Privacy Policy
How EditResume handles your data
Last updated: November 19, 2025
This Privacy Policy explains how EditResume, Inc. (“EditResume,” “we,” or “us”) collects, uses, shares, and safeguards information when you use the editresume.io web application, the EditResume Job Saver Chrome extension, and related services (collectively, the “Services”).
1. Data we collect
We collect the following categories of information:
- Account data you provide: email address, display name, workspace or team selections, billing preferences, and support communications.
- Content data you submit: resumes, cover letters, job descriptions, AI prompts, and feedback you store inside the app.
- Extension-collected data: when you click “Save Job” on LinkedIn job pages, we capture the job title, company, location, salary information, description, posting URL, and the timestamp of the save action. The extension does not read or transmit content from non-job pages.
- Device and usage data: IP address, browser/OS version, referring URLs, crash logs, and feature usage metrics collected via HTTPS requests and server logs.
- Payment data: limited billing information handled by Stripe (card holder name, billing ZIP/postal code, last four digits). Full card details never reach EditResume servers.
2. How we use the data
- Authenticate you, maintain your workspace, and sync data across devices.
- Generate AI-powered resume insights, grammar fixes, and job matches based on the content you provide.
- Operate the Chrome extension, including securely storing OAuth tokens inside Chrome sync storage and routing LinkedIn job data to your EditResume account.
- Process payments, manage subscriptions, and handle invoices through Stripe.
- Monitor usage, prevent abuse, troubleshoot issues, and comply with legal requests.
- Send transactional emails (account alerts, export notifications) and service updates.
For users in the EEA or UK, we rely on the following legal bases: performance of a contract (providing the Services), legitimate interests (service quality, security, fraud prevention), and consent (marketing emails where applicable). You may withdraw consent at any time by unsubscribing or emailing support@editresume.io.
3. Extension-specific details
- The extension activates only on linkedin.com job URLs or domains you explicitly add.
- Authentication tokens are scoped to your account, stored via Chrome storage.sync, and encrypted in transit to our servers.
- You can delete extension data by opening chrome://extensions → EditResume Job Saver → Remove, or by clearing the extension data from the options page.
- Removing the extension or revoking access in your EditResume account immediately invalidates stored tokens.
4. When we share data
We do not sell personal data. We share only what is necessary with trusted processors:
- Google Firebase for authentication and secure session management.
- Stripe for payments, invoicing, and fraud prevention.
- OpenAI (and similar AI vendors) to generate improvements you request.
- Hosting and infrastructure providers (Render, Vercel, AWS or equivalent) to run the Services.
- Customer support and analytics tooling that helps us respond to issues.
Each processor is bound by data processing agreements that restrict their use of your data to the services they provide to us. We may disclose information if required by law, to protect rights and safety, or in connection with a merger or acquisition.
5. Data retention
We retain account and content data while your account is active. You may delete resumes, job saves, or your whole account at any time from Settings → Account → Delete Account inside the web app. If you request deletion via support@editresume.io we will remove or anonymize personal data within 30 days unless we must retain it for legal, security, or billing purposes.
6. Security
Data is encrypted in transit (TLS 1.2+) and at rest. Access to production systems is limited to trained personnel using role-based controls and audit logging. We regularly review dependencies, rotate credentials, and monitor for suspicious behavior. No transmission method is 100% secure, so we encourage you to use strong, unique passwords and enable browser security features.
7. International transfers
EditResume is based in the United States. When you use the Services from other regions, your data may be transferred to the U.S. or other countries where our processors operate. We rely on Standard Contractual Clauses or equivalent safeguards for cross-border data transfers.
8. Your rights and choices
- Access: download your resume and job data from the dashboard.
- Correction: update profile details or edit stored content at any time.
- Deletion: remove individual files or delete your account via settings or email.
- Objection and restriction: opt out of marketing emails or limit processing by contacting us.
- Portability: request a machine-readable export of your data.
Please email support@editresume.io with the subject line “Privacy Request” to exercise these rights. We may need to verify your identity before fulfilling a request.
9. Children
The Services are intended for individuals 16 and older. We do not knowingly collect data from children under 16. If we learn that we processed such data, we will delete it.
10. Changes to this policy
We will post any privacy updates on this page and revise the “Last updated” date. Material changes may also be communicated via email or in-app notices. Continued use of the Services after changes become effective constitutes acceptance of the updated policy.
11. Contact
EditResume, Inc.
2261 Market Street #4836
San Francisco, CA 94114
United States
Email: support@editresume.io
Website: https://staging.editresume.io