Back to Home

Privacy Policy

Introduction

Welcome to JobTether ("we," "us," or "our"), accessible at JobTether. Your privacy is critically important to us. This Privacy Policy explains what personal data we collect, why we collect it, how we use and protect it, and what rights you have — whether you use our service as a guest or as a signed-in user.

1. What data we collect

a) Guest users (no sign-in)

  • Resume Text: The resume content you paste or upload is sent to our AI engine for processing. For guest users, this text is processed on the fly and is not stored on our servers after your session ends.
  • Payment Information: Handled entirely by our secure payment provider, Razorpay. We never see or store your card details, bank account numbers, or UPI PINs.
  • Country/Region: We use a third-party IP geolocation service (ipapi.co) to detect your approximate country so we can display the correct currency (INR or USD). Only the country code is used; we do not store your IP address.

b) Signed-in users (Google Sign-In via Firebase)

When you choose to sign in with your Google account, we additionally collect and store:

  • Google Profile Information: Your display name, email address, and profile photo URL as provided by Google during authentication.
  • Firebase User ID: A unique identifier assigned by Firebase Authentication to manage your account.
  • Resume Roast History: If you are signed in, your roast results — including ATS score, verdict, missing keywords, the AI roast text, your target role/company, experience level, the rewritten resume, and generated cover letter — are saved to our database (Google Cloud Firestore) under your account so you can access your history across sessions.
  • Stored resume (Agent only): If you use the Agent, the extracted text of the resume you upload is stored under your account, along with the original filename and a record of your consent — that you agreed, when, and which version of this policy was in force. See section 3.
  • Tailored resumes: Each version the Agent produces for a specific job, plus a summary of what it changed and any figures it flagged for you to verify.
  • Agent run records: Which jobs each run covered, its progress and per-job outcome, and which jobs you selected, applied to, or moved to your tracker.
  • Job tracker entries: The jobs you save, including a stored copy of the posting (company, job title, location, application link and description text) so your records survive the original posting being taken down.
  • Agent credit balance: How many job credits you hold, and a running total of credits purchased and used. No card or UPI details — see section 3.

Signing in is entirely optional. The core roast feature works fully without an account.

2. How we use your data

  • To generate your AI resume roast, professional resume rewrite, and tailored cover letter.
  • To run the Agent: to match your target role against live job postings, tailor your stored resume to each job, and keep your run history and job tracker available to you.
  • To meter and bill Agent usage per job, and to keep an accurate credit balance.
  • To process secure payments for our premium services via Razorpay.
  • To save and display your roast history if you are signed in.
  • To detect your country for currency localisation.
  • To analyze anonymised platform usage and improve the service experience.
  • To monitor site performance, stability, and user experience via analytics tools.

3. The Agent (job matching & tailoring)

The Agent is an optional, paid feature. It differs from the rest of the service in one important way: it requires us to store your resume, because it tailors that resume across many jobs over time rather than processing it once and discarding it. What follows applies only if you choose to use it.

  • Consent is required up front. You cannot start an Agent run without explicitly agreeing to your resume being stored and processed. We record that agreement, its timestamp, and the version of this policy in force at the time, against the stored resume itself.
  • What the Agent stores. Your resume text; each tailored version it produces, with a summary of the changes it made and the honest gaps it found; the record of each run and its outcome per job; a stored copy of each job posting that enters your run or tracker; and your credit balance and usage.
  • Where job postings come from. Postings are collected from publicly accessible company career pages and hiring platforms (such as Greenhouse, Lever and Workable). This is public job data, not personal data about you, and we do not identify you to those platforms when collecting it.
  • We never apply on your behalf, and we never send your resume to an employer. The Agent prepares tailored applications and queues them for your review. You open the real posting yourself and submit your application there. Nothing is transmitted to an employer, recruiter or job board by us. Whatever you subsequently choose to send an employer is governed by that employer's privacy practices, not ours.
  • AI processing. To tailor your resume, the text of your stored resume and the text of the job description are sent to the Google Gemini API for processing, and the result is stored under your account. See sections 5 and 7.
  • Payment. The Agent is charged per job. We store your credit balance and a record of each settled payment's identifier so the same payment cannot be counted twice. We never see or store your card, bank or UPI credentials — Razorpay handles payment in full.
  • You can stop and remove it. You can delete everything the Agent stored about you — your resume, all tailored versions, and your run history — yourself at any time from Account Settings → Delete my data. Deletion is immediate and permanent. See section 9.

