Privacy Policy
This Privacy Policy describes how FreelanceAI.tech ("we", "us", "our") collects, uses, and protects personal information when you use our website, web application, and the Upwork AI Job Analyzer Chrome extension (together, the "Service").
By creating an account or using the Service you agree to the processing of your data as described below.
1. Data We Collect
1.1 Account data
- Email address (required for sign-up and login).
- Display name and profile image (optional).
- Password — stored only as a salted hash (Argon2id). We never see or store passwords in plain text.
- Email verification status.
1.2 Session and security data
- Session token stored in an HTTP-only cookie.
- IP address and browser User-Agent — collected when a session is created, used to protect your account from unauthorized access.
1.3 Connected accounts (Upwork OAuth)
If you connect your Upwork account, we store the OAuth access and refresh tokens issued by Upwork so the Service can fetch your profile and job data on your behalf. Tokens are stored encrypted at rest and can be revoked at any time by disconnecting Upwork in your account settings.
1.4 Usage data
- Records of in-app actions (e.g. job analyzed, proposal generated) and the related Upwork job ID. Used for quota enforcement and product improvement.
- Subscription plan (Free / Pro) and billing status.
1.5 Job content processed by AI
When you analyze a job posting, the public job content (title, description, budget, client history visible on the Upwork page) is sent to our AI provider for processing and returned as structured insights. We do not retain the raw job content beyond what is needed to deliver the result.
2. How We Use Your Data
- To create and operate your account and authenticate sessions.
- To provide the core features: job analysis, proposal generation, usage limits.
- To send transactional emails (account verification, password reset, billing receipts).
- To send product updates and marketing emails — only if you opt in via the newsletter form.
- To detect abuse, enforce plan limits, and protect the Service.
3. Legal Basis (GDPR)
- Contract — to create your account and deliver the Service.
- Consent — for marketing emails and analytics cookies. You can withdraw consent at any time.
- Legitimate interest — to keep the Service secure, prevent fraud, and improve product quality.
- Legal obligation — to keep billing and tax records where required by law.
4. Third-Party Processors
We share the minimum amount of data needed with the following providers:
- Resend — sends transactional emails (verification, password reset).
- MailerLite — stores newsletter subscribers (only if you opt in).
- Google Analytics — aggregated, pseudonymous traffic analytics. Loaded only with your consent where required.
- Upwork API — accessed on your behalf using OAuth tokens you provided.
- AI provider — processes job content you submit for analysis. Content is not used to train third-party models.
- Hosting and database — application is hosted on cloud infrastructure with encryption in transit (TLS) and at rest.
We do not sell your personal data to anyone.
5. Cookies
- Essential cookies — session cookie required to keep you signed in. Cannot be disabled.
- Analytics cookies — set by Google Analytics. Used only with consent and can be declined.
6. Data Retention
- Account data — kept while your account is active. Deleted within 30 days after you delete the account.
- Sessions — automatically expire and are deleted.
- Verification tokens — deleted shortly after they are used or expire.
- Usage logs — retained for up to 12 months for quota and abuse prevention.
- Billing records — retained as required by applicable tax law.
7. Your Rights
Depending on your jurisdiction (GDPR, UK GDPR, CCPA) you have the right to:
- Access the personal data we hold about you.
- Correct inaccurate data.
- Request deletion of your account and data.
- Export your data in a machine-readable format.
- Withdraw consent for marketing or analytics.
- Lodge a complaint with your local data protection authority.
To exercise any of these rights, email us at mrdexters1@gmail.com. We respond within 30 days.
8. Security
Passwords are hashed with Argon2id. All traffic is encrypted with HTTPS/TLS. Access tokens are stored in HTTP-only cookies. We follow industry best practices for application and database security but no system can guarantee absolute security.
9. Children
The Service is not intended for users under 16. We do not knowingly collect data from children. If you believe a minor has created an account, contact us and we will remove the data.
10. International Transfers
Your data may be processed in countries outside your own, including the United States and the European Union, by our hosting and processor providers. Where required, we rely on Standard Contractual Clauses to protect your data during transfer.
11. Chrome Extension
The Upwork AI Job Analyzer extension reads only publicly visible job post details on Upwork pages you open and sends them to our API for analysis. The extension does not collect browsing history, keystrokes, form input, or content from other websites. If you are signed in to your FreelanceAI.tech account, results are linked to your account so your usage limits apply.
12. Changes to This Policy
We may update this Privacy Policy from time to time. The "Last updated" date at the top of this page indicates when the latest changes took effect. For material changes we will notify you by email or in the app.
13. Contact
For privacy questions or data requests, contact mrdexters1@gmail.com. See also our Terms of Service.