Last updated August 19, 2026
Nothing you paste into Facet is stored on our servers or written to our logs. An account holds your email and your pass. A synced career record is encrypted in your browser before it reaches us, so we cannot read it. What we store is the same commitment in plain language.
Nothing, if you do not sign in. The LinkedIn rewriter and your first 2 tailored resumes require no account, no email, and no identifier.
Text you submit. Headlines, bullets, About sections, posts, resumes, and job postings are sent to Google’s Gemini API so a result can be generated, then discarded when the request ends. Facet does not store them and does not log them. Uploaded files are read in memory and never written to disk.
Account data, if you sign in. Your email address, and, for Google sign-in, the account identifier Google returns. We do not receive your Google password. A session token is stored so you stay signed in.
Purchase data, if you buy a pass. The Stripe checkout, payment, and customer identifiers, the amount, the currency, the expiry date, and a count of resumes generated against the pass. The count exists so a quota can be explained to the person who paid. The resumes themselves are not stored.
Career record, only if you turn sync on. Encrypted on your device before upload. We hold ciphertext plus the salt and nonce needed to decrypt it on another of your devices. We hold no key and cannot read the contents.
Local device data. Your rewrite history (up to 20 entries), target role, theme, and career context live in your browser’s local storage, not on our servers. Clearing your browser data removes them.
IP address. Used as a rate-limit key at the network edge to prevent abuse. It is not kept as a user record.
Google (AI processing). Submitted text is sent to the Gemini API. Google’s handling is governed by the Gemini API Terms. On paid API tiers Google does not use submitted data to train its models. Review those terms before submitting anything you consider confidential.
Stripe (payments). Card details are collected by Stripe on Stripe’s pages and never reach our servers. Stripe receives your email and billing information and is the record of the sale. See Stripe’s Privacy Policy.
Resend (email). Sends sign-in links and purchase receipts. It receives the destination address and the message. See Resend’s Privacy Policy.
Vercel (hosting, database, analytics). Hosts the site and the database, and receives the request metadata needed to serve pages. Vercel Web Analytics captures aggregate, anonymous pageview statistics. See Vercel’s Privacy Policy.
PostHog (product analytics). Receives event metadata and device information: which pages are visited, which features are used, which modes are popular. It does not receive the text you paste. Session recording is disabled. See PostHog’s Privacy Policy.
Sentry (error tracking). Receives stack traces, routes, and browser details when something breaks. Request bodies on every /api/ route are replaced with a placeholder before leaving our server, so pasted text and uploaded content cannot ride along with an error. See Sentry’s Privacy Policy.
Only to run the service: generate results, honour a pass you bought, sign you in, enforce rate limits, and fix errors. We do not sell your data, do not use it for advertising, and do not share it beyond the processors above.
Submitted text: not retained. Local device data: until you clear it. Sessions: 90 days or until sign-out. Account and career record: until you ask us to delete them. Purchase records: kept in minimal form as long as a sales record is legally required, and held by Stripe independently of us.
Depending on where you live, you may have rights to access, correct, delete, or export the personal data we hold about you, and to object to certain processing. Email us and we will act on it. Deleting an account removes the user row, the sessions, and the career record.
Facet is operated from the United States and the processors above operate globally, so data may be processed outside your country. Where required, those transfers rely on the processors’ standard contractual clauses.
Facet is not directed at children under 13 and we do not knowingly collect data from them. If you believe a child has provided data, contact us and we will delete it.
We may update this policy. Material changes are reflected in the “Last updated” date above.
Privacy questions or data requests: hello@usefacet.app.