Privacy, Data Security & AI Governance

Effective Date: 01/01/26

Applies to: Mainframe Solutions and BuildFit AI™

1. Overview

Mainframe Solutions operates as an Enterprise Hiring Infrastructure Partner for regulated and high-growth organizations. We design and support structured hiring systems that combine human judgment with AI-assisted evaluation tools.

BuildFit AI™ is an AI-assisted evaluation platform. All hiring decisions remain fully human-led.

This page outlines how we collect, use, protect, and govern data across our services.

2. Data We Collect

Depending on engagement scope, we may process:

Candidate Information

  • Name, contact information
  • Resume/CV and employment history
  • Interview responses (written, recorded, or transcribed)
  • Assessment outputs and evaluation notes

Client Information

  • Hiring criteria and role definitions
  • Internal evaluation frameworks
  • Workforce data related to hiring decisions
  • System configuration data

We do not sell personal data to third parties.

3. How Data Is Used

Data is used solely to:

  • Conduct executive search and candidate sourcing
  • Deliver structured evaluation services
  • Generate AI-assisted candidate scoring and reports
  • Support hiring governance documentation
  • Improve structured decision workflows

We process data only for legitimate business purposes related to hiring and workforce advisory.

4. AI-Assisted Evaluation Disclosure

BuildFit AI™ uses AI models to:

  • Analyze structured interview responses
  • Compare responses to predefined role criteria
  • Generate score summaries and SWOT-style insights
  • Provide structured decision support outputs

Important:

  • AI does not make hiring decisions.
  • AI outputs are advisory only.
  • Final decisions are made exclusively by human stakeholders.

We position BuildFit AI™ as AI-assisted, not AI-decisive.

5. AI Governance & Oversight

Our AI governance framework includes:

  • Human review of AI outputs
  • Defined role-based evaluation criteria
  • Documented scoring logic tied to job-related competencies
  • Transparency in how scores are generated
  • No automated rejection without human validation

We design hiring systems to support fairness, accountability, and defensibility.

6. Data Security

We implement commercially reasonable safeguards including:

  • Secure hosting environments
  • Role-based access controls
  • Encrypted data transmission
  • Access logging
  • Limited data retention policies
  • Third-party vendor review where applicable

We do not guarantee absolute security but take reasonable measures consistent with industry standards.

7. Data Retention

Candidate and client data is retained only as long as necessary to:

  • Complete an engagement
  • Support agreed reporting requirements
  • Maintain documented hiring records

Retention timelines may be customized per client agreement.

8. Client Responsibilities

Clients are responsible for:

  • Ensuring lawful collection of candidate data
  • Providing required notices to candidates
  • Maintaining compliance with applicable employment laws
  • Reviewing AI-assisted outputs before making decisions

9. Changes to This Policy

We may update this page periodically to reflect service changes, regulatory updates, or operational improvements.