Privacy policy
The short version
Firebird helps senior executives run a job search. To do that it holds your profile and your work in the program, the details of the people in your professional network that you enter, and — only if you ask for it — an extract of your own documents so an AI assistant can give you feedback on them.
Five things we want you to read before the detail:
- We do not track you. Firebird sets no cookies, runs no analytics, and carries no advertising or tracking pixel — not in the app, not on this website.
- We never see your card. Payment happens on Stripe's own page. Your card details go straight to Stripe and never reach Firebird.
- We never contact the people in your network. Importing your LinkedIn connections notifies no one, posts nothing to LinkedIn, and is invisible to every other Firebird user.
- We only see the files we created, and the ones you hand us. When you connect a cloud drive, the permission we ask for is limited to the files Firebird itself put there, plus any file you upload through Firebird or pick yourself. We cannot see the rest of your drive, your mail, your contacts or your calendar.
- Nothing you write trains an AI model — not ours, not our provider's.
Who we are
Firebird is operated by Firebird LLC, 1420 NW Gilman Blvd Ste 2 #8044, Issaquah, WA 98027, United States. We are a United States company and Firebird is offered in the United States. You can reach us about anything on this page at admin@firebird.ly.
What we hold about you
- Your account. Your email address, first and last name, the name, email address, profile URL and picture your sign-in provider gives us (LinkedIn, Google or Microsoft), and which provider you last used.
- Your professional profile. Your function, seniority, professional situation, compensation bracket and currency, plus what you tell us during onboarding about how organised you feel, how stressed you feel, and how much time a day you can give the search. You choose these; they steer the program's recommendations and nothing else.
- Your work in the program. The text of everything you write in a deliverable field, your daily plan, its notes and its ticks, and how far you have got in each activity.
- How you use Firebird. A record of your actions, of your sessions (when one started, when you were last active, when and how it ended) and counts of the screens and documents you open. We use this to know whether the product is working, and — during the beta — to see where people get stuck.
- What you send us. Suggestions and messages you submit from inside the app.
- Your subscription. Whether your access is running on a free trial or a paid subscription, and when it ends. If you subscribe, we hold the identifiers Stripe gives us for your customer and your subscription, and the status Stripe reports — nothing more. We never see or hold your card details: payment happens on Stripe's own page, and your card never touches Firebird.
The people in your network
This is the part of Firebird that holds information about other people, so it deserves its own section.
Firebird is, among other things, a professional CRM. When you add a contact — by hand, or by importing the connections file you exported from LinkedIn — you may record their first and last name, role, LinkedIn profile, city, country and street address, email address, phone number, how you know them, when you connected, and any notes and background you write about them. The same applies to the companies, opportunities and the record of your exchanges (each with its own notes).
What we do with it: nothing but show it back to you. This information exists so that you can run your own search. Specifically:
- We never contact these people. Firebird sends them nothing, ever.
- Nothing is published to LinkedIn or to any other network.
- No other Firebird user can see them. Your network is yours alone.
- We do not sell, rent or share this data, and we do not use it to build a directory or enrich anyone else's account.
- It is never sent to the AI assistant. The assistant reads your documents and your deliverables; your contacts, companies and opportunities are excluded from every AI request by design.
If you are one of those people. Because we never contact them, the people recorded in someone's Firebird network do not hear from us — that is deliberate, and it is what our users expect. If you believe a Firebird user has recorded you and you want to know what is held, or to have it removed, write to us at admin@firebird.ly and we will act on it.
Your documents and your files
Connecting a cloud drive is optional, and Firebird works without it.
The folder we create. When you connect Google Drive or Microsoft OneDrive, Firebird creates one folder in your own drive and, inside it, the program's 18 working documents, pre-filled with the official outline of each. You can also bring your own files: upload them through Firebird, pick files you already have in your drive, or put one of your own files behind a program document in place of the generated one. The files are yours and stay in your drive. Firebird never edits a document after creating it, and never deletes a file — replacing a document simply points it at your file, and the previous one stays where it is.
