Privacy
Last updated 8 September 2026.
Without an account, your resume stays in your browser
The builder works without signing in, and that is the default. Everything you type is saved to IndexedDB, a storage area belonging to this site inside your own browser. It is not transmitted to us. Clearing your browser data, or using the “Clear all data” button in the builder, deletes it permanently.
The practical consequence: we cannot recover your resume for you, and we cannot read it either. Both follow from the same design.
If you create an account
An account exists for one reason: so your resumes follow you between devices. Creating one is optional, and nothing you build is sent to us until you explicitly save it.
Signing in stores your email address. If you sign in with Google we also store the name Google gives us; we do not ask Google for anything else, and we do not store your profile picture. Saving a resume stores its content, its title, and when it changed.
There is no password. You sign in with a link emailed to you, or with Google. We never hold a password, so there is none to leak, reuse, or reset. Sending that link is the only time your email address is handed to another company — a transactional email provider — and the message contains a login link and nothing else. No part of your resume is ever included.
Your files are generated on your device
The PDF, DOCX, and text files are built in your browser and handed straight to your downloads. They are never uploaded, never generated on a server, and never stored by us — with or without an account.
Optional local AI, no third-party analytics
If you choose Enhance in the cover-letter editor, a small model is downloaded once and runs in your browser. The selected paragraph and resume evidence stay on your device: they are not sent to us, to a language-model API, or to the model host, and they are never used for training. The model host receives an ordinary request for its public model files, like any other file download.
Enhance is optional, proposes wording for you to review, and is free. There are no third-party analytics or advertising scripts on the builder.
Server logs
Serving the site produces ordinary web-server logs — IP address, timestamp, and which page was requested. These record that a page was fetched. They never contain resume content: error reports are scrubbed of it, and without an account none of it reaches the server at all.
Your rights
Without an account we hold no personal data about you at all, so there is nothing for us to export, correct, or erase — your data is on your device, and the builder can delete it.
With an account, deletion is in your hands and takes effect immediately. Deleting a resume removes it and its history outright; deleting your account removes the account, every resume on it, and everything derived from them. There is no trash, no grace period, and no backup copy we could restore from, which is the same trade as the guest path: we cannot undo it for you because we did not keep it.
Export is one click and needs no request: “Download everything” on your dashboard gives you every resume on the account in the open JSON Resume format — the full content, not a summary, in a format we did not invent and other tools already read. Every resume can also be downloaded as PDF, DOCX, and plain text from the builder, for nothing and without limits.
Fields we deliberately do not have
There is no field for a photograph, date of birth, marital status, gender, or nationality. These invite discrimination in most hiring markets and are unnecessary in nearly all of them, so the app does not collect them at all rather than storing them carefully.