Last updated: · Draft
EnterJobs is built privacy-first. Your documents, résumés, application answers, AI keys, and personal data stay on your own device — they do not pass through our servers. What does reach our servers is limited, named plainly below, and explained so you know exactly what you're sharing and why.
The app runs locally on your computer. The following never leaves your machine through us:
To run accounts, billing, authentication, and to support you when something goes wrong, a defined set of data is handled on our side. We name it plainly:
Your email address (lowercased), optional name, and a securely hashed password — so you can sign in, verify your email, and reset your password. If you sign in with Google or Apple, we receive your Google account email or Apple-assigned subscriber identifier and relay email instead of a password.
If you enable SMS two-factor authentication, we also store your phone number (and a verified flag) and process SMS delivery via Twilio Verify.
Payment processing is handled by Stripe (and optionally PayPal). Your card details are entered directly on Stripe's secure forms and never touch our servers. We keep only a billing reference (Stripe customer ID), your subscription tier, expiry date, and lifetime-access flag.
To protect your account, we log:
On every authenticated API call, the app sends a small check-in: device ID, app version, platform (macOS / Windows / Linux), and first/last-seen timestamps. This is how the app authenticates and how we know what version you're running when you need support. There is no independent opt-out from device check-ins — they are a required part of how authentication works.
To support users and diagnose field issues remotely, the app uploads run summaries at the end of each session. This is on by default. Here is exactly what it includes:
This means that with diagnostics on (the default), our servers do receive the titles, companies, and URLs of jobs you apply to, so we can help you if something goes wrong and fix issues in the field.
How to turn it off: open the app's diagnostics setting in Preferences, or set diagnostics.upload: false in your preferences file, or set the environment variable ENTERJOBS_DIAG_UPLOAD=0. The applications sub-feed and on-demand log channel have separate switches (ENTERJOBS_DIAG_APPS, ENTERJOBS_DIAG_QUERY).
The app automatically uploads a coverage index — which days have local logs and their approximate sizes. Actual log content is sent only when our support tooling requests a specific slice while the app is open. When that happens, the app shows a visible in-app event so you know a diagnostic query was answered.
Our servers log the endpoint called and timestamp for each authenticated API request. Our hosting infrastructure (Railway / GCP) also records IP addresses in standard transit logs.
Email verification, password reset, and magic-link emails are delivered via SendGrid. Your email address is shared with SendGrid for this purpose.
EnterJobs does not provide an AI model — you bring your own. Your data privacy for AI processing depends on the model you choose:
EnterJobs does not store, access, or control data exchanged between your device and your chosen AI provider. We recommend choosing a provider with an inference-only data policy. Review your AI provider's privacy policy before use.
To keep the shared form-filling library learning, the app automatically contributes techniques it discovers for operating application-form widgets (for example, how a particular portal's dropdown or file-upload control works), along with signals about whether those techniques succeeded. These submissions describe form mechanics — category, problem, technique, portal type, confidence level — and are human-reviewed before being shared with other users. They are not designed to carry your personal application content. There is no separate opt-out toggle for this today.
We do not collect or store:
EnterJobs is intended for users aged 16 and older. Users between the ages of 16 and 18 should review these terms with a parent or legal guardian before use. We do not knowingly collect personal information from users under the age of 13. If we become aware that a user under 13 has created an account, we will take steps to remove their information promptly.
Because most of your data lives on your device, keeping that device secure is important — if your device is compromised, the data on it could be exposed. We protect the limited account and billing data we hold using standard industry practices including encryption in transit and at rest, hashed passwords, and rate-limited authentication.
You can delete the local EnterJobs data on your device at any time through the app or by removing the app's data directory. You can cancel your subscription and request deletion of your account information (email, billing reference, session records, device check-ins) by contacting us. We will process deletion requests promptly.
When we update this policy, we will update the date above and, for material changes, notify you by email or in-app notice. Continued use after a material change constitutes acceptance of the updated policy.
Questions about privacy? Email support@enterjobs.pro.