Privacy policy

What we collect, and why.

Effective September 28, 2026. Covers the GradLaunch website (gradlaunch.ca) and the GradLaunch Chrome extension.

The short version
  • We collect what's needed to rate jobs against your profile, tailor your resume, and show you your job search on your dashboard. Nothing else.
  • We don't sell your data, show ads, or use analytics or tracking tools.
  • The extension reads only the job posting you have open, and an application form only when you click Autofill on it. It doesn't read your LinkedIn messages, feed, connections or other pages, and it never submits an application.
  • Using the extension with your own AI key and without signing in keeps your data in your browser. Only the AI provider you pick receives it, when you ask for a rating or a tailored resume.
  • You can delete your data at any time. See Deleting your data.

Contents

  1. Who we are
  2. The Chrome extension
  3. The website
  4. How we use data
  5. Who processes it
  6. What we never do
  7. How long we keep it
  8. Deleting your data
  9. Security
  10. Your rights
  11. Children
  12. Changes and contact

1. Who we are

GradLaunch ("we", "us") runs gradlaunch.ca and the GradLaunch Chrome extension, which helps you decide which jobs are worth applying to and tailors your resume for them. Questions about this policy go to hello@gradlaunch.ca.

2. The Chrome extension

What it reads on web pages

It does not read LinkedIn messages, your feed, profiles, connections, or any page you don't have open. It doesn't fetch job pages in the background, and it doesn't record your browsing history.

What it stores in your browser

In Chrome's extension storage, on your computer: your resume profile, your settings (including your own AI key, if you add one), recent fit ratings, tailored resumes, suggested searches, and an activity record per job you open: its title, company, location and link, when you opened it, its fit rating, whether you tailored a resume, and whether you applied. If you use Autofill, also your saved answers to application questions: the answers you write or confirm, the bullet points you wrote them from, and answers you choose to remember for questions like work authorization, salary expectations or voluntary self-identification. Saved answers stay in your browser; they are not synced to your account.

When Autofill uses the AI (for questions your profile and saved answers don't settle, or to write an answer from your bullet points), the request contains those questions, your profile, the saved answers that look relevant, your bullet points and the start of the page's text. It goes to the AI provider the same way as a fit rating (below). Answers to work authorization, sponsorship, salary and self-identification questions are never guessed by the AI: they come only from you.

If you use your own AI key and don't sign in

Nothing is sent to GradLaunch. When you import a resume, rate a job, tailor a resume or ask for search ideas, that request goes straight from your browser to the AI provider you chose (Anthropic or Google Gemini) with your key. It contains your profile and the job's text. That provider's own privacy policy applies to it.

If you sign in to GradLaunch

Signing out in the extension's Settings stops all syncing and cancels that browser's sign-in on our server.

3. The website

The website uses no analytics, advertising or tracking cookies. It keeps a few settings in your browser's local storage (for example, the page you last opened) and Google sign-in keeps you signed in.

4. How we use data

Only to provide GradLaunch to you:

5. Who processes it

These companies process data on our behalf, only to provide the service:

ServiceWhat forWhat it receives
Google Firebase and Cloud FirestoreSign-in and our databaseYour account and everything stored in it
Google Gemini APIAI for fit ratings, tailoring and resume importYour profile, job text, resume files you import
AnthropicAI, only if you add your own Anthropic keySent from your browser with your key, as above
RailwayHosts our API serverRequests to our API
VercelHosts the websiteStandard web requests for the site's pages
StripePaymentsYour email and payment details (entered on Stripe)
ResendSending emailYour email address and the email's content
ApifyThe job search under More toolsYour search terms, not your profile

We may disclose data if the law requires it, or to a successor if GradLaunch is sold or merged, under this policy.

6. What we never do

The use of information received from the GradLaunch extension adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements. In particular, we don't:

7. How long we keep it

We keep your account data while you have an account. Data in the extension stays in your browser until you delete it or remove the extension. When you ask us to delete your account, we delete it within 30 days; copies in backups are overwritten on their normal cycle.

8. Deleting your data

9. Security

All connections use HTTPS. The extension's sign-in token is stored on our server only as a one-way hash, and you can cancel it at any time by signing out. Your own AI key, if you add one, never leaves your browser except to go to that AI provider. No system is perfectly secure, but we take reasonable steps to protect your data.

10. Your rights

You can see and edit your profile at any time on the website or in the extension. You can ask us for a copy of your data, to correct it, or to delete it, by emailing hello@gradlaunch.ca. Depending on where you live (for example, under Canada's PIPEDA or the EU/UK GDPR) you may have further rights, including to complain to your data protection authority.

11. Children

GradLaunch is for job seekers and isn't directed at children under 16. We don't knowingly collect data from them. If you believe a child has given us data, contact us and we'll delete it.

12. Changes and contact

If we change this policy, we'll update the date at the top. If a change affects how we use data you've already given us, we'll tell you before it applies. Contact: hello@gradlaunch.ca.