CV Optimization App
Privacy Policy
Effective date: {PRIVACY_POLICY_EFFECTIVE_DATE}
This policy describes the current temporary, no-account CV optimization service. Jurisdiction-specific rights and final controller details remain subject to legal review.
Who is responsible
CVOptimizationApp is the product. The intended data controller is {LEGAL_OPERATOR_NAME} — not configured; public launch blocked, at {BUSINESS_ADDRESS} — not configured; public launch blocked. The service is for customers aged 18 or older.
Data you provide and why it is used
You provide a PDF or .docx CV and one pasted job description. They are used to validate input, rewrite and reorganize existing facts for the selected role, generate one PDF, prevent abuse, and provide protected delivery. We do not create an account, permanent profile, dashboard, CV history, or job-description history.
The working legal-basis model is contract or service performance for delivery; legitimate interests for security, abuse prevention, and limited operational debugging; and legal obligations for payment, tax, or accounting records where applicable. Consent is used only where law genuinely requires it. The applicable privacy regime remains {PRIVACY_REGIME} — not configured; public launch blocked.
AI and payment processing
During an active workflow, CV and job-description text and service instructions are sent to Google Gemini to structure PDF facts and produce optimized content. The repository uses the Gemini Developer API Generate Content path; the exact contracted plan, legal entity, processing region, provider retention, training treatment, and transfer safeguards are not yet confirmed for production. Paid production remains blocked until they are verified.
Customer payment processing is inactive. No card is requested in free mode and no payment provider is displayed. If paid mode is approved later, payment details will be handled by the configured provider; this service must not collect raw card details directly.
Retention and deletion
Your CV and job description are cleared after completion or an unrecoverable failure. For a recoverable retry, inputs may remain in process memory for up to 30 minutes, with expired state removed by the next cleanup sweep (within up to 30 additional seconds). The PDF link is single-use: access is consumed when the server starts the response. If the connection then fails, the same link may not work. An unused PDF expires after 20 minutes and is physically removed by the next cleanup sweep.
Content-free terminal workflow state is process-local for no longer than 30 minutes in the current configuration. Unrecoverable failures clear CV and job-description text; recoverable failures may keep them only for the retry window, up to 30 minutes. A final PDF has a single-use protected link. Access is consumed when the server authorizes and starts the PDF response, and the file is deleted after that stream closes. If unused, expiry is enforced by the next bounded cleanup sweep. The PDF may not be recoverable after access starts, even if the connection is interrupted.
The application emits content-free operational metadata, with target operational log retention of 30 days and security-log retention of up to 90 days. Hosting enforcement has not yet been verified and is a production blocker. CV text, job-description text, filenames, prompts, model output, tokens, and PDF content must not enter application logs or analytics.
Analytics, cookies, and technical state
Non-essential analytics and session replay are disabled at launch. The browser does not store the CV, job description, or workflow capability in localStorage, sessionStorage, IndexedDB, or a service-worker cache. Only essential request and security state may be used. No cookie banner is shown because non-essential cookies are disabled; if that changes, tracking must remain off until any required consent is obtained.
Subprocessors, transfers, and security
Google Gemini is the only AI integration present in the application. The hosting provider, error-reporting provider, other production subprocessors, processing regions, and international-transfer safeguards are not yet confirmed. No browser error-reporting or third-party analytics provider is active. We use reasonable technical safeguards, but no online service can promise complete security.
Your requests
Rights depend on the applicable jurisdiction and are not stated here as universal. To ask about access, correction, objection, restriction, deletion, or another applicable right, use the privacy contact on the Contact page. For an early-deletion request, include the order reference. Deletion is best effort if data still exists; immediate deletion cannot be guaranteed, and minimal records required by law may remain.