Privacy Policy

Your privacy is our top priority. RoastPro is designed with a zero-storage architecture.

🔒 Our Privacy Guarantee

  • No server-side storage: We do not save your resume, job descriptions, or any analysis results to databases, file systems, or cloud storage.
  • No persistent browser storage: We do not use localStorage or cookies for sensitive data. Everything is session-only.
  • Auto-delete on tab close: All cached analysis results are stored in sessionStorage and automatically deleted when you close your browser tab.
  • In-memory processing only: Your resume text exists only in volatile memory (RAM) during analysis and is garbage-collected immediately after.

How RoastPro Works

1. You Paste Your Resume

Your resume text stays in your browser. No file uploads, no form submissions until you click "Analyze".

2. Real-Time Analysis

When you click analyze, we send your text to Google Gemini API via a secure HTTPS request. The AI processes your resume and returns feedback instantly.

3. Results Displayed

Your analysis appears in your browser. We cache the results in sessionStorage to avoid duplicate API calls within your session.

4. Data Disappears

Close the browser tab, and all cached data is permanently deleted. No traces left behind.

What We Store (Temporarily)

sessionStorageMatch Analysis Results

When you run an ATS match score, we cache the results (match percentage, keywords, tips) in your browser's sessionStorage to avoid redundant API calls during your session.

Expiration: Automatically deleted when you close the browser tab.

sessionStorageUser Feedback Vote

If you click "Helpful" or "Not helpful", we store your vote (just "like" or "dislike") to prevent duplicate voting during your session.

Expiration: Automatically deleted when you close the browser tab.

What We DON'T Store

  • Your resume text
  • Job descriptions
  • Personal information (PII)
  • Email addresses
  • Names or contact info
  • IP addresses
  • User accounts
  • Cookies (for tracking)

Third-Party Services

Google Gemini API

We use Google's Gemini AI to analyze your resume and job postings. Your text is sent to Google's servers via secure HTTPS for processing and is governed by Google's AI Terms of Service.

Read Google AI Terms of Service →

Vercel Analytics

We use Vercel Analytics to track page views and basic usage statistics (no personal data). This helps us understand how many people use RoastPro.

Technical Details

  • Architecture: Next.js 16 with serverless API routes (stateless)
  • Hosting: Vercel (ephemeral serverless functions)
  • Request Lifecycle: Data exists in memory only during HTTP request (typically 2-5 seconds)
  • Caching Strategy: sessionStorage only (client-side, session-scoped)
  • Data Retention: 0 seconds (no persistence layer)
  • File Uploads: Not supported (text paste only)

GDPR & Privacy Compliance

RoastPro is inherently compliant with GDPR, CCPA, and other privacy regulations because:

  • No data controller responsibilities: We don't store personal data, so we're not a data controller under GDPR.
  • No data retention: There's nothing to delete because nothing is saved.
  • Right to erasure: Automatically fulfilled (data erased after session).
  • No data breaches possible: You can't breach data you don't store.

You're in Control

Want to clear all data immediately? Here's how:

  1. Close the browser tab - All sessionStorage data is automatically deleted
  2. Clear browser data - Open DevTools (F12) → Application tab → Clear storage
  3. Use incognito/private mode - No data persists after you close the window

Policy Updates

We may update this privacy policy if we add new features. Any changes will be posted on this page. Since we don't collect your contact information, we can't notify you directly, so please check back periodically.

Last Updated: February 16, 2026

Questions?

If you have privacy concerns or questions about how RoastPro works, feel free to reach out: