Privacy Policy
Last updated 20 August 2026
This Privacy Policy for ANDRIUKHIN GLEB, doing business as GigAmigo ("we", "us", or "our"), explains how we process personal information when you visit https://gig-amigo.com, sign in to GigAmigo, connect the Chrome extension, prepare resumes, process LinkedIn applications, or contact support.
1. Controller and contact
The data controller is ANDRIUKHIN GLEB, NIF/NIE Z3540405C, at 23 C. del Puerto de Cerredo, Gijón, Asturias 33207, Spain. Privacy questions and rights requests can be sent to support@gig-amigo.com.
2. Information we collect
Account and authentication
- Google account identifier, email address, and basic account metadata used for OAuth sign-in.
- Authentication sessions, security events, account status, theme, and product settings.
Resume and application information
- Uploaded DOCX/PDF resumes, extracted resume text, structured resume fields, and generated base or tailored resume files.
- Vacancy title, company, description, URL/identifier, workplace type, selected resume, tailoring mode, application status, and timestamps.
- Application form questions, available options, AI-generated answer drafts, and answers that you explicitly provide or change.
- Saved answers, including information that may be sensitive depending on the form, such as work authorisation, salary expectations, disability/DEI responses, or other information you choose to confirm.
LinkedIn and outreach information
- The LinkedIn profile identifier linked to the account, public profile details needed for the workflow, and an indication of Premium capabilities.
- Recruiter or job-poster names, public profile URLs, outreach drafts, invitation/message status, connection acceptance state, follow-up state, and related timestamps.
- Normalised LinkedIn identity/profile data read by the extension from your active browser session. We do not ask for your LinkedIn password and do not send raw LinkedIn cookies or the raw Voyager session to our backend.
Applications on employer and ATS websites
- When a vacancy you selected is hosted outside LinkedIn, the extension opens the employer's application page in your browser and sends a structured snapshot of the visible form — field labels, available options, the current step, and validation errors — to our backend and AI provider so the next action can be planned.
- Your tailored resume file and the answers prepared for that form are entered on the employer's page. Depending on your review setting, the completed form is either left for your confirmation or submitted automatically.
Extension, device, and usage information
- Extension version, installation/device public key, signed request proofs, session identifiers, revocation state, and security/audit events.
- Usage counters, configured activity limits, compute usage, product errors, IP address, browser/device characteristics, and diagnostic logs necessary to operate and protect the service.
Where the extension runs. The extension is granted access to sites you open over HTTPS, and a small guard script loads on those pages. Its only job is to ask the extension whether the current tab is under an active automated run and, if so, to keep automated actions separated from your own clicks and typing. It does not read, store, or transmit the content of those pages. Page content is read only on LinkedIn and on an application page opened for a vacancy you selected.
Billing and support
- Subscription status, plan, billing period, free-trial usage, and the Stripe customer and subscription identifiers. Payment details, including full card numbers, are collected and held by Stripe and are never stored by GigAmigo.
- Messages and attachments you send to support.
3. How we use information
- create and secure accounts, authenticate website and extension requests, and enforce one LinkedIn identity per account where applicable;
- create, normalise, store, download, and tailor resumes;
- classify user-selected vacancies, prepare application answers, fill forms, and record confirmed outcomes;
- fill and, where you enabled automatic submission, submit application forms on employer or ATS websites you selected;
- find a relevant recruiter/job poster, draft vacancy-specific outreach, detect accepted connections, and prepare a user-initiated follow-up;
- reuse only answers you explicitly supplied or changed, according to product controls;
- apply activity limits, prevent abuse, investigate errors, revoke compromised sessions, and maintain backups;
- provide support, communicate service or policy changes, process billing, and comply with law.
4. Legal bases
Where the GDPR or UK GDPR applies, we rely on performance of a contract to provide requested product functions; legitimate interests to secure, maintain, and improve the service; consent where required for optional technologies or specific processing; and legal obligations for accounting, consumer, security, and rights requests. You may withdraw consent without affecting earlier lawful processing.
5. AI and automated assistance
Resume text, vacancy context, application questions, selected saved answers, and recruiter context may be sent to AI/compute providers to generate the requested output. GigAmigo uses automated assistance for tailoring, classification, and drafting, but the user chooses search rules and can review, override, pause, or stop actions. The service does not make employment decisions on behalf of employers.
