Privacy Policy
Last Updated: December 29, 2024 | Effective Date: December 29, 2024
1. Introduction
ResAlign AI, Inc. ("ResAlign," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered career alignment platform, including our website at resalign.com, mobile applications, and related services (collectively, the "Service").
By using our Service, you consent to the data practices described in this Privacy Policy. If you do not agree with the practices described herein, please do not use our Service.
2. Information We Collect
2.1 Information You Provide
We collect information you voluntarily provide when using our Service:
- Account Information: Email address, name (if provided), and authentication credentials when you create an account
- Resume Data: Resumes and CVs you upload, including work history, education, skills, certifications, and contact information contained therein
- Job Descriptions: Job postings and descriptions you submit for analysis
- Profile Information: Target roles, career preferences, and professional goals you specify
- Communications: Messages and feedback you send to us
2.2 Information Collected Automatically
When you access our Service, we automatically collect certain information:
- Device Information: Device type, operating system, browser type, and unique device identifiers
- Usage Data: Pages viewed, features used, time spent on pages, and interaction patterns
- Log Data: IP address, access times, referring URLs, and error logs
- Cookies and Similar Technologies: Information collected through cookies, pixels, and similar tracking technologies
2.3 Information from Third Parties
We may receive information from third-party services:
- Authentication Providers: If you sign in using Google OAuth, we receive your email and basic profile information
- Analytics Services: Aggregated usage and performance data
3. How We Use Your Information
We use the information we collect for the following purposes:
3.1 Providing the Service
- Analyzing your resume against job descriptions to generate compatibility scores
- Identifying skill gaps and providing personalized recommendations
- Generating career roadmaps and learning resource suggestions
- Managing your account and providing customer support
3.2 Improving the Service
- Understanding how users interact with our platform
- Developing new features and improving existing functionality
- Training and improving our AI models (using anonymized, aggregated data only)
- Conducting research and analytics
3.3 Communications
- Sending service-related notifications and updates
- Responding to your inquiries and support requests
- Sending promotional communications (with your consent)
3.4 Security and Legal
- Protecting against fraud, abuse, and security threats
- Enforcing our Terms of Service
- Complying with legal obligations
4. AI Processing and Personal Data Protection
Our Service uses artificial intelligence to analyze your resume and job descriptions. We take special precautions to protect your personal information during this process:
4.1 PII Masking
Before sending your resume data to our AI analysis systems, we automatically detect and mask personally identifiable information (PII), including:
- Full names
- Email addresses
- Phone numbers
- Physical addresses
- Social Security numbers or national ID numbers
- URLs to personal websites or social profiles
This means our AI models analyze your professional qualifications and experience without processing your identifying personal details.
4.2 Third-Party AI Services
We use third-party AI services (including Google Gemini) to power our analysis capabilities. Only sanitized, PII-masked data is sent to these services. These providers have their own privacy policies and data handling practices, and we select providers that maintain appropriate security standards.
4.3 Automated Decision-Making
Our AI generates compatibility scores and recommendations automatically. These outputs are informational tools to assist your job search and are not used to make binding decisions about your employment. You always retain the ability to interpret and act on (or disregard) our AI-generated insights.
5. How We Share Your Information
We do not sell, rent, or trade your personal information. We may share your information in the following circumstances:
5.1 Service Providers
We share information with third-party vendors who help us operate and improve our Service:
- Supabase: Database hosting, authentication, and file storage
- Google Cloud / Gemini: AI analysis and processing (receives PII-masked data only)
- Firecrawl: Web scraping for company research (receives job posting URLs only)
- Reducto: Document parsing and extraction
- Analytics providers: Usage analytics and performance monitoring
5.2 Legal Requirements
We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., court orders, subpoenas, or government regulations).
5.3 Business Transfers
If ResAlign is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change and any choices you may have regarding your information.
5.4 With Your Consent
We may share your information for other purposes with your explicit consent.
6. Data Security
We implement appropriate technical and organizational measures to protect your information:
- Encryption: Data is encrypted in transit (TLS/SSL) and at rest
- Access Controls: Strict access controls limit who can access your data
- Secure Infrastructure: We use enterprise-grade cloud infrastructure (Supabase, Google Cloud)
- Regular Audits: We regularly review and update our security practices
- PII Masking: Personal identifiers are masked before AI processing
While we strive to protect your information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security.
