Privacy Policy
1. Information we collect
Account information
When you sign up, we collect your name, email address, and a hashed password (we never see your actual password). If you sign in via Google, we receive your name, email, and profile picture from Google.
Documents and content you create
To generate resumes, cover letters, SOPs, and academic CVs, we collect the information you provide — work history, education, skills, target role, and similar career-related content. We process this through OpenAI (see Sub-processors below) to produce your documents.
Payment information
We do not store your credit card or bank details. Payments are handled directly by Razorpay (for INR) or LemonSqueezy (for USD). We only store the transaction reference ID, amount, currency, and status — enough to issue receipts and refunds.
Usage data
We log basic technical information when you use the service: IP address (for security and rate-limiting), browser type, pages visited, and timestamps. This helps us debug issues and prevent abuse.
Cookies
We use a small number of essential cookies for authentication and session management. See our Cookie Policy for details.
2. How we use your information
- To provide the service you signed up for — generating documents, tracking your credit balance, and sending you the files you create.
- To send transactional emails — payment receipts, password resets, generated documents.
- To improve the service — understanding which features are used, fixing bugs, and preventing fraud or abuse.
- To comply with legal obligations under Indian law (including the Digital Personal Data Protection Act, 2023) and any applicable international laws.
We do not use your career documents or personal information to train AI models. Your content is processed only to deliver the output you requested.
3. Sub-processors
We use trusted third-party services to run Pathnio. Each receives only the data necessary for its function:
- OpenAI — generates your AI documents from the content you provide. OpenAI's data retention is governed by their API policy; they do not train on data sent via API.
- Supabase — stores your account, documents, and credit balance (hosted in their managed PostgreSQL infrastructure).
- Resend — sends transactional emails (receipts, document delivery, password resets).
- Razorpay — processes INR payments from Indian customers.
- LemonSqueezy — processes USD payments from international customers as a merchant of record.
4. Data retention
We retain your account data and generated documents for as long as your account is active. If you delete your account, we delete your personal data within 30 days, except for transaction records (purchases, refunds) which we retain for 7 years to meet Indian tax and audit obligations.
5. Your rights
Under the Digital Personal Data Protection Act, 2023 and applicable laws, you have the right to:
- Access — request a copy of the personal data we hold about you.
- Correct — ask us to fix any inaccurate or incomplete information.
- Delete — request deletion of your account and associated data.
- Withdraw consent — for any processing that relies on your consent.
- Grievance redressal — escalate any data-related complaint to us first; if unresolved within 30 days, you may approach the Data Protection Board of India.
To exercise any of these rights, email support@pathnio.com.
6. Security
We use HTTPS for all data in transit, encrypted storage via Supabase, and access controls on all internal systems. We don't store payment card information. However, no online service is 100% secure — if you become aware of a security issue, please report it to support@pathnio.com.
7. Children
Pathnio is not directed at children under 18. We do not knowingly collect data from minors. If you believe a child has provided data, contact us and we will delete it.
8. International users
If you access Pathnio from outside India, your data may be transferred to and processed in India and in regions where our sub-processors operate (United States, European Union). We take reasonable steps to ensure your data receives equivalent protection regardless of where it is processed.
9. Changes to this policy
We may update this Privacy Policy from time to time. Material changes will be communicated by email to registered users. The "Last updated" date at the top reflects the most recent revision.
10. Contact
For any privacy questions, complaints, or to exercise your rights, contact our Grievance Officer at support@pathnio.com or through our contact page.
