Terms & Conditions

Developer API Terms & Conditions

Last Updated: September 19, 2026

These Developer API Terms & Conditions (“API Terms”) govern your access to and programmatic use of the APIs, developer portals, software development kits (SDKs), documentation, and endpoints provided at api.talentbuzz.online (collectively, the “API Service”).

By registering an application, generating API credentials, or querying the API Service, you (“Developer,” “Customer,” or “You”) agree to be bound by these API Terms. These API Terms supplement the TalentBuzz Main Terms of Service.

1. API License & Permitted Scopes

  • Limited License: Subject to your ongoing compliance with these API Terms, TalentBuzz grants you a limited, non-exclusive, non-transferable, revocable license to access and use the API Service solely to develop, test, and maintain integrations with our recruitment ecosystem.

  • Scope-Based Access: You may access only the specific endpoints and data scopes (jobs:read, jobs:write, applications:write, etc.) expressly authorized during client provisioning via auth.talentbuzz.online.

  • No Resale: You may not sub-license, rent, lease, or resell raw TalentBuzz API access, candidate feeds, or dataset snapshots to third parties as a standalone product.

2. Authentication, Keys, & Security

  • Credential Confidentiality: You are strictly responsible for safeguarding your Client IDs, API Keys, and Client Secrets. Keys must be stored in secure backend environment variables and must never be exposed in client-side code (e.g., front-end JavaScript, public GitHub repositories, or decompilable mobile binaries).

  • Credential Rotation: TalentBuzz reserves the right to force-rotate or invalidate API credentials if compromise or unauthorized exposure is detected.

  • Compromise Notification: You must immediately inform security@talentbuzz.online within 24 hours of learning of any breach, leaked secret, or unauthorized access involving your integration.

3. Rate Limits & Resource Quotas

To ensure uptime and equal resource distribution across our network:

  • Enforced Limits: API requests are subject to rate limiting (such as maximum queries per minute and monthly call caps) based on your tier. Active thresholds are transmitted via standard HTTP response headers (X-RateLimit-Limit, X-RateLimit-Remaining, X-RateLimit-Reset).

  • HTTP 429 Handling: When your integration exceeds limits and receives an HTTP 429 Too Many Requests status, your software must respect the Retry-After header and back off.

  • Circumvention Prohibited: You may not artificially bypass quotas by provisioning multiple redundant developer accounts, round-robining IPs, or rotating false Client IDs.

  • Quota Upgrades: Legitimate enterprise volume adjustments must be formally requested via quota@talentbuzz.online.

4. Prohibited Integration Practices

Developers using api.talentbuzz.online agree not to:

  • Scrape, mass-harvest, or reverse-engineer job listings, recruiter contact details, or applicant resumes to build a competing employment directory.

  • Inject false, fraudulent, spam, or misleading job descriptions into the public index via automated scripts.

  • Use candidate application endpoints to transmit spyware, malicious payloads, unverified executable binaries, or phishing vectors.

  • Store candidate personal data (PII) indefinitely beyond the legitimate retention window required for applicant processing.

  • Interfere with server integrity or execute stress-tests, vulnerability scans, or denial-of-service simulations against production endpoints without explicit advance authorization.

5. Data Ownership & Candidate Privacy

  • Candidate Information: If your integration ingests candidate data via /v1/applications/*, you acknowledge that you are handling sensitive personal data. You must maintain strict compliance with applicable privacy regulations (GDPR, CCPA/CPRA) and process candidate information solely on behalf of the hiring organization.

  • TalentBuzz IP: All structural endpoint schemas, JSON payloads, documentation, and platform metadata remain the exclusive intellectual property of TalentBuzz.

  • Right to Audit: TalentBuzz reserves the right to review integrations, request endpoint audit logs, or inspect webhook endpoints to verify adherence to privacy and security obligations.

6. Webhooks & Event Ingestion

  • Endpoint Requirements: Your designated webhook listeners must respond with an HTTP 200 OK within our timeout threshold (typically 5 seconds) to avoid delivery failures.

  • Signature Verification: You must validate the authenticity of incoming events by verifying the cryptographic X-TalentBuzz-Signature header against your webhook secret before parsing payloads.

  • Retry Behavior: Undelivered webhooks undergo an automated exponential backoff schedule. Repeated delivery failures over 72 consecutive hours may result in automatic suspension of your webhook endpoint.

7. Service Changes, Deprecation, & Versioning

  • API Lifecycle: TalentBuzz makes reasonable efforts to notify developers of breaking changes, schema deprecations, or endpoint migrations via developer advisories at least 90 days before permanent retirement.

  • Non-Breaking Updates: We reserve the right to deploy non-breaking additions (e.g., adding optional payload fields, introducing new response headers, or optimizing backend performance) without prior warning.

  • Service Availability: While we target 99.9% uptime, the API Service is provided on an “as-is” and “as-available” basis. Real-time availability is monitored transparently at status.talentbuzz.online.

8. Suspension, Revocation, & Termination

  • Immediate Revocation: We reserve the right to revoke API credentials or suspend endpoint access immediately without notice if:

    • Your app causes significant degradation to core systems.

    • We detect credential leaks, malicious data ingestion, or a security incident.

    • You breach these API Terms or applicable employment laws.

  • Voluntary Termination: You may terminate your developer access at any time by deprecating your client keys and contacting devsupport@talentbuzz.online.

9. Indemnification & Limitation of Liability

  • Indemnity: You agree to indemnify and hold harmless TalentBuzz, its officers, directors, and employees against any claims, liabilities, damages, or expenses arising from your integration, your breach of these Terms, or unauthorized processing of candidate data.

  • Liability Cap: To the maximum extent permitted by applicable law, TalentBuzz shall not be liable for any indirect, special, incidental, or consequential damages (including loss of data, loss of business, or downtime) resulting from your reliance on the API Service.

10. Contact Information

For legal notices, enterprise integration agreements, or compliance inquiries:

  • Developer Relations: devsupport@talentbuzz.online

  • Enterprise Partnerships: api-partners@talentbuzz.online

  • Security & Triage: security@talentbuzz.online

  • Legal Department: legal@talentbuzz.online

Leave a Reply

Your email address will not be published. Required fields are marked *