Last updated
Privacy policy
work.ke is a free index of job vacancies in Kenya. You can use it without an account and you apply on the hiring organisation’s own website, so we hold very little about you. This page explains what we do collect, why, who else handles it and what you can ask us to do.
In short
- Google Analytics uses cookies to count visits and to show us which pages and vacancies people open.
- Netlify, which hosts work.ke, receives technical details such as your IP address with every request.
- If you send a form, an email or a message to our Telegram bot, we use what you write only to reply or to check a vacancy.
- We never collect CVs or applications, there are no accounts, and job seekers never pay.
Who is responsible
work.ke is run by Oleg Cherkas, who decides what personal data this website collects and how it is used.
For any question or request about your data, email Oleg Cherkas at rafiki@work.ke. It is the same address shown on our contact page.
What we collect and why
What we receive depends on how you use the site.
Browsing: Google Analytics
- What
- The pages you open, the page or app that sent you here, your browser and device details (such as device type, operating system and screen size), your language and your approximate location, such as country and city. Page addresses include any search words and filters you choose on the jobs board or the employer list, because the site keeps them in the address, and Google Analytics also records those search words as a search term. When you click a link to apply, we also record which vacancy it was: its work.ke page, employer, category, county, experience level and source. We see nothing you do on the employer’s site.
- Why
- To count visits, see how people find work.ke and learn which listings and guides are useful, so we can improve them.
- Handled by
- Google, through Google Analytics (measurement ID
G-5FXT5NWHGK). Google states that Google Analytics 4 does not log or store IP addresses. See how Google uses information from sites that use its services.
Every visit: Netlify hosting
- What
- Your IP address, the page requested, your browser’s identification string, the page that linked to us and the time. Every web server receives these details in order to deliver a page.
- Why
- To deliver pages, keep the site secure and working, and count visits with Netlify Web Analytics, which Netlify builds from its server logs without cookies or code in your browser.
- Handled by
- Netlify, which hosts work.ke. We do not combine this data with Google Analytics or use it to identify visitors.
Forms
- What
- Contact form: your name, email address and message. Post a job form: the organisation, role title, location, closing date, source and application links, a contact name and email address, any extra context and your confirmation that the role is current. Both forms also contain a hidden field that people do not see. Netlify rejects any submission in which it is filled in, because only spam bots fill it.
- Why
- To reply to you. For a job submission, to check the employer and the application route before deciding whether to publish the role. We publish only the vacancy details, never the contact name or email address.
- Handled by
- Netlify stores each submission in our Netlify account and sends a copy to our email inbox. Netlify checks submissions for spam with Akismet, a service run by Automattic. Our email is hosted by Google.
- Required?
- No. Using a form is your choice. Without an email address we cannot reply, and without the links and a contact we cannot check a job submission.
Email and our social channels
- What
- If you email or call us: your email address or phone number and what you tell us. If you follow or message work.ke on WhatsApp, Telegram, Facebook or LinkedIn: what that platform shows us, such as your display name and your message.
- Why
- To reply to you and deal with your request.
- Handled by
- Google hosts our email. Calls to our Kenyan number are answered by Victor, our contact in Kenya. Each platform handles your data under its own privacy policy, listed below. On work.ke these channels are plain links: we do not load their buttons, widgets or tracking code.
Messages to our Telegram bot
- What
- If you write to our Telegram bot, @work_ke_jobs_bot: your Telegram name, your username if you have one, the chat number Telegram gives us, the time and your message. For a photo, file, voice note or location we record only what kind it is and, for a file, its name. We do not download attachments.
- Why
- To reply to you. For a vacancy, to check the employer and the application route before deciding whether to publish it.
- Handled by
- Telegram delivers your message and keeps the chat under its own privacy policy. A scheduled job on GitHub, where our code runs, collects new messages several times a day and passes each one to our Netlify form inbox, which emails it to us like the forms above. The job keeps no copy of what you wrote.
- Required?
- No. You can use the forms or email us instead.
