Privacy Policy

Last updated: 27 September 2026

Macademia lets business schools discover and contact candidates who complete a profile. We use only the data needed to run that service, keep primary production data in the EU, and never sell personal data.

In short: you control whether your profile is visible; optional analytics, advertising and error monitoring stay off until you choose them; universities can unlock a published profile under the rules below; and you can edit, export or delete your account. This policy gives the full detail required under the GDPR. Questions: privacy@macademia.education.

1. Who we are

Macademia is operated by Macademia UG (haftungsbeschränkt), Wiener Str. 61, 60599 Frankfurt am Main, Germany, registered at the Amtsgericht Düsseldorf under HRB 114262 ("we", "us") — see our Imprint · Image credits for full details. We are the data controller for the personal data described in this policy. Macademia was previously run by its three founders as a company under civil law (Gesellschaft bürgerlichen Rechts, "GbR"); the UG has taken over the operation of the service, and personal data collected before then is now held by it. For questions about your data or to exercise your rights, contact privacy@macademia.education.

2. The data we collect

If you joined our early-access list before the platform opened for sign-up

This channel is now closed. Before open sign-up launched, we collected early-access registrations through our website and, for a period, through lead-generation forms on Meta (Instant Form) and TikTok (Lead Generation). We are no longer running those ad campaigns and no longer collect new registrations this way — this section describes what was collected during that period, because we still hold some of those records (see section 6 for how long). The channels asked for slightly different fields:

These sign-up forms did not ask for a phone number, payment/financial data, or any special-category data (GDPR Article 9).

If you came to us through one of our Meta or LinkedIn lead forms

Some of our adverts on Facebook and Instagram open a short lead form inside the app, run by Meta, and some of our adverts on LinkedIn open a LinkedIn lead form, run by LinkedIn. This is a current channel, separate from the early-access forms above. When you submit the form, your answers reach us (from Meta directly; from LinkedIn directly too, as our server reads them from LinkedIn itself, see section 4) and we keep the following:

From then on you are a candidate like any other, and the rest of this policy applies to you. What we tell Meta or LinkedIn about your lead afterwards is described in section 4.

If you signed up through a partner's link

Some people and organisations we work with, such as content creators, share a personal link to Macademia. If you create your account through one of these links, we record which partner's link it was and when you signed up. We use this to know how many people each partner brought to Macademia, how many of them completed and published their profile, and how many meet the profile we look for (a bachelor's degree or higher, at least three years of work experience, and a phone number), so that we can measure these partnerships and settle what we owe our partners. We tell a partner only totals, never who you are or anything from your profile. If you delete your account, we keep only the partner, the dates and those yes-or-no answers, with nothing that identifies you. Apart from the sign-in cookie that Google or LinkedIn sign-up already uses for a few minutes, nothing is stored in your browser for this.

If you are a candidate (student) on the platform

We do not ask for nationality, gender, age, ethnicity, religion, or other special-category data (GDPR Article 9), and we never extract it from anything you give us or use it in matching or ranking. A CV you upload may contain some. We store the file as you uploaded it, and we show it to a university that unlocks your profile only with the consent you give at upload — a separate, unticked box, not the upload itself. Saying no changes nothing else: your profile is published as usual and the file is simply not shown. You can switch it off at any time in Settings.

Telling a school that people are interested in it

Some schools we talk to are not yet our customers. To help make the case for joining Macademia, we may tell such a school a single number: how many candidates on Macademia have shown interest in it, by shortlisting it or applying through the platform — for example "seventeen candidates have shortlisted your MBA this term."

