Legal
Privacy Policy
Last updated
This policy explains what information JobPeel collects, why we use it, and the choices available to you when you use our application-drafting and tracking service.
Optional advertising measurement
If you accept after arriving through a Meta ad, we also save its click identifier in this browser and transfer it to your account at sign-up for server-side attribution. We do not use that identifier after 90 days, and withdrawing consent removes our stored attribution identifier. It is not anonymous data and does not contain your resume or application content.
Optional ad measurement is off by default. The public privacy banner offers equally prominent Accept and Decline choices, which are remembered on this browser for up to 180 days. Accept allows the Meta Pixel to measure public-page visits and set advertising cookies. Decline prevents Meta code from loading. Your choice is saved to your account when you sign up, and you can change it in Settings. Meta receives browser information such as your IP address, browser identifiers and the page visited.
After you accept, our server sends CompleteRegistration when your account is created, FirstLetter when your first cover letter is successfully generated, and Purchase after Stripe confirms your first paid subscription invoice. These conversion events are sent only by our server, using stable event IDs to avoid counting retries twice. The Pixel sends only PageView on the homepage, pricing, sign-up and log-in pages for signed-out visitors after consent; it is not loaded on signed-in pages. Automatic page/product collection and automatic advanced matching are disabled. Server matching uses a hashed account identifier and, when verified, a SHA-256 hash of your email. Purchase includes the actual amount paid and USD currency ($12 for the standard Pro subscription before any applicable adjustments). Hashing does not make these identifiers anonymous. We never send resume text, job or employer details, letter content or payment-card details to Meta.
Use Privacy choices / Do not sell or share in the footer, or Settings when signed in, to withdraw permission without affecting your account or plan. Withdrawal stops future sharing and pending retries but cannot erase events Meta already received. We honor Global Privacy Control and Do Not Track signals. Your browser choice lasts up to 180 days and account consent and minimal event receipts are removed by account deletion. Optional sharing with Meta may be considered sharing for targeted advertising under applicable US state laws. You may opt out at any time; contact support for access, correction, deletion or appeal requests. Meta processes received data under its own privacy policy.
Information we collect
We collect account information such as your name, email address, authentication provider, and optional profile details. When you use JobPeel, we also process resumes, job postings or links, cover-letter drafts, application records, and the edits or statuses you save.
We may collect basic technical and usage information needed to operate, secure, diagnose, and improve the service, such as device and browser details, timestamps, feature usage, error records, and salted identifiers derived from network addresses for abuse prevention. If you purchase Pro, Stripe processes payment and subscription information; JobPeel does not need your full payment-card number.
When you email support@jobpeel.com, Resend receives the message and JobPeel forwards the customer sender address, subject, message body, attachments, and the original email as an .eml file to the sole owner's monitored external inbox. That destination is outside the jobpeel.com domain and is used to operate customer support. Do not email passwords, full payment-card details, or sensitive identity documents.
If you arrive through a referral or owner-created progress report, we store bounded, opaque attribution identifiers and aggregate milestone counts. When you explicitly create a progress report, we store only the aggregate fields you selected, an owner identifier used for access control, and creation and expiration times. The report excludes names, contact details, company and role names, resumes, notes, job descriptions, and cover-letter text.
How we use information
We use your information to authenticate your account, provide resume and job-processing features, generate and save drafts, track applications, administer generation allowances and subscriptions, attribute referral and progress-report signups in aggregate, respond to support requests, prevent misuse, and maintain the service.
JobPeel does not promise that AI output is accurate. You should review generated content before relying on or submitting it.
Service providers and AI processing
We use service providers to run JobPeel. These include Firebase for authentication, email verification, password recovery, and data storage; Resend for the one-time welcome message sent to a new account and for receiving and forwarding support email as described above; Anthropic for Claude-powered analysis and generation; Stripe for paid subscriptions; Vercel for hosting and product analytics; and Sentry for error monitoring when that integration is enabled.
Resume, profile, and job information included in a generation request may be sent to our AI provider so it can produce the requested draft. When you use job-link or screenshot analysis, the page URL and readable job-page content or the screenshot image may also be sent to that provider to extract job details. Provider handling is also governed by the provider terms and settings applicable to our account.
