BACK TO HOME
GDPR & CCPA COMPLIANT

Privacy Policy

Last Updated: September 4, 2026 • Version 1.1 • Developer: AutoApply AI Team

No AI Training

Your resume and candidate data are strictly never used to train or fine-tune AI models.

In-Flight Only

Resumes are processed ephemeral in RAM to extract fields and are discarded immediately.

Zero Tracking

No advertising pixels, telemetry trackers, or browsing history logs of any kind.

1. Overview

AutoApply AI ("the Extension", "we", "our") provides an automated browser assistant designed to streamline job applications across enterprise Applicant Tracking Systems (ATS) including Workday, Greenhouse, Lever, iCIMS, Taleo, and SmartRecruiters.

This Privacy Policy explains what information is processed, how it is handled, and our strict safeguards against unauthorized data storage, sharing, or model training.

2. Information We Process

2.1 Resume & Candidate Profile Data

Users may upload a PDF resume to extract candidate fields (name, contact details, work experience, education, skills). All transmissions occur via TLS 1.3 encryption to our secure cloud infrastructure located within the European Union (Germany).

In-Flight Processing: Resume contents are processed in memory solely to calculate field mappings for the active browser tab. Files and candidate text are not permanently retained on disk.

2.2 Form Field & EEO Compliance Disclosures

The Extension detects voluntary self-identification questionnaires (e.g., US EEO Gender, Race/Ethnicity, Veteran Status, Disability) and Work Authorization questions (e.g., Visa Sponsorship). These fields enforce a mandatory review flag (requires_review: true) before any submission. Demographic data is never aggregated, profiled, or sold.

2.3 Local Device Storage

Profile preferences and session tokens are stored locally on your device via Chrome's chrome.storage.local API. Data remains on your device and can be cleared at any time.

3. Manifest V3 Permissions Justification

PermissionTypeTechnical Purpose
<all_urls>host_permissionsJob application forms reside on thousands of uncataloged company domains and ATS portals. Content scripts activate read-only form heuristics only when recruitment patterns match.
storagepermissionsPersists user mapping preferences locally on the device.
tabspermissionsBridges communication between background service workers and active tabs to proxy API calls past third-party ATS Content Security Policies.
sidePanelpermissionsDisplays candidate profile settings in Chrome's native side panel without obstructing the application form.
scriptingpermissionsAllows helper injection across nested iframe boundaries on legacy ATS systems.

4. Data Sharing & Sale of Information

We do not sell, rent, trade, or monetize personal information. We do not transfer candidate information to data brokers, advertising networks, or third-party recruiters.

5. User Rights (GDPR & CCPA)

You maintain complete control over your data:

  • Right to Deletion: Instantly wipe all locally stored profile data by clicking "Clear Data" in the side panel or uninstalling the extension.
  • Right to Inquire: Contact our Data Protection Officer at support@autoapply.help.

6. Contact Information

AutoApply AI Team
Email: support@autoapply.help
URL: https://autoapply.help