Data Policy

This Data Policy outlines how pitch.top handles the storage, processing, and management of your data, with a particular focus on Personal Identifiable Information (PII).

1. Data Collection and Purpose

We collect data primarily to provide and improve our service of transforming your resume into a personal website. The data collected includes:

  • Account Information: Name, email, and encrypted password for user authentication and account management.
  • Resume Data (PII): When you upload your resume, we extract and store information such as your full name, contact details (email, phone, address, social links), work experience, education, skills, projects, and any other details you include. This data is essential for generating your website content.
  • Website Content: The generated HTML and associated assets for your personal website.
  • Usage Data: Non-identifiable data about how you interact with our platform (e.g., features used, pages visited) for analytics and service improvement.

2. Data Storage Locations

All user data, including PII, is stored on secure, cloud-based servers. We utilize industry-leading cloud providers that adhere to strict security and compliance standards. Our primary data storage locations are within the United States.

3. Data Security Measures

We implement robust security measures to protect your data from unauthorized access, alteration, disclosure, or destruction. These measures include:

  • Encryption: Data is encrypted both in transit (using TLS/SSL) and at rest (using AES-256 encryption).
  • Access Control: Strict access controls are in place, limiting data access only to authorized personnel who require it for operational purposes.
  • Regular Audits: We conduct regular security audits and vulnerability assessments to identify and address potential weaknesses.
  • Data Minimization: We only collect and retain data that is necessary for the provision of our services.
  • Anonymization/Pseudonymization: Where feasible and appropriate, we anonymize or pseudonymize data for analytics and testing purposes.

4. Data Retention

We retain your PII and other data for as long as your account is active or as needed to provide you with the Service. If you delete your account, your PII and associated resume data will be deleted from our active databases within a reasonable timeframe, typically 30 days, unless retention is required by law or for legitimate business purposes (e.g., dispute resolution, legal obligations). Backup copies may persist for a limited period before being fully purged.

5. Third-Party Data Processors

We may use third-party services to process certain data on our behalf. These include:

  • Payment Processors (e.g., Stripe): For handling subscription payments. We do not store your full credit card details on our servers.
  • Email Service Providers (e.g., Resend): For sending transactional emails (e.g., verification, password resets).
  • Analytics Providers: For understanding user behavior and improving our service.

All third-party processors are carefully selected and are required to comply with data protection laws and our privacy standards.

6. Your Control Over Your Data

You have the right to access, modify, or delete your personal data stored with us. You can manage most of your account and profile information directly through your dashboard. For requests regarding resume data or full account deletion, please contact our support team.

7. Changes to This Data Policy

We may update this Data Policy from time to time. We will notify you of any changes by posting the new Data Policy on this page and updating the "Last Updated" date.

8. Contact Us

If you have any questions about this Data Policy or our data practices, please contact us at support@pitch.top.

Last Updated: June 8, 2025