FeaturesPricingBlog

Privacy Policy

Last updated: 1 February 2025

1. Introduction

ResumeKit ("we," "our," or "us") operates the resumekit.app website and AI-powered resume and cover letter builder service. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.

We are committed to protecting your privacy and complying with applicable data protection laws including the Australian Privacy Act 1988, the UK General Data Protection Regulation (UK GDPR), and Canada's Personal Information Protection and Electronic Documents Act (PIPEDA).

2. Information We Collect

We collect information that you provide directly when using our service:

  • Account information: Email address and password when you create an account
  • Profile information: Full name and country preference
  • Resume content: Personal details (name, email, phone, city), work experience, education history, skills, and referee information that you enter into the resume builder
  • Cover letter content: Job titles, company names, job descriptions, and generated cover letter text
  • Payment information: When you subscribe to a paid plan, payment processing is handled entirely by Stripe. We store only your Stripe customer ID — never your credit card number or full payment details

3. How We Use Your Information

  • To provide and maintain our resume and cover letter builder service
  • To generate AI-powered professional summaries and cover letters using your work experience data. This content is sent to OpenAI for processing and is not retained by OpenAI after generation
  • To apply country-specific formatting, spelling conventions, and terminology to your documents
  • To process payments through Stripe
  • To communicate service updates and respond to support requests
  • To enforce our terms of service and prevent misuse

4. Third-Party Services

We use the following third-party services to operate ResumeKit:

  • Supabase: Provides database storage, user authentication, and backend infrastructure. Your data is stored with encryption at rest and row-level security policies
  • OpenAI: Processes your work experience data to generate AI-powered professional summaries and cover letters. Content is sent via encrypted API calls and is not retained by OpenAI after processing
  • Stripe: Handles all payment processing for paid subscriptions. We never receive or store your full payment card details

5. Data Storage and Security

Your data is stored securely using Supabase's cloud infrastructure with the following protections:

  • Encryption at rest for all stored data
  • Row-level security (RLS) policies ensuring users can only access their own data
  • HTTPS encryption for all data in transit between your browser and our servers
  • Secure authentication with hashed passwords managed by Supabase Auth

6. Your Rights

Depending on your jurisdiction, you have the following rights regarding your personal data:

  • Access: You can view all data stored in your account at any time through the dashboard
  • Correction: You can edit your personal information, resumes, and cover letters at any time
  • Deletion: You can delete your account and all associated data permanently from the Settings page. This action is irreversible
  • Data portability: You can download your resumes and cover letters as PDFs at any time

7. Cookies and Local Storage

ResumeKit uses the following browser storage mechanisms:

  • Authentication tokens: Stored in local storage to maintain your login session
  • Country preference: Your selected country (AU, UK, or CA) is stored in local storage for a consistent experience

We do not use third-party tracking cookies or advertising cookies.

8. Data Retention

We retain your data for as long as your account is active. When you delete your account, all associated data (profile, resumes, and cover letters) is permanently removed from our database. We do not retain backups of deleted user data beyond standard database backup cycles (up to 30 days).

9. Jurisdiction-Specific Provisions

Australian users: This policy complies with the Australian Privacy Principles (APPs) under the Privacy Act 1988. You may lodge a complaint with the Office of the Australian Information Commissioner (OAIC) if you believe your privacy has been breached.

UK users: We process your data in compliance with the UK GDPR. Our lawful basis for processing is contractual necessity (to provide the service you have signed up for) and legitimate interest (to improve our service). You may lodge a complaint with the Information Commissioner's Office (ICO).

Canadian users: This policy complies with PIPEDA. You have the right to access and correct your personal information. You may lodge a complaint with the Office of the Privacy Commissioner of Canada.

10. Contact

For any questions or requests regarding your personal data, contact us at privacy@resumekit.app.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify registered users of significant changes via email. Continued use of the service after changes constitutes acceptance of the updated policy.