If you are a recruiter (university)

3. Why we use it, and our lawful basis

PurposeLawful basis (GDPR Art. 6)
Sent the free guide and early-access updates to sign-ups (discontinued channel, see section 2 — we no longer send these)Performance of your request (Art. 6(1)(b)); consent for optional marketing updates (Art. 6(1)(a))
Understood the early-access audience in aggregate (programme, timing, destination) to inform product development and school partnerships (discontinued channel, see section 2)Legitimate interests (Art. 6(1)(f))
Count how many candidates have shown interest in a school, so we can tell that school the total when it is not yet a customer (see section 2)Legitimate interests (Art. 6(1)(f)) — producing the count is itself processing of your data, so it gets a basis of its own rather than resting on the count being anonymous once made. You can object under Art. 21 and we stop counting you. Deliberately not consent: a withdrawal cannot be honoured once a figure has been given to a school.
Create and operate your accountPerformance of a contract
Show your profile to relevant schools / show candidates to recruitersLegitimate interests (Art. 6(1)(f)) for candidates. This one is on by default once you finish onboarding, so it is not consent, and we will not call it that. We tell you before it happens. Your profile is shown without your name, your initials, your photo and your uploaded documents until a school spends a credit to unlock you; the rest of it, including your employer and your role, is shown from the moment you publish, and it is not anonymous — see section 4. Unpublish any time from your Profile page, or object under Art. 21 — either stops it. Legitimate interests also for recruiters.
Create your account and profile from a Meta or LinkedIn lead form and the CV you add on our page, and publish it (see section 2)Performance of a contract (Art. 6(1)(b)) for the account, which you ask for by confirming on our page. Publishing rests on legitimate interests (Art. 6(1)(f)), as in the row above: the page tells you, before you confirm, that what you see there is what schools will see. Unpublish from your Profile page once you have signed in, or object under Art. 21 by writing to us; either stops it.
Tell Meta how a lead from its form progresses, so that we can measure our adverts and show them to people more like those who go on to add a CV (see section 4)Your consent (Art. 6(1)(a)), given on the Meta form by ticking the optional second box that says so; the form can be sent without it, and without it we send nothing. We send nothing for a lead whose form text we have not recorded. You can withdraw it at any time by deleting your account in Settings (once you have signed in) or by writing to privacy@macademia.education; either way we send nothing further about you. This does not depend on your cookie choices, because the form, not a cookie, is how you reached us.
Tell LinkedIn how a lead from its form progresses, so that we can measure our LinkedIn adverts (see section 4)Your consent (Art. 6(1)(a)), given on the LinkedIn form by ticking the optional second box that says so; the form can be sent without it, and without it we send nothing. We send nothing for a lead whose form text we have not recorded. You can withdraw it at any time by deleting your account in Settings (once you have signed in) or by writing to privacy@macademia.education; either way we send nothing further about you. This does not depend on your cookie choices, because the form, not a cookie, is how you reached us.
Keep you on a programme's cohort list once your application reaches ACCEPTED or ENROLLED, including after you unpublish (see section 4)Legitimate interests (Art. 6(1)(f)) — not the publishing basis above, which you can withdraw by unpublishing. That school already knows who you are, because it admitted you; the list adds no disclosure, and an intake whose members can remove themselves from it cannot be administered. You can object under Art. 21 — write to us and we will weigh your grounds against those reasons.
Calculate the readiness, FT and QS, and cohort-fit figures shown to schools (see section 4)Legitimate interests (Art. 6(1)(f)) — the same basis as publishing itself, on data you gave us. Unpublish and they stop being shown.
Show your first name, initials, country and points to other students in the league tableLegitimate interests (Art. 6(1)(f)). This one is on unless you switch it off, so it is not consent, and we will not call it that. Never your surname, never your photo, never anything else from your profile. Switch it off in Settings, or object under Art. 21 — either stops it.
Verify a phone number, or confirm it ourselves when you ask us to contact youLegitimate interests (Art. 6(1)(f)) — not consent, and we will not call it that. We verify a number for one reason: so that a proven number belongs to exactly one account. The database enforces that rule, and it is how we stop one person from running several profiles and keep the code-sending route out of abuse. Since 14 September 2026 a number is part of finishing onboarding — confirmed by a code, or handed to us to confirm (see section 2). Deleting the number in Settings ends this processing, and you can object under Art. 21.
Measure where students stop during onboarding — which screen, whether a CV upload or a phone code went through or was refused and why, and whether you signed up on a phone or a computer — so we can fix the screens where people give upLegitimate interests (Art. 6(1)(f)). Counts and fixed labels only, never the contents of your CV or your number; the per-event records are deleted after 90 days.
Message you on WhatsApp when a university unlocks your profile or repliesLegitimate interests (Art. 6(1)(f)) — the same basis as the email version of the very same notification, because the basis belongs to the message, not to the pipe it travels down. This is not consent, and we will not call it that. Switch it off in Settings, or object under Art. 21 — either stops it. You still have to switch the channel on before anything is sent: WhatsApp requires the person to have asked for its messages, whatever the sender’s lawful basis, so we ask you plainly after your profile is live, with declining as easy as accepting, and send nothing until you have said yes. That tick is a channel preference, not the ground of the processing, and it turns on only the two notifications it names; the others are switched on one at a time, by you, in Settings. Marketing is separate, off by default, and never sent here.
Show the CV file you uploaded to a university that unlocks youExplicit consent (Art. 9(2)(a)) — separate from the upload, which is part of finishing onboarding and rests on the contract. A CV can carry special-category data we never extract; showing the document is the one thing that needs your own “yes”, and you can say no without losing anything: the profile the CV filled is published either way. Switch it off in Settings at any time; from then on no university can open the file, including one that unlocked you earlier.
Text you when a university unlocks your profile or repliesLegitimate interests (Art. 6(1)(f)) — again the same basis as the email version of the same notification. This is not consent and we did not ask for any, because neither message is marketing: each one reports something a university did to your profile, which is the service you signed up for. Switch either off in Settings, or object under Art. 21 — either stops it, and a link to that switch is inside every message. Unlike WhatsApp there is no channel to switch on first: a confirmed number is the whole condition. The reminder before your profile is hidden for inactivity, and the notice that a university you shortlisted became verified, are never sent this way — those are the two whose trigger reads as marketing, and marketing by text would need your consent, which we have not asked for and do not have.
Email you: address verification and password resets; product notifications; marketing updatesPerformance of a contract for the first (you cannot have an account without a recoverable address); legitimate interests for notifications, with a one-click switch-off; your consent for marketing
Record which partner's link you signed up through, and count the results for that partnerLegitimate interests (Art. 6(1)(f)): measuring and paying for our partnerships. You can object at any time; the counts shared with partners never identify you.
Keep the service secure and prevent abuseLegitimate interests
Comply with legal obligationsLegal obligation

