Trust

Subprocessors

Last updated

To run Handmade Resume we rely on a small number of vetted service providers ("subprocessors"). Each processes information only on our instructions and is bound by contractual confidentiality and data-protection obligations. This page lists them by the function they perform.

Platform and infrastructure

  • Clerk: authentication and account management (name, email address, sign-in metadata).
  • Supabase: managed PostgreSQL database for application data (career records, application metadata, generated documents).
  • Cloudflare: private object storage (R2) for your uploaded sources and finished files.
  • Vercel and Railway: application and worker hosting.

Automated document processing

  • Model-inference infrastructure: specialized, access-controlled language-model infrastructure used to generate and check your documents. It receives only task-constrained content with direct contact identifiers removed, operates under contractual zero-data-retention terms, and does not use your content to train third-party models.

Payments

  • Stripe: payment processing and billing (payment and transaction details). We do not store full payment card numbers.

Communications, analytics, and reliability

  • Resend: transactional email (email address, message content such as receipts and account notices).
  • PostHog and Sentry: privacy-configured product analytics and error monitoring. Both are configured to exclude document text, employer names, job descriptions, and contact details.

Processing regions, retention terms, and the exact contracting entity for each provider follow the current agreement we hold with that provider. We keep this list current and will update it when we add, remove, or change a subprocessor. Questions can be sent to support@handmaderesume.com.