CareerTrellis Privacy Policy

Last updated: September 10, 2026

CareerTrellis is operated by J. Hunter Johnson LLC. This policy describes how we handle information when you use CareerTrellis and contact us about it. For privacy questions or requests, email hunter@jhunterj.com.

Information we handle

Account and sign-in information. WorkOS manages authentication. When you choose Google sign-in, Google and WorkOS process the account identifiers and basic profile information needed to authenticate you, such as your name, email address, and email-verification status. CareerTrellis uses a provider identity identifier to associate your sign-in with your application account and its data. Google handles your Google password; CareerTrellis does not receive it.

Information you provide. This includes your professional profile, contact details, résumé content and versions, uploaded documents, career preferences, saved searches, job postings, application materials, notes, status history, follow-up dates, and other information you choose to save. If you configure supported provider API keys, we store those credentials separately from your public profile and use them to perform the features you request.

Information produced while using the service. This includes job matches, AI-generated drafts and analyses, search results, generated documents, and records of your application activity within CareerTrellis.

Technical information. Our service and infrastructure providers process information needed to deliver and protect the service, such as network addresses, request timing, browser information, authentication events, error codes, and operational records. CareerTrellis uses cookies for sign-in, security, and session continuity, and may store interface preferences in your browser.

How we use information

We use information to authenticate you, keep your account’s data associated with you, run searches, prepare materials you request, store and display your work, provide downloads and exports, process deletion requests, respond to support requests, and maintain the service’s reliability and security.

Job-search and AI features may operate in the background when you request a task or enable a schedule. Review the content you submit and the results before using them. Avoid including sensitive information that is unnecessary for your job search, including sensitive information about other people.

Google account data

Google sign-in is used for authentication and account security. It requests basic identity information, not permission to read Gmail, Google Drive, contacts, or calendar data. Choosing Google sign-in does not authorize access to those services.

We do not sell Google sign-in data, use it for advertising, or use it to train general-purpose AI models. CareerTrellis’s use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including its Limited Use requirements.

Information you separately type or upload into CareerTrellis is used for the features you request, including AI processing described below. Signing in with Google and choosing Google Gemini as an AI provider are separate activities.

Service providers and other disclosures

We use providers to operate CareerTrellis. Depending on the feature and your configuration, these include:

  • WorkOS and your chosen sign-in provider, including Google, for authentication and account-security functions.
  • Google Gemini or OpenAI for AI features. Relevant profile, résumé, job, document, and prompt content may be transmitted to the configured provider for processing. Uploaded content may be included when a feature analyzes a document.
  • Search engines, job sources, and location services to find postings, retrieve pages, and look up company locations. Requests can include search terms, desired locations, company names, and posting URLs. Supported location services include Google Maps/Places and OpenStreetMap’s Nominatim service.
  • DigitalOcean, Cloudflare, and backup infrastructure providers for hosting, delivery, storage, security, and recovery.
  • Healthchecks.io for operational availability alerts. CareerTrellis’s cleanup reporter sends fixed health classifications rather than résumé or profile content.
  • Google Fonts and cdnjs for browser-loaded fonts and interface resources. Loading these resources sends ordinary browser connection information to those services.

Providers process information under their applicable terms and privacy policies. If you supply your own provider credentials, your provider-account settings and terms also apply. We cannot promise that every provider uses the same retention or model-training settings; review the terms of the provider you choose.

We may disclose information when necessary to comply with applicable law, respond to valid legal process, or protect the security and rights of users and the service. Support and administrative access should be limited to what is needed for those purposes.

Storage, security, and retention

CareerTrellis stores account data on server infrastructure and uses access controls to separate users’ data. Provider credentials and stored document objects use encryption. No security measure eliminates all risk.

We retain saved content to provide your account and the features you use, until you delete it or request account deletion, subject to operational, security, and applicable legal needs. Short-lived authentication and admission records have expiry rules and scheduled cleanup. Some security and revocation records remain after a session ends to prevent its reuse.

Account deletion is processed as a background operation and can require retries before it is complete. Backup copies may retain earlier information after it is removed from active systems. Those copies are handled through backup retention and recovery procedures rather than immediate editing of every backup. We do not promise immediate removal from all backups or third-party systems.

Providers may process or store information in countries other than the country where you live. Contact us if you need information about hosting locations or retention relevant to your use of the service.

Your choices and requests

You can review and edit saved information through the application and use its data-export and account-deletion functions. The portable export covers supported account content; it does not contain sign-in credentials or provide a complete account-import feature.

You can also contact us to request access, correction, export, or deletion. We may need to verify your identity before acting. Rights and exceptions depend on the law applicable to you.

Deleting CareerTrellis data does not delete your Google account or automatically delete the separate authentication record held by WorkOS. Contact us for help with authentication-record removal. Removing a Google authorization is also separate from deleting information already saved in CareerTrellis. Information independently submitted to an employer or another website is subject to that recipient’s policies.

Changes to this policy

We will update this page when our practices change and revise the date above. Where appropriate or required, we will provide additional notice of material changes.

About CareerTrellis