Security & Privacy

Your career data is sensitive. We treat it that way.

Encryption at Rest & in Transit

All data is encrypted using AES-256 at rest and TLS 1.3 in transit.

Secure Authentication

bcrypt password hashing, JWT tokens with short expiry, optional 2FA, and Google OAuth.

Data Isolation

Multi-tenant data isolation with row-level security policies in PostgreSQL.

PII Redaction

AI interactions are logged with PII automatically redacted before storage.

SOC 2 Ready

Infrastructure and processes designed to meet SOC 2 Type II requirements.

Audit Logging

Complete audit trail of all user actions, especially for automation features.

Privacy Policy

Data We Collect

We collect information you provide directly: name, email, career profile data, assessment responses, resume content, and job preferences. We also collect usage analytics to improve the platform.

How We Use Your Data

Your data is used exclusively to power your career features: assessments, career plans, resume generation, job matching, and AI coaching. We never sell your personal data to third parties.

AI Processing

Your data may be processed by AI models (via OpenRouter) to generate assessments, career plans, and recommendations. PII is redacted from AI interaction logs. You can opt out of AI features at any time.

Data Retention

Your data is retained as long as your account is active. You can request data deletion at any time through Settings or by contacting privacy@oforo.ai.

Third-Party Services

We use Stripe for payments, Google for OAuth, and cloud providers for hosting. Each is bound by data processing agreements.

Terms of Service

Service Description

NXTED AI provides AI-powered career development tools including skill assessments, career planning, resume building, and job matching. The platform is provided "as is" and we continuously improve features.

User Responsibilities

You agree to provide accurate information, maintain the security of your account, and use the platform in compliance with applicable laws. Automated access without permission is prohibited.

Subscription & Billing

Paid plans are billed monthly or yearly as selected. You can cancel anytime. Refunds are available within 14 days of purchase. Plan changes take effect immediately with prorated billing.

Automation Disclaimer

Ultra automation features apply to jobs on your behalf. You are responsible for reviewing automation settings and maintaining compliance with job platform terms. NXTED AI provides tools, not guarantees of employment.

Intellectual Property

You retain ownership of all content you create (resumes, portfolios, etc). We retain rights to the platform, AI models, and proprietary algorithms.

GDPR Compliance

Right to access: Export all your data at any time
Right to rectification: Update your personal information in Settings
Right to erasure: Delete your account and all associated data
Right to data portability: Download data in standard formats
Right to object: Opt out of AI processing at any time
Data Protection Officer: dpo@oforo.ai