Privacy policy
Last updated 27 September 2026
This policy explains what the Jobrrito Chrome extension and jobrrito.com collect, why, who processes it, and what you can do about it. Jobrrito is operated by Yuvraj Raskar, an individual based in Dubai, United Arab Emirates ("we"), who is the controller of your personal data. Jobrrito isn't offered to people in the European Union or the European Economic Area. Questions: privacy@jobrrito.com.
The short version
- Your profile, résumé file, answers and application tracker are stored in your browser, not on our servers.
- The extension looks for application forms inside your browser. A form's questions leave your browser only when you click Autofill, and we never submit anything for you.
- We never sell your data or use it for advertising.
- You can export or delete everything from the extension's Account tab.
What we collect and why
| Data | Where it lives | Why |
|---|---|---|
| Your name, email address and profile picture from Google sign-in, and the sign-in tokens Google issues with them | Our database | Your account, and linking your plan and daily limits to you. We don't use the tokens to read anything else from your Google account. |
| Your sign-in session: a session token, and the IP address and browser you signed in from | Our database, for up to 30 days | Keeping you signed in, and spotting misuse of your account |
| Your résumé file and the profile read from it (name, contact details, links, work history, education, skills) | Your browser | Filling application forms. The résumé's text is sent once to our server, which passes it to an AI model to read it into a profile; we don't keep the text. |
| Your answers (salary, notice period, work authorisation, sponsorship and relocation per country, standard questions) | Your browser | Answering the questions a résumé can't |
| Short answers you typed into a form and asked Jobrrito to remember, and the website they came from | Your browser | Reusing them on the next form. They are sent with the form's questions when you click Autofill. |
| An application form's labels and options, plus the profile details needed to answer them | Sent to our server when you click Autofill; not stored | Working out each field's answer with an AI model |
| Job titles and places you search for | Sent to our job-search provider; results may be kept for up to 6 hours without anything that identifies you | Finding jobs, and not paying twice for identical searches |
| A short summary of your profile (title, experience, skills, work authorisation) and the jobs found | Sent to our server when you rank jobs; not stored | Scoring how well each job fits you |
| Jobs you save and their status (saved, opened, filled, submitted) | Your browser | Your applications tracker |
| Daily usage counts and, per request, its cost, duration and success | Our database | Enforcing daily limits and keeping the service running |
| Product analytics from the extension: event names, counts, the application system and website a form was on, extension version, a random install ID | Our database and our analytics provider | Finding forms that break and improving the product. Never your answers or page content. Switch it off in Account. |
| Website analytics: pages viewed and buttons clicked, without cookies or personal identifiers | Vercel Web Analytics | Understanding which pages help people |
| Subscription details: plan, status, trial and renewal dates, Paddle customer and subscription IDs | Our database | Knowing whether you have a trial or plan |
We don't collect your browsing history, passwords, or the content of pages beyond an application form's fields when you ask us to fill it. Payment details go to Paddle, our merchant of record, and never to us.
Who processes your data for us
- Vercel hosts our server and website.
- Neon hosts our database.
- Google provides sign-in. We ask only for your name, email address and profile picture.
- Upstash caches job-search results for up to 6 hours, with nothing that identifies you.
- OpenRouter routes our AI requests to the model providers that answer them: OpenAI (reading résumés, ranking jobs) and TypeSafe (answering form questions).
- OpenWeb Ninja runs job searches.
- Paddle sells the subscription as merchant of record and handles payments, invoices, taxes and refunds.
- PostHog stores product analytics, when enabled.
Each processes data only to provide its service to us. Paddle is also the seller of your subscription and handles your payment details under its own privacy notice.
Most of these providers are in the United States or the European Union. We transfer data to them only with the safeguards the UAE Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data requires and, for people in the UK, the safeguards UK law requires.
How long we keep it
- Your account and subscription details: until you delete your account.
- Usage and cost logs and analytics events: up to 24 months. When you delete your account they are unlinked from you.
- Billing records: as long as tax law requires, kept by Paddle.
- Data in your browser: until you delete it in Account, remove the extension, or clear the browser's storage.
Your rights
Wherever you live, you can ask for a copy of your data, correct it, delete it, or object to analytics. Most of this is in the extension: Account → Export my profile, Profile to correct anything, Account → Delete my account and data, and the analytics switch in Account. For anything else, email privacy@jobrrito.com; we answer within 30 days.
If you're in the UK, our legal bases are: performing our contract with you (the service itself), legitimate interests (security, fixing broken forms, anonymous analytics, which you can switch off) and legal obligations (billing records). You can complain to the Information Commissioner's Office.
We are regulated by the UAE Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data, which gives you the same rights, and you can complain to the UAE Data Office. In India, the Digital Personal Data Protection Act, 2023 applies: write to privacy@jobrrito.com with any grievance, and if we don't resolve it you can go to the Data Protection Board of India.
Chrome Web Store and Google data
The use of information received from Google APIs will adhere to the Chrome Web Store User Data Policy, including the Limited Use requirements. That applies to everything the extension handles: we use it only to provide and improve Jobrrito's single purpose, filling job applications from your résumé and finding jobs that fit it. We don't sell it, use it for advertising, or use it to decide creditworthiness, and people at Jobrrito read it only with your permission, to keep the service secure, or when the law requires.
Security
Traffic is encrypted in transit. API keys stay on our server; the extension never holds them. Your session token and local data are protected by your browser and device; anyone with access to your unlocked browser profile can see them.
Children
Jobrrito is for people looking for work and isn't for anyone under 18. If you believe someone under 18 has an account, tell us and we'll delete it.
Changes
If we change what we collect or how we use it, we'll update this page and ask you to agree again in the extension before the change applies to you.