Privacy Policy
PaperKit is a free document builder you can use without an account. This policy explains the little data we handle, what happens when you download a PDF, what we store if you choose to sign in, the cookies we set, and how advertising on our blog works.
Overview
PaperKit is operated by CodeSierra. We designed the product to need as little of your data as possible: there is no account to create and no resume database on our servers.
There used to be an exception: generating the PDF happened on our server. It no longer does; see “Downloading a PDF” below. Signing in is now the only thing that puts anything of yours on our side, and it stores an account record, never a document.
Data stored on your device
The resume you build is saved in your own browser using localStorage, so your draft is still there when you come back on the same browser and device. It is not synced anywhere and we cannot read it. Clear your browser’s site data, or use the editor’s reset action, and it is gone.
Your template, colour scheme, paper size and margin choices are stored the same way. If you add a profile photo to a showcase template, that image is stored in your browser alongside the rest of the draft.
Downloading a PDF (in your browser)
Your document never leaves your device when you download it. PaperKit used to render PDFs on its own server through a headless Chromium. It no longer does. The PDF is now built by the same renderer that draws the preview you are looking at, running inside your browser tab: the fonts are already loaded, the layout engine is already there, and the finished file is handed straight to your downloads folder.
There is no upload, no API call, no server-side copy and no token. Nothing about the document reaches us: not the content, not your photo, not the template you chose. We could not read your resume if we wanted to, and there is nothing to delete afterwards because nothing was ever sent.
This also means the download works with no network at all once the page has loaded, and that the file you get is byte-for-byte what the preview showed: the preview and the download are literally the same render, run twice.
What we never collect
No account, no password and no email address are needed to use any builder or to download any template. We do not ask for your name, phone number or address. Anything of that kind that appears in your document is content you typed, handled only as described above. We do not sell personal data. The one thing that can put a record of you in our database is the optional Google sign-in described next, and nothing on the site asks you to use it.
Signing in with Google (optional)
Every builder on PaperKit works without an account, and every template downloads without one. Nothing needs a sign-in: the premium unlocks it was built for are no longer sold, and no page asks you to sign in. The route is still reachable, and this section describes what happens if you use it, but if you never sign in, none of it applies to you and we hold no record of you at all.
If you do sign in, Google tells us four things and we store them: the account identifier Google issues for you (its “subject” id), your email address, your display name, and the web address of your Google profile picture. Alongside those we store one session row, so you stay signed in on that browser for 30 days. We never receive your Google password, and we read nothing else from your Google account.
If you bought a premium unlock while they were sold, between 14 and 18 September 2026, we hold a purchase record for it: the Razorpay order id and payment id, which package you bought, the amount paid, when you paid, and when the pass expired. That record is keyed to your account the same way the rest of this section is, and it is described in full below under what we will delete. Nothing is sold now, so no new purchase record can be created.
Signing in changes nothing about your documents. Your draft still lives only in your own browser, we still have no copy of it, and the PDF is still handled exactly as described in “Downloading a PDF”. You can sign out whenever you like from the sign-in page, which ends the session and deletes its row.
A self-serve control to delete your account will arrive with the account dashboard. Until it does, email privacy@paperkit.in and we will delete your account record and its sessions on request. A purchase record is the one exception: we keep it for tax and accounting purposes, the way any business keeps a record of what it sold, but we sever its link to you: the purchase row's account reference is cleared, not the row itself.
Google AdSense and third-party vendors
We display ads on our blog through Google AdSense. Google and its certified partners use cookies to serve ads based on your prior visits to PaperKit and other websites.
Google’s use of advertising cookies, including the DART cookie, enables Google and its partners to serve ads to you based on your visit to our site and/or other sites on the internet.
Ads are not shown inside the editor, and no advertising or analytics script is given access to your resume content.
Meta Pixel (Facebook and Instagram ads)
We advertise some of our paid products on Facebook and Instagram. To measure whether those ads work, paperkit.in loads the Meta Pixel, which sets the _fbp cookie and tells Meta which pages you viewed, when you opened the checkout, and, after a purchase, the order value and the order ID.
It does not receive your name, email address, phone number or anything you type into the resume editor. Meta may link the events to your Facebook or Instagram account under its own privacy policy.
How to opt out
You may opt out of personalised advertising by visiting Google Ads Settings. You can opt out of third-party vendors’ use of cookies for personalised ads at aboutads.info. To stop Meta using your activity on our site for ads, change your Facebook ad settings, or block the pixel with a content blocker.
Analytics
We use privacy-respecting analytics to count visits and learn which guides are useful. This data is aggregated and is not used to identify you.
Your rights
If you have never signed in, we hold no personal data about you at all. The only copy of your document is the one in your browser, deleting it is entirely in your hands, and an export or erasure request has no account record to act on.
If you have signed in, we hold the record described under “Signing in with Google” above: a Google subject id, an email address, a display name, a picture address, your session rows, and a purchase record if you have bought a premium unlock. Write to us and we will send you a copy of it or delete it, with the one exception described above: a purchase record is kept, with its link to you severed, for tax and accounting purposes. A self-serve deletion control arrives with the account dashboard; until then it is a manual request, and we act on it.
If you believe we hold data about you that is not described on this page and want it removed, write to us and we will act on that too.
Contact
Questions about your privacy? Email privacy@paperkit.in. PaperKit is a product of CodeSierra.