Privacy Policy
Your privacy is our top priority. RoastPro is designed with a zero-storage architecture.
🔒 Our Privacy Guarantee
- ✓No server-side storage: We do not save your resume, job descriptions, or any analysis results to databases, file systems, or cloud storage.
- ✓No persistent browser storage: We do not use localStorage or cookies for sensitive data. Everything is session-only.
- ✓Auto-delete on tab close: All cached analysis results are stored in sessionStorage and automatically deleted when you close your browser tab.
- ✓In-memory processing only: Your resume text exists only in volatile memory (RAM) during analysis and is garbage-collected immediately after.
How RoastPro Works
1. You Paste Your Resume
Your resume text stays in your browser. No file uploads, no form submissions until you click "Analyze".
2. Real-Time Analysis
When you click analyze, we send your text to Google Gemini API via a secure HTTPS request. The AI processes your resume and returns feedback instantly.
3. Results Displayed
Your analysis appears in your browser. We cache the results in sessionStorage to avoid duplicate API calls within your session.
4. Data Disappears
Close the browser tab, and all cached data is permanently deleted. No traces left behind.
What We Store (Temporarily)
sessionStorageMatch Analysis Results
When you run an ATS match score, we cache the results (match percentage, keywords, tips) in your browser's sessionStorage to avoid redundant API calls during your session.
Expiration: Automatically deleted when you close the browser tab.
sessionStorageUser Feedback Vote
If you click "Helpful" or "Not helpful", we store your vote (just "like" or "dislike") to prevent duplicate voting during your session.
Expiration: Automatically deleted when you close the browser tab.
What We DON'T Store
- ✕ Your resume text
- ✕ Job descriptions
- ✕ Personal information (PII)
- ✕ Email addresses
- ✕ Names or contact info
- ✕ IP addresses
- ✕ User accounts
- ✕ Cookies (for tracking)
Third-Party Services
Google Gemini API
We use Google's Gemini AI to analyze your resume and job postings. Your text is sent to Google's servers via secure HTTPS for processing and is governed by Google's AI Terms of Service.
Read Google AI Terms of Service →Vercel Analytics
We use Vercel Analytics to track page views and basic usage statistics (no personal data). This helps us understand how many people use RoastPro.
Technical Details
- Architecture: Next.js 16 with serverless API routes (stateless)
- Hosting: Vercel (ephemeral serverless functions)
- Request Lifecycle: Data exists in memory only during HTTP request (typically 2-5 seconds)
- Caching Strategy: sessionStorage only (client-side, session-scoped)
- Data Retention: 0 seconds (no persistence layer)
- File Uploads: Not supported (text paste only)
GDPR & Privacy Compliance
RoastPro is inherently compliant with GDPR, CCPA, and other privacy regulations because:
- No data controller responsibilities: We don't store personal data, so we're not a data controller under GDPR.
- No data retention: There's nothing to delete because nothing is saved.
- Right to erasure: Automatically fulfilled (data erased after session).
- No data breaches possible: You can't breach data you don't store.
You're in Control
Want to clear all data immediately? Here's how:
- Close the browser tab - All sessionStorage data is automatically deleted
- Clear browser data - Open DevTools (F12) → Application tab → Clear storage
- Use incognito/private mode - No data persists after you close the window
Policy Updates
We may update this privacy policy if we add new features. Any changes will be posted on this page. Since we don't collect your contact information, we can't notify you directly, so please check back periodically.
Last Updated: February 16, 2026
Questions?
If you have privacy concerns or questions about how RoastPro works, feel free to reach out: