Privacy Policy
Last updated: April 2026
1. Who We Are
Sitreps2Steercos ("we," "us," "our") operates sitreps.com, a platform designed to help military veterans transition to civilian careers. This Privacy Policy explains how we collect, use, store, and protect your personal information.
Contact: leadership@sitreps.com
2. Information We Collect
Information You Provide Directly
- Account information: Name, email address, password (encrypted)
- Profile information: Military branch, rank, MOS/job specialty, transition status, current location, industry interests, career goals, skills, certifications, bio, profile photo
- User-generated content: Forum posts, comments, success stories, messages, saved resumes
- Contact form submissions: Name, email, message content
Information Collected Through Sign-In Providers
When you sign in using Google, LinkedIn, or Facebook, we receive:
- Name and email address
- Profile photo (if available)
- We do NOT receive your password from these providers
- We do NOT post to your social media accounts without your explicit action
Information Collected Automatically
- Analytics data: Pages visited, time on site, referral source (via Google Analytics)
- Device information: Browser type, operating system, screen resolution
- IP address: Used for security (rate limiting, fraud prevention) and approximate location
- Cookies: Session cookies to keep you logged in; analytics cookies via Google Analytics (GA4)
3. How We Use Your Information
We use your information to:
- Create and maintain your account
- Display your profile to other registered members (based on your privacy settings)
- Enable community features (forums, success stories, mentorship matching)
- Deliver and improve the platform
- Respond to your inquiries via the contact form
- Send transactional emails (password resets, forum reply notifications)
- Prevent fraud, abuse, and spam
- Comply with legal obligations
We do NOT:
- Sell your personal information to third parties
- Share your data with advertisers
- Use your military service information for marketing purposes
- Contact you with unsolicited commercial messages
4. Sensitive Information
We recognize that military service records, transition status, MOS, and content shared in mental health discussions are sensitive personal information. We apply additional safeguards to this data:
- Encrypted at rest in our database
- Access restricted to essential platform functions only
- Never shared with third parties except as required by law
- You can delete this information at any time from your profile settings
5. How We Share Your Information
We share your information only in these limited circumstances:
| Recipient | What We Share | Why |
|---|---|---|
| Supabase (database provider) | Account data, content | Infrastructure — hosts our database |
| Vercel (hosting provider) | Server logs, IP addresses | Infrastructure — hosts our website |
| Google Analytics | Anonymized usage data | Understanding how the site is used |
| Anthropic (AI provider) | Resume content you upload and questions you ask our AI tools | Powers resume extraction, the AI Advisor fallback, and the Pathways career analysis. Under Anthropic's commercial API terms, your inputs and outputs are not used to train their models. |
| Google (Gemini API) | Questions you ask the AI Advisor | Powers AI Advisor responses and search relevance. Not used to train Google's models under the paid API terms. |
| Other members | Profile info you choose to make public | Community features |
| Law enforcement | As required by valid legal process | Legal obligation |
We do not share data with data brokers, advertisers, or any parties not listed above.
6. Your Rights
Depending on your location, you may have the following rights:
- Access: Request a copy of all personal data we hold about you
- Correction: Update or correct inaccurate information
- Deletion: Request we delete your account and all associated data
- Portability: Receive your data in a machine-readable format
- Opt-out: Disable analytics tracking; unsubscribe from non-essential emails
- Restrict processing: Limit how we use your data
California residents (CCPA/CPRA): You have additional rights including the right to know what data is collected and shared, the right to opt out of "sales" (we do not sell data), and the right to non-discrimination for exercising your rights.
To exercise any right: Email leadership@sitreps.com with your request. We will respond within 30 days.
7. Data Retention
- Account data: Retained as long as your account is active. Deleted within 30 days of account deletion request.
- Forum posts and comments: Retained as long as your account is active. Upon account deletion, posts are anonymized (author shown as "Deleted User") but content may remain for community continuity.
- Private messages: Deleted within 30 days of account deletion.
- Analytics data: Retained for 14 months (Google Analytics default), then automatically deleted.
- Server logs: Retained for 30 days, then automatically deleted.
- Pathways career analyses: We never store your uploaded resume file. We store your branch, rank, MOS, years of service, and the generated analysis. Analyses run without an account are deleted after 30 days; analyses tied to your account are deleted when your account is deleted. Your analysis is never visible to recruiters unless you explicitly opt in.
8. Data Security
We implement the following security measures:
- HTTPS encryption for all data in transit
- Encrypted database storage for sensitive fields
- Rate limiting to prevent brute-force attacks
- XSS and injection protections
- Security headers (CSP, HSTS, X-Frame-Options)
- Input validation and sanitization
- Regular review of access permissions
No system is 100% secure. If we discover a data breach that affects your personal information, we will notify you via email and applicable authorities within 72 hours.
9. Cookies
| Cookie | Purpose | Duration |
|---|---|---|
| Session cookie | Keeps you logged in | Until logout or browser close |
| Supabase auth token | Authentication | Session |
| Google Analytics (_ga, _gid) | Usage analytics | Up to 2 years |
You can disable cookies in your browser settings. Disabling session cookies will prevent you from logging in.
10. Children's Privacy
Sitreps2Steercos is intended for users aged 18 and older. We do not knowingly collect personal information from anyone under 18. If we learn that we have collected data from a minor, we will delete it promptly. Contact leadership@sitreps.com if you believe a minor has created an account.
11. Third-Party Links
Our site may contain links to external resources (VA.gov, job boards, educational institutions). We are not responsible for the privacy practices of these third-party sites. Review their privacy policies before providing personal information.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page with a new "Last Updated" date and sending an email notification for significant changes.
Your continued use of the platform after changes constitutes acceptance of the updated policy.
13. Contact Us
For privacy-related questions, data requests, or concerns:
Email: leadership@sitreps.com
Or reach us through our Contact Page.
