Security and privacy
What we hold, who can see it, and how to take it back. If anything here isn't clear, write to support@fractionalroster.com and ask.
Where your data is held
The Roster runs on Netlify and your data is stored in a Postgres database managed by Supabase. We are Greenlight Partners LLP, registered in England and Wales, and we are the data controller. The privacy policy says what we collect and why.
Who can see what, before an introduction
- A buyer sees the profile that fits the problem they described. They see what you published on it.
- You see the shape of a buyer's demand, never their identity. Demand is anonymized in both directions until you both agree to talk.
- Whether a profile appears in search engines is your choice, per profile, and it is off unless you turn it on.
- Greenlight staff can see your account in the admin, and significant actions are written to an audit log.
Payments
Payments are handled by Stripe. Card details are entered on Stripe's own checkout and never reach us, so there is no card number in our database to lose. Where a consultant sells a service through the platform, the charge is made on their own Stripe account and they are the merchant of record.
Taking your data out, and deleting your account
- Download everything we hold about you, from your account page, at any time.
- Delete your account from the same page. It is scheduled rather than instant: there are 30 days in which you can change your mind by contacting us, and after that your personal data is erased or anonymized.
- Some records have to survive a deletion because the law requires it, invoices among them. Those keep no personal detail beyond what the law asks for.
Cookies
Nothing that isn't strictly necessary is set until you say so, and you can change your mind at any time.
Need a security review?
If your organization needs a security review before you work through the Roster, write to support@fractionalroster.com and we'll take you through how we handle your data.