Last updated 16 September 2026
Privacy policy
How Milo handles information when you visit, create an account and use your workspace.
Who is responsible
This notice covers milojobs.com. The data controller is MILOJOBS LTD, company 17457533, at 66 Paul Street, London, EC2A 4NA, United Kingdom. For privacy questions and requests, contact support@milojobs.com. We use the information described below for the waitlist, payments and private workspace.
Information you provide
We process your name, account email and authentication information; profile and resume information; uploaded documents; saved jobs and application records; interview answers, feedback and outcomes; and messages you send to support. Joining product updates stores your name and email. Avoid adding sensitive details that are not needed for your job search.
Hosting and authentication providers also process connection information such as IP addresses, browser information and service logs. Stripe processes checkout names, emails, payment and fraud-prevention information. MILOJOBS LTD can access payment status and transaction references to manage orders, refunds and future activation. Card details are entered on Stripe, not stored in Milo’s frontend. Payment-related communications are separate from optional marketing updates.
Purposes and legal bases
Account access, document storage and workspace syncing are used to provide the service you request (contractual necessity where applicable). Security, error investigation and support rely on legitimate interests in running a reliable service, balanced against your rights. Records required by law are processed for legal obligations. Optional product updates rely on your consent; you can withdraw it through support.
Your entered outcomes support comparisons and experimental estimates in your own workspace. These features do not make employment decisions about you. AI Studio, when configured, sends only the text you enter for a selected task to OpenAI through our Supabase backend after you agree to that request. It does not automatically send your inbox or saved workspace. You can continue using the template tools without using AI Studio. The popup feature guide matches your query locally against the feature directory; guide queries are not saved or sent to a model provider.
Providers and external sites
IONOS hosts the website. Supabase provides authentication, workspace data and private document storage. Google Fonts receives connection information when your browser loads the site’s fonts. Google Workspace processes correspondence sent to our support and founder addresses. Resend processes email received by the private application inbox.
Job searches use connected feeds including Arbeitnow, selected Greenhouse, Lever and Ashby employer boards, and Reed when configured. Reed receives your search keywords and location; your resume and account email are not included in job-feed requests. Employer links take you to external sites with their own privacy practices.
The company-research feature can send the public URL you enter through AllOrigins or corsproxy.io to retrieve a page. Those services receive the URL and connection information. Do not enter private links, credentials or URLs containing personal information.
Optional AI processing
AI Studio supports document drafting, translation, written interview practice feedback and feature guidance. Generated text may be inaccurate and must be reviewed before use. Requests use OpenAI with response storage disabled; this does not eliminate provider abuse-monitoring logs or applicable caching retention. See OpenAI’s data controls. Provider processing may take place internationally. Remove unnecessary sensitive information before sending a request. Generated drafts remain in the current tab unless you copy or download them; leaving AI Studio clears them. Do not rely on this temporary draft view as storage.
Document import and service records
Resume text extraction runs on your device. Extracted text is saved or sent only when you use the corresponding save or generation action. We store AI request task, timestamps, completion state and token counts for quota enforcement; the usage ledger does not contain your input or generated text.
A submitted preparation package stores the exact job, resume, cover letter, contact details and answers you approve, together with queue state and any submission receipt. Cancellation stops eligible queued work but does not itself erase the package. Account deletion removes these account-linked packages and AI usage records. Purchase records include checkout reference, email, amount, refund state and activation dates, and may be retained for accounting or disputes after account deletion. A purchase is linked only after verification of the matching account email.
Browser storage and security
Milo uses browser local storage for login-session information and a recoverable workspace cache, and session storage for navigation. Clearing storage can remove unsynced changes. On shared devices, sign out when finished. We remember your analytics choice in local storage. Google Tag Manager loads on public pages only after you accept analytics and manages the configured Google Analytics tag. It measures public-page visits and may set analytics cookies; Google processes browser, device and connection information. We do not enable advertising personalization or deliberately send your name, email, resume or payment details to Analytics. You can reject analytics or withdraw consent using Cookie settings, without affecting checkout or access. Withdrawal stops future collection; it does not automatically erase previously collected data. Google may process analytics information internationally. This analytics notice was updated on 15 September 2026.
Uploaded files are stored privately with account-based access controls. These safeguards reduce risk but cannot guarantee absolute security.
Retention and international processing
Workspace content remains associated with your account while needed to provide your workspace. You can delete uploaded documents in the app and delete your account in Profile after signing in again, or contact support for assistance. Support and security records are kept only as needed for the request, security, disputes or legal obligations; backup copies may persist until the provider’s normal expiry. Account deletion removes the active login, workspace, Milo mailbox and stored documents. It cannot retract applications or emails already held by employers, erase local copies on other devices, or remove records independently held by payment and email providers. Contact support for requests involving those records.
Providers may process information outside your country. Contact us for information about applicable processing locations and transfer safeguards. Payment records may need to be retained after account deletion for accounting, disputes and legal obligations.
Your choices and rights
Contact support@milojobs.com to request access, correction, deletion, restriction, portability or to object to processing where those rights apply. You can also withdraw product-update consent. We may verify your identity before acting. Rights have legal exceptions, which we will explain if relevant.
If UK data-protection law applies, you can complain to the Information Commissioner’s Office. You may also contact the relevant authority where you live. Material changes to this notice will be identified with an updated date.