Skip to content
PRIVACY

How Workacross handles information.

A plain-language description of how Workacross handles information and the data boundaries it follows.

Owner official-source compliance review: no counsel. This is not legal advice or a guarantee against every claim.

The short version

Workacross helps people who live in France or Germany and work in Switzerland understand cross-border decisions. We collect only the information needed for the feature you choose to use. We do not ask for tax documents, identity documents, employer records, or payment details on this site.

  • Public guides are editorial content.
  • Accounts, profiles, community submissions, avatars, and workspace state belong in Supabase behind access rules.
  • Workspace state means content a member saves, task and checklist progress, and dates they choose to remember; it does not include salary, employer, tax, or document data.
  • Sanity is public editorial infrastructure and must never contain private member information.
  • Community posts are public as soon as you write them; a moderator can remove them afterwards.

Account and community data

Supabase Auth handles passwordless email and sign-in through Google or LinkedIn. Those providers return identity metadata and a confirmed email through a redirect; Supabase may automatically link identities that share the same verified email. Apple and Microsoft are shown as coming soon and receive no data. Workacross uses only a sanitized provider name as an optional profile suggestion, does not import provider photos, and never treats LinkedIn sign-in as professional verification. Cloudflare Turnstile checks email-code requests for automated abuse. Your profile can contain a username, display name, residence country, work canton, work stage, context-visibility preference, and optional avatar. Questions and replies are published immediately and moderated afterwards.

  • Your email and provider identity are not copied into public content.
  • Provider metadata never grants a role, badge, moderation power, or permission.
  • Private profile fields remain owner-only.
  • Removed content is hidden from the site but its original text is retained in a moderator-only audit record.
  • You can delete your own posts and comments at any time.

Measurement and providers

Workacross records a small allowlisted set of product events to understand whether the site is useful. The event sanitizer rejects message bodies, email-like values, names, phone numbers, addresses, passwords, and long unapproved identifiers. Vercel Speed Insights loads automatically on every visit to report aggregated performance data; it does not use cookies, does not identify you, and reports page timing only. When you accept measurement, the Supabase product-event pipeline begins counting allowlisted events. We do not use Vercel Web Analytics or third-party advertising analytics. Supabase stores an authenticated user ID with an allowlisted event when a member is signed in; event metadata excludes email addresses, message text and private profile fields. You can change the measurement choice at any time on the cookie page. The current infrastructure uses Vercel, Supabase, and Sanity for the purposes described on this site.

  • Tool inputs such as salary scenarios run in the browser and are not sent to Workacross.
  • Editorial documents in Sanity are public by design.
  • Service providers may process technical data needed to deliver their service.

Community machine translation

When your reading language differs from a public Community post or comment, Workacross may send only that post's title/body or comment body to Google Cloud Translation for automatic translation. We do not send names, profile data, account identifiers, IP addresses, reports or moderation information. Google processes translations in the EU endpoint, keeps submitted text only briefly in memory, and does not use it to train its models. Translations may contain errors; the original is always available and remains the editing, moderation and legal source of truth.

THIS SERVICE MAY CONTAIN TRANSLATIONS POWERED BY GOOGLE. GOOGLE DISCLAIMS ALL WARRANTIES RELATED TO THE TRANSLATIONS, EXPRESS OR IMPLIED, INCLUDING ANY WARRANTIES OF ACCURACY, RELIABILITY, AND ANY IMPLIED WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT.

  • Provider: Google Cloud Translation Advanced (Google Cloud EMEA Limited).
  • Purpose: optional language accessibility for public member-generated content.
  • Stored by Workacross: the generated translation, source language, content-version hash, provider/model and non-content operational metrics.
  • No private profile, email, search index, notification, moderation report or draft content is translated.

Retention and your choices

Unfinished accounts are removed after 7 days; raw product events, views and runtime errors after 90 days; abuse-control attempts after 2 days; contact correspondence after 365 days; unconfirmed newsletter signups after 30 days; confirmed newsletter details at unsubscribe; deleted-account email hashes after 30 days; resolved moderation snapshots and audit data after 24 months; and translation cache entries after 12 months without use or immediately with their source.

You can permanently delete the account or download an export from your profile. Export, deletion, sign-out and privacy requests stay available even when a new policy version needs acknowledgement. Contact messages are private and retained for 365 days.

  • Do not enter tax IDs, document numbers, bank details, or sensitive health information.
  • Do not upload private documents.
  • Use the correction link shown on each guide to report an incorrect or unsafe claim.

