Legal
Privacy Policy
Last updated: August 9, 2026
1. Overview
Hirelane processes account, profile, and billing data to run Autopilot and credit purchases. After you sign in, your workspace (profile, kits, Tracker, and related application data) is stored on Hirelane servers so it can be restored on a new device. Your browser may also keep a local cache for speed; signed-in features require a session cookie.
2. Data we process
- Account email and session authentication data
- Profile fields you enter (name, phone, LinkedIn, resume text)
- Job preferences and Autopilot settings
- Application kits and Tracker history stored on Hirelane servers (with a local cache)
- Credit balance and purchase metadata (via Stripe + our ledger)
- Apply payloads sent to employer ATS endpoints you target (resume, answers, contact fields)
- Technical logs for API errors (we minimize PII in production ops)
3. Job board data
General search aggregates public job APIs (for example Remotive, The Muse, Himalayas, Jobicy, Remote OK, Arbeitnow). We do not sell listing data.
4. Payments
Card data is handled by Stripe — not stored in Hirelane localStorage. We store purchase fulfillment records (email, pack size, Stripe session/payment ids) so credits can be granted and audited.
5. Google user data
Sign-in with Google uses OpenID Connect scopes openid email profile so we can create a Hirelane session (email + display name). We do not store Google access tokens for login.
Gmail send-as (optional, Settings → Connect Gmail) requests https://www.googleapis.com/auth/gmail.send so outreach can send email from your Gmail address. Hirelane stores an encrypted OAuth refresh token on our servers (AES-256-GCM, key derived from our host secret) under a durable token directory. We use the token only to send messages you initiate in Hirelane. We do not use Gmail scopes to read your mailbox or message contents. We do not sell Google user data. Use Disconnect in Settings → Gmail send-as (or delete your account) to remove stored tokens; Hirelane also attempts to revoke the Google grant. You may revoke access in your Google Account as well.
6. Your controls
Signed-in users can export or delete their account in Settings → Privacy. Step-by-step instructions: Delete your Hirelane account. Clearing site data only erases the local browser cache; signing in again reloads any remaining server workspace. Support: support@hirelanejobs.com.
7. Contact
Privacy questions: support@hirelanejobs.com. Related: Terms of Service.