Ten separate things, kept separate. The first one is public by design and that is the point of it. Two of them describe a person who did not hand them over — the appraisal and the reference call — and those are the two worth reading twice.
A leader page, published on purpose
Held: Name, photograph, prior seats and employers, sector, category, jurisdiction, stated weekly capacity, links offered as proof, and the date the verification was carried out.
Why: This is the register. A leader writes it, Atlas approves it, and it is public so a company can read and check it before speaking to anyone. Visibility is what a leader is here for.
Seen by: Public to anyone, including search engines and answer engines.
An enquiry about a leader
Held: Name, work email, company, and whatever is written in the message.
Why: To pass the enquiry to the leader and to make the introduction. It is used for that enquiry and not added to a marketing list.
Seen by: Seen by Atlas and by the leader the enquiry names.
A leader account
Held: Email address and a hashed password, plus a session record while signed in. The password itself is never stored. Where a leader signed in through LinkedIn, the account also holds the identifier LinkedIn issues for them, which is how Atlas knows the profile is theirs. Atlas receives a name, an email address and a photograph from LinkedIn, and nothing else: no connections, no messages, no work history.
Why: So a leader can edit their own page and nobody else can.
Seen by: Never public.
A CV or a LinkedIn profile export
Held: Whatever the document itself contains. A CV usually carries a career history, employers and dates, and often a personal email, a telephone number and a home city. A LinkedIn export carries the same, plus skills and education. Atlas stores the file as it was sent and, separately, the handful of fields read out of it to fill the registration form.
Why: To save a leader typing their own history in twice, and so the reference call has the leader's own account of their record to check against. The file is read by a set of rules on the server. It is not sent to any third party and it is not used to train anything.
Seen by: Never public, and never sent to a company. Stored encrypted in Google Cloud Storage in europe-west1, on a private bucket with public access blocked. A leader can read it back or delete it from their dashboard at any time, and deleting it deletes the file. It is removed when a leader account is removed.
A brief from a company
Held: The seat, the jurisdiction, the cadence, the budget band, who the leader would report to, why the seat is being opened now, what would count as working ninety days in, who signs it off and by when, and the name, role and email address of the person filing it. A brief saved half-finished is held the same way as a sent one.
Why: To answer it. Atlas reads every brief itself and comes back with names or with a straight answer that the seat is not covered. The budget and the reasoning are what make a shortlist worth having rather than a search of job titles.
Seen by: Never public. Read by Atlas, and the parts of it a leader needs are given to the leaders named on it. A company's identity is not given to a leader before the company agrees to it.
A company account
Held: The company name, and for each person on the account a name, a role, an email address and a hashed password. The password itself is never stored.
Why: So a company can see where its briefs stand, who was named and why, what was agreed, and the one invoice, without digging through email. An account holds more than one person because the person who files a brief is often not the person who watched the work.
Seen by: Never public. An account is not needed to read the register.
An engagement, and the appraisal at the end of it
Held: Who took the seat, the cadence, the dates, what the company said the seat had to fix in its own words, the agreed retainer the fee is calculated from, and the dates of the invoice and the payment. When the engagement ends, the company files an appraisal: its verdict against each of those outcomes, whether it would engage the leader again, and a written account of what the leader actually did, signed with the author's name and role.
Why: An engagement is the record of something that happened between two other parties, and it is what an invoice and a check-in date hang on. The appraisal is how a company tells Atlas whether an introduction was worth making.
Seen by: Never public, in whole or in part, in any form that identifies a leader. The leader named in an appraisal reads it in full, with the company's name and the author's name on it, and may file one reply that Atlas does not edit and does not remove. Neither statement can be changed afterwards by anybody, including Atlas.
A reference call
Held: The referee's name, their organisation, the date of the call, and the answer they gave to one question: would you engage this person again for the same seat.
Why: It is Stage V of the published standard. A register that says it checks and does not is worth nothing.
Seen by: Never public and never shown to a company. The referee is named by the leader, who confirms the referee has agreed to be contacted, and Atlas says at the start of the call who it is, who named them, and what the record is for. A leader may ask what their referee said.
A document Atlas has issued
Held: A signed agreement or an invoice, as the file itself.
Why: So the company can find it later. A twelve-month term matters eleven months after anyone last thought about it, and an agreement that exists only in one person's inbox has effectively gone.
Seen by: Never public. Stored on the same private bucket as a CV, and served only through a link Atlas signs after checking the session, which expires in fifteen minutes.
Reading the site
Held: Pages viewed, referrer, approximate location and device, through Google Analytics 4.
Why: To know which pages are read and which are not. No profile is built about an individual reader, and nothing is sold.
Seen by: Aggregate.
A leader page is published on two bases at once: the leader’s own consent, given when they publish it and withdrawable in one click, and the fact that they made it public by their own act. An enquiry is handled to take the step the sender asked for. An account exists to keep a page under its owner’s control. A brief, an engagement and a document are held to perform the agreement the company asked Atlas to perform. Analytics runs on consent, given at the banner and withdrawable from the footer of any page.
Atlas does not rely on a legitimate interest for anything, because the UAE personal data law does not offer one. Article 4 of Federal Decree-Law 45 of 2021 begins by prohibiting processing without consent and then lists eleven exceptions, and a legitimate interest of the person holding the data is not among them. Where this notice names a basis, it is consent, performance of a contract, data the person made public themselves, or the establishing and defending of a legal claim.
Two of them are about a person who did not hand them over, and they are stated separately because they are the ones that matter. An appraisal is a company’s judgement of a named leader, held so that Atlas can tell whether an introduction was worth making, and held on the footing that the leader reads it in full and may answer it. A reference call is a third party’s answer about a named leader, held as the evidence behind a published claim, and made only to a referee the leader named and confirmed had agreed to be called.
Atlas asks for no Emirates ID number, no passport copy, no salary history and no bank details. Atlas never holds a company’s payment details and never takes a payment on a leader’s behalf. A verification is carried out against a permit or a licence and a reference call, and the outcome and its date are recorded rather than the documents.