ResumeBoost logoResumeBoost
FAQ
Back to home

Privacy policy

ResumeBoost is built to keep your resume on your device. This page describes what stays local, what is sent to xAI when you run AI features, and optional site analytics.

Last updated: May 30, 2026

ResumeBoost is an independent project and is not affiliated with, endorsed by, or sponsored by xAI or Grok.

Overview

ResumeBoost is a local-first web application that helps you optimize resumes and cover letters using AI. This privacy policy explains what information the app handles, where it goes, and what choices you have.

ResumeBoost is an independent side project. It is not affiliated with, endorsed by, or sponsored by xAI (Grok) or any applicant tracking system vendor.

ResumeBoost does not operate a backend database for your resume content, job descriptions, or API keys. There is no account sign-up.

Information ResumeBoost handles

When you use ResumeBoost, you may provide:

Resume and job content — Text you upload, paste, or generate while using the app (resume, job description, cover letter drafts, section rewrites).

API credentials — Your xAI API key, entered in the app so optimization requests can run.

Preferences and history — Template choice, optimization history, and related session data saved on your device when you choose to keep them.

ResumeBoost does not receive this information on its own servers. Processing happens in your browser unless you explicitly trigger an AI action that calls an external provider (see below).

Information stored on your device

Depending on your settings, ResumeBoost may store data in your browser:

Session-only mode — Your API key and optimization history stay in memory for the current tab and are cleared when you close it. Nothing is written to persistent storage.

Remember securely — Your API key and optimization history are encrypted with AES-GCM (PBKDF2 + a passphrase you choose) before being saved in `localStorage`. Only encrypted blobs are stored; you unlock with your passphrase after restarting the browser.

Template preferences — Saved locally on your device.

You can update or remove your API key, clear optimization history, or switch storage modes from within the app at any time.

Information sent to third parties

When you click Optimize, generate a cover letter, or rewrite a section, the relevant resume and job description text is sent directly from your browser to the xAI API using your API key. ResumeBoost does not proxy these requests through its own servers.

xAI processes that content under its own terms and privacy practices. Review xAI's legal policies for details on retention, security, and how API data may be used.

ResumeBoost does not control xAI's policies or billing. Usage charges appear on your xAI account.

Analytics

The ResumeBoost website may use Google Analytics 4 to understand general site usage—such as which pages are visited, how visitors arrive at the site, and basic device or browser information.

Google may collect data including pages viewed, approximate location derived from IP, browser type, and referral source. That data is processed by Google under Google's privacy policy.

Analytics does not include your resume text, job descriptions, API key, or optimization results. Those stay in your browser unless you send them to xAI as described above.

Your choices

You control what you paste or upload into ResumeBoost.

You can use session-only mode if you prefer not to persist an API key or history on disk.

You can remove your API key, clear optimization history, or stop using the app at any time.

You choose when to run AI features; no optimization or cover letter generation occurs without your explicit action.

Security

ResumeBoost encrypts locally stored API keys and history when you use Remember securely. Encryption strength depends on a passphrase you choose—use a strong, unique passphrase and do not share it.

No method of storage or transmission is completely secure. You are responsible for securing your device, browser, and xAI account credentials.

Children's privacy

ResumeBoost is intended for job seekers and is not directed at children under 13. We do not knowingly collect personal information from children. If you believe a child has provided resume content through the app, discontinue use and clear any locally stored data.

Changes to this policy

We may update this privacy policy from time to time. The Last updated date at the top of this page will change when we do. Continued use of ResumeBoost after an update means you accept the revised policy.

Contact

Questions about this privacy policy can be directed to the ResumeBoost project maintainers via single-threaded.ai.

Have questions about how ResumeBoost works? See the FAQ for detailed answers.