Privacy Policy
Last updated: 2026-06-27
CompassCV ("we", "us", "our") provides an AI-powered resume optimization service. This page explains what data we collect, how we use it, and the choices you have. We keep this policy short on purpose.
1. What we collect
We collect the minimum data needed to provide the resume service:
- Account basics — email, display name, and avatar (only if you sign in with Google or GitHub).
- Resumes you create or upload — stored in our database so we can render previews, generate exports, and feed them to the AI model when you request a rewrite.
- AI inputs and outputs — the text you submit to our bilingual transcribe / cover letter / grammar check features, and the model's responses.
- Usage metadata — request timestamps, feature used, and (when paying) billing status. We do not track you across other sites.
2. How we use it
We use your data to (a) run the core resume editor and AI features, (b) keep your account in good standing, (c) prevent abuse, and (d) send transactional emails (e.g. receipts from Paddle). We do not sell your data and we do not train third-party models on it.
3. Third parties we share with
To run the service we share specific slices of data with these vendors:
- OpenRouter — routes AI requests to underlying model providers. Receives only the text you submit for that request; your account info stays with us.
- Neon — hosts our PostgreSQL database (resumes, account rows, subscriptions).
- Netlify — hosts the web app and serverless API. Sees request metadata (IP, user agent).
- Paddle — handles billing as Merchant of Record. If you subscribe, Paddle stores your name, email, and payment method. We see only your subscription status.
- Sentry — error monitoring. Receives anonymized crash reports when something goes wrong. No resume content is included.
- Resend — transactional email delivery. If we email you, Resend handles delivery. We never share your email with marketing partners.
- GitHub — OAuth sign-in. If you choose to sign in with GitHub, we receive your GitHub user ID, display name, and (if public) email. We do not see your repos or any private data.
- Google — OAuth sign-in. If you choose to sign in with Google, we receive your Google user ID, display name, and email.
Cookies & local storage
We use a small number of strictly-necessary cookies (your auth session) and your browser local storage (to remember UI preferences and an anonymous device fingerprint for the free tier). We do not use advertising or cross-site tracking cookies.
Data retention
We keep your account and resume data as long as your account is active. If you delete your account, all personal data is removed within 30 days, except where retention is required by law (e.g. tax records from Paddle). Anonymized error logs may persist longer.
Children's privacy
CompassCV is not intended for children under 16. We do not knowingly collect personal data from children. If you believe a child has signed up, contact us and we will delete the account.
4. Your rights
You can export or delete your resumes at any time from the dashboard. To delete your account and all associated data, sign in and use Settings → Delete account, or email us at the address below and we will process it within 7 days.
5. Contact
Questions or deletion requests: zxd564090348@gmail.com. We respond within 7 days.