1. Scope and contact
This policy covers the CVBuilderKit app, website, and optional online resume services. CVBuilderKit is provided by the application provider identified on its App Store listing. For privacy questions or requests, contact support@cvbuilderkit.app.
2. Local editing, iCloud, and export
Manual resume creation, editing, and PDF export run on your device. Resume content is stored locally with SwiftData and can synchronize through your private Apple iCloud account when available. No proprietary CVBuilderKit account is required. Apple operates iCloud under its own terms and privacy policy; synchronization depends on connectivity, account settings, and available storage.
PDF rendering runs on-device. Exporting a PDF does not itself upload it to our AI service. When you share a document, the destination you select receives it and handles it under its own practices. Background notifications support iCloud change detection.
3. Optional AI processing
Online import, review, and generation send information to the CVBuilderKit backend and its configured AI service. You can use manual editing and PDF export without these features. Online features require a network connection.
PDF import sends the original PDF, including any personal information and images it contains. Photo import prepares selected images on-device, removes source image metadata, and packages the images as a PDF for upload; visible personal information remains in the images. For web import, your device loads the selected page and sends extracted profile text and links; web page images are not uploaded through that text flow. A PDF link uploads the original PDF. Visiting a source website also exposes the usual connection information to that website.
AI review sends resume summary, experience, education, skills, and projects, including entries excluded from the exported resume. Dedicated contact fields, photos, and URL fields are omitted, as are languages and certifications. Personal details embedded in descriptions are sent as written.
AI generation sends resume content including headline, languages, and certifications, together with company, target role, job description, additional instructions, and app language. Excluded source entries are included. Dedicated contact fields, photos, URLs, and credential IDs are omitted; narrative text is not automatically anonymized. Supported models may use provider-native web search to research company context.
The backend supports Google Gemini directly or OpenRouter and the downstream model provider selected by the operator. These providers process submitted content and outputs. Retention, processing location, and training use depend on the actual provider, account, and service settings. This policy does not promise zero retention or that every provider configuration excludes training. Only submit content you are authorized to share.
4. Analytics and diagnostics
Amplitude receives feature events and limited technical metadata in configured release builds. The app disables automatic event capture and collection of IDFV, IP-address properties, and location properties in its Amplitude configuration. SDK-generated identifiers and technical metadata can still distinguish installations or sessions, so this data should not be described as fully anonymous. Network services necessarily receive connection information when contacted.
Firebase Crashlytics is integrated for crash diagnostics, which can include crash traces, device/app information, and installation identifiers. Firebase Analytics collection is deactivated in the current app configuration. App-defined analytics events do not include resume text or dedicated contact fields. The app does not integrate advertising networks or intentionally use these events for cross-app advertising tracking.
5. Backend security, logs, and retention
To verify free AI access and subscriptions across devices and reinstalls, our backend retains a pseudonymous App Store identity, device authorization, subscription status, and operation counts. Completed AI results are encrypted for retry recovery for up to 24 hours, then removed. Resume text is never included in analytics.
The backend processes requests to provide AI results and uses Apple App Attest, request counters, quotas, and network information to authenticate requests and limit abuse. Its authentication database stores attestation key identifiers, public keys, counters, temporary challenges, and quota records. This is separate from your local resume database.
The backend does not maintain a saved resume library. However, import failure diagnostics can contain submitted text, prompts, extracted content, provider output, and URL-fetch details. Binary PDFs are summarized in diagnostics rather than logged as raw files. Optional successful Gemini response logging can also retain import output. Credential redaction does not remove personal information from resume text.
Review and generation diagnostics omit request content, prompts, provider response text, and exception values, retaining generic operational metadata instead. Server and hosting access logs may contain connection and request metadata.
Local resumes remain until you delete them. iCloud copies and backups are subject to Apple settings and retention. Backend authentication records, operational logs, analytics, and provider records have separate lifecycles and are not erased by deleting a resume in the app. Log rotation limits storage size but does not guarantee a fixed deletion deadline. Contact us about data held by the service; we may need information to identify a request and verify your authority.
6. Your choices and deletion
You can edit, export, or delete resumes in the app. Settings > Delete All Data removes the app’s resume records; synchronized deletions depend on iCloud availability and completion. It does not delete exported files, recipient copies, service logs, analytics records, or provider records.
Uninstalling removes the app’s local container in normal operation, but does not by itself erase iCloud data, device backups, or files saved elsewhere. Manage those copies through Apple settings and the relevant destinations.
Avoid online AI features if you do not want resume content sent for remote processing. Depending on applicable law, you may have rights to access, correct, delete, restrict, object to processing, request portability, or complain to a supervisory authority. Send requests to support@cvbuilderkit.app.
7. Service providers and support
Apple provides iCloud, App Attest, and platform services; Google Firebase provides crash diagnostics; Amplitude provides product analytics; the configured AI provider processes online feature requests. Hosting infrastructure processes network traffic and operational data. Providers may process data outside your country. If you email support, we receive your address and the information or attachments you choose to send. Avoid sending sensitive documents unless needed for your request.
We do not sell your resume content. Information is used to provide requested features, maintain reliability and security, respond to support requests, and meet applicable legal obligations.
8. Age and updates
Online AI features are intended for adults aged 18 or older. Do not submit children’s personal information to these features. If you believe a child’s data has been submitted, contact support so we can investigate.
We may revise this policy when features or processing practices change. The revision date identifies the current version. Material changes will be communicated as required by applicable law.