CareerVector

Privacy Policy

Last updated: 30 July 2026

CareerVector is a product of GrowthPostHQ.

This policy explains how GrowthPostHQ ("GrowthPostHQ", "we", "us", or "our") collects, uses, discloses, retains, and protects personal information in connection with the CareerVector website, application, and Chrome extension (together, the "Service"). We are based in Australia and handle personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles. Additional privacy laws may apply to people outside Australia.

The extension reads job-page information only when you explicitly choose to save a job; it does not crawl pages in the background or inspect your browsing history.

1. Who this policy covers

This policy applies to CareerVector account holders and users, prospective users and website visitors, people who contact us, and people whose personal information a user provides through the Service, such as information contained in an uploaded resume or other career document.

If you provide another person's information, you are responsible for ensuring you are authorised to do so and that your use of it complies with applicable law.

2. Information we collect

When you create or use a CareerVector account, we process authentication information, your account email and user identifier, profile and career information you provide, resumes and other documents you upload, job applications and saved jobs, generated content, support requests, and product interactions.

When you explicitly select Save to CareerVector, the extension sends the active job page's URL and available Schema.org JobPosting fields. If those fields do not contain a usable posting, it can send up to approximately 15,000 characters of readable website content for the requested extraction. This may include a job title, company, description, location, employment type, and posted date.

CareerVector also collects limited web and extension product interaction analytics. Extension analytics can include a random installation identifier, the authenticated account's stable analytics identifier after connection, event identifiers and timestamps, product surface, extension and schema versions, supported site family, extraction method, and coarse success, failure, connection, onboarding, and navigation categories.

Our website and Service may also collect device and technical information such as IP address, browser type, device information, and server logs. We do not seek to collect sensitive information. Please do not provide sensitive information unless it is necessary for your use of the Service and you have any consent required by law.

3. Information stored in Chrome

Chrome local storage holds the CareerVector Supabase authentication session and refresh credentials, connected account email, a cache that maps canonical job URLs to Inbox row identifiers, preferences, a random analytics installation identifier and account-association state, and a bounded queue of up to 100 allowlisted analytics events. Queued analytics events older than seven days are discarded.

The saved-job cache lets the extension recognise saved pages without sending each page URL to CareerVector merely because you visit it.

4. How we use information

We use information to authenticate your account; provide the Career Bank, job Inbox, resume, cover-letter, alignment, capture, and support features you request; save and synchronise jobs; extract structured job information; secure and troubleshoot the service; measure whether product flows work; prevent abuse; and improve CareerVector.

We do not sell personal information, use extension data for personalised advertising, credit decisions, or purposes unrelated to the extension's single purpose, user-facing features, security, or proportionate measurement of those features' performance and reliability.

We use personal information for the purpose for which it was collected, a related purpose you would reasonably expect, a purpose you consent to, or as otherwise permitted or required by law.

5. Automated processing and AI

CareerVector uses automated processes and third-party AI models to provide features you request, including resume and job alignment analysis, career-content generation, and extraction of structured details from a job posting. These tools assist you; they do not make binding employment decisions, and you decide how to use their output.

AI-generated output may be inaccurate or incomplete. Review it before relying on it or submitting it to an employer.

6. When we disclose information

CareerVector uses service providers acting on our behalf, including Supabase for authentication, database, and storage services; OpenAI for server-side AI processing requested by users; PostHog for product analytics; Resend for service email and contact management; and hosting and infrastructure providers needed to operate the service.

If structured job data is insufficient after an explicit save, CareerVector processes the submitted page content on its server and may send the content to OpenAI to extract the requested job posting. The extension does not contain an OpenAI credential and does not contact OpenAI directly. We may also disclose information when required by law, to protect users or the service, or as part of a corporate transaction after obtaining any consent required by the Chrome Web Store Limited Use requirements.

We may also disclose personal information to professional advisers where necessary. We do not sell personal information. You may ask us for a current list of key service providers.

7. Overseas processing

Some service providers may be located outside Australia or process information in other countries, including the United States. We take reasonable steps required by applicable law when personal information is disclosed overseas, including using providers that are contractually or legally required to protect it.

8. Cookies, analytics, and their limits

We use cookies and similar technologies to operate the website and Service, maintain sessions and preferences, and understand product usage. You can control cookies through your browser settings, although blocking them may prevent some features from working.

Extension analytics does not contain full URLs or hostnames, browsing history, page text or DOM content, job titles, company names, job descriptions, access or refresh tokens, account email as an analytics event property, response bodies, raw error messages, stack traces, filenames, script URLs, line numbers, or rejected promise values. Ordinary browsing does not create extension page-view analytics.

Before account connection, extension analytics uses the random installation identifier. After connection, the CareerVector server associates that activity with the authenticated account's analytics identity. PostHog processes these allowlisted events for CareerVector.

9. Direct marketing

Where permitted by law, we may send you information about CareerVector. You can opt out at any time through the unsubscribe link in a marketing email or by contacting us. We will continue to send essential service messages when necessary to operate your account.

10. Retention

We retain account and saved content while your account remains active and as needed to provide the service. We may retain limited records longer where required for security, fraud prevention, dispute resolution, legal compliance, or backups, then delete or de-identify them when they are no longer needed. Product analytics is retained according to CareerVector's configured analytics retention settings. Extension analytics waiting locally is bounded to 100 events and seven days.

11. Security

We use access controls, encrypted HTTPS transport, managed authentication, restricted server credentials, and data minimisation to protect information. No system is completely secure, so please contact us if you believe your account or data has been compromised.

If an eligible data breach is likely to result in serious harm, we will comply with Australia's Notifiable Data Breaches scheme, including required notifications to affected people and the Office of the Australian Information Commissioner.

12. Your choices, access, and correction

You control when the extension saves a job and whether to grant persistent access for an additional HTTPS site. You can sign out of the extension to revoke its Supabase session and clear its locally stored authentication session and saved-job cache. Removing the extension clears extension-managed local and session storage.

You may ask to access, correct, export, or delete your account information, subject to applicable law. Contact us to exercise these choices. If you do not want extension product analytics, you can remove the extension.

We may need to verify your identity before completing a request. We will respond within a reasonable period and may refuse or limit a request where permitted by law, in which case we will explain why.

13. Complaints

If you believe we have mishandled your personal information, please contact us first so we can investigate and respond within a reasonable period. If you are not satisfied with our response, you may contact the Office of the Australian Information Commissioner.

14. Chrome Web Store Limited Use

CareerVector's use and transfer of information received from Google APIs complies with the Chrome Web Store User Data Policy, including its Limited Use requirements. We use Chrome extension data only to provide or improve the extension's single purpose and user-facing features, security, reliability, and privacy-preserving analytics, and we do not transfer it for personalised advertising, sale, or unrelated purposes.

15. Changes to this policy

We may update this policy from time to time. The current version will remain available on this page with its last-updated date. If a change is material, we will take reasonable steps to notify affected users.

16. Contact

For privacy questions or requests, email hello@careervectorhq.com. You can also return to the CareerVector website.

GrowthPostHQ
ABN 60 410 976 328
45 St Georges Terrace
Perth, Western Australia