Privacy Policy
Last updated: August 10, 2026
Applyze ("we," "us," or "our") provides an AI-powered resume analysis and job application tracking service at applyze.pro (the "Service"). This policy explains what information we collect, how we use it, and the choices you have. By using Applyze, you agree to the practices described here.
Information we collect
Account information: your name, email address, and a securely hashed password. If you enable two-factor authentication, we also store your phone number and whether it's verified.
Profile information: whatever you choose to add to your master profile — work history, education, skills, projects, a summary, and an optional profile photo. If you upload an existing resume PDF, we extract this information from it automatically.
Job application information: the company names, job titles, and job description text you submit for analysis, plus the AI-generated feedback, scores, and tailored resumes produced from them.
Conversations: messages you send to and receive from Applyze's AI chat assistant.
Payment information: if you subscribe to a paid plan, our payment processor (Stripe) collects your billing details directly — Applyze never sees or stores your full card number.
How we use your information
We use your information to:
- Generate your resume feedback, ATS/fit scores, and tailored resume PDFs
- Power the AI chat assistant's answers about your own profile and applications
- Maintain your account, track your application pipeline, and process subscription payments
- Send account-related emails (verification, password reset) and respond to support requests
- Detect abuse and enforce the usage limits on your plan
We do not sell your personal information, and we do not use your profile or resume content to train AI models.
How AI processing works
When you request resume feedback or a tailored resume, the relevant parts of your profile and the job description you submitted are sent to Anthropic (maker of Claude), our AI provider, to generate a response. The chat assistant works the same way, using your profile and application history as grounding so its answers are based on your real information rather than invented. Anthropic processes this data to generate a response but does not use it to train its models, per Anthropic's own API terms.
Third-party service providers
We rely on the following providers to operate Applyze, each of which processes a limited slice of your data solely to perform its function:
- Anthropic — generates resume feedback, tailored resumes, insights, and chat responses
- Stripe — processes subscription payments and billing
- MongoDB Atlas — hosts our database, where your account and profile data is stored
- Cloudinary — stores profile photos you upload
- Resend — sends account emails (verification, password reset) and contact form notifications
- Twilio — sends SMS verification codes if you enable two-factor authentication
- Google Analytics — aggregate usage analytics (which pages get visited, how often), so we can see what's actually being used
Cookies
Applyze uses two httpOnly cookies to keep you signed in — an access token and a refresh token. Both are used strictly for authentication. We also use Google Analytics, which sets its own cookies to measure aggregate site usage (which pages get visited, how often) — it doesn't tell us who you are individually, and we don't use it for advertising or ad targeting.
Data retention & deletion
We keep your data for as long as your account is active. If you downgrade or cancel a paid subscription, your profile, applications, and past resumes are kept as-is — you're simply limited to the free plan's usage limits going forward. You can permanently delete your account and all associated data at any time from Settings → Danger zone, which also cancels any active subscription.
Your rights
You can access and update most of your information directly from your Profile and Settings pages at any time. You can request a copy of your data or ask us to delete it by contacting us — see below.
Data security
Passwords are hashed with bcrypt and never stored in plain text. Refresh tokens are also hashed at rest, so a database breach alone wouldn't hand out usable session credentials. We support optional two-factor authentication (SMS-based) for extra account protection.
Children's privacy
Applyze is not directed at children under 16, and we do not knowingly collect information from anyone under that age.
Changes to this policy
If we make material changes to this policy, we'll update the date at the top of this page. Continued use of Applyze after a change means you accept the updated policy.
Contact us
Questions about this policy or your data? Reach out at support@applyze.pro or through our contact page.