Last updated

Privacy policy

work.ke is a free index of job vacancies in Kenya. You can use it without an account and you apply on the hiring organisation’s own website, so we hold very little about you. This page explains what we do collect, why, who else handles it and what you can ask us to do.

In short

  • Google Analytics uses cookies to count visits and to show us which pages and vacancies people open.
  • Netlify, which hosts work.ke, receives technical details such as your IP address with every request.
  • If you send a form, an email or a message to our Telegram bot, we use what you write only to reply or to check a vacancy.
  • We never collect CVs or applications, there are no accounts, and job seekers never pay.

Who is responsible

work.ke is run by Oleg Cherkas, who decides what personal data this website collects and how it is used.

For any question or request about your data, email Oleg Cherkas at rafiki@work.ke. It is the same address shown on our contact page.

What we collect and why

What we receive depends on how you use the site.

Browsing: Google Analytics

What
The pages you open, the page or app that sent you here, your browser and device details (such as device type, operating system and screen size), your language and your approximate location, such as country and city. Page addresses include any search words and filters you choose on the jobs board or the employer list, because the site keeps them in the address, and Google Analytics also records those search words as a search term. When you click a link to apply, we also record which vacancy it was: its work.ke page, employer, category, county, experience level and source. We see nothing you do on the employer’s site.
Why
To count visits, see how people find work.ke and learn which listings and guides are useful, so we can improve them.
Handled by
Google, through Google Analytics (measurement ID G-5FXT5NWHGK). Google states that Google Analytics 4 does not log or store IP addresses. See how Google uses information from sites that use its services.

Every visit: Netlify hosting

What
Your IP address, the page requested, your browser’s identification string, the page that linked to us and the time. Every web server receives these details in order to deliver a page.
Why
To deliver pages, keep the site secure and working, and count visits with Netlify Web Analytics, which Netlify builds from its server logs without cookies or code in your browser.
Handled by
Netlify, which hosts work.ke. We do not combine this data with Google Analytics or use it to identify visitors.

Forms

What
Contact form: your name, email address and message. Post a job form: the organisation, role title, location, closing date, source and application links, a contact name and email address, any extra context and your confirmation that the role is current. Both forms also contain a hidden field that people do not see. Netlify rejects any submission in which it is filled in, because only spam bots fill it.
Why
To reply to you. For a job submission, to check the employer and the application route before deciding whether to publish the role. We publish only the vacancy details, never the contact name or email address.
Handled by
Netlify stores each submission in our Netlify account and sends a copy to our email inbox. Netlify checks submissions for spam with Akismet, a service run by Automattic. Our email is hosted by Google.
Required?
No. Using a form is your choice. Without an email address we cannot reply, and without the links and a contact we cannot check a job submission.

Email and our social channels

What
If you email or call us: your email address or phone number and what you tell us. If you follow or message work.ke on WhatsApp, Telegram, Facebook or LinkedIn: what that platform shows us, such as your display name and your message.
Why
To reply to you and deal with your request.
Handled by
Google hosts our email. Calls to our Kenyan number are answered by Victor, our contact in Kenya. Each platform handles your data under its own privacy policy, listed below. On work.ke these channels are plain links: we do not load their buttons, widgets or tracking code.

Messages to our Telegram bot

What
If you write to our Telegram bot, @work_ke_jobs_bot: your Telegram name, your username if you have one, the chat number Telegram gives us, the time and your message. For a photo, file, voice note or location we record only what kind it is and, for a file, its name. We do not download attachments.
Why
To reply to you. For a vacancy, to check the employer and the application route before deciding whether to publish it.
Handled by
Telegram delivers your message and keeps the chat under its own privacy policy. A scheduled job on GitHub, where our code runs, collects new messages several times a day and passes each one to our Netlify form inbox, which emails it to us like the forms above. The job keeps no copy of what you wrote.
Required?
No. You can use the forms or email us instead.

People named in job adverts

Listings repeat details from adverts that employers, institutions and agencies have published. Some adverts name a contact person. If a listing on work.ke shows your personal details and you want them removed, email us with the page address.

What we do not collect

  • CVs, cover letters or applications. You apply on the employer’s, institution’s or agency’s own site.
  • Accounts or passwords. There is nothing to sign up for.
  • Payments. Job seekers never pay work.ke, so we never ask for M-Pesa, bank or card details.
  • ID numbers, KRA PINs or copies of documents.
  • Figures you enter in the pay calculator or minimum wage checker. They are worked out in your browser and are not sent to us.
  • Your precise location. The site does not use your browser’s location feature.
  • Advertising data. work.ke shows no ads and uses no advertising pixels.

We do not sell personal data or share it with employers, agencies or advertisers.

Who else handles your data

Google, Netlify, Automattic and GitHub are based in the United States, so data they handle for work.ke may be stored or processed outside Kenya.

Apart from Google Analytics, work.ke pages load nothing from other companies’ servers. Fonts and images come from work.ke itself.

How long we keep it

  • Google Analytics: data linked to the analytics cookies is kept for the retention period set in our Analytics account, which Google allows to be either 2 or 14 months. Totals that do not identify a browser, such as visits per day, are not limited by that setting. See Google’s explanation.
  • Netlify server logs and Web Analytics: as set by Netlify. See its Privacy Policy and Data Processing Agreement.
  • Form submissions, bot messages and emails: they stay in our Netlify account and inbox until we delete them. We have not set a fixed deletion period yet. We delete your submission and the related emails when you ask, and we will add a period here once we set one.

Cookies

work.ke’s own code sets no cookies and stores nothing in your browser’s local storage. The only cookies come from Google Analytics:

  • _ga tells one browser apart from another. It lasts up to 2 years.
  • _ga_5FXT5NWHGK keeps track of your current visit. It lasts up to 2 years.

Google describes both in its list of Google Analytics cookies. Netlify Web Analytics uses no cookies.

work.ke has no cookie banner, and these cookies are set as soon as a page loads. The site works fully without them. To avoid them, block or delete cookies in your browser settings, use a private window, or install Google’s Analytics opt-out add-on.

Your rights

Under Kenya’s Data Protection Act, 2019, your rights include the right to:

  • be told how your personal data is used, which is the purpose of this page;
  • access the personal data we hold about you;
  • have data that is inaccurate, out of date, incomplete or misleading corrected;
  • have data deleted that is false or misleading, or that we are no longer entitled to keep;
  • object to our processing of your data.

To use any of these rights, email rafiki@work.ke with “Privacy request” in the subject line. Say what you want and which details it concerns, for example the email address you used in a form. We may ask you to confirm the request from that address before we act, and we reply by email.

Google Analytics data is tied to a random identifier in a cookie, not to your name or email address, so we cannot look it up by name. If you delete your cookies, your next visit gets a new identifier. Google’s opt-out add-on stops the collection altogether.

Complaints

If you are unhappy with how we handled your data or your request, please tell us first so we can put it right. You also have the right to complain to Kenya’s Office of the Data Protection Commissioner.

Security

Every page and form is served over HTTPS, so what you send is encrypted between your browser and the server. Submissions and emails are kept in our password-protected Netlify and Google accounts.

Changes to this policy

When work.ke changes how it handles personal data, we update this page first, change the date at the top and add a line to the history below. We will not start collecting a new kind of personal data, such as CVs, without explaining it here first.

History

  • 26 September 2026: first version published.
  • 26 September 2026: added how we handle messages sent to our Telegram bot.

See also our terms of use.