Privacy
This page is maintained by the Aptly team to answer common questions about what we store and how you can request your data. Aptly is currently in closed beta.
What we store
- Your email address and name (from sign-up)
- Applications you log: company, role, JD, dates, status, notes
- Interview rounds: schedule, type, interviewers you enter, pre/post notes
- CVs you upload (stored as private PDFs) and the extracted text
- Prep briefs generated by the AI and chat messages you send about them
- Basic tier information (Free / Premium) for access control
Who can see it
Your data is scoped to your account by row-level security in the database. Only you can read your own applications, CVs, and chat history through the app. The Aptly admin (a single person, currently the beta operator) can access user records for support, GDPR requests, and to manage tier access.
Third parties involved
- Lovable Cloud (hosting, database, storage, authentication)
- Google (via Lovable AI Gateway) for generating prep briefs and chat replies — job description, CV excerpt, and your messages are sent to the model at the moment of generation
Retention
Your data is retained for as long as your account is active. If you stop using Aptly and ask us to delete your account, we permanently remove your profile, applications, interview rounds, chat messages, CV metadata, and uploaded PDF files.
Your rights (GDPR)
Under GDPR you can request a copy of the data we hold about you (right of access) or ask us to delete it (right to erasure). Email elissa.fontainenemoto@gmail.com from the address associated with your account and we'll action it within 30 days. Deletion is immediate and irreversible.
Marketing consent
When you sign up we ask whether you would like to receive product tips, updates, and the weekly inactive reminder. This is optional and stored on your profile. You can change your preference at any time from your Account settings page. Transactional emails such as payment confirmations are not affected.
Security
Data is transmitted over HTTPS and stored in a managed Postgres database. CV files are stored in a private bucket accessed only via short-lived signed URLs. Passwords are hashed by our auth provider and checked against the Have I Been Pwned breach database at sign-up.
Changes
As Aptly is in beta, this notice may change. Material changes will be communicated by email to signed-up users.
Last updated: July 2026.