Privacy notice

Summary

DevProfile uses account and career information for analysis, resumes, chat, jobs and billing. Some features send relevant information to AI providers. Public sharing is optional and optional analytics requires your choice. This notice explains processing; it is not blanket consent.

Operator and contact

DevProfile is based in Egypt. The operator’s legal name, address, registration and any required data protection officer or representative remain unapproved, so this is an ineffective draft. Privacy contact: devprofille@gmail.com. Do not email passwords, full card information or identity documents without an appropriate verification arrangement.

Information and sources

Account: username, email, password hash, sign-in identities, verification, session and security records, and eligibility and terms evidence. Career profile: goals, experience, target role, location, work mode, technologies, photo, slug and visibility choices.

GitHub: public repository metadata, activity, technical evidence, README and code excerpts where collected, and shared cache. Resume input: filename, size, extracted text and embedded information. Avoid sensitive information and unnecessary information about other people.

Outputs: structured resume content, PDFs, evidence, normalized text, edits, styles, generation status and diagnostics; analyses, scores, inferences, roadmaps, tasks, projects and achievements.

Jobs and chat: preferences, searches, matches, saved jobs, interactions, messages, context, consent choices, provider and search requests, generation and cost records.

Billing and operations: subscriptions, transactions, payment-provider references, consent, receipts, withdrawal and refund requests and payment-method cleanup material; cookies, device drafts, preferences, logs, diagnostics, support and backups. Information comes from you, connected services and service operation; some evaluations are inferred automatically.

Purposes and legal bases

We use account data for sign-in and account administration; career information for requested features; payment data for subscriptions and billing; and operational records for abuse prevention, troubleshooting and legal requests. Required account fields are needed to create an account. Photos, public sharing and optional analytics are optional. A feature may require particular career information to operate.

Appropriate bases may include contract performance, legal obligations, specific consent and legitimate interests where permitted and assessed. The activity-by-activity basis assessment and required Egyptian permissions remain publication blockers. Reading this page is not consent. Withdrawal of consent does not invalidate earlier lawful processing and may stop the feature that depends on it.

AI, recipients and transfers

Analysis, resume generation or chat may send resume text, career profile, GitHub evidence, messages and relevant context to a primary or fallback provider. Search features may send queries to search and job services. Outputs are probabilistic and can be wrong; review them before relying on or sharing them.

Integrations requiring verification include Google/Gemini, Groq, optional NVIDIA, Tavily, job services, GitHub, Brevo, Railway, Vercel, Sentry and Kashier. This list does not mean all are active or all act as processors on our behalf. See the provider page.

AI retention, training settings, human review, paid or trial tiers and fallback routing have not yet been verified; we do not assume no training or zero retention. Countries, processing contracts, transfer safeguards and required permissions need approval before publication and before data is sent through unapproved routes.

Kashier processes card information in its checkout. DevProfile retains subscription and transaction information and references needed for billing and recurring payment methods; billing metadata is distinct from full card data. Authorized operators, support and providers may access information for their tasks, and authorities where legally required.

Sharing and visibility

Enabling a public profile makes its displayed information public and may place it in search indexes. Hiding it does not immediately remove other people’s downloaded copies or indexes. Public links and downloads can be forwarded. Do not assume individual report links can be revoked unless the service expressly provides that control. Use your own information; employer candidate screening is outside this release’s scope.

Retention and deletion

Account and feature data is retained for service purposes with review of continuing need. Account deletion blocks ordinary access and starts the current 30-day restoration window, followed by scheduled purge of the covered account data. Legal erasure rights may require different handling; contact us.

Current cleanup routines target generated-resume expiry after 60 days and chat messages after 30 days; their operation and field coverage must be verified before these periods are approved. They do not mean all generation or billing evidence is removed at the same time.

Financial, consent, rights-request and other records needed for legal obligations or disputes may remain. Detaching an account identifier does not automatically anonymize a record. The finance, support, log and backup schedule and GitHub cache and payment cleanup need approval. Account deletion does not erase downloaded files or drafts on another device. Use the Clear browser resume draft control in Settings to remove this browser’s draft.

Your rights and complaints

Depending on applicable law, you may request access, correction, export, erasure, restriction, objection or withdrawal of consent. Account tools are in Settings; users locked out can email devprofille@gmail.com. We may request proportionate identity and authority checks without unnecessary documents.

Privacy rights do not depend on your paid plan. We explain applicable exceptions, refusal reasons and escalation routes; ordinary support targets do not replace legal deadlines. You may complain to a competent data protection authority, including Egypt’s Personal Data Protection Center where competent, or seek judicial remedies without first contacting us.

The service is for people aged 18 or older with required contractual capacity. Do not submit a minor’s data. Report an underage account or security incident through Contact. No storage or transmission method is absolutely secure.

Version and changes

Version 2026-09-08-draft, prepared 8 September 2026; no effective date. This first coordinated draft expands data categories and clarifies AI, retention and rights. Material changes will be communicated appropriately before taking effect, with a fresh choice when required.

Contact and manage your rights

devprofille@gmail.com