Pinloop

Privacy statement

Last updated 21 August 2026.

Who runs Pinloop

Andrew Allen builds and runs Pinloop. Send questions about this page to andrew@pinloop.ai. Send requests about your own information to the same address.

What Pinloop stores about you

  • Your account. Pinloop stores your email address and the date you created the account. Pinloop has no passwords. You sign in with Google, with GitHub, or with a 6-digit code sent to your email address, and the first time you sign in your account is created. If you sign in with a code, Pinloop asks Resend to send that email to you. Resend keeps a record of the emails it sends, which includes your email address and the message itself. If you sign in with Google or with GitHub instead, Pinloop receives your name, your email address, and your profile picture, and nothing else.
  • Your profile documents. You write these yourself. They hold your background, your preferences, your constraints, your instructions for writing applications, and your instructions for judging postings. You can read them back, change them, or delete them at any time.
  • Your resume. If you upload a resume, Pinloop stores the PDF file. Pinloop also stores the text it read out of that file when you uploaded it.
  • Your lists and your saved commands. Pinloop stores the named lists of job postings you build. Pinloop also stores the command sequences you save, the schedules that run them, and the standing searches that watch for new postings.
  • Judgments. An AI model reads a posting against your profile and writes a verdict. Pinloop stores that verdict, the model’s written reasoning, the name of the model, what the call cost, and the time. Pinloop stores verdicts you write yourself the same way, and marks them as yours.
  • Your subscription. If you pay for Pinloop, Stripe takes the payment and Pinloop keeps a record of it. Pinloop stores the identifier Stripe uses for you as a customer, whether your subscription is live, and the dates of the month you have paid for. Pinloop stores no card number and never sees one.
  • How much you have used. Pinloop stores two counts for your account each month: how many judged postings an AI model produced for you, and how many searches by meaning you ran. Pinloop reads those two counts to decide when your account has used what it is allowed for that month.

The job postings themselves are not personal information. Every account sees the same collection, which Pinloop buys from a job posting supplier. A posting connects to you only when you save it or judge it.

Where Pinloop keeps your information

Pinloop keeps your information on servers in the United States. These companies hold parts of it:

  • Supabase stores the database, your resume file, and the login service.
  • Resend delivers the sign-in code emails, and keeps a record of each one it sends, including your email address.
  • Fly.io runs the Pinloop server.
  • Stripe takes the payments, and only if you choose to pay for Pinloop. Stripe holds your card details, your payment history and your receipts under its own terms.
  • OpenRouter passes AI model requests to the model companies.
  • Sentry receives a report each time the Pinloop server hits an error, so that the error gets noticed and fixed. What is in that report is written out below, under “When something breaks”.
  • Anthropic runs the model that reads postings against your profile.
  • Voyage AI runs the model that matches postings by meaning.
  • Google and GitHub confirm who you are, and only if you choose to sign in with one of them.
  • Cloudflare answers the question of which machine pinloop.ai is. Your requests do not pass through Cloudflare.

What Pinloop sends to AI models, and when

Pinloop sends nothing to an AI model on its own. A model runs when you run a command that asks for one. A model also runs when a schedule or a standing search you set up runs such a command. Three commands do this, and here is what each one sends.

  • Judging a posting. Pinloop sends your profile documents, your resume PDF file, and the job posting to Anthropic’s Claude Sonnet model. The request travels through OpenRouter, the company that routes it and bills for it.
  • Screening many postings quickly. Pinloop sends your instructions and the postings’ plain stored facts to the same model, through the same route. Pinloop does not send the posting description text. Pinloop does not send your resume file.
  • Searching by meaning. Pinloop sends your search words to Voyage AI’s embedding model, through OpenRouter. That is what matches postings by meaning instead of by exact words. You can ask Pinloop to build the search text out of your own profile documents. Pinloop then sends that text, and prints it for you before and after it sends it.

Anthropic, Voyage AI, and OpenRouter each hold what Pinloop sends them. Each one holds it under its own terms, for as long as those terms say. Pinloop sends what you write and what you store to no company other than the ones named on this page.

Paying for Pinloop

Stripe processes every payment to Pinloop. Your card details go to Stripe and never to Pinloop. The card form on the Pinloop payment page is drawn by code from Stripe running in your browser, and what you type into that form travels from your browser straight to Stripe. Pinloop stores the identifier Stripe uses for you as a customer, whether your subscription is live, and the dates of the month you have paid for. Stripe sends the receipt for every charge. Cancelling a subscription, replacing a card and reading past charges all happen on Stripe pages, which Pinloop opens for you when you run pinloop billing.

What Pinloop does not do

Pinloop does not sell your information. Pinloop does not rent or trade it. Pinloop shows no advertising. Pinloop trains no AI model on your profile or your resume. Pinloop does not read your email, your files, or your calendar, and asks Google and GitHub for no permission to. No account can read another account’s information.

Deleting your information

You can delete any profile document. When you delete your resume, Pinloop deletes the stored file as well as the row that points at it. You can delete any saved list, saved command sequence, schedule, standing search, or stored judgment. Pinloop removes anything you delete this way from the database.

No command deletes your whole account yet. Until one exists, email andrew@pinloop.ai, and the account and everything stored under it will be deleted by hand. Pinloop keeps anything you do not delete for as long as your account exists.

You can also ask what Pinloop stores about you, ask for a copy of it, or ask for a correction. Send those requests to the same address.

This website

The pages at pinloop.ai set no cookies. Most of them run no scripts and load nothing from any other website. Three of them do. The sign-in page and the page you are sent back to after signing in run a script that carries your sign-in to the terminal you are waiting at. The payment page runs a script from Stripe, loaded from js.stripe.com, which draws the card form you type your card into. No page at pinloop.ai runs analytics or tracking of any kind, and the Pinloop server keeps no request log of its own. Fly.io runs the machine, and records the connection information that any web host records, including the internet address a request came from.

When something breaks

When something you run makes the Pinloop server hit an error, the server sends a report about that error to Sentry, a company whose whole job is collecting crash reports so that the person running a product finds out about a fault instead of waiting to be told. Andrew reads those reports.

The report holds the error itself, the place in Pinloop’s own code it happened, which address on the server was being called, the version of the pinloop command you have installed, and your account id. Your account id is a random string of letters and numbers, not your email address. It is in the report so that a fault hitting one account can be told apart from a fault hitting everybody.

The report deliberately does not hold what you sent or what was sent back to you, your sign-in pass, the words you searched for, your profile documents, your resume, or your internet address. Pinloop strips all of that out of every report before it leaves the server, rather than trusting Sentry’s own settings to leave it out. Sentry keeps a report for 30 days on the plan Pinloop uses.

Children

Pinloop is not for anyone under 16. Do not create an account if you are under 16.

Changes to this statement

This page changes when what Pinloop does with your information changes. The date at the top changes with it. Pinloop will email you before a change takes effect, if that change would use your information in a way this page does not now allow.