Where we rely on consent, you can withdraw it at any time (see section 7). This does not affect processing carried out before withdrawal.

4. Who can see your data

Nothing is shown to any university until you publish your profile. Publishing happens automatically at the end of onboarding: the last screen says so above the button that finishes it, and pressing that button is what publishes. If you asked us to confirm your phone number ourselves (section 2), your profile is published all the same; what waits for that confirmation is WhatsApp messaging, not your visibility. You can unpublish, or republish, at any time from your Profile page. We never sell your personal data, and we never give it to anyone so that they can advertise to you. What does leave Macademia for advertising is exactly the narrow, scrambled trace of our own adverts working that section 8 describes — only with your consent, nothing else, to no one else.

Once you publish, a university browsing candidates sees your profile in full, without your name, your initials and your photo — those three wait until it unlocks you, and so do the documents you uploaded (a school is told a CV is on file, and cannot open it until it unlocks you). In your photo's place it sees a heavily blurred version of it: we shrink your photo to eight pixels a side and blur it on our servers, and only that small image is ever sent to a school before the unlock. It keeps the colours and rough outline of your picture — skin, hair, background — and none of your features, and it cannot be turned back into your photo, because the detail is gone before it leaves us. We will not call it anonymous: a school that already knows you and has seen your photo might guess it is you from the colours alone. If you would rather not be shown even that, remove your photo from your profile and schools see your initials instead. Everything else is there, exactly as you wrote it: your role and your employer, your work history, your education, your skills and certificates, the goals you chose for after the programme (your written motivation answers, where you gave any, stay visible to you alone), your self-description, your exact admissions-test score — or, if you have not sat a test, whether you intend to and roughly when — and years of experience, your country of residence, the country of your last degree, your languages, your international experience, how you plan to finance your studies, where you want to study and your tuition budget (both since 26 September 2026), whether a visa is part of your plan, whether a phone number is on file and confirmed, and roughly how recently you were active.

