Privacy

Privacy policy

jobpilot is a job application tracker. This page describes what it stores, what the browser extension can access, and what happens to that data.

What is stored

  • Account: your email address and a hashed password. The password itself is never stored and cannot be recovered from the hash.
  • Profile, for autofill: the details you enter so you do not have to retype them — name, email, phone, address, professional links, work history, education, work authorization, notice period, salary expectation, and any answers you choose to save to recurring application questions. You control every field and can clear any of them.
  • Voluntary self-identification: if, and only if, you turn it on. Gender, ethnicity, veteran and disability status are treated as a separate opt-in group, are off by default, and are never filled into a form while that group is disabled.
  • Applications: job title, company, posting URL, location, listed salary where the employer published one, the date you applied, and the status you or the system assigns.
  • Activity: a log of changes to each application — when it was created, when its status changed, and the result of each posting liveness check.
  • Anything you add: notes and contacts you enter yourself.

What the extension can access

The extension runs only on the job boards listed in its permissions. It cannot read other tabs, your browsing history, or any site outside that list.

On a supported posting it reads the publicly visible job details. Nothing is sent to the server unless you apply to the job or explicitly save it. Your sign-in token is stored in the browser’s local extension storage and is not synced across devices.

How autofill works

When you ask it to fill a form, the extension reads the field labels on that page, matches them against your profile, and writes your saved values in. Your profile is sent from our server to your browser to do this; the values you enter go directly from your browser into the employer’s form.

We do not receive a copy of the application you submit, and the contents of forms you fill in are not read back or stored. Autofill never submits an application on your behalf.

What is never collected

  • Passwords, payment or bank details, government identifiers, or dates of birth. Autofill refuses these fields outright and none are stored.
  • Keystrokes, or page text beyond the job details and form labels described above.
  • The contents of applications you submit.
  • Browsing activity on any site the extension is not explicitly permitted on.

Sharing

Your application data is not sold, rented, or shared with employers, recruiters, or advertisers. It is used to operate your tracker and nothing else.

Aggregate statistics — for example, typical response times at a given company — may be derived across accounts in future. Any such figure would be reported only in a form that cannot identify you or your individual applications.

Service providers

The service runs on third-party infrastructure for hosting and database storage. Those providers process data only to run the service and under their own security obligations.

Retention and deletion

Your data is kept while your account exists. Deleting an application removes it and its history. You can request account deletion at any time, which removes your applications, notes, and contacts.

Your data is yours

You can export your applications at any time. A tracker you cannot leave is worse than the spreadsheet it replaced.

Contact

Questions about this policy, or a deletion request: hello@example.com.