Compliance
Compliance & Data Protection
BeDevs is fully committed to the European Union's data protection and AI regulations, including the GDPR, the EU AI Act, and the Digital Services Act.
Last updated: March 31, 2026
GDPR Compliant
Full compliance with the General Data Protection Regulation, including AI-specific transparency and user rights.
EU AI Act Ready
Our AI features are classified and documented under the EU AI Act. No high-risk AI systems deployed.
DSA Compliant
Content reporting, moderation workflows, and annual transparency reporting under the Digital Services Act.
EU-Based Infrastructure
Primary database and file storage hosted in the European Union. US data transfers covered by DPF or SCCs.
GDPR & Data Protection
We process personal data in strict accordance with the General Data Protection Regulation (EU 2016/679). Our approach is transparent, minimal, and user-first.
- Comprehensive privacy policy with dedicated AI transparency section
- No automated decision-making with legal or significant effects (GDPR Article 22)
- User account deletion and data anonymization with 30-day grace period
- Full subprocessor list with Data Processing Agreements documented
- Primary infrastructure (database, file storage) hosted in the EU
- Explicit policy: user data is never used for AI model training
- Data breach notification procedure within 72 hours to the Belgian DPA
- Resume data used in our free AI review tool is temporary and auto-deleted
For full details, see our Privacy Policy.
EU AI Act
BeDevs is a deployer under the EU AI Act: we use AI APIs but do not build AI models. As a micro-enterprise (fewer than 10 employees, under €2M turnover), we benefit from proportionate obligations while meeting all applicable requirements.
AI Feature Risk Classification
| Feature | Risk Level | Reasoning |
|---|---|---|
| Resume Analysis (free tool) | Limited | Self-service for job seekers. No recruiter involvement. No employment decision. |
| Resume Data Extraction | Minimal | PDF parsing utility. Candidate reviews and edits output. |
| Job Description Autofill | Minimal | Productivity tool for recruiters. Extracts metadata from text. |
| AI Pre-Review | Not high-risk | Article 6(3) exemption. Narrates a deterministic score, does not independently assess candidates. |
| Candidate-Job Match Score | Not AI | Deterministic weighted algorithm. Fixed weights, no inference, no adaptiveness. |
Article 6(3) Exemption: AI Pre-Review
Our AI pre-review feature takes a deterministic matching score, calculated by a fixed-weight algorithm with no inference or adaptiveness, and narrates it in natural language for recruiters. The AI does not independently assess candidates.
This qualifies for the Article 6(3) exemption because the AI system does not materially influence the outcome of decision-making. Specifically:
- The AI receives a pre-calculated score and reformulates it. It does not score, rank, or filter candidates
- Recruiters see the full application, profile, and raw match score beyond the AI summary
- The summary is labeled as "AI Insight" with a disclaimer in the UI
- Our privacy policy explicitly states: "AI does not make any decisions"
We have the Article 6(3) exemption reasoning formally documented and maintain audit best practices including AI output logging.
Digital Services Act
BeDevs qualifies as an online platform under the DSA (Regulation 2022/2065) because we host and publicly disseminate user content (job posts, profiles). As a micro-enterprise, we are exempt from the heavier Section 4 platform obligations (Articles 20-28) while meeting all core requirements.
- Point of contact for authorities published in our Terms of Use (Article 11)
- Full content reporting mechanism with moderation workflows, email notifications, and status tracking (Article 16)
- Annual DSA transparency report published on our website (Article 15)
- Belgian DSA Coordinator: BIPT (Belgian Institute for Postal Services and Telecommunications)
Read our full DSA Transparency Report.
Compliance FAQ
Common questions about our data protection and AI compliance.
Have a compliance question?
Our team is happy to answer any questions about how we handle your data and comply with EU regulations.