Privacy Policy
Last updated: April 17, 2026
At Resumetrics, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our resume analysis and optimization service.
1. Information We Collect
Account Information
When you create an account, we collect:
- Email address
- Name (provided during onboarding)
Resume Data
When you upload a resume, we extract and store:
- Full name and professional title
- Contact information (email, phone number, location)
- Professional links (LinkedIn, GitHub, portfolio, website)
- Work history (companies, roles, dates, achievements)
- Education history (institutions, degrees, dates)
- Skills and certifications
- Professional summary
Job Descriptions
When you use our job matching features, we store the job descriptions you provide to generate analyses and cover letters.
Usage Data
We track basic usage metrics such as the number of analyses and cover letters generated to enforce plan limits.
2. How We Use Your Information
We use your information to:
- Parse and structure your resume for analysis
- Generate AI-powered resume health scores and improvement suggestions
- Match your resume against job descriptions
- Generate personalized cover letters
- Rewrite and optimize resume content
- Host your public resume page (if you choose to publish)
- Enforce usage limits based on your plan
- Communicate with you about your account
3. Third-Party Services (Sub-Processors)
To provide our AI-powered features, we share your data with the following third-party services:
| Service | Purpose | Data Shared |
|---|---|---|
| Supabase | Authentication & Database | Email, name, all stored data |
| Google Gemini | Resume parsing & analysis | Resume text, job descriptions |
| OpenAI | Fallback for resume parsing & analysis | Resume text, job descriptions |
| Anthropic Claude | Content rewriting, cover letters, moderation | Resume text, job descriptions, user notes |
| Sentry | Error tracking & performance monitoring | User ID, email, error context, request metadata |
| PostHog | Product analytics (only if you accept analytics cookies) | User ID, email, page views, feature usage events |
These services process your data according to their own privacy policies. We select partners who maintain appropriate security measures and data protection practices.
4. Data Retention
- Active accounts: Your data is retained for as long as your account remains active.
- Account deletion: When you delete your account, all associated data (resumes, analyses, cover letters) is permanently deleted within 30 days.
- Server logs: Technical logs are retained for up to 90 days for security and debugging purposes.
5. Your Rights
You have the right to:
- Access: View all data we hold about you through your account dashboard.
- Correction: Edit your resume data at any time through the review interface.
- Deletion: Delete individual resumes or your entire account from the Settings page.
- Data Portability: Export all your data in a machine-readable format (JSON).
- Withdraw Consent: Stop using our services and delete your account at any time.
For California residents: Under the California Consumer Privacy Act (CCPA), you have additional rights including the right to know what personal information we collect and the right to request deletion. We do not sell your personal information.
For EU/EEA residents: Under the General Data Protection Regulation (GDPR), you have additional rights including the right to lodge a complaint with a supervisory authority.
6. Data Security
We implement appropriate technical and organizational measures to protect your data, including:
- Encryption in transit (HTTPS/TLS)
- Passwordless authentication via secure email magic links
- Access controls and authentication checks on all API endpoints
- Rate limiting to prevent abuse
- Content moderation to prevent harmful content
- Regular security reviews
7. Cookies
Essential cookies
We use essential cookies for authentication and session management. These are necessary for the service to function and cannot be disabled.
Analytics cookies (optional)
With your consent, we set analytics cookies via PostHog to understand how users interact with our product (page views, feature usage, session replays with sensitive inputs masked). You can accept or decline these on first visit via the cookie banner. Declining disables all analytics capture. We do not use advertising cookies and do not sell your data.
8. Children's Privacy
Resumetrics is not intended for users under 16 years of age. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date. Your continued use of the service after changes constitutes acceptance of the updated policy.
10. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us at support@resumetrics.io.