This changed on 1 September 2026, and it changed in the direction of showing more. Your role, your employer, your headline, your work history, your education, your written answers and your exact scores used to wait for the unlock as well. They no longer do. A school can now read everything about you before it decides whether to pay to learn who you are.

This is not anonymous data, and we will not call it anonymous. A job title and an employer, next to a work history and a set of scores, will identify many people to anyone who cares to look, even with the name removed — and that is now the ordinary case rather than a corner of it. Under the GDPR this is personal data about you, it is not anonymised, and every right in section 7 applies to it in full. What withholding your name still does is stop a school addressing you, contacting you, or acting on you until it unlocks you; it is not a promise that you cannot be recognised. If you would rather not be seen on these terms, the Public/Private switch on your Profile page is the control, and it takes effect for every university at once.

Publishing puts you in front of every university on Macademia, not only the ones you are interested in. That is the whole point of the platform — schools find you rather than the other way round — and you control it entirely through the Public/Private switch on your Profile page. Your shortlist tells a school that you are interested in it; it does not decide who can see you. A school you rank among your top three is told that it is in your top three, and nothing more about your ranking; a school ranked lower is told nothing. Unpublishing removes you from every university's search at once.

How your identity is unlocked. A university that has you in its candidate list can unlock your name, your photo and the documents you uploaded by spending one of its credits. That is the university's decision alone — you are not asked to approve each unlock, and we do not require the interest to be mutual. What you control is the gate in front of it: if you are not published, no unlock is possible; unpublishing prevents any further unlock; and withdrawing from a school removes you from what that school can act on. A university that unlocked you before you unpublished keeps what it already unlocked, and we record every unlock and every time a document is opened.

Once you are admitted, unpublishing no longer hides you from that school. When your application with a programme reaches ACCEPTED or ENROLLED, you appear on that programme's own cohort list — your name, your photo, and the professional fields listed above — and you stay there whether or not your profile is still published. This is deliberate: at that point the school is not searching for you, it is admitting you, and a school cannot run an intake whose members can make themselves disappear from it. It is limited to the one programme that admitted you: no other university sees any of it, and unpublishing still stops every school, including that one, from unlocking anything new.

Figures we calculate about you. So that universities can sort and compare candidates, we calculate a small number of figures from data you have given us and show them alongside your profile:

These are ordinary arithmetic on the fields listed above. No artificial intelligence is involved in any of them, none of them uses special-category data, and none of them decides anything: they order and describe, and every actual admissions decision is taken by a person at the university. You are therefore not subject to a decision based solely on automated processing within the meaning of Article 22 GDPR. You can see and correct every input to these figures in your profile, and you can ask us for them under your right of access.

What other students see. The student app has a league table that ranks students by the points they earn using Macademia. It shows your first name, your initials, your country of residence, and the points and level you have reached — never your photo, your employer, or anything else from your profile. Your surname is never shown, but your initials are derived from your full name, so they carry its first letter; we would rather say that than let “never your surname” suggest more protection than it gives. This is the one place where another student, rather than a university, sees something about you, and unlike your profile it does not wait for you to publish: everyone who has earned points appears in the ranking. If you would rather not, switch “Show me in the league” off in your Settings — you keep every other part of the app and simply stop appearing to other students.

We use the following providers to operate Macademia. They handle data under our instructions or, where they run their own lead form, under their own privacy terms as well. The location and transfer safeguards are summarised in section 5.

