Privacy Policy
Last updated
AutoApply AI is operated by AutoApply AI (“we”, “us”). This policy explains what we collect when you use AutoApply AI, why we need it, who helps us process it, and the choices you have. We do not sell your personal data.
1. What we collect
- Account details: your name, email address, and a hashed password, or the identity returned by Google or LinkedIn if you sign in with them.
- Your CV: the file you upload and the structured profile parsed from it (contact details, work history, education, skills), plus any corrections you make.
- Job preferences and agent settings: target roles, locations, work modes, salary range, companies to exclude, application caps, and the answers you give for common screening questions.
- Job-site credentials: if you connect a job site such as LinkedIn, the login you provide and the browser session the agent uses to act on that site for you.
- Application records: the jobs found for you, the tailored CVs and cover letters generated for each, the answers submitted, status history, and a screenshot of the submitted form where one is captured.
- AI usage: a record of each AI request made on your behalf (purpose, model, token counts and estimated cost), used to enforce spending limits.
- Notifications: the in-app and email notifications we send you and your notification preferences.
- Technical data: your IP address is used transiently to rate-limit sign-in and sign-up attempts, and our servers keep standard operational logs.
2. How we use it
We use your data only to provide the service you signed up for:
- to parse your CV and let you correct the result;
- to find job listings that match your preferences and score how relevant they are;
- to tailor your CV and cover letter for each job, using only facts already in your CV;
- to fill in and submit applications you approve (or, if you switch on auto-submit, that the agent prepares) on the job sites and employer pages involved;
- to send account emails such as verification, password resets and notifications;
- to secure the service, prevent abuse, and keep AI costs within set limits.
When an application is submitted, the documents and answers in it are sent to that employer or job site, whose own privacy policy then applies.
3. Who processes it
- OpenAI, when AI features are enabled on our deployment: CV text and job descriptions are sent to OpenAI’s API to structure your CV, tailor documents, draft answers to simple screening questions, and compute relevance between your CV and job listings. If AI is unavailable, a non-AI fallback is used instead.
- Our email provider, to deliver account and notification emails.
- Google and LinkedIn, only if you choose to sign in with them or connect a LinkedIn account for the agent to use.
- Job sources (LinkedIn, Remotive, RemoteOK) and the employer application pages the agent visits, to search for and apply to jobs.
- Our hosting providers, which store and run the service on our behalf.
4. How we protect it
Uploaded CVs, generated documents and form screenshots are encrypted before they are written to storage. Parsed CV data, cover letters, stored job-site passwords, saved job-site sessions and OAuth tokens are encrypted at the database level, so a database copy alone does not reveal them. Encryption keys are kept separately from the database. Passwords you use to sign in to AutoApply AI are stored only as a one-way hash.
No system is perfectly secure. If we become aware of a breach affecting your data, we will notify you as required by law.
5. How long we keep it
We keep your data while your account is open. When you delete your account, we immediately:
- deactivate the account and block further sign-in;
- remove your sign-in password and replace your email address with a placeholder;
- delete linked Google/LinkedIn sign-ins, stored job-site credentials, and pending email verification or reset links;
- stop the agent and cancel any runs that have not started.
Deletion is a soft delete: your remaining records (CV, documents, applications, notifications and AI usage) are kept in the deactivated account until they are permanently purged. If you want them erased sooner, contact us.
6. Your rights and choices
- Access and portability: download a copy of your data as a JSON file from Settings → Export my data.
- Correction: edit your profile, parsed CV and preferences at any time in the app.
- Deletion: delete your account from Settings, or ask us to.
- Control over sending: keep review-before-send on (the default), pause the agent, or disconnect a job site whenever you like.
Depending on where you live you may have further rights, such as to object to or restrict processing or to complain to a data-protection authority. To exercise any right, email support@autoapply.ai.
7. Cookies and local storage
We use only the cookies needed to keep you signed in and protect sign-in requests (a session cookie and related security cookies). Your light/dark theme choice is saved in your browser’s local storage. We do not use advertising or analytics cookies or third-party trackers.
8. Children
AutoApply AI is intended for job seekers who are old enough to work and is not directed at children under 16.
9. Changes to this policy
If we make material changes, we will update the date above and, where appropriate, notify you by email or in the app before the changes take effect.
10. Contact
Questions or requests about your data: support@autoapply.ai. See also our Terms of Service.