At a Glance
This policy explains how Scrini AI Private Limited collects, uses and protects personal data across our recruitment platform, sub-domains and APIs. We act as a controller for Client data and a processor for Candidate data.
1.1 Overview
Scrini provides an AI-driven recruitment platform helping organizations (Clients) source, screen and manage candidates. By using the Service, you agree to this Policy and our Terms. For Client account data, Scrini is a data controller. For Candidate data processed on behalf of a Client, Scrini is a data processor and the Client is the data controller.
1.2 Personal Data We Process
We process Client & Admin identity, billing and security access logs. For candidates, we process application data (resumes, work history), assessment results (AI transcripts, interview recordings) and workflow metadata. We also collect product analytics (browser type, GA4) for service improvement. We do not require sensitive special-category data unless explicitly instructed by the Client.
1.3 Purposes & Legal Bases
Data is processed for service delivery (Contract), AI-driven insights like JD generation and ranking (Legitimate Interest) and system security. Research and model improvement use de-identified data unless opted-in. Marketing communications require consent and can be opted-out at any time.
1.4 Sharing & International Transfers
Data is shared within your organization's tenant and with verified sub-processors (cloud hosting, communications tools) bound by DPAs. International transfers to India, EU, UK or US are protected by SCCs or adequacy mechanisms. Data residency preferences can be honored for enterprise contracts.
1.5 Retention
Client account data is retained for the subscription term plus 90 days. Candidate PII is governed by Client settings and is typically deleted or anonymized within 30 days of a Client request or contract termination. Automated backups follow a 35-day lifecycle policy.
1.6 Cookies & Similar Technologies
Strictly necessary cookies are used for session security and cannot be disabled. Optional analytics and functional cookies can be managed via our cookie banner or your browser settings. We honor 'Do-Not-Track' requests where technically feasible.
1.7 Your Rights
Depending on your jurisdiction (GDPR, CCPA, etc.), you may request access, correction, deletion or portability of your data. Candidates should contact their hiring organization (the controller) first. Clients and visitors can exercise rights directly via support@scrini.ai.
1.8 Security Summary
We apply layered security: TLS 1.3 in transit, AES-256 at rest, RBAC, SSO/MFA and network segregation. Our program aligns with SOC 2 Type II and ISO 27001 standards. Independent penetration tests are conducted at least annually to ensure infrastructure integrity.
1.9 Third-Party Services
Our Service integrates with external ATS/HRIS, calendars and job boards. Use of those integrations is governed by the respective providers' privacy notices and terms. Scrini is not responsible for data processed within those third-party environments.
1.10 Changes & Contact
This policy may be updated with 14-day prior notice for material changes. For privacy inquiries or to reach our DPO, contact support@scrini.ai or call +91-9116489709. Address: Scrini AI Private Limited, Noida, Uttar Pradesh, 201309, India. Nov 1, 2025 SCRINI_OS_4.3.0