Your class directory: sharing with classmates, not universities

Separately from everything above, once your application has reached a committed stage (ACCEPTED or ENROLLED) at a programme, you can opt into a class directory that lets you find and be found by your classmates on that programme. This is a different recipient category from the rest of this section: the people who see this data are other candidates in your cohort, not universities, and it does not depend on publishing your profile or on any university unlocking you.

5. Where your data is stored

Your primary production data is stored in the European Union (Frankfurt, Germany).

Your mail to us is stored in the EU, and we can now say where. A qualification added here on 9 September 2026 said the opposite — that our mailboxes were bought through a United States reseller and that the region they sat in was not stated to us. Since 14 September 2026 we buy Microsoft 365 directly from Microsoft, and the admin centre reports the storage location for our mail: Italy, with Microsoft’s committed geography for data at rest set to the European Union / EFTA. So an e-mail you choose to send us is stored in the EU, not outside it. We are correcting this rather than leaving it, because the earlier wording told you your message might leave the EU when it does not.

Beyond that, no processor handles your data outside the EU in the ordinary course. Phone verification moved from Twilio (which processed numbers in the United States) to Infobip in September 2026: numbers are now processed in data centres inside the European Union, under a contract with Infobip Ltd, a United Kingdom company covered by the EU adequacy decision for the UK. Email is delivered by Brevo GmbH inside the European Union, since 1 September 2026.

EU storage does not mean every provider is established in the EU. Our hosting and error-monitoring providers are incorporated in the United States, as is Microsoft, whose mailboxes hold what you write to us; our database provider is in Singapore, and the support teams of the provider that sends your verification code work from outside the EU as well — we have dealt with its office in Bosnia and Herzegovina. Their authorised staff may reach those machines, and those records, to operate the service and to answer our support requests; under the GDPR, that access is itself a transfer. We use Standard Contractual Clauses for it. Where your phone number is stored has not changed: that provider has confirmed in writing that our account’s data sits in the European Union, in Frankfurt.

6. How long we keep it

Documents you upload — your CV, your transcript, files you send in a conversation — are kept for as long as your account is active, because their whole purpose is to be readable by a university that unlocks you. There is no automatic expiry: they stay until you remove them, which you can do at any time, or until you delete your account, which deletes them with it.

We keep account and profile data for as long as the account exists. If you delete your account, deletion is immediate: your profile, applications, messages, consents and uploaded files are erased together with your login. We retain only a de-linked audit entry showing that an action occurred, without the account link or its contents; it no longer identifies you. Audit and security logs linked to an active account are kept while that account exists, because they let us secure the service and show you who opened a document. Early-access data from our discontinued Meta/TikTok/website sign-up campaign (section 2) is kept until you unsubscribe or object, and is automatically deleted 24 months after you signed up — a scheduled job checks daily and removes records past that window. You do not need to ask; you can still email us to have yours removed sooner.

Onboarding events — the record that an upload was accepted or refused, a code sent or failed, a step held back — are deleted 90 days after they happen, by a daily job. What stays is only which screen you reached, with your profile.

Meta and LinkedIn lead forms and the page where you add your CV. A CV uploaded on that page, together with what was read from it, the email address you typed and the campaign details in the link, expires 24 hours after the upload unless it has become your profile, and a daily job then deletes it with the file. Answers from a lead form that never led to a profile are deleted 90 days after we received them, by the same daily job, together with our record of what we told Meta or LinkedIn about them. Answers that did lead to a profile are kept with your account, as the record of which advert brought you. If you delete your account, they go with it, at once: every form answer we hold under your email address, our record of what we told Meta or LinkedIn about them, and any CV you uploaded on that page that you confirmed under your email address and that has not yet become your profile, file included. Our record of what we told Meta or LinkedIn holds which moment it was, when, whether the platform accepted it, and its reply; the scrambled versions of your email address and phone number are made at the moment of sending and are not part of it. When we delete form answers, for either reason, we keep one thing so that Meta or LinkedIn cannot send them to us again: which platform they came from and a scrambled form of the platform’s number for your answer, with no name, address or answer. We keep that, in turn, for one more window counted from when we deleted your answers, not from when we first received them: 90 days for Meta, one year for LinkedIn, matching how long each platform could still hand that answer back to us. Once that window has passed, we delete it too. LinkedIn’s own copy of your form answers is kept by LinkedIn under its terms, which make it available to us for one year; deleting your data with us does not delete it.

