TRUST. PRIVACY. GOVERNANCE.

A marketplace built to protect people.

HeroRamp is designed so candidates control visibility, employers get useful fit signals, and every sensitive handoff remains governed.

Eight principles, built into HeroRamp.

Candidate consent

Privacy Policy, Terms, AI disclosure, and employer visibility are separate, versioned, timestamped, and revocable.

Discovery responses are server-side masked and exclude names, phone, email, exact address, and raw resume.

Visibility control

When employer visibility is off, a candidate is absent from employer discovery rather than masked-but-present.

HeroRamp is designed without bulk candidate or resume export paths.

Role-based access

Candidate, employer, supply-source, and Ops permissions are enforced server-side.

Ops MFA

Operations access requires stronger verification through Auth0 MFA policy.

Audit logging

Sensitive reads and writes are recorded for governance.

Partner leads stay invitation-only until direct signup and explicit consent.

AI use disclosure

AI-lite stays decision support, not automated hiring.

HeroRamp does not automate hiring decisions. Any AI-assisted summaries or recommendations stay decision support and require product, privacy, and legal review before launch.

Need Workforce Planning?

Talk with HeroRamp about future workforce capacity options when your hiring pathway is ready.