Ktivra
Back to Ktivra
Ktivra policy centre

Privacy Policy

How Ktivra collects, uses, shares, protects, and retains personal information.

Version
1.0
Effective
August 5, 2026
Last updated
August 5, 2026
This page is maintained by Ktivra to explain the current platform policy. The legal operator will be a Cyprus-registered company before public launch and its registered address will be added here. This policy is not a certification or independent legal opinion.

01

Who we are and scope

Ktivra connects construction workers with employers and contractors in Cyprus. This policy covers the website, mobile experience, verification, bookings, messages, notifications, and support.

02

Personal information we collect

We may collect account and contact details; worker profiles, trades, qualifications, availability and rates; employer, business, project, site and booking information; messages, ratings, disputes, safety reports and support correspondence; authentication and device records; and technical, cookie and analytics data.

03

Identity documents and work permits

Verification may require identity documents, a selfie and liveness check, work authorization, qualifications, or insurance. Files are stored in restricted systems and are not public. We may retain extracted document fields, outcomes, face-match, liveness, duplicate, fraud and device-risk signals. Employers remain responsible for final work-eligibility decisions.

04

Automated and third-party verification

Trusted providers may perform OCR, authenticity and tampering checks, face matching, liveness, duplicate detection, and fraud or device-risk analysis. Results may approve, request another attempt, reject, or refer a case for authorized manual review. Users may request human review or appeal.

05

Purposes and GDPR legal bases

Where GDPR applies, processing relies on contract to provide the service; legitimate interests to secure and improve it; legal obligations; and consent where required for optional cookies, analytics, or communications. Consent may be withdrawn.

06

Sharing and international transfers

Information is shared only as needed with matched users, verification, hosting, storage, authentication, email and analytics providers, advisers, and lawful authorities. Approved transfer mechanisms and safeguards are used where data is processed outside Cyprus or the EEA.

07

Cookies, local storage, and analytics

Essential storage keeps users signed in, remembers interface state, protects sessions, supports offline loading, and operates security controls. Optional analytics measure use and performance and do not run before consent where consent is legally required.

08

Retention and deletion

Verification records are retained for five years, or longer where law requires. Other data is kept only as long as needed. Users may request deletion, but records required for legal, fraud-prevention, tax, employment, dispute, or regulatory purposes may be restricted and retained.

09

Your privacy rights

Subject to law, you may request access, correction, deletion, restriction, portability, objection, withdrawal of consent, and human review of a materially automated decision. You may complain to the Cyprus data-protection authority. Contact privacy@ktivra.com.

10

Security measures and incidents

Ktivra uses restricted access, private document storage, authenticated sessions, optional MFA, re-authentication, signed webhooks, audit logs, and rate controls. No system is completely secure. Report concerns to support@ktivra.com.

11

Changes and contact

Updates are identified by version and Last Updated date. Material changes will be communicated where appropriate. General contact: support@ktivra.com. Privacy requests: privacy@ktivra.com.

Questions about this policy?

Contact support@ktivra.com. Privacy and data-rights requests can be sent to privacy@ktivra.com.