Backups, and why deletion cannot reach into them. We keep security copies of the database so that a failure or a mistake cannot destroy your account along with everyone else's. A copy is a photograph of a moment: it cannot be edited afterwards without destroying the very thing that makes it a reliable copy. So when you delete your account the deletion is immediate in the live service — you disappear from it at once, and no copy is ever used to bring you back — but a record of you remains inside copies already taken until each one expires on its own. Copies of the database expire on their own: 48 hours, about 7 days, and at most 90 days. Files you uploaded follow a slightly different clock. Your CV, transcript, chat attachments and photo are also copied to a separate store in Frankfurt, so that a mistake in our own code deleting the original cannot destroy the only copy. When you remove a file, that copy is kept for up to 30 more days and then deleted automatically. The delay is deliberate and it is the whole value of the copy: a deletion nobody meant stays recoverable for a month. It is never read in the ordinary running of Macademia, and if you would rather not wait the 30 days you can ask us and we will remove it sooner. The copies held in Frankfurt sit with the same providers that run the service. The 90-day copy is held by GitHub (Microsoft) in the United States, deliberately at a different provider so that losing one account cannot cost us everything, and it is encrypted before it leaves us with a key GitHub does not have and cannot obtain, so it is unreadable to them.

7. Your rights

Under the GDPR you have the right to:

To exercise any right, email privacy@macademia.education. You also have the right to lodge a complaint with your local data-protection authority.

8. Cookies

We use essential cookies that do not require your consent because they are strictly necessary to provide the service, but we tell you about them up front: a secure, httpOnly session cookie that keeps you signed in, and, only while you are in the middle of signing in with Google or LinkedIn, two short-lived (15-minute) cookies that make that sign-in flow work (`oauth_pkce_state`, `oauth_next`) and are then discarded.

We also record your cookie choice itself on your device, including a refusal, so we can remember it. It contains only your choices and the time they were saved.

You choose each non-essential purpose separately. Google Analytics 4 helps us understand visits and product use. Google Ads measures whether an advertisement led to an account or a published profile. These services set cookies and share data with Google LLC in the United States, under the EU-US Data Privacy Framework and Google's Standard Contractual Clauses. Google measurement data is retained for 14 months. Meta Pixel measures whether a Meta (Facebook/Instagram) advertisement led to an account or a published profile, or, on the page where you add your CV after one of our lead forms, to a CV being added. It shares data with Meta Platforms Ireland Ltd., which may retain it for up to two years; processing also takes place at Meta Platforms, Inc. in the United States, under the EU-US Data Privacy Framework and the EU Standard Contractual Clauses in Meta's terms. For the collection and transmission of data through Meta's business tools we and Meta Platforms Ireland are joint controllers (Art. 26 GDPR); the essence of that arrangement is set out in Meta's Controller Addendum.

How far you get in onboarding. Since 16 September 2026 your account records which onboarding screen you reached last and when you first reached each one — four screens, named by what they ask, no more than that. It is written on your profile as a side effect of saving the screen, needs no cookie and no consent, and serves one purpose: seeing where people stop, so we can make the flow shorter. If you have allowed Analytics, Google Analytics also receives one event per screen carrying the screen's name and nothing about you; refuse Analytics and only the note on your account is kept.

