Data Policy
Last updated: September 16, 2026
1. What This Policy Covers
This Data Policy is the technical companion to our Privacy Policy: where your data lives, how long we keep it, what happens when you delete something, and what export gives you. It describes the systems we run today.
2. Where Your Data Is Stored
| Data | Where it lives | Notes |
|---|---|---|
| Account, sign-in methods, sessions, two-factor and passkey data, API keys | Primary database (PostgreSQL) | Passwords are hashed; API key secrets are encrypted before storage |
| Resumes, previous versions, AI resume reviews, view/download counts | Primary database | Resume content is stored as structured data inside the record |
| Applications, notes, attachments you upload, recruiter details you enter | Primary database + object storage | Uploaded documents are stored as files, referenced from the record |
| Job-agent conversations, attachments, and the resume snapshots they change | Primary database + object storage | Attachments are stored in a private area that is not publicly readable |
| Job-search preferences, including salary expectations | Primary database + object storage | Your uploaded CV for the agent is stored privately |
| Uploaded images (resume photos, cover images) | Object storage, publicly readable by URL | See section 4 for how this interacts with deletion |
| Short-lived technical state: in-progress AI streams, rate-limit counters, repeated-view checks | In-memory caches and a key-value store (Redis) | Cleared on expiry or restart; not used to build profiles |
| Public job postings we collect from company job boards | Primary database | Public postings, not personal data about you |
3. How Long We Keep It
| Data | Retention |
|---|---|
| Account, resumes, versions, applications, job-agent data and uploads | While your account is active |
| Email verification, password-reset and sign-in codes | Minutes — they expire and are then discarded |
| Sessions | Until they expire or you sign out |
| View/download statistics | While the resume exists |
| In-progress AI streams and abuse-prevention counters | Hours at most |
| Billing, invoice and tax records (once paid plans are live) | For the period tax and accounting law requires, even after account deletion; we keep these because we are legally obliged to |
| Marketing consent and send history (once marketing email is live) | For as long as you are subscribed, plus a short proof period after you unsubscribe |
4. Deletion
You can delete individual items at any time — a resume, an application, a job-agent conversation, an uploaded attachment, an API key or a stored AI provider key. You can delete your whole account from your account settings.
When you delete your account, we:
- delete your uploaded files from object storage;
- delete your account record, which also removes your resumes, versions, analyses, statistics, applications, job-agent conversations and preferences, job digests and stored AI provider keys; and
- sign you out and invalidate your sessions and any connected API clients.
Known limitations, stated plainly. Uploaded images are served from a public URL with a one-year cache lifetime, so a copy can remain in browser and CDN caches after deletion until that cache expires. If a file-removal step fails, our systems log it but the account deletion still proceeds — if you want us to confirm that everything is gone, ask us and we will verify it for you. Short-lived technical state (in-progress AI streams, rate-limit counters) expires on its own rather than being deleted immediately.
5. Export
From your account settings you can export your profile and resume data as a structured file. Export today covers your account details and your resumes; we are extending it to also include applications, job-agent history, agent-modified snapshots, statistics and your uploaded files, so that a single export gives you everything you have put into the Service.
Separately, any resume can be downloaded as PDF and other document formats from the builder at any time.
6. Third Parties and AI
We use a small set of providers to run the Service — hosting and storage, email delivery, sign-in providers you choose, and the AI model provider you configure with your own key. Today your AI content is sent directly to the provider you choose, under your own account with them. We do not sell your data and we do not use your content to train AI models.
When we introduce a built-in AI service or paid billing, we will name those providers in this policy, along with what they handle, before they process any of your data.
7. Security
- Data is encrypted in transit.
- Passwords are stored only as hashes; third-party API keys are encrypted with AES-256-GCM.
- Production systems are access-controlled, and administrative access is restricted to named operators.
- We keep backups so the Service can be restored; backups age out on a rolling basis.
- Private uploads (job-agent attachments and CVs) are not publicly readable.
In the event of a personal-data breach we will notify affected users and the relevant authority within the timelines required by law.
8. Where We Process Data (Cross-Border Transfers)
Our infrastructure, and the providers listed above, may process your data outside your country of residence. Where we transfer personal data internationally we rely on appropriate safeguards and standard contractual clauses with our providers.
Deployment details still to be published here before launch: [HOSTING REGION], [OBJECT STORAGE REGION], [EMAIL PROVIDER + REGION], [BACKUP REGION + RETENTION].
9. Contact
For any data request — access, export, correction, deletion, or a question about this policy — email data@oxyresume.com or use our Contact page.