πŸ”’ Your Privacy Matters

Privacy Policy

We're committed to protecting your privacy and being transparent about how we handle your data.

Last updated: 30 September 2025

1. Introduction

Thank you for choosing Testbuddy Education Private Limited.

This Privacy Policy describes how we collect, use, store, and protect information when you use https://cardly.bio and any subdomains (for example, username.cardly.bio) (together called the β€œService”).

By using our Service, you agree to the practices described here. If you do not agree, please stop using our Service.

This Privacy Policy should be read together with our Terms & Conditions, as both documents form the agreement between you and us.

2. Key Definitions

Service – The website https://cardly.bio and related features operated by Testbuddy Education Private Limited.
Personal Data – Information that identifies you as an individual (e.g., email, resume details, name).
Usage Data – Data automatically collected when you interact with our Service (e.g., IP address, browser type, time spent on pages).
Cookies – Small files stored on your device to help us improve your experience.
Controller – The entity that determines why and how your personal data is processed (that's us).
Processor – Third parties that process data on our behalf.
User/You – The person using our Service.

3. What Information We Collect

We may collect the following categories of information:

1. Personal Information Provided by You

When you use CardlyBio, you may provide us with certain personal information directly. This information is collected when you:

  • Create an account or register on our platform
  • Upload or share your resume, LinkedIn profile, or portfolio
  • Complete forms or questionnaires on the website
  • Contact us for customer support or inquiries
  • Participate in surveys, promotions, or events

The types of information you may provide include:

  • Name, email address, phone number, and profile details
  • Employment history, education, skills, and achievements (if you upload your resume or connect LinkedIn)
  • Any other information you choose to share with us voluntarily

We use this information to create and personalize your portfolio, provide support, improve our services, and communicate with you.

2. Personal Information Collected from Social Media Platforms

If you choose to connect CardlyBio with your social media accounts (such as LinkedIn, Google, or Facebook), we may collect and store certain information made available through those platforms.

This may include:

  • Your public profile information (such as name, profile picture, headline, and bio)
  • Employment details, job title, and company information
  • Connections or networks (only where permitted and relevant)
  • Any other data you authorize the third-party platform to share with us

We only collect the information that you have agreed to share with us when you connect your social media account. You can disconnect these accounts at any time through your account settings.

3. Personal Information Automatically Obtained from Third-Party Services

We may also receive personal information about you from trusted third-party services that help us operate and improve CardlyBio. These third parties may include:

  • Analytics Providers (e.g., Google Analytics): Information about how you interact with our website, such as IP address, browser type, device information, pages visited, and time spent.
  • Payment Processors (e.g., Stripe, Razorpay): Information related to your transactions, billing details, and payment status (we do not store sensitive payment information like credit card numbers).
  • Email & Marketing Tools (e.g., Mailchimp, HubSpot): Information about your engagement with our communications, such as email opens, clicks, and preferences.

This information is used to monitor usage, enhance user experience, ensure secure transactions, and provide you with relevant updates and services.

Usage Information

  • IP address
  • Browser type, operating system, and device details
  • Pages visited and time spent on the site
  • Crash logs, diagnostics, and analytics

Tracking & Cookies

We use cookies and tracking tools to enhance your experience. These include:

  • Session cookies – to keep you logged in
  • Preference cookies – to remember your settings
  • Security cookies – to help protect your account
  • Analytics/Advertising cookies – to measure site usage and provide relevant offers

You can block cookies in your browser, but certain features of our Service may not work properly.

Usage Information

  • IP address
  • Browser type, operating system, and device details
  • Pages visited and time spent on the site
  • Crash logs, diagnostics, and analytics

Tracking & Cookies

We use cookies and tracking tools to enhance your experience. These include:

  • Session cookies – to keep you logged in
  • Preference cookies – to remember your settings
  • Security cookies – to help protect your account
  • Analytics/Advertising cookies – to measure site usage and provide relevant offers

You can block cookies in your browser, but certain features of our Service may not work properly.

4. How We Use Your Data

We use the data we collect to:

  • β€’ Deliver and improve our Service
  • β€’ Generate and maintain your portfolio website
  • β€’ Allow you to schedule and manage LinkedIn posts
  • β€’ Send you important updates about your account
  • β€’ Respond to customer inquiries and support requests
  • β€’ Provide personalized recommendations and insights
  • β€’ Monitor usage trends and security
  • β€’ Prevent fraud, misuse, or technical problems
  • β€’ Comply with legal requirements
  • β€’ Share promotions and offers (only if you opt in)

5. Retention of Data

We keep your data only for as long as necessary:

Personal Data – kept while you use our Service, or longer if required by law.
Usage Data – kept for a shorter period, unless needed for security, analytics, or troubleshooting.

When data is no longer needed, we securely delete or anonymize it.

6. Sharing and Disclosure

We may share your information in the following situations:

Legal compliance – if required by law or valid government requests.
Business transfers – in case of merger, acquisition, or asset sale.
Service providers – trusted partners who help us run the Service (hosting, analytics, email delivery).
With your consent – when you explicitly allow us to share information.

We never sell your data for monetary gain.

7. International Transfers

Your information may be stored or processed outside your country of residence. We take all reasonable steps to ensure adequate protection of your data regardless of location.

Data Protection – We ensure appropriate safeguards are in place when transferring data internationally, including standard contractual clauses and adequacy decisions.

8. Security of Data

We use industry-standard safeguards to protect your data, including encryption, access controls, and regular monitoring. However, no method of transmission over the Internet is 100% secure, so we cannot guarantee absolute protection.

Encryption – Data is encrypted in transit and at rest.
Access Controls – Limited access to authorized personnel only.

9. Your Rights (GDPR for EU/EEA Users)

If you are located in the EU/EEA, you have the right to:

  • Access the data we hold about you
  • Correct inaccurate data
  • Request deletion of your data
  • Restrict processing of your data
  • Object to certain types of processing
  • Request a copy of your data (portability)
  • Withdraw consent at any time
Contact Us – To exercise these rights, contact us at privacy@cardly.bio.

10. Your Rights (California – CalOPPA & CCPA)

If you are a California resident, you have the right to:

  • Know what categories of data we collect and how it's used
  • Request deletion of your data
  • Request disclosure of third parties we share your data with
  • Opt out of β€œsale” of data (we do not sell your data for money, but transfers to partners may be considered a β€œsale” under California law)
  • Not face discrimination for exercising your privacy rights
Make Requests – You can make requests by emailing privacy@cardly.bio.
Do Not Track – We also honor Do Not Track (DNT) browser signals.

11. Children's Privacy

Our Service is not directed to anyone under 16 years old. We do not knowingly collect personal data from children. If you believe your child has provided data to us, please contact us immediately.

12. Service Providers

We may use third-party companies for services such as:

  • Website hosting
  • Analytics (e.g., Google Analytics)
  • Email and notification delivery
  • Payment processing (if applicable)

These providers are given only the data necessary to perform their tasks and are bound by confidentiality.

13. Links to Other Sites

Our Service may contain links to third-party websites. We are not responsible for the content or privacy practices of those websites. Please review their privacy policies before providing them with data.

14. Changes to This Policy

We may update this Privacy Policy from time to time. The β€œEffective Date” at the top will always reflect the latest version. We encourage you to check this page regularly.

15. Contact Us

If you have any questions or concerns about this Privacy Policy or your data, please contact us: