DATA PRIVACY STATEMENT (OreSight)

1. ABOUT THIS POLICY

1.1 This policy explains when and why we collect personal information from individuals who interact with OreSight — whether as candidates, clients, or referrers — how we use it, how we keep it secure, and your rights in relation to your data.

1.2 We may collect, use, and store your personal data as described in this Privacy Policy and as explained at the point of data collection.

1.3 This policy may be updated from time to time. The latest version will always be available at www.oresight.co.uk. Updates will not apply retrospectively.

1.4 OreSight Limited complies with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018, and all relevant legislation. For the purposes of data protection law, OreSight Limited is the “data controller”.

2. WHO WE ARE

OreSight Limited is a UK-based executive search and talent intelligence firm dedicated to the global mining sector. We collect and process personal data to manage relationships with candidates, clients, and strategic partners across jurisdictions.

info@oresight.co.uk | enquiries@oresight.co.uk | www.oresight.co.uk

3. WHAT INFORMATION WE COLLECT AND WHY

We collect a range of personal data to support search activities, build long-term relationships, and meet legal obligations. This includes information collected from:

  • Candidates joining our talent network or applying for roles

  • Clients providing vacancy instructions, feedback, and authorisations

  • Referees or professional contacts supporting the assessment process

3.1 CANDIDATE DATA

What candidate data we collect, why we need it and the legal basis we rely on:

Core identity details – your full name (including any former names), date of birth, personal email address, phone number, home address and—where we carry out digital ID checks—a photo or selfie.
Purpose: to identify you and manage our relationship as a candidate.
Legal basis: legitimate interest.

Right-to-work documentation – passport or driving-licence copy, Home Office share code, biometric residence permit, National Insurance number.
Purpose: to confirm you are legally entitled to work where the client or local law requires it.
Legal basis: legal obligation (immigration rules) and legitimate interest.

Professional & CV data – job titles, duties, employment dates, notice period, education, professional memberships, salary expectations, work-location preferences, sponsorship needs, language skills and assessment results.
Purpose: to evaluate your suitability for current and future opportunities.
Legal basis: legitimate interest.

Location details – country, town or city of residence and any relocation preferences.
Purpose: to check alignment with client roles and regional requirements.
Legal basis: legitimate interest.

Copy of your CV – the résumé you supply to us.
Purpose: to assess your qualifications and experience in one document.
Legal basis: legitimate interest.

Equality, diversity & inclusion (EDI) data – gender, ethnicity, disability status, religion or belief, age (all optional).
Purpose: to produce anonymised diversity reporting for ourselves and our clients.
Legal basis: consent (you may choose not to provide this information).

Health & accessibility information – any reasonable adjustments you request for interviews or assessments.
Purpose: to ensure a fair and accessible recruitment process.
Legal basis: consent and, where applicable, employment-law obligations.

Referee and onboarding data – referee contact details, proof of qualifications, signed engagement terms and records of any opt-in consents.
Purpose: reference checking and other compliance steps before placement.
Legal basis: legitimate interest.

Payroll data (contractors only) – bank-account details, tax code, Unique Taxpayer Reference, student-loan status, P45/P60 forms or umbrella-company details.
Purpose: to pay you and meet tax-reporting requirements.
Legal basis: legal obligation and performance of a contract.

Usage & technology data – IP address, device identifier, cookies and usage logs from our website, forms or candidate portal.
Purpose: to secure our systems and improve your online experience.
Legal basis: consent (for optional cookies) and legitimate interest (for essential security logging).

3.2 CLIENT DATA

What client-contact data we collect, why we need it and the legal basis we rely on:

Identity & role – your name, job title and the department, team or business unit you belong to.
Purpose: to manage our relationship with you and tailor the recruitment services we provide.
Legal basis: legitimate interest.

Business contact details – work e-mail address, direct phone number and office location.
Purpose: to communicate efficiently with you and deliver our search or staffing agreement.
Legal basis: legitimate interest and, once we have a signed engagement, performance of a contract.

Vacancy instructions & notes – role briefs, update requests, emails and other correspondence about open positions.
Purpose: to log, refine and fulfil your hiring mandates accurately.
Legal basis: legitimate interest and contract.

Candidate feedback & opinions – interview notes, scoring, hire/no-hire decisions and the rationale you provide.
Purpose: to inform short-listing, track progress and maintain an audit trail of hiring decisions.
Legal basis: legitimate interest.

Approvals & authorisations – signed terms of business, purchase-order numbers, Status Determination Statements (SDS), digital signatures and associated IP-address metadata.
Purpose: to evidence approvals, meet compliance obligations and ensure accountability in the services we deliver.
Legal basis: legal obligation and contract.

4. ENHANCED BACKGROUND VERIFICATION (FOR ROLE-SPECIFIC SEARCHES)

For shortlisted candidates in live search mandates — especially senior, technical, or fiduciary roles — we may conduct enhanced due diligence. This may be completed by OreSight or a trusted third-party partner, and may include:

  • Verification of employment history, academic qualifications, and licences

  • Passport verification and right-to-work checks

  • Criminal record checks, where legally permitted

  • Review of social media and public online presence

  • Financial or credit checks, for roles involving fiduciary or regulatory responsibility

  • Health background checks, where lawful and appropriate

  • Reputation and ethics-based referencing, including 360° stakeholder interviews

You will be informed prior to any such checks, and your consent will be requested where required by law or jurisdiction.

5. HOW WE PROTECT YOUR DATA

5.1 We process all personal data lawfully, transparently, and only for the purposes outlined. We review data regularly to ensure accuracy.

5.2 We will never sell your data. It may be shared with:

  • Our trusted processors (e.g. Monday.com, background-check providers)

  • Prospective clients, with your consent

  • Legal authorities, where required

  • Future owners or successors, in the event of a business restructure

5.3 We have implemented appropriate security and access controls. In the event of a serious data breach, we will notify affected individuals and the Information Commissioner’s Office promptly, where required.

6. DATA RETENTION

6.1 We will retain personal data for up to three (3) years from the last meaningful interaction, unless required to retain it longer for regulatory or legal reasons.

6.2 You may request that we delete your data or remove you from our talent network at any time by contacting info@oresight.co.uk.

7. YOUR RIGHTS

You have the right to:

  • Request access to the personal data we hold about you

  • Request correction of inaccurate or outdated information

  • Request deletion of your data (“right to be forgotten”)

  • Object to or restrict the processing of your data

  • Request transfer of your data to another organisation

  • Withdraw consent at any time (where consent is the legal basis for processing)

  • Lodge a complaint with the Information Commissioner’s Office (ICO)

Information Commissioner’s Office
Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF
0303 123 1113
https://ico.org.uk/make-a-complaint

Contact Us
info@oresight.co.uk | enquiries@oresight.co.uk
www.oresight.co.uk

OreSight | Mining Executive Search ⏐ Global Talent Advisory

OreSight delivers global mining executive search & talent intelligence, linking companies to C-suite, technical, and admin leaders for sustainable growth.