Overview
Työtori is an Android app for job seekers in Finland. It searches public job boards, keeps your job search profile and CV, prepares application drafts and their attachments, helps you fill in an employer’s application form, and tracks the applications of your review period. Työtori never sends an application to an employer: you always send it yourself.
The service and how to contact us
Työtori is published on Google Play under the JanstechApps app brand, and its backend runs on CodentraTec-operated hosting. Privacy questions and deletion requests: janstech.apps@gmail.com
Data we process
Almost everything below is data you enter yourself. All of it is tied to your Työtori account and all of it is removed when you delete the account.
- Account: email address, authentication identifiers from Firebase Authentication, and the numeric user id of the Työtori backend. Työtori does not store your password.
- Profile: first and last name, phone number, city, LinkedIn and portfolio addresses, desired job titles and locations, remote work preference, education, work experience, skills, languages, driving licence details and profile summary.
- CV: an uploaded PDF file, the text extracted from it, or a CV you wrote by hand in the app.
- Job searches and jobs: the search addresses used, the results, saved jobs with their description and application deadline, and the suitability score, level and explanation.
- Applications: application drafts, cover messages, the document language, the status of an application, and the dates it was marked as sent or archived.
- Subscription: if you buy Työtori+, Google Play purchase and subscription state. Työtori does not receive or store card details.
- Usage statistics: coarse events with a fixed set of parameters, if you leave usage statistics switched on in Settings.
- Crash reports: stack traces and technical keys such as build type, app version, locale and error category.
- Abuse control: the Android App Set ID, stored on the backend only as a keyed hash, used to keep the free search quota fair.
- Technical logs: category-level server logs and standard web server access logs.
Työtori does not ask for a location permission, does not collect an Advertising ID, and does not support a profile photo.
Why we process data
- To create an account, sign you in and identify your data.
- To search job boards and to score and order the results.
- To draft application texts, cover messages, application letter PDFs and a PDF CV.
- To help you fill in an employer’s form and to show the sending instructions of a posting.
- To count the applications of your review period.
- To verify a Työtori+ subscription and grant the matching access.
- To keep the service working and secure, to fix errors and to prevent abuse.
AI processing
Työtori uses a text-generation service as a processor acting on its instructions. The backend, not the app, makes those calls, and there are four of them:
- Generating an application draft and its cover message from your profile, CV text and the job posting.
- Writing the suitability analysis of a single saved job.
- Explaining why the best candidates of a search were selected.
- Answering form help in the Työtori browser, from the visible questions of the form.
Because of this, we do not claim that your data is never passed to anyone: profile, CV, job posting and draft text really are transmitted for these purposes. The form help request never contains a value you typed into an employer’s form. Prompts and responses are not written to the application log.
Every AI result is a draft. Check it before you use it. The deterministic part of the suitability score works without the AI service, and the employer never sees Työtori’s estimate.
The Työtori browser and employer forms
Työtori has an internal browser for filling in an employer’s own application form. From the page, it reads only the visible structure of the form: field labels, field types, options, whether a field is required, and nearby help text. It does not read the values you type, passwords, hidden fields, cookies, local or session storage, and it does not extract the page’s HTML, DOM or full text.
- Checking the form, filling in basic details and inserting an application text are three separate actions that you start and confirm.
- Only name, first name, last name, email, phone, city, LinkedIn and portfolio can be filled, and only into text, email and phone fields.
- Checkboxes, radio buttons, dropdowns and consent controls are shown as recommendations and are never selected for you.
- You choose an attachment yourself in the employer page’s own file picker.
- Työtori never submits a form.
Employer pages commonly save a field as soon as its content changes. This means the employer’s service can hold the filled values, and a file you have chosen, before you press send. The app tells you this before each of those steps.
The employer’s site sets its own cookies and storage inside the browser view, under its own privacy policy. Työtori clears the browser cookies and storage at an account boundary: app start, sign-out, account deletion and a change of signed-in identity.
“Analyze application instructions” sends the visible text of the current page and its address to the Työtori backend, where the result is produced by rules, without the AI service, and is not stored.
Third-party services
- Firebase Authentication and Google Sign-In for signing in.
- Firebase App Check with Play Integrity, so the backend can tell a genuine app installation from a forged request. No user content is sent.
- Firebase Analytics for coarse usage events, unless you switch usage statistics off.
- Firebase Crashlytics for crash and error diagnostics.
- A text-generation service for the four purposes listed above.
- The Työtori backend on CodentraTec-operated hosting, which stores everything in the list above.
- Google Play and Google Play Billing for distribution, updates and the Työtori+ subscription.
Työtori’s backend reads the public job boards tyomarkkinatori.fi, duunitori.fi, jobly.fi, kuntarekry.fi and valtiolle.fi. They receive an ordinary search request; they do not receive your profile, your CV or your application.
Employer sites and applicant tracking systems that you open yourself are independent services with their own privacy policies.
Työtori does not sell personal data and does not use it for advertising profiling.
Usage statistics and crash reporting
Usage statistics are coarse: fixed event names and a small allow-list of parameters such as search mode, number of sources, a bucketed result count, the sending channel and the action taken. Email address, name, phone number, LinkedIn or portfolio address, CV content, application text, the full text of a job posting, search words and exact locations are never sent to analytics. You can switch usage statistics off in Settings.
Crash reporting is separate and stays on in release builds, because it is what makes a crash fixable. It carries stack traces and technical keys plus the backend user id, and no application content. The usage statistics switch does not cover crash reporting.
Storage, retention and backups
- Backend: account, profile, CV, jobs, searches, applications and subscription state, kept as long as the account exists.
- On the device: prepared application material PDFs, generated CV PDFs, a preview cache and app settings. These are cleared on sign-out and on account deletion.
- Server logs: application logs are category-level and rotate after 14 days. Web server access logs are standard.
- Android Auto Backup: Android may back up the app’s private files to your own Google Drive. The browser session files are excluded, so an employer session never returns through a restore. This is your data going to your own Drive under Google’s platform backup.
- Files you saved yourself: attachments you save to your phone’s Downloads folder are your own files, and Työtori does not delete them.
Deleting your data
You can delete your account and its data in the app: Settings → Account → User account → Delete my account and all my data. This removes your rows from the backend database, the CV files stored on the server, your Firebase identity, and the material files on the device. If the identity deletion fails, the app reports the deletion as incomplete instead of claiming success. Limited technical logs and backend backups can survive for a short time, so we do not promise instant erasure from every backup. A Työtori+ subscription is cancelled separately in Google Play. See the Delete Data page.
Security
- All traffic between the app and the backend uses HTTPS.
- Every protected backend request validates the Firebase ID token of the signed-in user.
- Firebase App Check with Play Integrity is used to attest production requests.
- Application logs record categories and error classes, not addresses, email, prompts, payloads, tokens or form values.
Your rights
- View and edit your profile and CV in the app at any time.
- Switch usage statistics off in Settings.
- Delete your account and its data in Settings, without a subscription.
- Ask about privacy or request deletion by email if you cannot get into the app.
Children
Työtori is not directed at children.
Contact
For privacy questions or deletion requests, contact: janstech.apps@gmail.com