Privacy, in plain English

Effective 11 September 2026. ApplySidekick is independently operated. Contact: support@fix4it.co.uk.

Your saved copy stays on your device

Your profile, reusable answers, CV and application history are saved in this browser. There are no accounts, advertising scripts or analytics in ApplySidekick. Local storage and exported profiles are not encrypted by this application; protect access to your device and exported files.

Cloud mode: what leaves your device

When you agree to cloud processing and start a job, your saved answers are sent over HTTPS through Cloudflare to fill the employer’s page in a remote browser. Your CV is sent only when you choose Attach saved CV. We do not save your profile or CV in D1 or Durable Object storage, and do not send them to an AI service. Cloudflare processes the running browser session. Session recording and application request logging are disabled in our deployment.

A live-view link gives access to that application session. Keep it private. The browser closes after two minutes per job; its working state is not saved for later resumption. The employer and its scripts can read or autosave fields and files before you submit. Their privacy notice applies to that processing.

Optional extension

The extension receives your profile locally and fills matching fields on permitted employer pages. It does not send profile answers to ApplySidekick’s backend and does not receive your saved CV; attach that yourself on the employer page. Its working profile is cleared after completion, stop or browser shutdown.

Allowance, security and spending records

Cloudflare handles your IP address and request metadata to serve and protect the site. The application stores daily keyed hashes of your random device ID and IP network, batch IDs, counts and timestamps. Cloud batches also store job URLs, progress, question labels and browser identifiers for recovery; never put personal details in job URLs. Profile answers, CV contents and live-view links are not saved in these records. IP rate limiting and daily limits help prevent abuse; they do not identify a unique person.

Retention and deletion

Allowance records are removed after approximately four days. Cloud batch metadata is removed three days after completion; inactive batches close after one day. The shared browser-time budget keeps pseudonymous start records for up to 32 days. Cloudflare’s service metadata and backups may have separate retention under its terms. Deleting local data removes your saved profile, CV and history from this browser; it does not erase submissions already sent to employers or immediately remove security and budget records. Your random device ID and current allowance are retained unless you clear this site’s browser storage.

Optional equality answers

Equality and diversity answers are optional and are not guessed or preselected. They are excluded from cloud profile transfers unless you explicitly enable sharing. When enabled, your chosen answers are processed in cloud mode and filled only for recognised matches. You can withdraw that choice for future applications at any time; this does not remove information already shared with an employer.

Why we process information

We process the details you choose to share to provide the application assistance you request, and keep limited security, allowance and budget records to protect the service. Cloud processing is optional and requires your agreement. Cloudflare is our hosting and browser-processing provider; data may be processed internationally under its applicable data-protection terms.

Questions and privacy requests

Contact support@fix4it.co.uk to ask about access, correction or deletion of information we hold. Most profile information is held only in your own browser and can be changed or deleted there. You may also contact your local data-protection regulator. For UK users, this is the Information Commissioner’s Office.

Open ApplySidekick →