1. Who To Contact
For privacy, GDPR, deletion, correction, or data access requests, contact: privacy@theoddjob.ie.
For general support, account, report, payment, or safety questions, contact: support@theoddjob.ie.
For business account or organisation enquiries, contact: business@theoddjob.ie.
2. Data We Collect
The Odd Job may collect and process:
- Account details such as username, email address, password hash, role, trade, service area, profile image, and account status.
- Client and tradesman contact details such as phone number, Eircode, service area, and address details where provided.
- Service request details such as job title, description, deadline, request status, accepted tradesman, reopened status, and completion history.
- Quote, quote record, receipt, payment method, payment status, deposit, balance, and payment workflow records.
- Cash and bank transfer confirmation records, including timestamps and confirmation status.
- Uploaded files such as credential documents, job documents, profile images, and account statement files.
- Review, report, strike, admin review, and audit records used for safety, moderation, misuse prevention, and dispute handling.
- Technical data such as login activity, session state, rate-limit records, security events, browser cookies, and basic request metadata.
- Support and email data where users contact The Odd Job or receive account, quote, receipt, reset, or safety emails.
3. Why We Use Data
Personal data is used to:
- Create, authenticate, secure, and manage user accounts.
- Operate service requests between clients and tradesmen.
- Show contact, location, and job details only where the platform workflow requires it.
- Allow tradesmen to quote, accept, decline, manage, complete, or reopen requests under platform rules.
- Record payment choices, cash confirmations, bank transfer confirmations, card payment status, receipts, and payment review activity.
- Review credentials, reports, misuse, account safety, payment disputes, and platform abuse.
- Send password reset, quote, receipt, account, support, and safety messages.
- Maintain records needed for legal compliance, security, audit, fraud prevention, account deletion statements, dispute handling, and platform operation.
4. When Details Are Shared
- A client request may share job details with the selected tradesman.
- A client phone number, Eircode, address, or location detail may be shown to a tradesman after the request is accepted and while the workflow requires it.
- Tradesman profile, trade, availability, review, and credential status details may be shown to clients where relevant.
- Payment method and payment status records may be visible to the client, tradesman, and admin where needed for that request.
- Uploaded job documents may be visible to the relevant request participants and admin where required.
- Admin users may access records needed for credential review, report handling, payment review, misuse prevention, account safety, and support.
5. Payments And External Providers
The Odd Job may use payment and email providers to operate the service. Payment card details are processed by Stripe where card payments are enabled. The Odd Job should not store full card details.
- Stripe may process card payment, customer, payment method, refund, dispute, and account verification data where enabled.
- Cash and bank transfer workflows are recorded by The Odd Job, but the money moves directly between client and tradesman.
- Resend may process transactional email data such as password reset, quote, receipt, account, and safety email delivery.
- Zoho may process mailbox data for support, privacy, partnership, and DMARC messages.
- AWS or other hosting infrastructure may store or process app, database, file, log, and backup data where the service is hosted.
6. Uploaded Files
- Users should only upload files that are relevant to the account, credential, request, or job involved.
- Users must have permission or a lawful reason to upload personal data belonging to someone else.
- Uploads may be checked for file type, size, corruption, and malware where scanning is enabled.
- Security scanning reduces risk but does not guarantee that every file is safe.
- Unsafe, unsupported, corrupt, irrelevant, abusive, or unlawful files may be rejected or removed.
7. Cookies And Browser Storage
The Odd Job uses essential cookies and browser storage for login, security, session handling, CSRF protection, cookie choice, and platform operation. The Odd Job does not currently use non-essential analytics cookies.
Users can change cookie choices using the Cookies link where available.
8. Retention And Deletion
- Account data is kept while the account is active and for as long as needed after deletion for lawful, security, dispute, payment, audit, fraud prevention, or platform operation reasons.
- Deleted accounts may be retained for a configured retention period before eligible records are purged or anonymised where appropriate.
- Service request, quote, payment, receipt, report, review, audit, and account statement records may be retained where needed for disputes, safety, legal compliance, fraud prevention, and platform integrity.
- Uploaded files may be removed when no longer needed, when the related account or request is purged, or where the file is unsafe, irrelevant, unlawful, or no longer appropriate to retain.
- Some records may not be deleted immediately if they are needed to complete a live job, handle a dispute, keep payment records, protect another user, or comply with legal obligations.
9. User Rights
Subject to applicable law, users may ask The Odd Job to:
- Confirm whether personal data is being processed.
- Provide access to personal data.
- Correct inaccurate personal data.
- Delete personal data where deletion is legally and technically appropriate.
- Restrict or object to some processing where applicable.
- Explain why some records must be retained.
- Raise a data protection concern with The Odd Job or the relevant data protection authority.
10. Security
- The Odd Job uses account authentication, password hashing, rate limiting, CSRF protection, secure session settings, upload validation, role checks, and admin review controls where appropriate.
- Users are responsible for keeping their own account credentials secure.
- Users should report suspected account misuse, unsafe files, privacy concerns, or suspicious activity to The Odd Job promptly.
11. Changes
This policy may be updated as The Odd Job changes. Material changes should be reflected in a new version or updated date.