RoleGist
Privacy Policy
Effective date: September 21, 2026
RoleGist is independently operated by an individual. This policy explains what information the service handles, why it is used, and the choices available to you.
Who may use RoleGist
RoleGist is intended only for people who are 18 years of age or older. Please do not create an account or provide personal information if you are under 18.
Information we handle
Account and profile information
We handle your email address, authentication and session identifiers, account status, brand membership, and candidate profile identifiers. Supabase Auth manages credentials; RoleGist does not store your password in its own application tables.
Work-authorization and eligibility information
If you choose to complete setup, we handle the answers you provide about your student and work-authorization situation, including supported OPT or STEM OPT details, dates, degree information, and future sponsorship needs. Draft answers may be retained before setup is complete.
Information you confirm about yourself is labeled as user-confirmed. It is your statement and is kept separate from externally sourced or human-reviewed evidence; it is not represented as government-verified information.
Job activity and application status
We process job searches and filters to show results. A personalized job check may store the result, reasons, rule version, time, facts used, evidence references, and an eligibility audit trail. When you select Apply, we may record the click as an unknown application status. We record applied or not applied only after you expressly confirm it, and you can later correct that status.
Job and employer information
We process public job postings, company and source information, and employer evidence. Observed posting text is not automatically treated as reviewed evidence. Reviewed posting restrictions and external employer evidence retain their source and review context.
Technical information
Our service providers may process ordinary request, device, security, session, cookie, and diagnostic information needed to host, secure, and operate the service. RoleGist does not currently provide a document-upload flow for passports, EADs, I-20s, or resumes.
How we use information
- Provide registration, sign-in, account, and brand-separated profile features.
- Save your setup answers and application-status corrections.
- Search and display jobs and provide source-aware pre-application guidance.
- Maintain eligibility audit history, troubleshoot problems, and protect the service.
- Respond to support, access, correction, and deletion requests.
RoleGist uses this information to support a job-application decision. It does not make a legal or government determination about your work authorization.
Service providers and external services
- Supabase provides authentication and database services.
- Vercel hosts the web application.
- Resend sends transactional authentication email through Supabase.
- Cloudflare provides DNS and routes messages sent to our support address.
- Greenhouse is a source of public job postings for the current service.
When you open an employer's official applicant tracking system, that external service handles your activity and any application under its own terms and privacy practices. We may also disclose information when reasonably necessary to protect the service, comply with applicable legal obligations, or address fraud or security concerns.
Retention
We retain information by category for as long as reasonably needed to provide and secure the service, preserve accurate audit and evidence history, respond to requests, and meet legitimate operational or legal needs. Retention can differ for account records, eligibility facts and audits, application-status records, logs, and backups. Some prior fact versions and immutable audit records may be retained rather than overwritten. We do not promise a fixed retention period or immediate deletion in every circumstance.
Your choices and requests
You can correct supported work-authorization answers and application status through the available product flows. RoleGist does not currently provide self-service account deletion. To request access, correction, or deletion, email support@rolegist.com. We will verify the requester's identity and handle the request manually, subject to information that must be retained for security, audit integrity, legal obligations, or other legitimate needs.
Security
We use measures including authenticated sessions, server-only credentials, database row-level security for private user records, brand boundaries, and controlled operational access. No method of storage or transmission is completely secure, and we cannot guarantee absolute security.
Changes to this policy
We may update this policy as the service or its practices change. We will publish the revised policy here and update the effective date. Where appropriate, we may provide additional notice.
Contact
Questions and privacy requests may be sent to support@rolegist.com.