7. Data Retention
We retain your information for as long as necessary to provide the Service and fulfill the purposes described in this Privacy Policy:
- Account Data: Retained while your account is active and for a reasonable period thereafter
- Resume and Analysis Data: Retained until you delete them or your account
- Usage Data: Retained in aggregated, anonymized form for analytics
- Legal Compliance: Some data may be retained longer if required by law
You can request deletion of your data at any time (see Your Rights section below).
8. Your Rights and Choices
Depending on your location, you may have certain rights regarding your personal information:
8.1 General Rights
- Access: Request a copy of the personal information we hold about you
- Correction: Request correction of inaccurate or incomplete information
- Deletion: Request deletion of your personal information
- Data Portability: Request your data in a portable format
- Opt-Out: Unsubscribe from marketing communications
8.2 Account Controls
Through your account settings, you can:
- View and update your account information
- Delete uploaded resumes and job descriptions
- Delete your account entirely
- Export your data
8.3 Cookie Preferences
You can control cookies through your browser settings. Note that disabling certain cookies may affect the functionality of our Service.
9. Information for European Users (GDPR)
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR):
9.1 Legal Basis for Processing
We process your personal data based on the following legal grounds:
- Contract Performance: Processing necessary to provide the Service you requested
- Legitimate Interests: Processing for our legitimate business interests (e.g., improving the Service, security)
- Consent: Processing based on your explicit consent (e.g., marketing communications)
- Legal Obligation: Processing required to comply with applicable laws
9.2 Additional GDPR Rights
- Right to Restriction: Request restriction of processing in certain circumstances
- Right to Object: Object to processing based on legitimate interests
- Right to Withdraw Consent: Withdraw consent at any time where processing is based on consent
- Right to Lodge a Complaint: File a complaint with your local data protection authority
9.3 International Data Transfers
Your data may be transferred to and processed in the United States and other countries. We ensure appropriate safeguards are in place for such transfers, including Standard Contractual Clauses where required.
10. Information for California Residents (CCPA/CPRA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA):
10.1 Categories of Personal Information
In the past 12 months, we have collected the following categories of personal information:
- Identifiers (email address, name, IP address)
- Professional or employment-related information (resume content)
- Education information (from resumes)
- Internet or network activity (usage data, browsing history on our Service)
- Inferences drawn from the above (compatibility scores, skill assessments)
10.2 Your CCPA Rights
- Right to Know: Request disclosure of the categories and specific pieces of personal information we collected
- Right to Delete: Request deletion of your personal information
- Right to Correct: Request correction of inaccurate personal information
- Right to Opt-Out: Opt out of the "sale" or "sharing" of personal information
- Right to Non-Discrimination: Not receive discriminatory treatment for exercising your rights
10.3 Do Not Sell or Share
We do not "sell" or "share" your personal information as those terms are defined under the CCPA/CPRA. We do not exchange your data for monetary consideration or share it for cross-context behavioral advertising.
10.4 Exercising Your Rights
To exercise your CCPA rights, contact us at privacy@resalign.com or use the controls in your account settings. We will verify your identity before processing your request.
11. Children's Privacy
Our Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal information from a child under 18, we will take steps to delete that information promptly. If you believe we have collected information from a child under 18, please contact us at privacy@resalign.com.
12. Third-Party Links and Services
Our Service may contain links to third-party websites, services, or resources that are not operated by us. We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party sites or services. We encourage you to review the privacy policies of any third-party sites you visit.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. For significant changes, we may also send you an email notification. Your continued use of the Service after any changes constitutes your acceptance of the updated Privacy Policy.
14. Contact Us
If you have any questions about this Privacy Policy, your personal information, or wish to exercise your privacy rights, please contact us:
ResAlign AI, Inc.
Privacy Inquiries: privacy@resalign.com
General Inquiries: support@resalign.com
Website: resalign.com
For GDPR-related inquiries, you may also contact your local data protection authority.