What we can see. The permission we ask for is deliberately narrow — on Google, the drive.file scope; on Microsoft, an application folder at OneDrive/Apps/Firebird/. Both mean the same thing: Firebird sees only the files it created itself, plus those you explicitly hand it — a file you upload through Firebird, or one you pick yourself. The rest of your drive, your mail, your contacts and your calendar are out of reach.
Files you upload. When you upload a file through Firebird rather than picking one already in your drive, its bytes pass through our server on their way to your drive. We keep no copy: the file is written to your drive and the bytes are discarded. What we retain about it is what we retain about any other file — its name, identifier, link, and, if you ask for a preview or an AI action, a text extract.
What we store about them. Which provider you connected and the email address of the drive account (it may differ from your sign-in account); the identifier, name and link of the folder and of each file; the format you chose; the date you accepted our disclosure and the version of the text you accepted; and a count of how often you open each file from the app. We also store an encrypted access credential — a refresh token, encrypted at rest with a key held only by Firebird — so we can find and re-check your files without asking you to sign in again.
Text extracts. Firebird can show you a text preview of a document, and the AI assistant needs that text to work. Extracting it means reading the file's content and storing an extract of that text on our servers. Connecting your drive is what authorises this: the disclosure you accept before connecting says so, and there is no separate step afterwards — asking for a preview, or for an AI action on a document, reads the file at that moment. You can see every extract we hold in the app — Documents → the data Firebird keeps about my files — and delete them one by one or all at once. The original files are never modified by any of this, and every extract is deleted with your account, and with a disconnection.
Your own material. You can add files you already own — an old resume, annual reviews, letters, notes — to a My material folder, either by uploading them through Firebird or by picking them from your drive. The same rule applies: we hold their name, type, link and size, and their text extract under the same authorisation — connecting your drive covers them too.
Stopping. You can disconnect in one click from Settings. Disconnecting deletes our credential immediately (on Google we also revoke it with Google) and deletes every text extract Firebird kept — disconnecting is how you withdraw the consent you gave when connecting. Your folder and your files are left untouched. We keep only the folder and file identifiers so that, if you reconnect later, Firebird finds the same files instead of creating duplicates. You can also revoke Firebird's access at any time from your Google account (Security → Third-party access) or your Microsoft account (Privacy → Apps and services).
The AI assistant
Firebird can give you written feedback on your work. Using the assistant is optional, and we ask for your consent once, before your first AI action: a single explanation that covers all five actions below in advance, including the ones that send the most. Your consent is recorded with the exact version of the text you agreed to — so that if we change what the assistant does, we ask you again.
What is sent, per action.
- Quick feedback — the text of the field or document you ask about, and its name.
- Evaluate — the same, plus the text extracts of any upstream documents you tick.
- Prepare from my material — the full text of the personal files you tick, plus the extracts of the program documents you tick, the document's outline and what you have already written. Only what you tick, never a whole folder by default.
- Improve — the text of the field or document, plus its last evaluation.
- Memo — the text extracts of every program document Firebird has read, in a single request, with their evaluations, your progress and the list of documents you are missing.
Where it goes. To Anthropic, our AI provider, through Firebird's own account — you never handle an API key. Under Anthropic's commercial terms for the API, what is sent is not used to train any model, and we do not opt into any extended retention on their side.
Never sent: your contacts, companies, opportunities and exchanges; your account details; anything you did not submit.
What we keep. Every answer shown to you, with the identifiers of what it was written about — not the material itself — for 12 months, for quality control by the Firebird team. Deleting an answer removes it from your history; a copy is kept for that quality control without your name attached to it. If you delete your account, that copy stays for its 12 months but the text of the answers is emptied — for the features that write a draft, that text was written from your own documents. Members of the Firebird team can read these answers; that is what quality control means here, and we would rather say it than have you discover it.
