Privacy and AI
What we hold, what the AI does, and how to get it all back.
This notice describes the product as it is built today. Where a control is not in place yet, it says so rather than describing an intention.
Last updated 2026-09-04.
What this product holds
Your account details, the professional profile you fill in, the resume files you upload and the text extracted from them, the reports and resume versions produced from those, the job descriptions you paste, the match reports they produce, and the applications you track.
Every row is tied to your account and isolated by database row-level security, so one account's queries cannot return another account's rows. Resume files live in a private bucket and are reachable only through short-lived signed links.
- Resume files: private storage, keyed by your account id.
- Extracted resume text: stored so a report can cite the line it is talking about.
- Pasted job descriptions: stored after contact details are redacted.
- Payment card details: never held here. The payment provider holds them.
What the AI does and does not do
The resume improvement feature sends your resume text to an AI provider to draft wording. Nothing else in the product does.
- Every generated suggestion is traceable to something you supplied. The product does not invent employers, dates, skills, metrics or qualifications, and a suggestion it cannot trace is refused rather than shown.
- Nothing generated is saved to your resume until you review and approve it. You can edit any line first, and you can roll back to an earlier version.
- A score compares your document with what a posting asks for. It is not a prediction of an interview, an offer, or any employer's decision, and a requirement listed as missing is a gap in the document rather than a judgement about you.
- The job match analyzer runs entirely on this deployment. No job description and no resume is sent to an AI provider by it.
Who else processes your data
Three processors, each for one purpose, and each listed in the data inventory kept with this product's documentation.
- Supabase: authentication, the database and private file storage.
- Google (Gemini): resume improvement drafting only, and only for the text of a resume you asked to improve.
- Stripe: payments. Card details go to Stripe directly and are never stored here.
What happens to a file you upload
An upload is checked before anything reads it: the file type and size are validated, and the document is inspected for embedded scripts, macros, remote templates and compression bombs. A file that fails is rejected before any text is extracted.
This is a structural check, not a virus scan. A signature-based scanner is not yet in place, so this notice does not claim your files are scanned for malware.
How long it is kept
Until you delete it, or until you delete your account. No automatic retention timer is running, so this notice does not claim one. If a scheduled deletion is introduced it will be described here before it starts.
What you can do
You can export everything this product holds about you as a single JSON file, at any time, from your account settings. You can delete your account and everything in it from the same place; deletion asks you to sign in again and to type a confirmation phrase, because it cannot be undone.
Deleting your account removes your profile, your files, your reports, your resume versions, your job descriptions, your match reports and your tracked applications. Security log entries are unlinked from you rather than kept against your name, and a minimal record is retained showing that a deletion ran and when.
Deleting your account here does not cancel a payment agreement held by the payment provider. Cancel a paid plan in the billing portal first.
This product sends no email. Sign-in and payment receipts come from the authentication and payment providers. If product email is introduced, it will be described here and it will be optional.
Export or delete now
Both controls live in your account settings, and both act on your signed-in account only.
Open account privacy settings