LAST MODIFIED: AUGUST 14, 2026 • VERSION 2.0.0
Privacy is not a negotiable secondary layer. It is built into our core production engineering pipeline. Your resumes are processed, compiled, and analyzed in highly isolated secure segments.
We collect only what is needed to operate the service:
Your resume content is transmitted exclusively to our AI inference providers (OpenCode Zen, NVIDIA NIM, Google AI Studio, and/or OpenRouter) for real-time optimization. We do not train models on your data, share candidate information, or retain inputs beyond the processing window. Your documents remain your intellectual property. Period.
Under the Digital Personal Data Protection Act, 2023, Indom Cloud is the Data Fiduciary for your personal data. Our AI inference providers (OpenCode Zen, NVIDIA NIM, Google AI Studio, and/or OpenRouter) act as Data Processors: they are instructed to process your content only to fulfill the tailoring request, and not to train models or retain your content beyond the processing window.
By creating an account and confirming the consent box at sign-up, you consent to the processing described in this policy. You may withdraw consent at any time by deleting your account through the profile dashboard, which triggers the deletion process described below.
We leverage enterprise-grade cloud database clusters with robust TLS encryption. All user sessions are authenticated dynamically. Your profile detail queries are guarded by server-enforced security rules preventing cross-tenant information disclosure.
We implement minimal, non-invasive cookies solely to sustain login state sessions. We completely reject advertising tracers, third-party pixel analytics, or user behavior tracking scripts. What you write inside Indom is visible only to you.
Any candidate can permanently purge their active resumes, history, and workspace configurations through the profile dashboard. You may also request full account deletion, which removes your authentication credentials and all associated data from our servers immediately, and we direct our Data Processors to delete your content from their systems as well. Whether or not you delete your account, every resume session expires automatically after 15 days and is purged from our servers - nothing is retained indefinitely.
You may also submit a data erasure or access request at any time by emailing indomcloud@gmail.com; we honour such requests in accordance with the Digital Personal Data Protection Act, 2023.
To prevent misuse, an email that re-registers within 90 days of account deletion starts with 0 free credits and no first-purchase bonus; after 90 days it is treated as a new customer.
We take security seriously and value reports from the community. If you believe you have found a security vulnerability in Indom, please report it privately to indomcloud@gmail.com with the subject line "Security Vulnerability". Please include a clear description, the affected area, and steps to reproduce. We aim to acknowledge and respond as quickly as possible, and we will not take action against good-faith researchers who disclose responsibly and privately.
Governing Law: This policy is governed by the laws of India, including the Digital Personal Data Protection Act, 2023 where applicable.
Contact: For privacy-related questions or data requests, email indomcloud@gmail.com.