Category-by-category data record

The primary Supabase project data is stored in its configured Frankfurt region. Google Cloud Translation uses the EU endpoint. Vercel states that its primary processing facilities are in the United States. Other providers may process outside the EEA. The current transfer safeguards are the provider terms and DPA, an applicable adequacy decision or European Commission standard contractual clauses: Supabase DPA, Vercel DPA, Sanity DPA, Resend DPA, Cloudflare DPA, LinkedIn EU notice, and Google Cloud Translation data use. Provider terms control their own current retention and processing details.

Across every category, you may request access, correction, restriction, objection, portability where applicable, or deletion through your profile or the contact route. You may withdraw consent at any time without affecting earlier lawful processing and complain to the CNIL. A request may be limited only where law requires retention or another person's rights must be protected.

  • Accounts, OAuth and legal acceptance: confirmed email, provider identity metadata, account/session identifiers, locale, accepted versions, 18+ flag, surface and server time; purpose and basis: authenticate and perform the account contract, document acceptance, and secure access; required for an account, optional provider choice; recipients: Tobias Kern, Supabase and the chosen Google or LinkedIn provider; retention: unfinished accounts 7 days, otherwise until account deletion; available in export and erased with the account.
  • Profile and avatar: username, display name, biography, residence, work canton/stage, visibility choice and optional image; purpose and basis: provide member identity and context under the contract; username and required Community context are necessary for participation, the rest is optional; recipients: public viewers only for fields you publish, Tobias Kern and Supabase; retained until edited or account deletion; self-service access, correction, export and deletion apply.
  • Public Community content: questions, replies, dates and context you choose to show; purpose and basis: publish the contribution under the account contract and operate the discussion; optional; recipients: the public, Tobias Kern, Supabase and Google Cloud Translation only when translation is requested; retained until you delete it or delete the account, subject to the moderation record below; self-service access, correction, export and deletion apply.
  • Reports and moderation: reporter ID, target, reason, moderator action and a restricted snapshot of removed text; purpose and basis: safety, abuse response and legal defence under legitimate interests and legal obligations; reporting is optional, the fields are required to submit a report; recipients: Tobias Kern and Supabase; open reports remain until resolved, moderation events and snapshots 24 months after resolution; export includes your authored removed text but not another reporter's identity, and objection/deletion requests are assessed against safety and legal needs.
  • Saved items and Workspace: saved-content references, tasks, checklist state, chosen dates and document metadata; purpose and basis: provide requested private account features under the contract; optional; recipients: Tobias Kern and Supabase; retained until you remove the item or delete the account; self-service access, correction, export and deletion apply.
  • Contact and correction messages: name, email, topic, message, consent record and handling state; purpose and basis: answer requests, correct content and handle pre-contractual or privacy matters under legitimate interests, requested steps and legal obligations; required only to send the form; recipients: Tobias Kern, Supabase and Resend for notification; retained 365 days; access, correction, objection and deletion requests use the same contact route.
  • Newsletter: email, locale, consent/confirmation timestamps and delivery state; purpose and basis: send the requested newsletter by consent; optional, but email and confirmation are required to subscribe; recipients: Tobias Kern, Supabase and Resend; unconfirmed requests 30 days, confirmed details until unsubscribe; withdraw by unsubscribe, then deletion follows the delivery workflow.
  • Optional product analytics and views: consented session identifier, allowlisted event/route metadata, origin and authenticated user ID when signed in; purpose and basis: understand product usefulness by consent; optional; recipients: Tobias Kern and Supabase; raw rows 90 days, after which only thresholded aggregate history remains; withdraw on the cookie page and request account-linked export/deletion.
  • Speed Insights: route, URL, country, browser/device class and Web Vital timing, without a Workacross account or session identifier; purpose and basis: performance and reliability under legitimate interests; automatic, with no browser cookie; recipient: Vercel; Workacross keeps no separate copy and Vercel controls its service-generated retention under its notice; object through the contact route.
  • Runtime errors and abuse-control attempts: route, bounded error code/status, whether a session existed, timestamps and rate-limit/confirmation/unsubscribe attempt data; purpose and basis: security, reliability and abuse prevention under legitimate interests and legal obligations; required when the relevant request occurs; recipients: Tobias Kern, Supabase, Vercel and Cloudflare for email anti-abuse; runtime errors 90 days and attempts 2 days; access, objection and deletion requests are assessed against security needs.
  • Machine translation: only public post/comment text sent to Google Cloud Translation, plus translation, language, content hash, provider/model and technical metrics stored by Workacross; purpose and basis: requested language accessibility under the service contract and legitimate interests; optional and activated when a translation is requested; recipients: Google Cloud and Supabase; cache 12 months after last use or immediately with its source; delete the source to delete its cached translation and use the contact route for other rights.

Version 2026-09-06, Effective and updated 6 September 2026, French is the master text; mandatory local rights remain unaffected.