Privacy Policy
Last updated: 12 September 2026
Folio (digitalcareerportfolio.com) turns your CV into a portfolio website. This page explains, in plain English, what we collect, why, and how to get it deleted. It is a description of our practices, not legal advice.
What we collect
- Account details — your name and email address. Passwords are handled by our authentication provider; we never see them.
- What you upload — CV or résumé files and the text extracted from them, profile and gallery photos, and anything you type into the builder.
- Your portfolio — the pages, code and settings we generate and store for you, plus whether each site is published.
- Messages from visitors — when someone uses the contact form on your published portfolio, we store their name, email and message so you can read and reply to them in your dashboard.
- Payments — handled by Stripe. We receive a customer reference and your plan status. We never receive or store card numbers.
- Basic technical data — sign-in cookies, and standard server logs and traffic counts from our hosting provider.
Why we use it
- To build, preview, host and publish your portfolio.
- To generate and edit your site with AI: the content you provide (such as your résumé text and your instructions) is sent to our AI provider to produce the page.
- To deliver the messages visitors send you.
- To take payment, manage your plan, and apply plan limits.
- To keep the service working and secure — for example rate limits that block spam through contact forms.
Who else processes your data
We use a small number of providers, each only for the purpose listed:
- Supabase — database, sign-in and file storage.
- Vercel — hosting and delivery of the website.
- Google (Gemini) — the AI that writes and edits your portfolio.
- Stripe — payments and billing.
We do not sell your personal data, and we do not use it to advertise to you.
What is public
A published portfolio is public on purpose: anyone with the link can see it, and search engines can index it. Only publish what you are happy to show the world. You can take a site offline at any time with Unpublish on the Portfolios page or in the builder menu — it disappears from the web and from our sitemap straight away, and nothing is deleted, so you can publish it again later. Drafts and unpublished sites are private to your account.
Keeping and deleting your data
We keep your data while your account exists. You can delete your account yourself in Settings, which removes your account, portfolios and uploaded files, and takes your published sites offline. Deleting a message in your inbox removes it permanently. Backups and provider logs may keep copies for a short period before they age out.
Your choices
- See and correct your details in Settings.
- Export your site's code from the builder.
- Unpublish a site to take it off the web without deleting it.
- Delete your account, which deletes your content.
- Depending on where you live, you may also have the right to request a copy of your data, to object to how we use it, or to complain to your local data protection authority.
Security
Traffic is encrypted in transit. Your portfolios are stored with database rules that keep each account's rows separate, and published portfolios are rendered inside a sandboxed frame so page code cannot reach your account. No service can promise perfect security, but we fix problems we find and keep the moving parts to a minimum.
Children
Folio is meant for working professionals and is not directed at children under 16.
Changes and contact
If we change this policy, we will update the date at the top of this page. For anything about your data — including a copy or a deletion request — email support@digitalcareerportfolio.com.