Signing in
You sign in with LinkedIn, Google or Microsoft. We receive your name and verified email address from them, and use the verified email address to match you to your Firebird account. Firebird holds no password for you.
Why we hold it
| What | What we use it for |
|---|---|
| Your account, your program, your network, your daily plan | Running the service you signed up for — showing you your own work and your own contacts |
| Connecting a drive · extracting text from a file · the AI assistant | Only what you asked for when you consented to it. Each is optional. Connecting a drive is one consent that covers the text extracts — you withdraw it by disconnecting, which also deletes every extract we hold; the assistant is a separate consent covering its five actions |
| Usage records, sessions, error monitoring, backups | Keeping the service running, secure and improving. None of it is used to profile you, target you, or build anything sold to anyone |
| Transactional email | Answering you, and telling you what you need to know about your account |
| Your subscription | Knowing whether your access is open, taking payment through Stripe, and sending you the receipts and invoices that go with it |
We do not sell your personal information, and we do not share it for advertising. We have never done so and have no plans to. If that ever changes, this page changes first, and we will tell you before it takes effect.
Who else processes your data
| Provider | What for | What reaches them |
|---|---|---|
| OVH | Hosting the application and the database | Everything described on this page |
| Anthropic, PBC | The AI assistant | Only the material you submit for an AI action, as listed above |
| Google LLC | Google sign-in · Google Drive · the file picker · address suggestions | Your name and verified email; the files Firebird creates and their metadata; address fragments as you type them |
| Microsoft Corporation | Microsoft sign-in · OneDrive application folder | Your name and verified email; the folder Firebird creates and its metadata |
| LinkedIn sign-in | Your name, verified email, profile URL and picture | |
| Mailjet | Transactional email | Your email address and the message sent |
| Sentry | Error monitoring | Technical error traces, which may carry your account identifier |
| Backblaze B2 | Encrypted daily backups | The whole database, kept 30 days |
| Stripe, Inc. | Subscriptions and payments | Your name, your email address and your billing history. Your card details go straight to Stripe and never reach Firebird — payment happens on Stripe's own page. |
Each of these works for us, on our instructions, for the purpose in the table and nothing else. We share your data with no one else. We may disclose information if the law requires it — a valid subpoena, court order or equivalent legal process — and if we are ever bought or merged, your data would move with the service, under this policy until we tell you otherwise.
Where your data lives
Firebird's servers and database are hosted with OVH in Oregon, United States. Our AI provider (Anthropic), our backup provider (Backblaze) and our payment provider (Stripe) are also in the United States. Google, Microsoft, LinkedIn and Mailjet operate internationally and may process the limited data listed above outside the United States, under their own terms.
How long we keep it
- Your account and its content — for as long as your account is open. When you delete your account, it closes at once and everything is permanently erased 30 days later; sign in again before then and you can cancel. We do not currently delete inactive accounts automatically.
- AI answers — 12 months, then automatically purged.
- Drive text extracts — until you delete them, until you disconnect your drive — disconnecting deletes them all — or until your account is deleted, whichever comes first.
- Backups — 30 days. Something deleted from the live database can survive that long in a backup before it disappears too.
- Payment records — held by Stripe, not by us, and they outlive your Firebird account. Invoices and receipts are financial records that Stripe must keep for its own legal obligations, so deleting your account does not delete them. We delete our own copy of your customer link when your account is erased; the invoices themselves stay with Stripe. This is the only thing on this page that survives deleting your account.
Your choices
Several things you can do yourself, right now, in the app: see and edit your profile; see and delete the text extracts of your files, one by one or all at once (Firebird will read a file again the next time you ask for a preview or an AI action on it); disconnect your drive, which withdraws that consent and deletes every extract we hold; delete an AI answer from your history; see what the assistant has used this month, in your profile settings. To withdraw your consent to the AI assistant itself, write to us at the address below and we will do it — there is no button for that one yet, and we would rather say so than let you look for it.
