Privacy
Privacy Notice
Effective 7 August 2026
What we store
To provide verified access, Lineup CV stores your email address, full name, professional role, personal LinkedIn URL, optional phone number, optional location, email verification timestamp, account access status, and separate versions and timestamps for Terms acceptance, Privacy Notice confirmation, and optional marketing consent. Lineup does not store a confirmation that you follow salari.dev or connected with Mike Salari. Your latest role may also be stored with its title, company, location, dates, employment type, project summary and achievement lines. When an exported CV scores 70 or higher, Lineup stores a metadata only local reference including its local document ID, filename, target role, score, page count, paper format and export count. Verification challenges and authenticated sessions are stored for security.
Operational access records
For account security, abuse prevention, incident response, and owner access administration, Lineup stores the latest IP address, approximate city and country, device category, operating system, browser, and access time associated with a verified account. This processing is essential and does not depend on optional product analytics consent. Cloudflare location headers are used when available. Otherwise, approximate location is resolved on the Lineup server with a local GeoIP database, so no external IP lookup service receives the address. The full user agent string is reduced to the listed device fields and is not stored in the production profile. Lineup stores the latest observation rather than a raw access history. The record is cleared after 180 days without verified access and is deleted with the profile.
What stays local
Your complete CV draft, generated PDF, roles other than your latest role, imported files, profile photo and target job description remain in browser storage. The Supabase CV reference does not contain a cloud copy or a link that can open the local CV on another device. Files are sent to the Lineup server only when required to parse an upload or generate a PDF and are not retained in the account database.
Product analytics
Optional first party product analytics begin only after you explicitly accept the current notice in the privacy controls. An undecided choice, a declined choice, or consent to an older notice is treated as no consent. Analytics include named feature events, page path, control identifier, device class, a per tab session identifier, completion duration, coarse result status, ATS score, and page count. They can measure imports, onboarding, headline generation, job matching, design choices, reported bugs and PDF exports and associate those actions with your verified profile. Analytics never include IP addresses, city, country, form values, CV text, job descriptions, generated headlines, profile photos, uploaded files, keystrokes or precise pointer recordings.
Marketing email
Marketing email consent is optional and is not preselected. If you opt in, salari.dev may send occasional product updates and career briefs. You can withdraw this consent through your Lineup account or the unsubscribe method included in a marketing email. Withdrawing consent does not affect your Lineup account, sessions, or feature access.
Verified reviews
If you submit a review, Lineup stores your rating, review text, moderation status, and submission timestamps with your verified account. Reviews are not public until approved. A published review shows your full name, star rating, review text, and verified user label. Your email address and other account details are never published with the review. Deleting your profile also deletes your review.
Contact messages
If you use the contact form, Lineup sends your message together with your verified full name, email address and professional role so Mike can reply. The message content is delivered through the configured email provider and is not retained in the Lineup application database. Basic delivery and security outcomes may be recorded without the message contents.
Why we process it
Profile and verification information is processed to provide requested access, prevent abuse, maintain agreement records and support account security. The latest operational access record is processed under legitimate interests for security, service integrity, access control, and abuse prevention. Contact details are processed when you choose to send a message. The email address and recorded marketing agreement are used for the product emails described above. Limited optional first party analytics are used to understand feature adoption and improve reliability.
Retention and deletion
Your profile is retained while verified access remains active. The latest operational access record is cleared after 180 days without verified access. Unverified account attempts are removed after 24 hours. Authenticated sessions expire after 30 days. Pseudonymized security events are retained for 90 days, product analytics events for 400 days, and inactive exported CV metadata references for 730 days. Bug reports are retained for up to 24 months and then removed after their operational purpose ends. You can download your stored account data and permanently delete your profile from Account. Permanent deletion requires a short confirmation code sent to your verified email address. The owner can block access for abuse or security reasons and can permanently delete an account through the restricted owner dashboard. Deployment backups may retain deleted records until the backup retention period expires. A restored backup must reapply recorded deletions.
Your choices
You can keep optional product analytics disabled through Configure while using essential authentication, security, operational access records, and local draft storage. You can also correct contact information, export your stored profile as JSON, log out, or delete your profile and linked analytics from Account. Privacy questions and access objections can be directed through salari.dev. Final legal rights depend on where you live.
Service providers
Supabase provides the production profile and first-party analytics database in the configured EU region. Hetzner provides the application server. Cloudflare provides DNS, TLS proxying and access controls. BillionMail provides the self-hosted email delivery interface. It receives the name, email address and verification message required to deliver access codes. When you use the contact form, it also receives your professional role, subject and message so it can deliver your request. Provider agreements, residency and deletion processes are reviewed separately from this technical notice.