Data Privacy Declaration
Effective as of 20th of February 2025.
1 Who We Are
This Privacy Policy applies to the services provided by Assessio Wizz OÜ ("Wisnio"), a company registered in Estonia under registry code 17051467, with its principal place of business at Tatari 64/1, 10134 Tallinn, Estonia.
Website: www.wisnio.com
Email: privacy@wisnio.com
Phone: +372 53 302 919
Wisnio operates as a Data Controller for personal data collected directly through www.wisnio.com and as a Data Processor when processing data on behalf of customers using Wisnio's platform for recruitment, talent assessment, and team analytics.
2 Scope of Applicability
This Privacy Policy explains:
- What personal data we collect.
- Why we collect it and the legal basis for processing.
- How we store, process, and protect personal data.
- With whom we may share personal data.
- Your rights regarding your personal data.
Our Services may contain links to third-party websites or integrations. Their privacy policies govern their data processing, not ours.
3 Categories of Personal Data We Collect
We collect and process the following types of personal data:
3.1 Identity & Contact Data
- Full name
- Email address
- LinkedIn profile data (if imported via Chrome Plugin)
3.2 Assessment & Profile Data
- Responses to Wisnio’s psychometric and behavioral assessments
- Generated reports and insights
- AI-generated summaries of Candidate/Team Profiles (WisGPT)
- Scores based on assessment responses
3.3 Usage & Technical Data
- IP address, browser type, operating system
- Referral source, website activity logs, and interactions with the platform
- Login timestamps and session duration
3.4 Communication Data
- Live chat messages with customer support
- Emails and support tickets submitted to Wisnio
3.5 Data Collected via the Chrome Plugin (if used)
Wisnio's Chrome Plugin allows recruiters and employers to collect publicly available LinkedIn profile data of candidates actively engaged in a hiring process.
Collected data: Name, headline, summary, experience, education, skills, endorsements.
Legal basis: Legitimate interest for candidates engaged in a hiring process.
Candidate rights: Candidates must be informed and can object at any time, in which case their data will be deleted.
4 Lawful Basis for Processing Personal Data
Wisnio processes personal data under these legal bases:
- Performance of Contract: To provide Wisnio services and process assessments on behalf of Clients.
- Legitimate Interest: To ensure security, prevent fraud, and analyze platform usage.
- Legal Obligation: To comply with legal data retention rules.
- Consent: To send newsletters and use cookies where required.
5 Lawful Basis for Processing Personal Data
Personal data collected through our Services is used only for the purposes outlined in this notice or as specified within the Services. We may process your personal data to:
- Provide and operate Wisnio services, including team assessments, candidate evaluations, and leadership development reports.
- Generate reports and insights based on questionnaire responses for you, your team, or the employer.
- Send service-related communications, such as account updates, security alerts, and customer support responses.
- Send marketing communications if given explicit consent.
- Prevent fraud, ensure platform security, and enforce compliance with our Terms of Service.
- Conduct research and improve our services using anonymized or aggregated data that cannot identify individuals.
- Provide third parties with statistical insights that do not identify individual users.
6 Disclosing personal information
We only share data when necessary to operate our services, comply with legal requirements, or when users enable integrations.
We may share personal data with:
- Service providers (sub-processors) for cloud hosting, AI processing, customer support, and email services.
- Your employer or recruiter in the form of summary reports, never raw questionnaire responses.
- Third-party integrations, if enabled. These third parties act as independent data controllers under their own policies.
For details on our sub-processors, please refer to our Data Processing Agreement.
7 International data transfers
Information that we collect may be stored and processed in and transferred between any of the EEA countries in which we operate in order to enable us to use the information in accordance with this notice. Our principal web servers are located within the European Economic Area. For US-based sub-processors (e.g., Intercom, OpenAI), we use Standard Contractual Clauses (SCCs) to ensure GDPR compliance.
8 Retaining personal information
We retain personal data only as long as necessary to provide our services or comply with legal obligations. If you delete your account, we remove your personal data from live systems within 30 days and delete backups within 12 months, unless required for legal compliance.
Candidate assessments are stored for 1 year if the candidate is not hired, in accordance with the Equal Treatment Act § 25.
Certain data may be retained longer if required by law, for ongoing or potential legal proceedings, or to establish, exercise, or defend legal claims. If a labor dispute arises, personal data will be retained for 4 months from when the employee became aware of the issue.
9 Security of personal information
We will take reasonable technical and organizational precautions to prevent the loss, misuse or alteration of your personal information. We will store all the personal information you provide on our secure (password- and firewall-protected) servers. Information sent to our web server from your browser, or from your browser to our web server, will be protected by encryption technology. You are solely responsible for protecting your passwords and limiting access to your computer.
10 Your Rights
You have the right to:
- Access, correct, or delete your personal data.
- Withdraw consent (for marketing or Chrome Plugin data collection).
- Object to processing under legitimate interest.
- Lodge a complaint with the Estonian Data Protection Inspectorate (https://www.aki.ee/en).
To exercise your rights, contact us at privacy@wisnio.com.
11 Automated decision-making
Wisnio does not make legally binding decisions using AI. AI-generated insights (WisGPT) are advisory only and do not replace human decision-making.
12 Cookies
We use cookies on our Website. You can find out about the type of cookies we use and the reasons we use them in our Cookie Declaration, which should be read in conjunction with this Data Privacy Declaration.
13 How to Get in Touch with Us
If you have any questions in connection with this Privacy Notice, or if you wish to exercise the rights detailed herein, please contact the following email address: wisnio@wisnio.com.
14 Amendments
We may update this Privacy Notice from time to time by publishing a new version on our website.
Data Privacy Declaration Addendum for Chrome Plugin Usage
Effective as of 20th of Feb 2025.
Wisnio’s Chrome Plugin allows professional users (recruiters and employers) to collect publicly available LinkedIn profile information to enhance candidate profiles on the Wisnio platform.
Data Collected: Name, headline, summary, experience, education, skills, endorsements.
Legal Basis for Processing:
- Legitimate Interest – When a recruiter is actively engaged with a candidate for a hiring process, collecting publicly available LinkedIn data supports recruitment decisions.
- Consent – If no prior engagement exists, users must obtain explicit candidate consent.
Data Use & Retention: Data is used only to enrich candidate profiles within Wisnio. It is not shared with third parties except as required by law.
Data is stored only as long as necessary for the recruitment process and deleted upon request or within 12 months if no longer needed.
Candidate Rights: Candidates must be informed about data collection. Candidates can access, correct, delete, or object to processing at any time by contacting privacy@wisnio.com.
If a candidate objects, recruiters must delete the data immediately.
This addendum follows the terms of Wisnio’s main Privacy Policy.