Privacy Policy
Last updated: June 20, 2026
At Perfecto.cv (“Company”, “we”, “us”, or “our”), your privacy is our highest priority. This Privacy Policy explains how we collect, use, disclose, and protect information about you when you use our website and services. By using the Service, you consent to the practices described in this policy.
1. Information We Collect
We collect the following categories of information:
- Account Information: Name, email address, and hashed password when you register.
- Resume & Vault Data: Professional experience, skills, education, and other content you upload to your Vault.
- Usage Data: Pages visited, features used, timestamps, and interaction logs collected automatically.
- Payment Information: Billing details processed securely by Stripe. We never store raw card numbers.
- Device & Technical Data: IP address, browser type, operating system, and referrer URL.
2. How We Use Your Information
We use your information to:
- Provide, operate, and improve the Service.
- Generate AI-tailored resume outputs based exclusively on your Vault content.
- Process payments and manage your subscription.
- Send transactional emails (e.g., account confirmation, export readiness).
- Detect and prevent fraud, abuse, or security incidents.
- Comply with legal obligations.
How AI processing works
When you tailor a resume, the relevant content from your Vault is sent to our AI providers — currently Google Gemini, with Groq as a fallback — to generate your output. We send only what is needed to produce your result, we never use your content to train our own models, and we never sell your data. Each provider processes this data under its own published API terms. Your Vault and saved resumes are stored by us and stay under your control — you can delete them at any time.
3. Data Sharing and Sub-Processors
We do not sell your personal data. We share data only with trusted sub-processors necessary to operate the Service:
- Supabase — Secure database and authentication (hosted in EU or US region per your account).
- Stripe — Payment processing. Governed by Stripe’s Privacy Policy and PCI-DSS compliance.
- AI providers — Google Gemini (primary) and Groq (fallback), used to generate your tailored resume. We never use your data to train our own models.
- Vercel / Cloudflare — Hosting and edge delivery.
4. Data Retention
We retain your account and Vault data for as long as your account is active. You may delete your account and all associated data at any time from your account settings. Upon deletion, we purge your data within 30 days, except where retention is required by law (e.g., billing records retained for 7 years).
5. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate or incomplete personal data.
- Request deletion of your personal data (“right to be forgotten”).
- Object to or restrict certain processing of your data.
- Receive a machine-readable copy of your data (data portability).
To exercise any of these rights, contact us at contact@perfecto.cv.
6. Cookies and Tracking
We use strictly necessary cookies to maintain your authenticated session. We do not use third-party advertising cookies or sell data to ad networks. Analytics, if used, are configured with IP anonymization and no cross-site tracking.
7. Security
We implement industry-standard security measures including encryption in transit (TLS 1.3), encryption at rest (AES-256), row-level security on all database tables, and regular third-party security audits. Despite our best efforts, no method of transmission over the Internet is 100% secure.
8. Children’s Privacy
The Service is not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us immediately.
9. International Transfers
Your data may be processed in countries outside your own. We ensure such transfers comply with applicable data protection laws through Standard Contractual Clauses (SCCs) or equivalent mechanisms approved by the relevant supervisory authority.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or prominent notice on the Service at least 30 days before the change takes effect.
11. Contact Us
For privacy-related questions or to exercise your rights, please contact our Data Protection Officer at contact@perfecto.cv or write to us at: Perfecto.cv, 548 Market St, San Francisco, CA 94104.