1. Sign in with Google
Signing in with Google is a voluntary alternative to your Bargo password. After your confirmation, Google provides your account ID, name, email address, and its verification status. Bargo uses this data for login, creating a new account, or connecting to an existing one you've confirmed. The service does not access your Google password, Gmail messages, or Google Drive files.
The connection to Google is maintained via a stable account identifier. Temporary login data and secure HttpOnly cookies are valid for 10 minutes; expired server attempts are cleared on the next login. Google access tokens and refresh tokens are not stored for future use. Creation, connection, and login events are recorded in the Bargo security log. Google handles authorization according to its own privacy policy. To disconnect Google or delete data, please use the support form.
2. Notifications, email, and personal Telegram
Email notifications are disabled by default. You can enable them for your confirmed account address, select categories and language for emails, and disable the channel in settings. For delivery, we store the address, language, activation time, event type, template, and sending status; queue records are kept for up to 90 days. Mail servers process the address and email content for delivery. Emails do not contain private correspondence or open trackers. A sent email cannot be recalled. Address confirmation and access recovery emails operate separately from these settings.
You can separately select notification categories on the website and in Telegram. Personal Telegram is connected only after following a one-time link and confirming your account on the website. We store the Telegram chat ID, account identifier, binding date, and your settings; an incomplete attempt is valid for 10 minutes.
After connection, Telegram receives a short event header and a link to Bargo. Texts of private messages, comments, support replies, and participant contact details are not forwarded in such notifications. Forwarding administrative requests via the support form is a separate process described below. Telegram processes delivered data according to its own rules.
The channel can be disabled in settings; you can disconnect Telegram on the website or by using the /stop command in the bot. Already delivered messages remain in your Telegram. Notification history on the website is stored for 90 days, and technical keys for duplicate protection for 120 days. Service delivery logs in domains are deleted 7 days after processing. Settings remain active as long as your account exists or until a separate deletion procedure is performed.
3. About this policy
This policy explains how Bargo processes visitor and member data: during searches, creating posts, communication, and AI usage. It applies to the Bargo service; third-party sites you visit have their own policies.
The operator and contact for inquiries are listed at the end of the document. If the details are not yet filled in, this version is considered a draft.
4. What data is processed
Support requests: name, email, subject, message text, and administrator responses. An email provided in the form is not automatically verified and does not, by itself, prove account ownership.
Account: name, email, protected password representation, email verification status, sessions, MFA settings data, and backup codes. Posts: title, description, category, price or budget, city, contact, photos, and other characteristics provided by you.
For resumes — information about experience, education, and skills, candidate's photo, and uploaded document. For community — profile, collections, subscriptions, favorites, messages, comments, karma ratings, complaints, and appeals. For internal services — tasks, rewards, bars, operations, and promotion campaigns.
Technical data: IP address for request processing, abuse protection, and approximate city determination; service identifiers, request time, and results. Do not add passport, payment, medical, or others' private data if they are not necessary for your post.
5. Why data is needed
Data is used for account creation and protection, posting and searching for offers, message delivery, access recovery, AI assistant operation, bar accrual and deduction, moderation, and post reports.
Depending on the purpose, the basis for processing is the fulfillment of service agreements, your request or consent, legal obligation, or legitimate interest in security and abuse prevention, considering your rights. Reading this policy by itself does not constitute consent to all possible types of processing or marketing communications.
6. What other users see
Published ads, their contacts and attachments, public profiles, comments, and available reputation metrics can be viewed by others. A public resume and its document are also available to visitors. Public showcases contain owner-added contacts, cover image, logo, and published news; news drafts are private. Check file contents before publishing.
Drafts and private AI results are accessible to the owner via secure routes. Messages are available to participants of the respective conversation; authorized operators may process data for support, security, and violation review. The service does not claim end-to-end message encryption.
Search engines and other people may save copies of public content. Deleting a post from Bargo does not automatically remove third-party copies that have already been made.
7. AI, photos, and automated functions
When you ask for AI assistance, the service processes your request, selected photo, facts, or resume data, and saves the result for further use. Local models run on the operator's infrastructure; if an external AI provider is connected for a task, the content needed to fulfill the request is transferred to that provider.
Providers and processing regions depend on connected routes. Information about actual recipients can be requested from the operator. Connecting foreign recipients requires a proper legal basis and protective measures; this document does not imply consent for arbitrary international transfer.
AI results are verified by the author before use and publication. Karma and activity rules affect available actions and limits; explanations and appeals regarding decisions are provided. AI does not confirm identity, participant reliability, or transaction facts.
9. Who can receive data
To display fonts, the browser may access Google Fonts; such requests transmit technical connection data, including the IP address. This is separate from Bargo's local analytics.
Data is received by other users within your chosen visibility or correspondence, as well as authorized operator personnel and connected technical providers—such as hosting, mail delivery, and AI—within their scope of tasks. Transfer to government authorities is possible with a proper legal basis.
In the current version, external payment for goods and delivery via Nova Poshta API are not connected. Bargo does not collect bank card numbers for these functions. If you yourself provide payment or postal data to a correspondent or a third-party service, consider the rules of the respective recipient.
10. Feedback and Telegram
The feedback form works without registration and after login. Inquiries are accessible to their author and authorized administrators. If the integration is enabled, the name, email, subject, and incoming messages are also forwarded via the Telegram Bot API to the team's service chat. Telegram is a third-party service with its own processing terms; do not include passwords, access codes, bank details, or sensitive documents in your inquiry.
Administrator responses appear on the website. There are currently no automatic email notifications or receipt of replies from Telegram. Correspondence is not automatically deleted after an inquiry is closed; storage periods must be approved by the operator. Technical counters for inquiry limits are cleared after 24 hours.
11. Storage and Deletion
Data is stored in the volume and for the duration necessary for the respective purpose, protection of rights, and compliance with legal requirements. Account data, correspondence, bar transactions, and moderation audit logs have different storage purposes; deleting an ad does not automatically delete all associated records.
View and contact events are stored for the current and previous 89 days. Raw evidence of ad impressions is cleared after two days, and campaign aggregates are stored separately. Automatic cleanup is performed during service operation. The availability of AI result restoration in the user cabinet for 24 hours does not imply the deletion of all related logs after 24 hours.
Your own publications can be deleted via the user cabinet. Full account deletion or exporting all personal data with a single button are not yet implemented: use operator contact for requests. Deadlines for other categories and backups require clarification in the published policy version; this draft does not promise automatic deletion that is not yet available.
12. Your Rights and Inquiries
You can request information about the processing and access to your data, demand correction of inaccurate data, submit a motivated objection or a request to cease illegal processing and deletion, and withdraw consent if processing is based on it. Limitations and the procedure for exercising rights are determined by applicable law.
Use the feedback form, selecting the "Personal Data" topic and specifying your account email and the essence of your request. Do not send passwords or MFA codes. For data protection, a justified identity verification may be required; the request will be reviewed within the legally established timeframes. You can also contact the Verkhovna Rada Commissioner for Human Rights or the court.
13. Security and Policy Changes
Bargo implements access restrictions, password and session protection, MFA, and publication checks. No system guarantees the complete elimination of risks. Use a unique password and control what you publish.
The current version is posted on this page with a date. Changing the document does not automatically create a new legal basis for processing. If a separate consent or notification is required for a new purpose, the operator must ensure it before such processing.
Operator and Contact
- Name
- To be specified
- Address
- To be specified
For questions regarding the service or personal data, please use the feedback form. The response will appear in your site correspondence. Do not send passwords, MFA codes, or bank details.
Useful Resources
Law of Ukraine "On Personal Data Protection"