← Back to home

Privacy Policy

Last updated: March 19, 2026

1. Overview

JobScroller ("we", "our", "us") operates jobscroller.net. This policy explains what data we collect, why we collect it, and how we handle it. We collect only what is necessary to provide the service.

2. Information we collect

  • Account data: Email address and password hash when you sign up via Supabase Auth.
  • Profile data: Name, phone number, job title, location, LinkedIn/GitHub/portfolio URLs, years of experience, and work authorization status, set voluntarily in your account settings and used for job application autofill.
  • Resume: If you upload a resume, the PDF is stored securely in Supabase Storage. It is used for the AI resume fit checker (content sent to Google Gemini) and, if you use the browser extension, to autofill job application forms. It is not used to train AI models or shared with third parties beyond this.
  • Payment data: Billing is handled entirely by Stripe. We never store credit card details.
  • Usage data: Anonymous page-view analytics via Vercel Analytics and Google Analytics (G-8N0HFX76Y7). No cross-site tracking.

3. How we use your information

  • To deliver your personalised daily job feed.
  • To process API subscription payments via Stripe (developer plans only; the job seeker experience is free).
  • To run the AI resume fit checker (powered by Google Gemini).
  • To improve the product based on aggregate usage patterns.
  • To send transactional emails (password reset, API subscription receipts). We do not send marketing emails without consent.

4. Data storage & security

Your data is stored in Supabase (PostgreSQL, hosted on AWS). All connections are encrypted via TLS. Supabase enforces row-level security so users can only access their own records. Resumes are stored in a private bucket and accessible only to the authenticated owner.

5. Browser extension

The JobScroller Autofill extension for Chrome connects to your JobScroller account to autofill job application forms on Lever, Ashby, and Greenhouse.

  • Authentication token: Stored locally in the extension's isolated storage (chrome.storage.local). It never leaves your device except to authenticate requests to jobscroller.net.
  • Profile data: Fetched from jobscroller.net when you click Autofill and cached locally for 5 minutes. Used solely to populate form fields on the active tab.
  • Resume: A short-lived signed URL (5-minute expiry) is generated to download your resume directly into the application form. The URL is never stored by the extension.
  • No background tracking: The extension does not read browsing history, track which jobs you view, or send any data to third parties.
  • Permissions used: storage (to save your auth token locally) and host permissions limited to jobscroller.net, jobs.lever.co, jobs.ashbyhq.com, and boards.greenhouse.io.

6. Third-party services

  • Supabase: database, auth, and file storage.
  • Stripe: payment processing. Governed by Stripe's Privacy Policy.
  • Vercel: hosting and anonymous analytics.
  • Google Gemini: AI analysis of resume content for the resume fit checker.
  • Google Analytics: aggregate site traffic metrics.

7. Your rights

You may request access to, correction of, or deletion of your personal data at any time by contacting us. Account deletion removes your profile, job tracking history, and uploaded resume within 30 days.

8. Cookies

We use only functional cookies required for authentication (Supabase session token). We do not use advertising cookies or sell data to third parties.

9. Changes to this policy

We may update this policy occasionally. Material changes will be noted at the top of this page with a revised date. Continued use of the service after changes constitutes acceptance.

10. Contact

Questions? Send us a message.