Skip to content

Privacy Policy

Last updated: July 8, 2026

QueryQuarry ("QueryQuarry," "we," "us") operates a consent-based talent marketplace. This policy explains what we collect, how we use it, who we share it with, and the choices you have. Questions? Email [email protected].

Who this applies to

This policy covers candidates (people who upload a resume) and recruiters (people who search the talent graph).

Information we collect

From candidates: the resume you upload (the file plus the text we extract from it — your name, contact details, work history, education, skills, and links) and the preferences you set, such as location, availability, employment type, salary range, seniority, work authorization, and openness to relocation.

From recruiters: your name, work email, company name and website, and subscription details.

Automatically: authentication identifiers and session cookies, and usage logs such as the searches you run and which anonymous profiles were surfaced.

How we use your information

  • To operate the marketplace — parsing and structuring resumes, matching candidates to recruiter queries, and brokering contact with consent.
  • To run your account, enforce usage limits, and prevent abuse.
  • To communicate with you about the service, such as notifying a candidate that a recruiter would like to connect.

AI processing

We use AI services to parse and structure uploaded resumes into searchable fields. Your resume content is sent to our AI provider solely to perform that parsing, not to train models.

How information is shared

  • Recruiters see anonymized profiles — skills, experience, and preferences, but not a candidate's name or contact details. A candidate's identity is revealed only if and when the candidate chooses to respond to a contact request.
  • We never sell your data, and we never scrape it. Every profile is added by the person it belongs to.
  • Service providers (subprocessors) that help us run QueryQuarry: hosting (Vercel), database and file storage (Supabase), recruiter authentication (Stytch), transactional email (Resend), DNS and email routing (Cloudflare), and AI resume parsing (Anthropic, via Vercel AI Gateway). They process data only to provide their service to us.
  • Legal — we may disclose information where required by law or to protect rights and safety.

Your choices and rights

  • Visibility: candidates can turn off discoverability at any time, which removes them from recruiter search.
  • Deletion: you can delete your account, resumes, and uploaded files at any time from your dashboard, which removes your data from the talent graph.
  • Access and correction: you can view and edit your information in your dashboard.
  • Depending on where you live — for example, under GDPR in the EU/UK or CCPA in California — you may have additional rights to access, correct, delete, or port your data and to object to certain processing. Email [email protected] to exercise them.

Data retention

We keep your information while your account is active. When you delete your profile or account, we remove your resume data and files from the talent graph; limited records may be retained where necessary for legal, security, or accounting purposes.

Cookies

We use cookies strictly to keep you signed in and operate the service. We do not use advertising or cross-site tracking cookies.

YouTube API Services

QueryQuarry uses YouTube API Services for one narrow, internal purpose: our publishing tools upload short videos summarizing our own blog articles to our own YouTube channel. By using our website where that content may be embedded or linked, you also agree to the YouTube Terms of Service. Google's handling of data is described in the Google Privacy Policy.

  • What we access and store: the only YouTube-related data we store is the OAuth authorization token that permits uploads to our own channel. We do not access, collect, or store any YouTube user data from visitors, candidates, or recruiters, and we do not use the YouTube API to read, manage, or interact with any other person's YouTube account or data.
  • Revoking access: the authorization our tools hold can be revoked at any time via Google security settings.
  • Deletion: stored authorization tokens are deleted when access is revoked or on request to [email protected]; we retain no other YouTube API data to delete.

International users

QueryQuarry is operated from the United States. If you access it from elsewhere, your information is processed in the US.

Children

QueryQuarry is not intended for anyone under 18, and we do not knowingly collect their information.

Changes to this policy

We may update this policy from time to time. We will revise the "last updated" date above and, for material changes, provide additional notice.

Contact

Questions or requests: [email protected].