If you allow Advertising and arrive from one of our ads, we keep the click identifier (Google's, Meta's or LinkedIn's) and the campaign, source and medium — and, since September 2026, the keyword, advert version and landing page as well — in your browser for 90 days. If you create an account, we copy them to it so we can understand which campaigns lead to published profiles — and the click identifier is deleted from your account after the same 90 days, leaving only the campaign it came from. It lives on the account exactly as long as it lived in your browser, and no longer. LinkedIn’s click identifier stays in your browser and is not copied to your account. They describe an advertisement, not information you typed. Refuse advertising cookies and none of this is written down; deleting your account deletes it too.

We send Google's click identifier back to Google Ads. Until 2026 this page said these identifiers were never sent outside Macademia, and while that was written it was true. It is no longer, and saying so plainly is the point of this paragraph. Most of what tells us an advert worked happens days after the advert was clicked — a profile finished on the second day, a school getting in touch on the ninth — long after your browser has stopped talking to Google. So our server now tells Google Ads that the click it already knows about led to one of those outcomes: the click identifier, which outcome, when, and a number representing how much that outcome matters to us. One more thing travels with it, and it is fair to name it: a reference code built from your account's internal identifier, which exists so that the same outcome reported twice — once by your browser, once by our server — is counted once. It is not your email, your name or anything you typed, and Google cannot read anything out of it. Nothing about your profile, your studies or your work travels with it. We keep the click identifier for 90 days after the outcome and then delete it from that record, keeping only the campaign it came from — Google itself stops accepting it after about two months, so past that it serves no purpose. Refuse advertising cookies and nothing is sent at all, and if you refuse them later we stop sending anything still queued.

The same goes to Meta. If you allow Advertising and you arrived from a Facebook or Instagram advert, our server tells Meta the same one thing it tells Google: that the click Meta already knows about led to a completed profile, when, and a number representing what that is worth to us — together with the scrambled, one-way version of your email address, for the same purpose and in the same form. Meta's click identifier was already being kept alongside Google's, and was described above; until September 2026 nothing was ever done with it. It now leaves for this, and for nothing else, on the same terms: 90 days, then deleted from that record. Refuse advertising cookies and nothing is sent at all.

What Google and Meta may do with those signals. Where you have allowed Advertising, they are permitted to use them not only to count our adverts but also to improve the targeting of our own future adverts — never anyone else's, and never to build a profile of you that other advertisers can reach. We say this because the signals we send them carry that permission, and a notice that described only the counting would be describing less than we actually do. Refuse advertising cookies and this does not arise, because nothing is sent.

Two exceptions, if you came through one of our Meta or LinkedIn lead forms. The advertising measurement described above follows your cookie choices; these two do not. First, what our server tells Meta or LinkedIn about a lead from its form (section 4) rests on the form’s own optional box (section 3), because the form, not a cookie, is how you reached us. Second, the page where you add your CV reads the source and campaign details in its own link (src and the utm_ parameters: source, medium, campaign, content and term) and keeps them with your upload whatever your cookie choice. They are not copied to your account if one is created from the upload, and they are deleted with the upload after 24 hours (section 6). No click identifier is kept from that page. The paragraph above about copying campaign details to an account describes sign-up on our site, not this page.

Sentry, hosted in the EU, is a separate optional Error monitoring choice. It helps us diagnose a page failure. It does not set a cookie, record your screen or record your typing. It receives only technical error information and a page address with anything after ? removed.

Sentry is not downloaded until you agree to Error monitoring. Google's measurement script loads as soon as you visit the site, but it starts — and stays — in a signals-denied state: it does not set a cookie, store an identifier, or record anything tied to you until you separately agree to Analytics or Advertising. Until then, it can only send Google an anonymous signal it cannot connect to you, which Google uses in aggregate across visitors, not about you individually. Refusing one category does not enable another. You can change your mind at any time through Cookie settings.

Meta's measurement script is not requested from your browser at all until you allow Advertising — unlike Google's, which loads immediately in a signals-denied state (see above). Refusing Advertising means no Meta script is ever downloaded, and nothing is sent.

