Last updated 5 October 2026
Privacy
Plumb is a small, invite-only beta. This page explains exactly what it keeps about you, where, and who else sees it.
What Plumb keeps
- Your name, email address, and a scrambled (hashed) version of your password. Plumb never stores the password itself.
- Your resume: the file you upload and the text read from it, plus every tailored version made from it.
- Your profile answers: target roles, locations, experience, pay range, deal-breakers and skills.
- What you do with matches: ratings, the reasons you give, statuses like Applied, and the companies you follow.
- A record of your searches, so the app can show run history and keep to the weekly limits.
Where it's stored
In a private database and a private file store run by Supabase, in their Mumbai region. The app itself runs on Vercel. Only the app's server can read your data; there are no public links to your files.
Who else sees it
OpenAI. To score a role and tailor your resume, Plumb sends your resume text, your profile and the job description to OpenAI's API. Their handling of API data is set out in their own policies.
Nobody else. Career pages are read with Firecrawl and public hiring systems, and your resume and profile are never sent to them. Plumb doesn't sell data, show ads, run analytics trackers, or share anything with employers, and it never applies to jobs for you.
Cookies and local storage
One cookie keeps you signed in, and another remembers whether you view Matches as cards or a list. Your browser also remembers your light or dark theme. That's all.
Deleting your data
You can delete any resume version yourself from the Resumes page; the original file goes with it. To remove your whole account and everything linked to it, ask the person who invited you.
Changes
If any of this changes (a new provider, a new place your data goes), this page will be updated first.