<?xml version="1.0" encoding="UTF-8"?>
<!--
  Sitemap for the public site.

  Only pages that are genuinely indexable are listed. The auth screens
  (/signin, /signup, /forgot-password, /reset-password, /verify-email), the
  signed-in app under /app, and the token-gated /feedback/:token pages are all
  absent on purpose — they are disallowed in robots.txt and noindexed by header
  in firebase.json, and listing a URL here that robots.txt blocks is a
  contradiction Search Console reports as an error.

  lastmod is the date the page's content last changed, not the date of the
  deploy. Bumping it on every release teaches crawlers to ignore it.
-->
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
  <url>
    <loc>https://cvresolve.sinecure.ai/</loc>
    <lastmod>2026-08-31</lastmod>
    <changefreq>weekly</changefreq>
    <priority>1.0</priority>
  </url>
  <url>
    <loc>https://cvresolve.sinecure.ai/contact</loc>
    <lastmod>2026-08-31</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.5</priority>
  </url>
  <url>
    <loc>https://cvresolve.sinecure.ai/privacy</loc>
    <lastmod>2026-08-31</lastmod>
    <changefreq>yearly</changefreq>
    <priority>0.3</priority>
  </url>
  <url>
    <loc>https://cvresolve.sinecure.ai/terms</loc>
    <lastmod>2026-08-31</lastmod>
    <changefreq>yearly</changefreq>
    <priority>0.3</priority>
  </url>
</urlset>
