Privacy Policy
Last updated October 10, 2026
This policy explains what personal data the GigList gig marketplace collects from businesses and workers, why we use it, who processes it for us and how you can exercise your rights.
Who is responsible for your data
The controller of your personal data is the administrator of the giglist.com service. You can reach the administrator at [email protected] with any question about this policy or your data.
What data we collect
- Account data: email address, password stored as a hash, role (business or worker), country and time zone.
- Business data: company name, website, team members and their roles, gigs you post, screening questions, messages and notes.
- Worker profile data: name, headline, skills, rates, availability, service area, portfolio items and photos you choose to upload.
- Activity data: applications, invites, matches, ratings after finished gigs and reports you send.
- Billing data: plan, billing period, invoices and payment status. Full card numbers are handled by the payment operator and never reach us.
- Technical data: IP address, browser type and logs needed to keep the service secure and working.
Why we use your data
- To run your account and provide the marketplace, including matching gigs and workers (performance of a contract).
- To take payments for plans, issue invoices and meet tax and accounting duties (contract and legal obligation).
- To keep the service safe, prevent fraud and scam gigs and review reports (legitimate interest).
- To send service emails such as sign up codes, applicant alerts and billing notices (contract).
- To improve the service with aggregated usage statistics (legitimate interest).
Matching and automated suggestions
GigList ranks workers for a gig and suggests budgets using skills, category, location, availability and rates. Paid plans may also get short written summaries of applicants made with an AI model. These suggestions help people decide; the final choice to invite, hire or apply is always made by a person.
What other users can see
Published gigs are public. A worker profile set to public shows your name, headline, skills, rates, service area, portfolio and ratings from finished gigs. Your email address is never shown publicly. Applications, messages and screening answers are visible only to the business that posted the gig and to you.
Who processes data for us
We share data only with service providers that help us run GigList, under contracts that protect your data:
- a hosting provider that stores the service and its databases,
- a payment operator that processes card payments for plans,
- an email delivery provider that sends service emails,
- an AI model provider that creates applicant summaries and proposal drafts on paid plans.
Some providers may process data outside your country. Where that happens we rely on approved safeguards such as standard contractual clauses.
How long we keep data
We keep account and profile data while your account is active. After you delete your account we remove or anonymize it within 30 days, except billing records we must keep under tax law and data needed to settle disputes or reports.
Cookies
GigList uses only essential cookies: a session cookie that keeps you signed in, a security token that protects forms and a cookie that remembers basic preferences. We do not use advertising or tracking cookies, so no cookie banner is needed.
Your rights
You can access, correct, export or delete your data, object to processing based on legitimate interest and restrict processing. Write to [email protected] and we will reply within 30 days. You can also lodge a complaint with your local data protection authority.
Children
GigList is for people aged 18 and over. We do not knowingly collect data from anyone younger.
Changes to this policy
If we change this policy we update the date at the top and tell signed in users about important changes by email or in the panel.