← Back to dashboard

Privacy Policy

Effective date: April 2, 2026

1. What we do

Job Application Tracker ("the Service") is a Chrome extension and companion web application that helps you keep track of job applications. The extension connects to your Gmail account to detect job-related emails and extracts structured data (company name, role, date) so you can see your applications in one place.

2. Data we collect

Data Purpose Stored where
Email address & hashed password Account authentication Backend database
Company, role, date applied, application status Display your tracked applications Backend database
Gmail OAuth token Read your email subjects & bodies to detect job emails Chrome local storage (your browser only)

3. How we use Gmail data

The extension requests read-only access to Gmail (gmail.readonly scope). It searches for emails matching job-application keywords (e.g. "thank you for applying") and extracts only the sender, subject line, date, and body text of matching messages.

All email parsing happens locally in your browser. Raw email content is never sent to our server. Only the structured fields listed in Section 2 are transmitted to the backend.

Our use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

4. Data sharing

We do not sell, rent, or share your personal data with any third parties. Data is only used to provide the Service to you.

5. Data retention & deletion

You can delete all tracked applications at any time from the extension's Settings panel ("Reset All Data") or by contacting us. When you delete your data, it is permanently removed from our database.

6. Security

Passwords are hashed with bcrypt before storage. All traffic between the extension, your browser, and our server travels over HTTPS. Gmail tokens are stored only in your browser's local storage and are never sent to our backend.

7. Third-party services

  • Google Gmail API — read-only email access for job-email detection.
  • Resend — transactional email delivery (password reset emails only).
  • Neon (PostgreSQL) — managed database hosting for application data.

8. Your rights

You may at any time:

  • Export or view all data we store about you.
  • Delete your tracked applications.
  • Revoke Gmail access from Google Account Permissions.
  • Request account deletion by contacting us.

9. Changes to this policy

We may update this policy from time to time. Changes will be posted on this page with an updated effective date.

10. Contact

Questions or requests? Visit our Support page or email support@jobapptracker.xyz.