KairoMatch is built, deployed, and operated by Emergence LLC, which acts as the data controller for the information described in this policy and as the merchant of record for any purchases. Charges will appear from Emergence LLC.
KairoMatch is in beta and is offered to users in the United States, with data processed on United States infrastructure. It is not currently offered to users in the European Economic Area or the United Kingdom, and we do not represent it as compliant with the EU GDPR or the UK GDPR today.
We are building the platform to that standard — versioned consent, a real data-request channel, deletion that reaches every table, and a cookie-consent gate — so those markets can open without re-architecting the product. Until they do, treat the GDPR-grade capabilities described here as the bar we are building toward, and the United States as the scope this policy covers. California residents have rights under the CCPA/CPRA today; see “Your Rights” below.
When you use KairoMatch, we collect the information you provide directly: résumé text and uploaded résumé files (PDF or Word .docx), work history and career experiences entered in your profile, job descriptions you analyze or save, and usage analytics such as page views and feature interactions. We also collect basic account information (name, email address) provided via your authentication provider.
Running an AI analysis sends your résumé text and the job description to our servers, on every plan — that is where your contact details are stripped out and where the Claude call is made.
Signed in, your account details, career timeline, saved jobs and notes, company research and interview prep guides are stored in our database under your account.
Your résumé text, its versions and your cover letters are stored securely in your account, on every plan, so they follow you to any device you sign in from — and you can erase them at any time with “Delete all my data” in Settings.
Before you create an account there is nothing to store it against, so a preview you run while signed out is kept in this browser until you sign up — then it moves into your account with everything else.
Working state — checklist drafts, Studio layout choices, assessment answers and your list and dashboard preferences — is kept in this browser's storage and is not sent to us.
Your résumé and job description content is sent to Anthropic's Claude API solely to generate AI-powered feedback, fit analysis, and interview preparation guides. Your name, email address, phone number, street address and profile links are replaced with placeholders before that request is made. Anthropic does not train its models on this data. Our database is hosted on Supabase; what we keep there, and what stays in your browser, is described above. Usage analytics help us understand which features are most valuable so we can improve the product.
Your data is retained for as long as your account is active. When you delete your account, we delete every record we hold under your account id — résumés and their versions, job records, career history, research, prep guides, analysis results, feedback and billing history — within 30 days. You may also delete individual items, or reset your content while keeping the account, from within the app.
Three things sit outside that sweep, and we would rather say so than imply otherwise. Product analytics events are held by our analytics provider and are removed on request through the address below rather than automatically. Data held in a browser on a device you have signed in on is cleared on the device you delete from — clear the site's data in any other browser you used, and note that the deleted account can no longer sign in to read it. Cached AI responses are stored under a content hash with no account id attached, so they cannot be looked up by account; they are purged on the schedule below.
A few categories have their own schedules. Usage records and the credit ledger (which AI features you ran and their metered cost) are kept while your account is active to enforce rate limits, spend caps, and fair use, and are deleted with your account. Product feedback you submit (ratings, thumbs up/down, decision responses) is kept while your account is active and deleted with your account. Cached AI responses — stored under a content hash with contact details redacted so repeated identical requests don't re-bill — are purged automatically within 90 days (cached company research refreshes after 60 days).
Whatever jurisdiction you are in, you can access, export, correct or delete the personal data we hold about you. Deleting your account from the account settings page removes it as described above; for an export or a correction, write to the address below. We do not sell personal information, and we do not share it for cross-context behavioral advertising.
California residents have rights under the CCPA/CPRA — to know, to delete, to correct, to opt out of sale or sharing, and not to be discriminated against for exercising them. We honor those requests through the same channel. We give EU and UK users the same access, export, correction and deletion rights as a matter of practice while we build to the GDPR and UK GDPR standard, but the beta is not offered in those markets and this policy does not claim compliance with them yet.
For a data request — access, export, correction, deletion, or removal of your analytics events — or any question about this policy, write to privacy@local-emergence.com. We acknowledge data requests within 30 days and, where we can verify the account, complete them in the same window.We may need to confirm you control the account's email address before we act on a request.