Privacy notice

Updated September 30, 2026. APWICO is operated from Texas, United States. Contact support@apwico.com about privacy or your information.

Your resume and your choices

The resume builder stores local drafts in your browser. Clearing browser data can erase them, and other people using the same browser profile may see them. A local draft is not automatically uploaded simply because you visit the website. Word and PDF files selected through the builder's Upload control are parsed locally in your browser and are not sent to APWICO's server.

When account features are available, we use your email to sign you in and maintain your account. Cloud saving requires your choice to link the draft; saved content and recovery revisions are processed by Supabase. The builder identifies local versus account-saved state. You can remove the account-saved master resume and its retained revisions from the builder; that action reopens the earlier local draft on that device and does not delete separate job-specific versions. Availability of a feature is shown in the app.

Jobs and Match Analysis

When you choose to search for jobs, APWICO sends the job title, country code and workplace preference to Techmap. A city or region and salary preference are used by APWICO to filter the returned public listings and are not intentionally sent to Techmap. Search attempts and refresh times are recorded to enforce account limits. Public search results may be cached and reused for an identical search without including account information in the cache.

Jobs you explicitly save, your search preferences, Match Analysis evidence and clarifications, and any job-specific resume you create are stored with your account. A job-specific resume is separate from your master resume. Removing a saved-job bookmark or master resume does not automatically remove an existing job-specific version; contact support if you want help deleting account content.

You may voluntarily report a bounded outcome for a saved job, such as preparing or submitting an application, receiving an interview or offer, declining or withdrawing, a broad time-saved range, or a 1–5 clarity or confidence rating. These records require explicit consent, are labelled self-reported, and are stored separately from platform-observed actions. They contain an account and saved-job identifier, the selected outcome, optional date and bounded feedback, consent/methodology versions and timestamps—not resume text, job text, job URLs, notes or contact details. APWICO does not treat a self-report as proof that the product caused the result.

APWICO Job Capture extension

The optional Chrome extension reads a page only when you click its toolbar action. It handles the current page URL and public job-posting content needed for its single purpose: letting you capture, review and send one job posting to APWICO. This can include the job title, employer, description, location, workplace and employment type, structured salary when the page supplies it, the source URL with its query and fragment removed, capture time, and edits you make in the extension. Job text or URL paths may contain personal information, so review and remove anything you do not want to send.

The extension keeps one bounded capture in Chrome's session-only extension storage for up to 30 minutes of inactivity so you can review or retry it. Successful delivery, choosing discard, expiry, or restarting Chrome clears that pending extension copy. The extension does not use local or sync storage, collect your browsing history in the background, read cookies, passwords or resume drafts, or send extension analytics. For supported Greenhouse pages it may request the exact public job and board records from Greenhouse's anonymous HTTPS endpoints; those endpoints receive ordinary connection information such as your IP address. Other supported metadata is processed in your browser.

The extension sends the details you review only to https://apwico.com/ after you choose Send. Receipt opens a review in the web app and does not save anything to an account until you sign in and explicitly choose Save job and see how I match. Saved captures, Match Analysis and any job-specific resume then follow the account storage, provider and deletion practices described in this notice. The extension never receives your APWICO authentication token, resume content, payment information, or AI credentials.

APWICO uses information received through the extension only to provide, maintain, secure and improve the extension's disclosed job-capture purpose. We do not sell that information, use or transfer it for personalized advertising, or use it to determine creditworthiness. We transfer it only as needed to provide or secure the requested feature, comply with law, or as otherwise permitted by the Chrome Web Store User Data Policy. People do not read extension user data except with your specific consent for support, when necessary for security or legal obligations, or after aggregation and anonymization for lawful internal operations. APWICO's use of information received through the extension complies with the Chrome Web Store User Data Policy, including its Limited Use requirements.

Generated documents and AI suggestions

If you choose a server-generated PDF or Word document, your resume is sent to our server for generation. We keep download-accounting records, such as an account identifier, request identifier and format-bound content fingerprint, to enforce the shared allowance and prevent duplicate accounting for safe retries. The document routes do not intentionally save the resume or generated file as a separate permanent server copy.

If you explicitly request AI tailoring, selected resume fields and the job description are sent to OpenAI. We omit the dedicated name, email, phone, personal location and website fields from that request. Information you include inside summaries, job descriptions or section entries may still be sent; remove details you do not want processed. AI suggestions need your review. We request that response storage be disabled, but providers may retain information for abuse prevention or other obligations under their own policies.

Service providers

Vercel hosts the app and server functions. Supabase supports sign-in and account storage. Resend delivers sign-in emails. Stripe processes payments when checkout is available; we do not receive or store your full card number. OpenAI processes requested AI suggestions. Techmap supplies public job-search results. These providers may process information outside your country.

Website analytics

We use Vercel Web Analytics and Speed Insights to understand aggregate traffic, product-funnel actions and performance. This can include public pages visited, referrer hostname, approximate country, browser and device type, standard campaign tags, Core Web Vitals, and coarse events such as starting the builder, completing a resume, viewing Jobs or Match, reviewing evidence or a suggestion, recording a bounded product decision, importing a document, and starting or completing an export or checkout. Campaign tags and first-touch referrer hostname are kept only in session storage for the current browser session. Event properties use a closed, content-free vocabulary such as anonymous/authenticated, Free/Pro, product surface, selected entry journey, product surface, document/storage scope, template identifier, PDF/DOCX, bounded decision and success/failure category. We do not send resume or job text, names, contact details, account or payment identifiers, URLs with private parameters, AI prompts or responses, authentication tokens, or raw user searches. Analytics failures do not affect product behavior, and we do not use session replay, advertising trackers or fingerprinting.

Use and retention

We use information to provide the features you request, protect accounts, enforce usage limits, troubleshoot failures and meet legal obligations. We do not sell resume content or use it for targeted advertising. Access and security logs may include IP addresses and request metadata. Application diagnostics use fixed error categories, timing, feature flags and generated request identifiers without resume text or secret credentials. Browser diagnostics stay in temporary memory, and extension delivery diagnostics remain in its local console.

Local drafts remain until you remove them from your browser. Cloud content and account records remain until removed through the service or a verified support request, subject to necessary backup, security and legal retention. Billing records may need to remain after account deletion. We do not promise that deleted information disappears immediately from provider backups.

Access, correction and deletion

You can edit your resume and download generated documents. Contact support to request access, correction, account deletion, or to ask about rights available in your location. We may need to verify that the request concerns your account. Do not email identity documents unless we explain why they are needed and provide a suitable method.

Safe use

A resume generally does not need government identification numbers, banking details or sensitive personal records. Avoid adding them. No online service can promise complete security. This service is not designed for children under 13.

Changes

We will update this notice when our practices change and provide additional notice where required. Contact support with any questions before using a feature.