Privacy Policy
Effective date: July 18, 2026
Wingman ("we," "our," or "us") operates Wingman.JOBS and provides job application automation software. This Privacy Policy explains how we collect, use, and protect your information.
1. Information We Collect
We collect information you provide directly:
- Account information: email address and password (hashed)
- Profile information: resume text, skills, work history, education, salary preferences, and job search preferences
- Demographic information (optional): gender, race/ethnicity, veteran status, disability status, and work authorization — used solely to auto-fill government-mandated EEO fields on job applications
- Payment information: processed by Stripe; we do not store card numbers
- Usage data: job searches performed, applications submitted, AI features used
2. How We Use Your Information
- To search job boards and match listings to your profile
- To generate personalized cover letters and tailored resumes using AI
- To automate job application form submissions on your behalf
- To process subscription payments via Stripe
- To enforce usage limits and prevent abuse
- To communicate with you about your account
3. AI Processing
Wingman uses the Anthropic Claude API to analyze job listings and generate cover letters and resume content. Your resume and job preferences are sent to Anthropic's API for processing. Anthropic's use of data is governed by their Privacy Policy.
4. Data Storage
Your data is stored in encrypted databases hosted on Amazon Web Services (AWS) in the United States. Resume PDFs, cover letters, and generated documents are stored in Amazon S3 with server-side encryption.
5. Data Sharing
We do not sell your personal information. We share data only with:
- Stripe — for payment processing
- Anthropic — for AI text generation (resume/cover letter content)
- Amazon Web Services — for infrastructure and storage
- Job boards and employer career pages — when submitting applications on your behalf (your application data is sent to the employer, as you have directed)
6. Your Rights
You may request deletion of your account and all associated data at any time by emailing rjbeery@gmail.com. We will delete your data within 30 days.
7. Cookies
We use only essential session cookies required for authentication. We do not use tracking or advertising cookies.
8. Children's Privacy
Wingman is not directed at children under 13. We do not knowingly collect information from children.
9. Changes to This Policy
We will notify you by email of material changes to this policy. Continued use of the service after changes constitutes acceptance.
10. Contact
Questions? Email rjbeery@gmail.com.
11. Browser Extension
The Wingman Chrome Extension is an optional companion to the Wingman web platform. This section describes its specific data practices.
What the extension collects:
- Email address — stored locally in
chrome.storage.localfor display in the extension popup. Never transmitted to any third party. - JWT authentication token — stored locally in
chrome.storage.localonly. Transmitted exclusively as an Authorization header toapi.wingman.jobsto authenticate API requests on your behalf. Never synced to your Google account viachrome.storage.sync.
What the extension does NOT collect:
- Browsing history or a record of pages you visit
- Page content outside of ATS application form fields during an active automation you explicitly triggered
- Keystrokes typed outside the extension popup
- Any data from pages where you have not clicked a Wingman action button
Third-party communication: The extension communicates exclusively with api.wingman.jobs (and qa-api.wingman.jobs in QA mode). It does not send data to any analytics service, advertising network, or other third party.
Automation scope: When you trigger "Watch Wingman Apply" or "Fill current page silently," the extension reads visible form fields on the active ATS tab and fills them using data from your Wingman profile. This interaction is user-initiated — the extension does not interact with pages autonomously or without your explicit action.
Removing your data: Uninstalling the extension permanently clears all locally stored data (wingman_token, wingman_email) from chrome.storage.local. To delete your Wingman account and all server-side data, email rjbeery@gmail.com or use the Delete Account option in the Wingman billing page.