Privacy Policy
Last updated: September 15, 2026
This Privacy Policy explains how ApexTrack ("ApexTrack," "we," "us," or "our") collects, uses, and protects information when you use the ApexTrack website (apextrackofficial.com) and the ApexTrack Console application (console.apextrackofficial.com), together the "Service." By using the Service, you agree to the practices described below.
1. Who we are and what ApexTrack does
ApexTrack is a tool for college students conducting an internship or job search. It helps students track networking outreach, draft and send professional emails, prepare resumes and cover letters, and log coffee chats and interviews — all under the student's own account.
2. Information we collect
We collect information in the following ways:
- Account information you provide directly: name, email address, school, major, year, and password (managed securely through our authentication provider, Supabase).
- Content you create in the Service: contacts you add to ApexTracker, email drafts and notes, resume and cover letter files, and coaching session notes.
- Payment information, handled entirely by Stripe — ApexTrack never receives or stores your card number.
- Microsoft/Outlook information, only if you choose to connect your Outlook account — see Section 3 below.
- Usage information, such as which features you use, for the purpose of enforcing fair-use limits on AI-assisted features.
3. Your Microsoft/Outlook account information
ApexTrack Console offers an optional "Connect Outlook" feature so the app can draft outreach emails directly into your Outlook account and detect when a professional has replied, without you having to manually update your tracker. This feature requests the following Microsoft Graph permissions:
- Mail.ReadWrite — lets ApexTrack create, view, and update draft emails in your Outlook mailbox, and read your Inbox and Sent folders so it can detect a reply from a professional you've contacted, or confirm that a drafted email has actually been sent, and update your ApexTracker status accordingly.
- Mail.Send — lets ApexTrack send a draft only when you click "Send Now" or "Create Outlook Draft" yourself. ApexTrack never sends an email without that explicit action from you.
- User.Read and offline_access — let ApexTrack confirm which Microsoft account is connected and keep that connection active between sessions, so you don't have to reconnect every time you use ApexTrack.
- We only use your Outlook data to provide and improve the specific outreach-tracking features described above, for your own account.
- We do not use Outlook data for advertising or to build ad-targeting profiles.
- We do not sell Outlook data, and we do not allow third parties to use it except as needed to operate the Service itself (for example, our hosting and database providers, who are contractually bound to protect it).
- No human reads your Outlook data except: (a) with your explicit consent for a specific issue, (b) if necessary for security purposes, or (c) to comply with applicable law.
- We do not use Outlook data to train generalized artificial intelligence or machine learning models.
You can revoke ApexTrack's access to your Outlook account at any time — either from the "Disconnect Outlook" button inside ApexTrack Console, or directly from your Microsoft account permissions page. Disconnecting stops all future access immediately; it does not delete drafts already created in your Outlook account.
4. How we use information
We use the information described above to:
- Provide the core features of ApexTrack Console (tracker, email drafting, resume tools, coaching);
- Personalize AI-drafted emails and documents using your profile and contact details;
- Process payments for coaching sessions and subscriptions;
- Maintain the security and reliability of the Service;
- Communicate with you about your account or the Service.
5. How we share information
We do not sell your personal information. We share information only with the service providers that power ApexTrack (for example, Supabase for database and authentication, Google's Gemini API for AI drafting, Stripe for payments, EmailJS for transactional and purchase-confirmation emails, and Vercel/Netlify for hosting), each of which is bound to use your data only to provide that service to us — and as required by law.
6. Data retention and deletion
We retain your account and content for as long as your account is active. You may request deletion of your account and associated data at any time by emailing [email protected]. OAuth tokens (including Outlook) are deleted immediately upon disconnecting that integration.
7. Security
Your data is stored using Supabase, protected with row-level security so that only your own account can access your own records. OAuth tokens are stored server-side and are never exposed to the browser.
8. Children's privacy
ApexTrack is intended for college students and is not directed to children under 13. We do not knowingly collect personal information from children under 13.
9. Changes to this policy
We may update this Privacy Policy from time to time. We will update the "Last updated" date above when we do, and, for material changes, notify users by email or an in-app notice.
10. Contact us
Questions about this policy or your data can be sent to [email protected].