Effective as of 17 August 2026
At Jobbaza LILIIA-MARIIA HALAN (“Service Provider”, “Administrator”, “we”, “us”), we respect and protect the privacy of our Users. This Privacy Policy specifies how we collect, use, store and protect personal data of persons using our website available at https://jobaza.com/ (“Service”).
We undertake to process personal data in accordance with applicable laws, in particular Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 (“GDPR”), the Act of 10 May 2018 on the Protection of Personal Data, the Act of 12 July 2024 – Electronic Communications Law, and other applicable provisions concerning the protection of personal data, privacy, electronic communications and the use of cookies.
This Privacy Policy applies to Users who have an account on the Service, persons publishing advertisements, and persons contacting the Administrator.
Depending on how the Service is used, we may collect the following categories of data:
We do not require the provision of personal data that is not necessary to use specific functionalities of the Service.
If the User publishes content containing personal data of other persons, the User should have an appropriate legal basis for sharing and publishing such data.
We may process personal data in particular for the following purposes:
The legal basis for processing data may include, in particular:
Where data is processed on the basis of consent, the User may withdraw such consent at any time. Withdrawal of consent does not affect the lawfulness of processing carried out before its withdrawal.
In order to ensure the proper functioning of the Service, support Users, process payments, provide communication, analytics, marketing and security, we use the services of external technology providers.
Depending on the current configuration of the Service, we may use, in particular, the following services:
In connection with the use of the above services, providers may process data such as IP address, device and browser data, online identifiers, data concerning the use of the Service, contact data and – to the extent necessary to provide a specific service – payment or communication data.
The scope of data transferred depends on the type of service used and its configuration. In the case of analytical, marketing and other technologies requiring consent, they are activated in accordance with the User’s preferences and applicable laws.
Personal data may also be entrusted to or shared with other providers of technological, hosting, payment, communication, analytical, marketing and security services where this is necessary for the functioning of the Service and the achievement of specific processing purposes.
If an external provider processes personal data on behalf of the Administrator, the Administrator enters into an appropriate data processing agreement with such provider or applies another appropriate legal instrument in accordance with the requirements of the GDPR.
The Administrator selects providers taking into account appropriate security guarantees and compliance with applicable personal data protection laws.
Providers also process data for their own purposes and as separate controllers if this results from the nature of the service provided. In such a case, their own privacy policies and data protection rules also apply.
Data may also be disclosed to competent public authorities, courts or other authorised entities where such obligation results from applicable laws.
In connection with the use of external technology providers, personal data may be transferred or made available to entities located outside the European Economic Area (“EEA”), including in the United States, to the extent resulting from the services used and their configuration.
Where data is transferred outside the EEA, the Administrator applies an appropriate mechanism provided for in Chapter V of the GDPR, in particular:
The scope of transferred data is limited to data necessary to provide the specific service.
We apply appropriate technical and organisational measures aimed at protecting personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure or access.
The scope of the security measures applied is adapted to the nature, scope and purpose of data processing and the associated risk.
Despite applying appropriate security measures, we cannot guarantee the complete security of data transmission over the Internet.
Users whose data is concerned have the rights provided for by the GDPR, in particular:
In order to exercise their rights, the User may contact the Administrator at support@jobaza.com.
The Administrator may take appropriate measures to verify the identity of the person submitting the request.
The Service is not intended for the independent creation of accounts by persons under 18 years of age. If the Administrator becomes aware that an account has been created by a person who does not meet this requirement, it may take appropriate measures in accordance with applicable laws.
We retain personal data for the period necessary to fulfil the purposes for which it was collected and thereafter for the period required by law or necessary to establish, pursue or defend against claims.
In particular:
After the expiry of the relevant period, the data is deleted or anonymised unless its further retention is required by law.
The Administrator may update this Privacy Policy, in particular in the event of changes to the functioning of the Service, the technologies used, the services utilised or applicable laws.
The current version of the Privacy Policy is published on the Service.
In the event of material changes that may affect the rights or the manner in which Users’ personal data is processed, the Administrator may inform Users in an appropriate manner.
At the beginning of the document and upon each subsequent update, the effective date of the relevant version of the Privacy Policy is indicated.
The controller of personal data processed in connection with the use of the Service is:
Contact regarding privacy and personal data protection: support@jobaza.com
Regarding the processing of personal data and the exercise of rights arising from the GDPR, the User may contact the Administrator at the above address.
The User also has the right to lodge a complaint with the President of the Personal Data Protection Office (UODO) if they consider that the processing of their personal data violates the provisions of the GDPR or other applicable provisions concerning the protection of personal data.