Privacy Policy
Last updated: December 2024
Overview
FitToRole ("we", "our", "us") is committed to protecting your privacy. This policy explains how we collect, use, and safeguard your information when you use our resume optimization service.
The short version: We process your resume to help you improve it. We don't sell your data, we don't keep it longer than necessary, and we use industry-standard security practices.
Information We Collect
Resume Content
When you upload a resume, we extract text content to analyze it against job descriptions. This may include:
- Your name and contact information
- Work history and job titles
- Education and certifications
- Skills and qualifications
Job Descriptions
Job descriptions you paste for comparison are processed alongside your resume.
Payment Information
Payment processing is handled entirely by Stripe. We never see, store, or have access to your full credit card number. We only receive confirmation of successful payments and basic transaction identifiers.
Technical Data
We collect standard technical information including IP addresses, browser type, and access times for security, rate limiting, and service improvement purposes.
How We Process Your Data
In-Memory Processing
Your uploaded resume file is processed in memory during text extraction. The original file is not permanently stored on our servers after processing completes.
AI Analysis
We use OpenAI's API (GPT models) to analyze your resume and generate suggestions. Your resume text is sent to OpenAI for processing. OpenAI's data usage policies apply to this processing. As of our last review, OpenAI does not use API data to train their models.
Result Storage
Analysis results are stored temporarily to allow you to access your report:
- Free previews: Stored for 30 days
- Paid results: Accessible for 7 days via your access token
After these periods, data is automatically deleted.
Data Retention
| Data Type | Retention Period |
|---|---|
| Uploaded resume files | Deleted after processing (not stored) |
| Analysis reports | 30 days, then auto-deleted |
| Access tokens | 7 days, then auto-deleted |
| Payment records | Retained by Stripe per their policy |
Who Has Access
Access to your data is strictly limited:
- You: Via your access token or report ID
- Our systems: Automated processing only
- OpenAI: For AI analysis (API processing only)
- Stripe: For payment processing only
We do not sell, rent, or share your personal information with third parties for marketing purposes.
Data Security
We implement industry-standard security measures:
- HTTPS encryption for all data in transit
- Secure token-based access to paid results
- Rate limiting to prevent abuse
- Input sanitization to prevent injection attacks
- No logging of resume content
Your Rights
You have the right to:
- Access: Request a copy of data we hold about you
- Deletion: Request early deletion of your data
- Portability: Download your analysis results
To exercise these rights, contact us at the email below. Note that data is automatically deleted after the retention periods above.
Cookies
We use minimal cookies for essential functionality only:
- Session state during your visit
- Stripe payment processing (required by Stripe)
We do not use tracking cookies or third-party analytics that identify you personally.
Changes to This Policy
We may update this policy from time to time. Significant changes will be noted with an updated "Last updated" date at the top of this page.
Contact Us
If you have questions about this privacy policy or your data, please contact us:
Email: privacy@fittorole.com