Privacy Policy
This Privacy Policy explains how Pro Contract Direct Limited collects, uses, discloses, and protects your data in compliance with UK GDPR, Data Protection Act 2018, CCPA, and other applicable laws.
1. Introduction
Pro Contract Direct Limited is a UK-based contractor-specialised recruitment agency providing seasoned contractors across a wide range of industries. We are committed to safeguarding your personal and business data. This Privacy Statement explains how we collect, use, disclose, and protect your data across all services.
Services Include:
- Contractor Recruitment: Contract, interim, and executive staffing solutions.
- Talent Advisory: Workforce strategy, compliance support, and placement management.
- Consultancy Support: Specialist contractor expertise across multiple industries.
By engaging with our services, you consent to the practices described herein. For inquiries, contact our Data Protection Officer (DPO) at:
Phone: 0203 983 7422
Email: info@procontractdirect.com (Please mark correspondence “Attn: Data Protection Officer”).
2. Scope
This Privacy Statement applies to:
- Clients: Businesses or individuals using our contractor or consultancy services.
- Candidates: Job seekers and contractors interacting with our recruitment platform.
- Website Visitors: Users accessing www.procontractdirect.com or associated subdomains.
- Employees/Contractors/Suppliers: Individuals engaged in our operations.
3. Definitions
- Data Controller: Pro Contract Direct Limited, responsible for determining data processing purposes.
- Data Processor: Third parties processing data on our behalf (e.g., payroll providers, cloud services).
- Personal Data: Information identifying individuals (e.g., names, IP addresses).
- Sensitive Data: Includes racial/ethnic origin, disability status, or health information.
4. Data We Collect
4.1 Recruitment Services
- Candidate Data: Resumes, employment history, certifications, references (with consent).
- Sensitive Data: Voluntary diversity information (for EEO compliance).
- Background Data: Information required for security clearance or compliance checks.
4.2 Consultancy & Client Services
- Business Data: Engagement details, audit results, project deliverables.
- Client Contacts: Professional details (role, email, LinkedIn profile).
4.3 Website Visitors
- Cookies: Session IDs (_ga, _gid), LinkedIn Insight Tag.
- Technical Logs: IP addresses, browser type, geolocation.
4.4 Employees/Contractors/Suppliers
- HR Data: Contact details, payroll information, National Insurance numbers.
- Access Logs: Internal system usage records.
5. How We Collect Data
- Directly: Forms, CV submissions, applications, contracts.
- Automatically: Cookies, analytics tools.
- Third Parties: Job boards, LinkedIn, client referrals.
- Public Sources: Company websites, press releases.
6. Purposes & Legal Bases for Processing
Purpose & Data Type & Legal Basis:
- Service Delivery – Network configurations – Contractual obligation
- Cybersecurity Monitoring – Firewall logs – Legitimate interest
- Candidate Placement – Resumes, references – Consent
- Marketing – Email addresses – Consent (opt-in)
- Legal Compliance – All data – Legal obligation
Third Parties Involved:
- Recruitment & Verification: HireRight, client employers, job boards.
- Consultancy Support: Accredited compliance auditors.
- Legal Disclosures: ICO, FTC, law enforcement agencies.
- International Transfers: Conducted under UK IDTA or EU SCCs.
7. Data Security
Technical Measures:
- Encryption: AES-256 (at rest), TLS 1.3 (in transit).
- Access Controls: Multi-factor authentication, role-based permissions.
- Monitoring: Regular penetration testing, audit trails.
Organisational Measures:
- GDPR training and awareness.
- Phishing simulations for staff and contractors.
- Continuous SOC monitoring.
8. Data Retention
| Data Type |
Retention Period |
| Client Contracts |
6 years post-termination |
| Candidate Resumes |
2 years post-interaction |
| Network Logs |
12 months |
| HR Records |
7 years post-employment |
9. Your Rights
You have the right to request access, rectification, or erasure of your data. You may also request restriction, portability, or object to processing.
To exercise these rights, contact: info@procontractdirect.com (Attn: Data Protection Officer). For verification, please include a government-issued ID. We aim to respond within 30 days, with extensions possible for complex requests.
10. Recruitment-Specific Provisions
- Explicit Consent: Required for background checks and profile sharing with clients.
- Candidate Portals: We use secure recruitment platforms (e.g., Bullhorn) for application management.
- No AI-Only Profiling: All shortlisting decisions include human review.
11. Cookies & Tracking
We use cookies for essential functionality, analytics, and marketing.
- Essential: e.g., JSESSIONID.
- Analytics: e.g., _ga.
- Marketing: e.g., li_fat_id.
You may adjust preferences via your browser or our Cookie Consent Banner.
12. Policy Updates
We may update this Privacy Policy from time to time. Where changes are significant, we will notify registered users at least 30 days prior to implementation.