Privacy Policy
Last Updated: January 2025
1. Introduction
Welcome to MapToWork ("we," "our," or "us"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our career assessment and exploration platform.
MapToWork is an educational platform designed to help students explore career options through interest assessments (RIASEC/Holland Code), career matching, and educational pathway recommendations.
2. Information We Collect
2.1 Personal Information
When you create an account, we collect:
- Name (first and last)
- Email address
- Grade level
- Expected graduation year
- Parent/guardian email address (for students under 18)
- Account type (student, parent, educator, counselor)
2.2 Assessment Data
When you take career assessments, we collect:
- Your responses to assessment questions
- RIASEC scores (Realistic, Investigative, Artistic, Social, Enterprising, Conventional)
- Career interests and preferences
- Saved careers and interest levels
- Assessment completion dates and times
2.3 Usage Information
We automatically collect:
- Login timestamps
- Pages visited and features used
- Browser type and version
- Device information
- IP address
2.4 Third-Party Authentication
If you sign in with Google, we receive your name and email address from Google. We do not have access to your Google password.
3. How We Use Your Information
We use your information to:
- Provide and maintain our career assessment services
- Calculate and display your RIASEC career profile
- Match you with relevant career options
- Recommend training programs and high school courses
- Save your progress and assessment history
- Send important account notifications and updates
- Improve our services and user experience
- Comply with legal obligations
- Provide data to authorized school personnel (with appropriate permissions)
4. Data Sharing and Disclosure
4.1 Parents and Guardians
For students under 18, parents/guardians may access their child's assessment results and career interests if the student grants permission in their account settings.
4.2 School Personnel
Students can grant access to their data to school counselors, teachers, and administrators through privacy settings. Schools may only access data for students who have explicitly granted permission.
4.3 Service Providers
We use trusted third-party services:
- Supabase: Database and authentication services (data encrypted at rest and in transit)
- Vercel: Website hosting and deployment
- Google OAuth: Optional authentication method
4.4 We Never Sell Your Data
We do not sell, rent, or trade your personal information to third parties for marketing purposes. Your career assessment data is yours.
5. Student Privacy and COPPA Compliance
We take student privacy seriously and comply with the Children's Online Privacy Protection Act (COPPA) and the Family Educational Rights and Privacy Act (FERPA).
- We require parental consent for students under 13
- Parents can review and delete their child's information
- We collect only information necessary for educational purposes
- Student data is not used for targeted advertising
- Students control who can access their assessment results
6. Data Security
We implement industry-standard security measures to protect your information:
- End-to-end encryption for data transmission (HTTPS/SSL)
- Encrypted data storage
- Secure authentication with password hashing
- Regular security audits and updates
- Access controls and authentication requirements
- Automatic session timeouts
However, no method of transmission over the internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
7. Your Privacy Rights
You have the right to:
- Access: Request a copy of your personal information
- Correction: Update or correct your information
- Deletion: Request deletion of your account and data
- Data Portability: Export your assessment data
- Opt-Out: Control data sharing with schools and parents
- Withdraw Consent: Revoke permissions at any time
To exercise these rights, contact us at privacy@maptowork.com or use the privacy settings in your account.
8. Data Retention
We retain your information for as long as your account is active or as needed to provide services. When you delete your account:
- Personal information is deleted within 30 days
- Assessment data is anonymized for research purposes
- Backups are purged within 90 days
- Legal compliance may require retention of certain records
9. Cookies and Tracking
We use essential cookies to maintain your login session and remember your preferences. We do not use advertising or third-party tracking cookies.
- Session Cookies: Keep you logged in (deleted when you close your browser)
- Preference Cookies: Remember your settings and choices
You can disable cookies in your browser settings, but this may affect functionality.
10. International Users
MapToWork is hosted in the United States. If you access our services from outside the U.S., your information will be transferred to and processed in the United States. By using our services, you consent to this transfer.
11. Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or legal requirements. We will notify users of significant changes via email or a prominent notice on our website. Your continued use of MapToWork after changes constitutes acceptance of the updated policy.
12. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or your data:
For student privacy concerns, parents and guardians can also contact us directly for assistance with account management and data requests.