Where drafts and files are stored
Uploaded PDF files are checked and parsed for text during the request; JobPeel does not keep the uploaded PDF file in its storage. The extracted resume text, job details, tone, open cover-letter draft, and unsaved tracker edits are saved automatically in this browser's local storage so a failed request or refresh does not erase your work. Clear draft removes this workspace copy and records a browser-local choice not to restore your private account career context automatically; it does not delete that account copy. You can discard a tracker edit by closing its editor and confirming.
When you save a reviewed resume or successfully generate a letter, JobPeel stores a bounded account copy of the resume text so it can be available across browsers and devices and in Resume Builder. The text is returned only through an authenticated private request. Saving another reviewed resume replaces this account copy. Choosing Continue without a resume during an active setup removes the setup copy, and deleting your account removes it with the rest of your server workspace.
Each successful generation creates or updates an application record and generated cover letter in your JobPeel workspace. Later edits remain browser-local until you choose Save or Update. JobPeel also stores up to 20 Resume Builder records that you choose to save to your account. Unsaved Resume Builder edits and retry state stay in this browser only. Browser-local drafts do not automatically synchronize between devices and may remain on another device until you clear that browser's site data.
Public-tool continuity is optional and browser-local. Only when you choose a tool's save or continue action does JobPeel store diagnostic answers or interview-rate counts in this browser's local storage, or job-description and resume text in this tab's session storage. The sensitive pre-auth handoff is tab-scoped, not UID-scoped. Only after you authenticate and explicitly use it can JobPeel copy it into a browser draft keyed to the signed-in UID. A handoff is not sent to JobPeel's servers merely because it is stored in your browser.
JobPeel accepts a public-tool handoff for no more than 24 hours. Invalid or expired records are removed when JobPeel reads them. Diagnostic and interview-rate records are removed after a successful import or when you discard them. The job-and-resume handoff is removed after you use or skip it and is scoped to the current browser-tab session. You can remove remaining copies sooner by clearing JobPeel site data; closing the tab ordinarily clears its session storage.
Sharing
We share information with service providers only as needed to operate JobPeel, with authorities when legally required, or in connection with a business transaction such as a merger or acquisition. We may also share information at your direction. We do not sell your personal information for money.
A progress report becomes public only when you explicitly create its link after recording an interview or offer. Anyone with that link can view and copy the selected aggregate fields. You can revoke the link from the tracker, but revocation cannot erase copies another person already made. Referral pages expose only a stable opaque code and aggregate conversion counts to the referring account; they do not disclose referred-account identities.
Retention and your choices
We retain account and workspace information while your account is active. Operational logs, provider backups, and de-identified or limited billing, webhook, deletion, and abuse-prevention records may remain for their documented security, accounting, or legal retention periods. Current deletion safeguards assign limited identifiers a five-year retention period; provider deletion after that expiry may not be immediate. Those safeguards do not retain your resume or cover-letter content.
Active progress reports expire after 180 days and are removed sooner when you revoke them or delete your account. Referral visit records expire after 90 days; account-linked referral attribution and aggregate referral records are removed through the supported account-deletion workflow, subject to limited operational retention described above.
You can update profile information and permanently delete your account from Settings. Account deletion immediately cancels an active JobPeel subscription, removes the server workspace and sign-in, and clears the cover-letter and Resume Builder drafts on the device used for deletion. It cannot clear browser-local copies on your other devices. To request access, correction, export, or help with deletion, contact support. We may verify your identity, and records required by law or legitimate security needs may be retained.
Security and international processing
We use administrative, technical, and organizational measures intended to protect information, but no online service can guarantee absolute security. JobPeel and its providers may process information in countries other than your own, subject to applicable legal safeguards.
Children and changes
JobPeel is not directed to children under 13, and we do not knowingly collect personal information from them. We may update this policy as the product or law changes. We will post the updated version here and revise the date below; material changes may also be communicated through the service or email.
Contact us
For privacy questions or requests, email support@jobpeel.com. Include enough detail for us to understand the request, but do not email passwords or sensitive identity documents unless we specifically request a secure verification method.