4. Data retention

  • Guest users: Resume text is processed in real time and is not stored after the response is delivered. We do not maintain a database of guest resumes.
  • Signed-in users: Your roast history is retained in Firestore for as long as your account is active, so you can review past results at any time. You may delete individual entries from your history at any time, or request full account and data deletion (see "Your Rights" below).
  • Agent data (stored resume, tailored versions, run history, tracker entries): Retained under your account for as long as your account is active, because the Agent needs them to avoid re-tailoring — and re-charging you for — jobs it has already done. You may delete them individually, or request deletion of all Agent data, at any time.
  • Payment records: Transaction records are retained by Razorpay per their own data retention policies. We retain the identifier of each settled payment indefinitely for fraud prevention — specifically, to guarantee a payment cannot be redeemed more than once. It contains no card or bank details.

5. Third-party services

We rely on the following trusted third-party services to deliver and improve our platform. Each has its own privacy policy governing how it handles data:

  • Google Gemini API: For AI-powered resume analysis, rewriting, and cover letter generation, and for Agent tailoring. Your resume text is sent to Google's API for processing; for Agent runs, the job description text is sent alongside it. We do not use your resume to train AI models.
  • Firebase Authentication (Google): For secure sign-in via your Google account. Managed by Google; see Firebase Privacy Policy.
  • Google Cloud Firestore: For storing signed-in users' roast history and, if you use the Agent, your stored resume, tailored resumes, run history, job tracker and credit balance. Data is hosted on Google Cloud infrastructure.
  • Razorpay: For secure payment processing, including per-job Agent charges. See Razorpay Privacy Policy.
  • Public hiring platforms (Greenhouse, Lever, Workable): A source of public job postings for the Agent, not a recipient of your data. We read publicly listed jobs; we do not send them your resume or identify you to them.
  • Vercel: For website hosting, serverless functions, and basic web analytics.
  • Vercel Speed Insights: For monitoring real-user page performance metrics (anonymised).
  • Microsoft Clarity: For session recordings, heatmaps, and behavioural analytics to help us understand how users interact with our site and identify usability issues. Clarity may collect device info, browser type, and interaction data. See Microsoft Clarity Privacy.
  • ipapi.co: For IP-based country detection to display correct currency. Only the country code is used.
  • Upstash: For rate limiting to keep the service stable and prevent abuse.

6. Cookies & local storage

  • Firebase Auth tokens: Stored in your browser to maintain your sign-in session.
  • Country code cache: Your detected country code is saved in localStorage to avoid repeated geolocation lookups.
  • Guest roast history: If you are not signed in, your roast results may be stored temporarily in your browser's localStorage for convenience.
  • Microsoft Clarity cookies: Used by Clarity to track anonymous session and user behaviour for analytics purposes.
  • Vercel Analytics cookies: Minimal, anonymised cookies for web analytics.

We do not use advertising or cross-site tracking cookies.

7. International data transfers

Some of our third-party service providers (Google/Firebase, Vercel, Microsoft Clarity) may process or store data on servers located outside of India. By using our service, you acknowledge that your data may be transferred to, and processed in, countries other than your own. These providers maintain industry-standard security and privacy practices.

8. Data security

We implement reasonable technical and organisational measures to protect your personal data, including encrypted connections (HTTPS/TLS), Firebase Security Rules to restrict database access to authenticated users, and secure API key management. However, no method of electronic transmission or storage is 100% secure, and we cannot guarantee absolute security.

9. Your rights

You have the right to:

  • Access the personal data we hold about you.
  • Delete individual roast entries from your history via the dashboard.
  • Delete everything — your account and all data, including roast history, resumes, tailored resumes, run history and job tracker — from Account Settings → Delete my data. Unused job credits are forfeited. You can also email us and we will do it for you.
  • Delete your Agent data — your stored resume, every tailored version, and your run history — yourself, at any time, from Account Settings → Delete my data. Your job tracker and any unused credits are kept.
  • Withdraw consent to data processing at any time by signing out and requesting deletion. Withdrawing consent for the Agent specifically means we delete your stored resume; the Agent cannot run without it. Any unused Agent credits remain on your account.
  • Lodge a complaint with a supervisory authority if you believe your data rights have been violated.

Our data practices are designed to comply with the General Data Protection Regulation (GDPR) for EU/EEA users and India's Digital Personal Data Protection Act, 2023 (DPDP Act).

10. Children's privacy

Our service is not directed at individuals under the age of 18. We do not knowingly collect personal data from children. If you believe a minor has provided us with personal data, please contact us and we will promptly delete it.

11. Changes to this policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. The "Last updated" date at the bottom of this page indicates when the policy was last revised. We encourage you to review this page periodically.

12. Contact us

If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us at: jobtetherservices@gmail.com.

Last updated: July 2026