At Haku, we respect your privacy and are committed to protecting the personal data you share with us. This policy outlines how we collect, use, and protect your information when you use our AI resume analysis platform.
1. Information We Collect
- Account Information: Your email address and name (provided via registration or OAuth).
- Resume Data: The text and files (PDF, Docx) you upload for analysis.
- Job Descriptions: Any text you provide regarding specific job roles you are targeting.
- Payment Information: Handled exclusively by Stripe. We do not store or see your credit card numbers.
- Usage Data: Technical metadata such as IP addresses, browser types, and token consumption for credit management.
2. How We Use Your Data
- AI Analysis: To generate compatibility scores and technical feedback using Large Language Models (LLMs).
- Monetization: To manage your credit balance and process one-time payments.
- Personalization: To maintain your analysis history and track improvement over time.
- Security: To prevent "sybil attacks" or abuse of our Welcome Credit system.
3. Data Processing & Third Parties
We use industry-leading sub-processors to power Haku:
- AI Processing (Google Gemini): Resumes are sent to the Google Gemini API for real-time analysis. We use the Paid Tier of these services, which ensures that your prompts and resumes are not used to train Google’s global AI models.
- Payment Processing (Stripe): Transactional data is managed by Stripe. They act as an independent data controller for your payment security.
- Infrastructure: Our servers and databases (hosted via AWS) store your encrypted data.
4. Right to Erasure (Right to be Forgotten)
You have the right to request the permanent deletion of your personal data.
- Manual Deletion: You may delete individual resumes at any time through your dashboard. Once deleted, they are immediately removed from our active production databases.
- Account Closure: Upon closing your account, Haku will initiate a "Hard Delete" of your profile, file history, and analysis records.
- Legal Exceptions: We must retain certain transaction records (via Stripe) for a legally mandated period to comply with tax and financial reporting laws.
- Backups: Deleted data may persist in encrypted system backups for up to 30 days before being permanently overwritten.
5. Data Retention
- Resumes: Stored as long as your account is active or until you manually delete them.
- Welcome Credits: Any unused "Welcome Credits" are automatically removed from our system seven (7) days after account creation.
- Logs: System logs are purged every 180 days.
6. AI Disclosure & Profiling
By using Haku, you understand that your data is processed by automated AI systems to generate "Compatibility Scores." These scores are estimates based on pattern matching and do not represent a final judgment on your employability or professional worth.
7. Contact Us
For any data privacy requests or questions regarding your Right to Erasure, please contact: support@haku.ai.