Is HiBob safe with your data?
HiBob
Hi Bob Ltd.
Partial disclosure · high confidence
HiBob earns a C (60/100) because it discloses its data practices only in part.
#99
of 177 apps ranked
60
score · HR & recruiting avg 65
-5
vs category average
HiBob's website-facing privacy policy is strong on data-subject rights, international transfers, and legal-basis transparency. It says nothing about model training and gives only vague retention and security commitments. It covers website visitors, admins, and recruiters, and explicitly scopes out employee End User data, which is handled under a separate End Users policy.
What HiBob's privacy policy says about your data
Full rights menu
The Your Privacy Rights section names access, rectification, erasure, restriction, objection, portability, and the right to opt out of the sale or sharing of data for targeted advertising, with an authorized-agent route.
Named transfer safeguards
International transfers from the EEA, UK, and Switzerland rely on standard contractual clauses and the EU-US Data Privacy Framework certification for the US subsidiary, all named explicitly.
Vague retention
Retention is committed only as long as it is reasonably necessary, with no day count or deletion timeline, and the policy reserves the right to delete or restrict data with or without notice.
Silent on training and breach
The policy never states whether the covered users' data is used to train models, and it gives no breach-notification commitment. It cites only industry-standard security, including encryption as appropriate.
What the policy is silent or vague on
- Not stated: keeping user inputs out of model training
- Not stated: a way to opt out of training
- Not stated: whether training use differs by plan
- Not stated: your ownership of generated outputs
HiBob privacy rating
Details
- Category
- HR & recruiting
- Modalities
- text
- Processes biometrics
- No
- Policy last updated
- 2026-02-16
- Region scored
- Global / US-default
- Assessed
- 2026-06-20
Other hr & recruiting apps
Each grade reflects our analysis of what an app states in its public privacy policy and terms as of the assessment date. It measures the transparency of those documents, not the company's actual data practices, security, or compliance. Grades are our opinion, offered for general information. Full disclaimer.