Last updated August 1, 2026

Security

Application controls

ResumeLM uses Supabase authentication and row-level access controls for application data. Billing events are processed server-side through Stripe, and provider secrets are kept in server environment variables rather than sent to the browser.

Limits of the service

No online service can guarantee absolute security. API keys entered into the browser are stored in local storage and should not be entered on shared devices. Please report suspected security issues to resumelm@pm.me.