6. Who receives information
- Google: OAuth sign-in.
- Hosting and infrastructure providers: website, API, database, backups, monitoring, and transactional operations.
- Openclaw and configured AI providers: stateless or task-scoped compute for resume, vacancy, answer, and outreach generation.
- LinkedIn: information and files that the extension submits at your direction in your active browser session.
- Employers, job boards, and applicant tracking systems: the resume file, answers, and other form content that the extension submits at your direction on an off-site application page. They act as independent controllers under their own privacy policies.
- Stripe: our payment processor for subscriptions. When you start checkout, Stripe collects and processes your payment details, billing address, and any tax identifier directly. Card numbers are never sent to or stored by GigAmigo; we receive only your Stripe customer and subscription identifiers, the plan, the subscription status, and the current billing period.
- Professional advisers or authorities: only when reasonably necessary to comply with law or protect rights and security.
Providers act under their own terms or processing arrangements. Some may process data outside the EEA. Where required, we use legally recognised transfer mechanisms.
7. Cookies and local storage
We use authentication/security cookies and browser or extension storage needed for the service. Optional analytics or marketing storage is not enabled by default. See the Cookies Policy.
8. Retention
Account data, resumes and generated files, Saved answers, and application/outreach history are kept while the account is active and for up to 12 months after the account is closed, so that history, downloads, support, and disputes remain available. Diagnostic and product-error logs are kept for up to 90 days. Security and audit records, including revoked session material retained to enforce revocation, are kept for up to 12 months. Operational backups are rotated within 30 days. Some records may be retained longer where required by law or necessary to establish, exercise, or defend legal claims.
9. Security
We use access controls, account scoping, device-bound extension proofs, expiring/revocable sessions, request replay protection, finite compute budgets, restricted runtime files, and operational backups. No storage or transmission method is completely secure. Users must protect their Google and Chrome profiles and should disconnect or revoke access if a device is lost.
10. Sensitive information
Job application forms can ask sensitive questions. GigAmigo does not create a durable Saved answer from an automatic fill alone. A durable answer is created only when you explicitly answer or confirm/change a value through the product workflow. You can edit or delete Saved answers and should avoid providing information that is not necessary for an application.
11. Information about other people
To prepare outreach, GigAmigo processes a limited set of professional information about recruiters, job posters, and authors of hiring posts: name, public profile URL, headline or role, company, and the vacancy they are connected to. It comes from LinkedIn pages opened in your own session for a vacancy you selected — we do not buy or scrape contact lists — and it is stored with your application history so the product can track invitations, acceptance, and follow-ups. We rely on legitimate interests: connecting a candidate with the person responsible for a vacancy they are applying to. Invitations and messages are sent from your own LinkedIn account, so LinkedIn's terms and privacy policy apply to that contact as well. If you are one of these people and want your information deleted, or you object to the processing, write to support@gig-amigo.com and we will remove it unless we must keep it to establish, exercise, or defend legal claims.
12. Children
GigAmigo is a professional job-search service and is not directed to children. You must be at least 18 years old to create an account.
13. Your rights
Depending on your location, you may have rights to access, correct, delete, restrict, object to, or receive a portable copy of your personal information, and to complain to a supervisory authority. We may need to verify identity before completing a request. Contact support@gig-amigo.com.
To delete your account, write to support@gig-amigo.com from the email address you sign in with. We confirm identity and complete deletion within 30 days. Deletion covers resumes and generated files, Saved answers, application and outreach history, extension sessions, and account settings; backups containing that data are rotated out within the following 30 days. Individual resumes and Saved answers can be deleted in the product at any time. We may keep a minimal record of the deletion request itself and any data we are legally required to retain.
14. Google API data
Our use and transfer of information received from Google APIs follows the Google API Services User Data Policy, including Limited Use requirements. Google OAuth is used for account authentication; GigAmigo does not request access to Gmail or Google Drive as part of the current product.
15. Changes to this policy
We may update this policy when the service, providers, law, or data practices change. The revision date appears at the top. Material changes may also be communicated in the product or by email.
16. Contact
ANDRIUKHIN GLEB
23 C. del Puerto de Cerredo, Gijón, Asturias 33207, Spain
support@gig-amigo.com