stored in UK/EU data centres
- Access controls and authentication
- Regular security assessments
- Staff training on data protection
International Transfers
Your data is stored in the UK/EU. If we transfer data outside these regions, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses approved by the ICO.
Automated Decision Making
Our authenticity scoring system uses automated processing to calculate scores based on behavioural signals. However, these scores are used as one factor in employer decision-making and do not result in fully automated decisions with legal effects on candidates.
Employers are advised to use authenticity scores alongside their own judgement and other evaluation criteria.
Cookies
We use cookies and similar technologies to operate our services. You can manage your cookie preferences through your browser settings or our cookie consent tool when you first visit our site.
Supervisory Authority
If you believe your data protection rights have been violated, you have the right to lodge a complaint with the Information Commissioner's Office (ICO):
Information Commissioner's Office
Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF
Website: ico.org.uk
Helpline: 0303 123 1113
Contact Us
For any data protection queries or to exercise your rights:
Email: privacy@firstlooknow.com
Post: Data Protection, Xander Marketing Limited, United Kingdom
We aim to respond to all data protection requests within 30 days.