Your subscription is yours to end. My subscription in your profile settings opens Stripe's own portal, where you can cancel, change your payment method and download your invoices. Cancelling during a free trial means you are never charged. Cancelling a paid subscription keeps your access until the end of the period you have already paid for. We do not need to be involved, and we will not ask you why.
One thing worth knowing about your email address. Because you sign in with LinkedIn, Google or Microsoft rather than a password, your email address is how we recognise you — it is the link between you and your account, not a preference. That is why it is shown but not editable in your profile: changing it would separate you from your own work. If your address genuinely changes, write to us and we will move it for you.
Delete my account in the app now does what it says. Your account closes immediately — you are signed out and cannot sign back in to use it — and 30 days later everything is permanently erased: your contacts and their details, your companies, opportunities, meetings and notes, your deliverables, your drafts, the text we extracted from your files, and your drive connection. If you change your mind, sign in again before the 30 days are up: we will recognise you and ask whether you want your account back or want everything erased there and then.
Closing your account stops the billing immediately. We cancel your subscription the moment you ask to leave — we are not going to charge you again while you are on your way out, and no renewal falls due during the 30 days. The consequence is worth stating: if you come back within those 30 days, your work returns but your subscription does not, so you will be asked to subscribe again. When the erasure finally runs, we delete our customer record at Stripe too; the invoices Stripe already issued stay with Stripe, as described above.
Four things that deletion does not reach, and we would rather say them than let you assume otherwise. Backups keep a copy of the database for up to 30 days, so something erased today can survive there a little longer before it goes too. The files in your own Google Drive or OneDrive stay where they are — they are yours, we only ever linked to them; delete them yourself if you want them gone. The quality-control copy of AI answers is kept for its 12 months, but with your account link cut and the text of the answers emptied. And the invoices Stripe issued you stay with Stripe, which has its own legal obligation to keep them.
Beyond that, you can ask us for a copy of everything we hold about you or for a correction, and you can still ask us to erase your account for you rather than doing it yourself. Write to admin@firebird.ly and we will act on it within 30 days.
If you live in a state whose law gives you further rights over your personal information — California, Colorado, Connecticut, Virginia and others have such laws — write to us at the same address and we will honour them. We will not charge you for it and we will not treat you differently for having asked.
Access by the Firebird team
Two situations where a member of the Firebird team may see your data, both of which we would rather state plainly:
- Support sessions. An administrator can open the app as you, to see what you see and help you. While that is happening, a banner is displayed permanently on the screen saying so. Every such session is time-limited to one hour and recorded in our audit log.
- AI quality control. The team reads the answers the assistant produced, to check that they are useful and correct — as described in the AI section above.
Security
Access to your data requires you to be signed in, and every record is scoped to its owner — one account can never read another's. Your drive credentials and any AI key you supply are encrypted at rest and are never returned by any part of the service. Traffic is served over HTTPS. Backups run daily and their restorability is tested monthly. No system is perfectly secure, and we will not pretend otherwise; what we can say is that these controls exist and are exercised.
Cookies
Firebird sets no cookies. The app keeps your sign-in token in your browser's local storage so you stay signed in; clearing your browser data signs you out. We run no analytics and no advertising or tracking technology of any kind, on the app or on this website. When you subscribe, you are taken to Stripe's own payment page, which sets its own cookies while you are on it — that page is Stripe's, not ours, and nothing of it runs inside Firebird.
Children
Firebird is built for executives and is not intended for anyone under 18. We do not knowingly collect data about children, and if we learn that we have, we delete it.
Changes to this policy
When we change what Firebird does with your data, we update this page and its date. If a change concerns something you consented to, we put the new text in front of you inside the app rather than relying on you having read this page: the assistant asks for your consent again before your next AI action, and connecting a drive requires accepting the current version of its disclosure.
Contact
Questions about this policy, or about anything Firebird holds: admin@firebird.ly, or Firebird LLC, 1420 NW Gilman Blvd Ste 2 #8044, Issaquah, WA 98027.