People named in job adverts
Listings repeat details from adverts that employers, institutions and agencies have published. Some adverts name a contact person. If a listing on work.ke shows your personal details and you want them removed, email us with the page address.
What we do not collect
- CVs, cover letters or applications. You apply on the employer’s, institution’s or agency’s own site.
- Accounts or passwords. There is nothing to sign up for.
- Payments. Job seekers never pay work.ke, so we never ask for M-Pesa, bank or card details.
- ID numbers, KRA PINs or copies of documents.
- Figures you enter in the pay calculator or minimum wage checker. They are worked out in your browser and are not sent to us.
- Your precise location. The site does not use your browser’s location feature.
- Advertising data. work.ke shows no ads and uses no advertising pixels.
We do not sell personal data or share it with employers, agencies or advertisers.
Who else handles your data
- Google runs Google Analytics and hosts our email: Google Privacy Policy and, for email, the Google Cloud Privacy Notice.
- Netlify hosts the site, the forms and Web Analytics: Netlify Privacy Policy and Data Processing Agreement.
- Automattic runs Akismet, which checks form submissions for spam: Akismet privacy policy.
- GitHub, owned by Microsoft, runs the scheduled job that passes messages sent to our Telegram bot to our inbox: GitHub General Privacy Statement.
- Only if you use them: WhatsApp, Telegram, Facebook (Meta) and LinkedIn.
Google, Netlify, Automattic and GitHub are based in the United States, so data they handle for work.ke may be stored or processed outside Kenya.
Apart from Google Analytics, work.ke pages load nothing from other companies’ servers. Fonts and images come from work.ke itself.
How long we keep it
- Google Analytics: data linked to the analytics cookies is kept for the retention period set in our Analytics account, which Google allows to be either 2 or 14 months. Totals that do not identify a browser, such as visits per day, are not limited by that setting. See Google’s explanation.
- Netlify server logs and Web Analytics: as set by Netlify. See its Privacy Policy and Data Processing Agreement.
- Form submissions, bot messages and emails: they stay in our Netlify account and inbox until we delete them. We have not set a fixed deletion period yet. We delete your submission and the related emails when you ask, and we will add a period here once we set one.
Cookies
work.ke’s own code sets no cookies and stores nothing in your browser’s local storage. The only cookies come from Google Analytics:
_gatells one browser apart from another. It lasts up to 2 years._ga_5FXT5NWHGKkeeps track of your current visit. It lasts up to 2 years.
Google describes both in its list of Google Analytics cookies. Netlify Web Analytics uses no cookies.
work.ke has no cookie banner, and these cookies are set as soon as a page loads. The site works fully without them. To avoid them, block or delete cookies in your browser settings, use a private window, or install Google’s Analytics opt-out add-on.
Your rights
Under Kenya’s Data Protection Act, 2019, your rights include the right to:
- be told how your personal data is used, which is the purpose of this page;
- access the personal data we hold about you;
- have data that is inaccurate, out of date, incomplete or misleading corrected;
- have data deleted that is false or misleading, or that we are no longer entitled to keep;
- object to our processing of your data.
To use any of these rights, email rafiki@work.ke with “Privacy request” in the subject line. Say what you want and which details it concerns, for example the email address you used in a form. We may ask you to confirm the request from that address before we act, and we reply by email.
Google Analytics data is tied to a random identifier in a cookie, not to your name or email address, so we cannot look it up by name. If you delete your cookies, your next visit gets a new identifier. Google’s opt-out add-on stops the collection altogether.
Complaints
If you are unhappy with how we handled your data or your request, please tell us first so we can put it right. You also have the right to complain to Kenya’s Office of the Data Protection Commissioner.
Security
Every page and form is served over HTTPS, so what you send is encrypted between your browser and the server. Submissions and emails are kept in our password-protected Netlify and Google accounts.
Changes to this policy
When work.ke changes how it handles personal data, we update this page first, change the date at the top and add a line to the history below. We will not start collecting a new kind of personal data, such as CVs, without explaining it here first.
History
- 26 September 2026: first version published.
- 26 September 2026: added how we handle messages sent to our Telegram bot.
See also our terms of use.