Privacy Policy

This page describes what JSeeQ collects, why, who we share it with, and how to remove it. Last updated 2026-04-26.

What we collect

Account data: the email address you sign up with, a salted-hashed password, and the workspace name you set.

Workspace content: the employers, opportunities, contacts, comments, resumes, and resume variants you author inside JSeeQ.

Payment data: if you upgrade to a paid plan, Stripe handles the card data — we never receive it. We store only the Stripe customer and subscription identifiers, your current plan, and the renewal date.

Server logs: request method, URL, status code, IP address, and user agent. Retained for up to 90 days, then deleted by an automated process.

Cookies: a session cookie and a CSRF cookie. No tracking, advertising, or third-party analytics cookies. Google Analytics is loaded only on the public marketing pages (home, /pipe/, /docs/, /pricing/, /about/, /blog/) — not inside the authenticated app.

What we do not collect

We don't collect biometric data, location data beyond what's implied by your IP address in server logs, advertising identifiers, or content from third-party services unless you explicitly connect those services in a future integration.

Why we collect it

To run the service: store and serve your data, authenticate you, send operational email (verification, password reset, workspace invitations, follow-up digests), bill paid plans, and investigate bugs and abuse. We don't use your data for advertising, model training, or resale.

Sub-processors

We rely on a small set of sub-processors to run the service. Their privacy policies govern how they handle the data we share with them.

Stripe processes payments and stores card data: stripe.com/privacy.

Zoho handles transactional email delivery (account verification, password resets, workspace invitations, follow-up digests): zoho.com/privacy.html.

Cloudflare serves static assets via its CDN; only URL-level metadata transits.

We don't sell your data or share it with anyone else, except where legally compelled. If we receive such a request, we'll notify you unless we're legally barred from doing so.

International transfers

JSeeQ's primary servers are located in the United States. If you access the service from outside the United States, your data is transferred to and processed in the United States. Where required, we rely on Standard Contractual Clauses or equivalent mechanisms with our sub-processors.

Your rights

You can access your data through the app — everything visible in your dashboard and workspace pages is what we hold. You can correct it by editing in place. You can delete your account by writing to privacy@defensiblelogic.com; we will remove your account, your workspaces, and their content within 30 days, except data we are legally required to retain (e.g., transaction records for tax purposes).

Residents of the European Economic Area, the United Kingdom, and California have additional statutory rights under GDPR, UK GDPR, and CCPA respectively — including the right to data portability, the right to object, and the right to lodge a complaint with a supervisory authority. Contact us at the address above to exercise any of these.

Retention

Account and workspace data is retained for as long as your account is active. Following account deletion, primary copies are removed within 30 days. Database backups containing your data age out within a further 30 days. Server logs are retained for up to 90 days. Stripe-required transaction records are retained for the period Stripe and applicable tax authorities require.

Security

We protect data in transit with TLS, store passwords as salted hashes (never in cleartext), and isolate workspace data per tenant at the application layer. We log access to production systems and review unusual activity. No system is perfectly secure; if we become aware of a breach affecting your data, we will notify you in compliance with applicable law.

Children

JSeeQ is not directed at users under 18 and we do not knowingly collect personal data from minors. If you believe we have collected data from a minor, contact us and we will remove it.

Changes

We will post material changes here and update the date at the top of this page. If a change affects how we use existing data, we will email you at the address on file at least 30 days before it takes effect.

Contact

privacy@defensiblelogic.com

JSeeQ is a product of Defensible Logic, Inc.