Plinker · Last updated: 16 September 2026
Privacy is not an afterthought at Plinker. It is part of the product. This policy explains, in plain language, what we collect, why, and the control you keep over it.
The data controller is Plinker Limited, a company registered in Ireland, company number 823045, registered office FF Fintech Pro, Engineering House, Unit 79, Block 5, Western Parkway Business Park, Dublin 12, D12 NRY2, Ireland.
Plinker Limited was incorporated on 7 August 2026. Before that date, in the earliest phase of the service, the controller was Sukhmani Khanna acting as an individual ahead of incorporation. Controllership and all member data transferred to Plinker Limited on incorporation, and this policy was updated to name the company. We told our founding members directly when this happened.
Our privacy lead and contact point for any privacy question is Sukhmani Khanna, at privacy@plinker.app.
Plinker is an invitation-only introductions service for senior professionals, to promote learning, support growth and open doors. You share your career background; we draft a "trajectory" and introduce you to one other member at a time. There is no public profile, no search, no feed, and we never show ads.
Your name and your photograph stay hidden until you both choose to connect. They are the two things people ask about most, so we say them first. But they are not the only things held back, and the rest of your profile is not held back, so here is the whole picture rather than a summary of it.
Before either of you has said yes, the other member sees: your current role and company; your level, function and industry; your general location; your career path and previous roles; your education; where you can help; what you value; your weekend interests; your answer to "If not this, then what?"; and, where you have chosen to have them drafted, your personality traits, top strengths and working style.
Only once you have both said yes do they see: your name; your photograph; your headline; your proof points; your LinkedIn link; and when you usually meet.
Nobody else ever sees: your destination, your private note about what you are really after this season, or your gender.
Under the GDPR we rely on the following bases for each type of information:
We never store your CV. When you hand over a CV file, or screenshots of your LinkedIn About, Experience and Education sections (up to five at a time), each one is read once and then discarded. It is held in memory for that single request and is never written to our database or our file storage. There is no copy of it on our systems, and so there is no CV file for you to delete.
What we keep is only what comes out of it: your roles, companies, years and education, a first draft of your headline, your proof points and where you can help, and, if you choose it, a description of how you work (section 5). We keep it only once you have reviewed and confirmed it, and you can edit or remove any of it at any time.
Before anything leaves your device we ask your permission, and we name the provider that will read it. Nothing is sent until you agree. If you would rather not send a file at all, you can type your roles in by hand, and nothing on this page about CV reading then applies to you.
We use software, including AI, to draft your trajectory and suggest matches. A human concierge reviews every introduction. You are never matched by machine alone. You can ask us how this works, and contest or ask us to review any result. Because a human is always in the loop, the automated processing has no legal or similarly significant effect on you without human involvement (GDPR Art. 22).
Some of the words on your profile are drafted by AI from what you gave us: your headline, your proof points and where you can help. They are a starting point, not a verdict. You read them, change them or delete them before anything is saved, and you can change them afterwards at any time. Wherever AI-drafted text about a member is shown, we say so on the same screen, so that nobody reads a machine's draft believing a person wrote it.
The same is true of the messages you get from your concierge. Some of them are written by software rather than typed by a person, and those ones are marked, so you can always tell which is which. Messages a person typed carry no mark. If you would rather a person wrote to you, say so and one will.
When you hand over a CV or LinkedIn screenshots you can choose to have the same reading draft a description of how you work: a short list of personality traits, your top strengths, and a working-style reading on four of the Big Five traits, which are openness, conscientiousness, extraversion and agreeableness. It is a separate choice, offered before the file leaves your phone. One of the two answers is Roles only, which takes your roles, employers, dates and education and nothing else, and it is a complete way to use Plinker. If you type your roles in by hand instead, none of this happens at all.
Some things about it are deliberate, and we would rather state them than let you assume them:
The document it was drafted from is still never kept. What is kept is what you chose to keep from what it drafted, and those are two different things, so we say both.
And none of this changes what section 3 says about your goals: what you write about your goals is still never shown to another member, in your words or at all.
When you and another member have both said yes to an introduction, a private conversation opens between the two of you. Nobody else is in it. We do not read it, we do not use it to make matches, and it is never sent to our AI provider. It stays in the European Union on our own database.
Two things you should know before you use it.
If you report a conversation, a person at Plinker will read it. That is the point of reporting, and there is no way to look into what happened without looking at what was said. Every time a member of staff opens a conversation we record who opened it, when, and why, and we keep that record.
If either of you deletes their account, the conversation goes for both of you. It is one conversation, not two copies, so it cannot survive for one person and not the other. If that matters to you, keep your own copy before you go. The one exception is a conversation that has been reported, and it is set out immediately below.
