KliqCareBack to home

Privacy

How information is handled in the KliqCare beta

Last updated: 29 August 2026

Who is responsible

The healthcare organisation that invites an applicant normally decides why workforce information is collected and is the data controller. KliqCare provides the platform and normally acts as its processor. The inviting organisation must give applicants its controller identity, contact details, purposes, lawful bases and any additional notices that apply.

Information processed

The beta can process identity and contact details, employment and education history, referee details, skills declarations, assessment responses, messages, support requests and compliance status. Depending on the role and organisation, this can include health information, DBS-related information, Right to Work evidence and payroll onboarding data.

Why it is processed

Information is used to administer recruitment, assess suitability through human review, complete lawful workforce checks, communicate with applicants, create an audit trail and transition an approved applicant into a worker record. KliqCare does not use assessment answers to make an automatic final recruitment decision.

Access and sharing

Access is organisation-scoped. Occupational-health, DBS and finance records have separate role restrictions. Approved subprocessors may provide identity, hosting, database, file-storage, monitoring, malware-scanning or communications services under contractual controls. An organisation must provide its current subprocessor information before accepting real applicant data.

Storage and retention

Application data is stored in the organisation’s KliqCare workspace. Private evidence files remain quarantined until scanning succeeds. Retention is configured by the organisation within the beta’s enforced limits and must be aligned with its documented retention schedule. DBS certificate information requires particularly short, purpose-limited handling.

Your rights

Applicants can ask the inviting organisation about access, correction, restriction, objection, erasure and portability where those rights apply. They may also complain to the Information Commissioner’s Office. KliqCare support requests are available inside the authenticated applicant portal.

Security and incidents

KliqCare uses verified identity, administrative MFA gates, tenant-scoped database functions, restricted evidence access, private file storage, append-only audit events and fail-closed malware quarantine. No online service can promise absolute security. Suspected security issues can be reported through the security page.


This public-beta information supports transparency but does not replace organisation-specific legal, clinical or regulatory advice.