Privacy Policy
Last Updated: January 31, 2026
1. Introduction
Welcome to The Resume Monster ("we," "our," or "us"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclosure, and safeguard your information when you use our website and services.
2. Information We Collect
A. Personal Information
When you create an account or join our waiting list, we collect personally identifiable information, including:
- Contact Information: Email address.
- Account Security: Hashed passwords.
- Profile Data: Name, phone number, location, and links to professional profiles (e.g., LinkedIn, Portfolio).
B. Resume and Career Data
To provide our resume optimization services, we collect and process the detailed information contained in your resume, including:
- Professional Experience: Job titles, company names, dates of employment, and descriptions of roles.
- Education: Degrees, schools, dates, GPA, and coursework.
- Skills & Certifications: Technical and soft skills, tools, and certifications.
- Projects & Awards: Details of personal/professional projects and awards.
- Job Descriptions: Text of job descriptions you provide for resume tailoring.
C. Usage and Analytics Data
We automatically collect certain information about your interaction with our service to improve user experience, including:
- Actions: Resume creation events, feature usage.
- Metadata: Role targets, years of experience, and location preferences (derived from your inputs).
- Device Information: We use PostHog to collect analytics data such as device type, browser information, and interaction logs.
3. How We Use Your Information
We use the collected information for the following purposes:
- Service Delivery: To generate optimized resumes, cover letters, and career advice.
- AI Processing: Your resume data and target job descriptions are sent to third-party AI providers (specifically OpenAI) to generate content and suggestions.
- Analytics: To understand how users interact with our platform and improve functionality (via PostHog).
- Communication: To send you updates, invite codes, or service-related notifications.
4. Legal Basis for Processing Personal Data (GDPR)
If you are from the European Economic Area (EEA), our legal basis for collecting and using the personal information described above depends on the Personal Information concerned and the specific context in which we collect it. We normally collect personal information from you only where:
- We need the personal information to perform a contract with you (e.g., to create your resume).
- The processing is in our legitimate interests and not overridden by your rights (e.g., for analytics and product improvement).
- We have your consent to do so (e.g., for marketing email lists).
5. Cookies and Tracking Technologies
A. Essential Cookies
We use cookies strictly for authentication and security purposes (e.g., to keep you logged in). These are known as "functional cookies" and are necessary for the website to function.
B. Third-Party Resources
- Google Fonts: We use Google Fonts to display text. Determining your IP address is required for Google to serve these fonts.
- PostHog: Uses cookies or local storage to track session analytics.
6. Third-Party Data Sharing
We do not sell your personal data. However, we share necessary data with the following third-party service providers to operate our service:
A. AI Providers (OpenAI)
We use OpenAI (e.g., GPT models) to process your resume and job description text.
- What is shared: The text content of your resume (experience, skills, summary) and the job descriptions you upload.
- Purpose: To generate optimized text, summaries, and tailoring suggestions.
- Privacy: Data sent to OpenAI is subject to their API data usage policies. We do not control OpenAI's internal data retention, but standard API usage typically does not use your data to train their models (subject to OpenAI's current terms).
B. Analytics (PostHog)
We use PostHog for product analytics.
- What is shared: User IDs (to link sessions), event data (e.g., "Resume Created"), and derived metadata (e.g., "Years of Experience").
- Purpose: To analyze product usage and improve user flow.
- Infrastructure Provider (Cloudflare): We route certain customer traffic via Cloudflare Managed Proxy. By using our service, you acknowledge that data processed for this feature will be transmitted to and processed by Cloudflare as a third-party infrastructure provider.
7. Data Retention and Security
- Storage: Your personal data and resume information are stored in our secure databases (MySQL).
- Retention: We retain your account information and resumes for as long as your account is active. If you delete your account, we delete your personal data from our active databases, though some logs may be retained for security auditing.
- Logs: We may retain logs of LLM (AI) interactions for debugging and performance monitoring purposes.
- Security: We implement reasonable security measures to protect your data, including password hashing. However, no method of transmission over the Internet is 100% secure.
8. Children's Privacy
Our service is not directed to individuals under the age of 18 (or the applicable age of majority in your jurisdiction). We do not knowingly collect personal information from children.
9. International Data Transfers
Your information, including personal data, may be transferred to and maintained on computers located outside of your state, province, country, or other governmental jurisdiction where the data protection laws may differ from those of your jurisdiction.
10. Your Rights
Depending on your location, you may have the right to:
- Access the personal information we hold about you.
- Request correction or deletion of your data.
- Withdraw consent for specific processing activities.
- Opt-out of marketing communications: You can unsubscribe from our marketing emails by following the unsubscribe instructions included in these emails or by contacting us.
To exercise these rights, please contact us at [Insert Support Email Address].
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new policy on this page.