LinkedIn Insight Tag. If you allow Advertising, the sign-up and sign-in pages load LinkedIn’s measurement script, the LinkedIn Insight Tag. The page where you add your CV does not load it, because that page collects your CV. It shares data with LinkedIn Ireland Unlimited Company: in LinkedIn’s own description, the address of the page, the page you came from, your IP address, your browser and device type and the time of the visit, and it may set LinkedIn’s own cookies. LinkedIn uses this to measure which of our LinkedIn adverts bring visitors to these pages, and may use it to improve the targeting of our own future adverts. LinkedIn says it truncates or hashes the IP address, removes a LinkedIn member’s direct identifiers within seven days and deletes the rest within 180 days. We decide to put the tag on these pages and ask for your consent to it; under LinkedIn’s terms with advertisers, LinkedIn is a controller of the data the tag sends it and also uses that data for its own purposes, such as reporting and improving its products, under LinkedIn’s privacy policy, where you can also exercise your rights over it with LinkedIn. Your data may leave the EU there: LinkedIn says it processes data both inside and outside the United States, relying on the transfer mechanisms the law provides, and its terms with us use the EU Standard Contractual Clauses for data passed between us for processing outside the European Economic Area. The same applies to what LinkedIn receives from its lead forms and from our server (section 4). LinkedIn’s measurement script is not requested from your browser at all until you allow Advertising. Refusing Advertising means no LinkedIn script is ever downloaded, and nothing is sent.

Meta as joint controller. For the collection of these events on our pages and their transmission to Meta, we and Meta Platforms Ireland Limited (Merrion Road, Dublin 4, Ireland) are joint controllers under Article 26 GDPR, under Meta’s Controller Addendum. Between us, we are responsible for this notice and for the consent that gates the script; Meta is responsible for your rights of access, rectification, erasure, restriction and portability over the data it holds after transmission, which you can exercise directly with Meta. Meta’s own privacy policy, including the legal bases it relies on, is at facebook.com/about/privacy. Any request you send us about this processing we forward to Meta within seven days. What Meta does with the data after transmission, it does as an independent controller.

Google Ads and your email. If you allow Advertising, Google Ads receives a scrambled, one-way version of your email address (a SHA-256 hash) alongside the outcomes described above — when you create your account, when you publish your profile, and at the later points our server reports. It uses this for one purpose: recognising that the person who clicked the advert and the person who reached the outcome are the same, when the click identifier alone no longer says so. We do not send a readable email address, your name, your telephone number, or anything you typed into your profile — not when you sign in, and not while you fill it in. We hold no copy of the scrambled version: it is produced at the moment of sending and not stored. Refuse advertising cookies and none of this is sent.

9. Security

We protect your data with measures including encrypted connections (HTTPS), hashed passwords, strict separation between institutions (tenant isolation), and security headers. No system is perfectly secure, but we work to keep your data safe and to notify you and the relevant authority if a breach ever affects you.

The automated check on the sign-up form. When you create an account, your browser is asked to solve a small calculation before the form is accepted. It is there to make mass automated sign-ups expensive, and it runs only on sign-up — never when you sign in, and nowhere else on the site. You do nothing and, since 15 September 2026, you see nothing: it finishes on its own in a couple of seconds. We use ALTCHA, which we run on our own servers: the puzzle comes from us, your device solves it, and the answer comes back to us. No third party is involved and nothing about you is sent anywhere — not to the makers of ALTCHA, not to Google, not to anyone else. It sets no cookie and does not identify you. Alongside the answer we record only how long the calculation took, rounded into coarse bands, so that we can tell whether the check has become too slow for ordinary phones.

10. Children

Macademia is intended for prospective graduate and postgraduate applicants and is not directed at children under 16. We do not knowingly collect data from anyone under 16.

11. Changes to this policy

We may update this policy when our product or processing changes. We will show the effective date and communicate material changes to registered users. If a change needs fresh consent, we will ask before enabling that processing.

See also our Terms of Service and Imprint · Image credits.