We delete a conversation twelve months after the last message in it. If a report is open, we keep it until the report is settled and for twelve months after that.
If a report is made, we keep a copy of part of that conversation, and it outlives both accounts. At the moment a report is filed we take a bounded copy, the messages from around the time of the report rather than the whole history, and attach it to the report. We keep that copy for up to twelve months after the report is settled, and never longer than two years after it was taken. The report itself, which holds no messages, is kept for up to two years after it is settled. It survives even if you or the other member deletes their account, because a report that loses its evidence the moment somebody leaves protects nobody. Your identity is removed from what is kept: what remains is a coded reference rather than your name. Only a member of staff can read it, only with a reason, and every reading is recorded.
You can ask us for a copy of your conversations at any time at privacy@plinker.app.
We share your data only with the service providers that make Plinker work, each under a written data-processing agreement, and we never sell your data or run ads. In particular, we ask for your explicit permission in the app before your CV or screenshots are shared with our AI provider to be read, and nothing is sent until you consent. Our providers are:
| Provider | What they do | Where |
|---|---|---|
| Anthropic (Claude API) | Reads your CV or LinkedIn screenshots and helps draft your profile and match suggestions | United States. See transfers below |
| Supabase | Secure cloud hosting, database, authentication and storage | Stored in the EU (Ireland, EU-West). See transfers below |
| Resend | Sends our emails to you | Delivers from the EU (Ireland, EU-West). See transfers below |
| Sentry | Crash and error monitoring, so we can find and fix crashes in the app | European Union (Frankfurt) |
| Expo | Delivers app updates, and passes our push notifications to Apple and Google | United States. See transfers below |
| Google (Firebase Cloud Messaging) | Delivers push notifications to Android devices | United States. See transfers below |
| Apple (Push Notification service) | Delivers push notifications to iPhones and iPads | Apple's own infrastructure |
If you enable push notifications, a device token is passed to Expo and from there to Apple or Google so that the message reaches your phone. The message text is written by us.
International transfers. Your Plinker data is stored in the EU (Ireland). Some of it is nonetheless handled outside the European Economic Area, and we would rather tell you plainly than imply otherwise:
Every one of these transfers is governed by the European Commission's Standard Contractual Clauses, supported by a transfer-impact assessment we carry out and keep under review. We keep provider handling to the minimum needed to run the service, and we will update this page if our providers change.
Sentry is not in that list, and deliberately so. It processes in the European Union (Frankfurt), so no transfer outside the EEA arises.
We keep your information for as long as you are a member, and no longer than we need it.
You do not have to wait for any of this. You can ask us to delete your data at any time and we will action it and confirm.
You can access, correct, delete, port, and object to our use of your data, and withdraw consent at any time. Withdrawal is as easy as giving it, and does not affect anything we did beforehand. In the app you will find Profile → Settings → Delete account, which erases your Plinker data and closes your account. Your CV is never stored, so there is no CV file to delete separately. You can also email privacy@plinker.app. You have the right to complain to the Irish Data Protection Commission at dataprotection.ie.
You can delete your account and associated personal data at any time from Profile → Settings → Delete account inside the app. It is immediate and it cannot be undone.
Nothing holds it up. If a report has been made, by you or about you, you can still leave, straight away, and you do not have to ask anyone's permission. We take the view that telling someone who has been harassed that they cannot leave is the worst thing this service could do, and we have built it so that we never have to.
Deleting your account also removes your introductions. An introduction is one shared record, so it disappears from the other member's history too, along with anything they noted about your meeting. The same is true of a private conversation: it goes for both of you.
One thing outlives your deletion, and we would rather set it out than have you discover it. If a report has been made, the report itself and a bounded copy of the conversation attached to it are kept after your account is gone. The copy of the conversation goes within twelve months of the report being settled, and never later than two years after it was taken. The report itself, which holds no messages, is kept for up to two years after it is settled. Your account and your name go. Your identity is removed from what remains and replaced by a coded reference derived from your email address, so that a pattern of reports is not lost if somebody leaves and rejoins under a new account. A report that vanished the moment one side left would protect nobody, least of all the person who made it.
You can also request deletion by emailing privacy@plinker.app. That route is not instant: we will delete your account and confirm to you within 30 days, and usually much sooner. There is a page explaining both routes at plinker.app/delete-account.
Plinker is for adults; you must be 18 or older to take part.
We will update this policy as Plinker develops and post the new version here, with the date at the top. Where a change materially affects you, as the move of controllership to Plinker Limited did, we will tell you directly rather than relying on you noticing.