Privacy Policy
Last updated: May 8, 2026
This Privacy Policy describes how ResuBlue ("we", "us", or "our") collects, uses, and protects information you provide when using our service at resublue.com.
Who This Tool Serves
ResuBlue is a tool for job seekers, not employers. ResuBlue does not screen, rank, or evaluate candidates on behalf of any employer. ResuBlue does not submit applications on your behalf. All decisions about resume content and job applications remain entirely yours.
ResuBlue's suggestions are based on publicly available Salesforce job market data and keyword analysis. They do not reflect any specific employer's preferences or hiring criteria.
1. Data We Collect
We collect the following categories of data:
- Account information: Email address and display name, collected when you sign up or sign in via email or OAuth.
- Resume content: All text you enter into the resume builder, including job history, skills, certifications, and contact details. This data is stored to power saving and AI features.
- AI usage logs: We log when AI features are used (e.g., bullet generation, resume tailoring) to enforce daily usage limits. We do not store the full AI output.
- Device and browser information: Device type, operating system, browser, and limited export-open events may be collected to improve security, abuse prevention, delivery diagnostics, and privacy-safe analytics. We do not use fingerprinting or cross-site advertising tracking.
- Payment information: We do not store full credit card numbers. Payment details are handled by Stripe and are subject to their privacy policy.
- Support messages: Messages you send via the support form.
2. How We Use Your Data
- To provide and improve the ResuBlue resume building service.
- To generate AI-assisted resume suggestions via Groq AI. Your resume content may be sent to Groq's API to fulfill your requests. Groq processes data according to their privacy policy and account-level data controls. ResuBlue does not store full AI prompt or completion bodies in AI usage logs.
- To enforce daily usage limits and subscription tiers.
- To send transactional emails (account confirmations, billing receipts, support replies). We do not send marketing emails without your consent.
- To detect and prevent security threats and abuse.
- Service improvement: aggregated, anonymized usage analytics.
3. Third-Party Service Providers (Subprocessors)
We use the following third parties to operate ResuBlue. Each processes user data only as necessary for the specific function described. We do not sell user data.
| Provider | Function | Data Processed | Location |
|---|---|---|---|
| Groq | AI inference (resume content generation, analysis) | Resume text processed under provider policy and account-level data controls | United States |
| Clerk | Authentication and user management | Email, name, OAuth tokens, session data | United States |
| Stripe | Subscription billing and payment processing | Payment method, billing address, subscription status | United States |
| Neon | Database hosting (PostgreSQL) | All user-generated content (resumes, applications, settings) | United States |
| Resend | Transactional email delivery | Email address, email content | United States |
| Sentry | Error monitoring and performance | Error reports; session replay (masked, requires cookie consent) | United States |
| Vercel | Application hosting and CDN | Request logs, IP addresses, page visits | United States |
All subprocessors are bound by their respective data processing agreements. For questions about our data practices, contact privacy@resublue.com.
4. Your Rights
Under GDPR (Article 17) and CCPA, you have the following rights:
- Access: You can view all your stored resume data from the builder.
- Correction: You can edit or update your data at any time via the builder or account settings.
- Deletion (GDPR Article 17, Right to Erasure): You may request deletion of personal data we hold about you at any time. Delete your account from the account settings page to remove or anonymize your account data, subject to limited legal, security, and operational retention described below.
- Portability: You can export your resume as PDF or Word DOC at any time.
- CCPA Right to Opt Out: California residents may opt out of the sale of personal information. We do not sell personal data.
To exercise any of these rights, use the account settings page or contact us at privacy@resublue.com.
5. Data Retention Policy
| Data type | Retention |
|---|---|
| Account data (email, name, tier) | Retained while account is active |
| Resume data | Until resume deletion or account closure |
| File import logs | 90 days |
| Analytics events | 12 months |
| Error reports / audit logs | 6–12 months |
| Support conversations | 24 months |
| Vault versions | Until user deletion or account deletion |
On account deletion, resume content, saved sessions, and account-linked personal data are deleted or anonymized through the ResuBlue deletion workflow. Limited operational or legal records may be retained only where required.
6. Cookies and Local Storage
ResuBlue uses a single session cookie to keep you signed in. This cookie is:
- HttpOnly: not accessible by JavaScript
- Secure: transmitted only over HTTPS
- SameSite=Lax: CSRF-protected
We do not use advertising cookies or third-party analytics cookies. Optional analytics events and masked Sentry session replay run only after consent. Browser storage may hold draft resume data, job descriptions, skills, job-tracker state, UI state, and consent preferences. Draft data can leave your device when you sign in or use server-backed features such as save, import, export, or AI.
7. California Residents: Your Privacy Rights (CCPA)
If you are a California resident, the California Consumer Privacy Act (CCPA / Cal. Civ. Code §1798.100 et seq.) grants you the following rights:
- Right to Know (§1798.100): You may request disclosure of the categories and specific pieces of personal information we have collected about you, the purposes for collection, and whether we have disclosed it to third parties.
- Right to Delete (§1798.105): You may request deletion of your personal information, subject to certain exceptions. To request deletion, delete your account from your account settings or email support@resublue.com.
- Right to Opt Out of Sale (§1798.120): ResuBlue does not sell personal information to third parties, and has not sold personal information in the preceding 12 months. No opt-out action is required.
- Right to Non-Discrimination (§1798.125): We will not discriminate against you for exercising any of your CCPA rights.
To submit a verifiable consumer request, email support@resublue.com with subject line "CCPA Request: [your right]". We will respond within 45 days as required by law.
8. International Users
ResuBlue is currently available to US-based Salesforce professionals only during beta. If you are located outside the United States, please note that our service is not designed or marketed for international use at this time. We do not knowingly collect data from users outside the United States in a commercial capacity. International data handling policies will be published prior to any international expansion.
9. Contact
For privacy-related questions or requests, contact us at: privacy@resublue.com
2054 S. Euclid St, Ste H PMB#3162
Anaheim, CA 92802
support@resublue.com
Last updated: May 8, 2026 · Questions? Contact us at privacy@resublue.com