Privacy Policy

Last updated: May 2026

1. Information We Collect

We collect information you provide directly when creating an account and setting up your profile, including your name, email address, resume content, job search preferences, and professional history imported from LinkedIn.

We also collect usage data such as which jobs were found, applications submitted, and outreach messages sent on your behalf. This data is used solely to operate the Ronin service.

2. How We Use Your Information

We use your data to:

  • Operate the automated job search and application pipeline
  • Generate tailored resumes and cover letters for specific job listings
  • Draft and send outreach messages to contacts at target companies
  • Provide interview preparation content
  • Generate daily summary reports of activity
  • Process payments via Stripe

3. Platform Connections

Ronin connects to third-party job platforms (such as LinkedIn and Indeed) exclusively via OAuth authorization flows managed by Composio. We store OAuth access tokens - not your platform credentials (username or password). You can revoke these connections at any time from your account settings.

4. Data Storage and Security

All data is stored in Supabase with row-level security (RLS) enforced at the database level. Each user account is isolated; your data cannot be accessed by other users. We use industry-standard encryption in transit (TLS) and at rest. See our Security page for more detail.

5. AI Processing of Resume and Profile

We use AI models from Anthropic to parse your resume, generate tailored versions for specific job listings, draft cover letters, and compose outreach messages. These models receive only the data necessary for the task (your resume, the target job description, your stated preferences) and are not used to train third-party models on your behalf.

You retain full control: every AI-generated artifact is reviewable, editable, and not sent externally without your explicit approval. AI does not see your platform credentials - those are held by Composio under your OAuth grant.

6. Subprocessors

We do not sell your personal data. We share data only with the subprocessors necessary to operate the service:

  • Supabase - database and authentication
  • Stripe - subscription billing
  • Anthropic - AI-generated resumes, cover letters, outreach drafts, and analysis
  • Composio - OAuth bridge to Gmail, Outlook, and other connected platforms
  • Apify - job listing discovery and decision-maker research from public sources
  • Postmark - transactional emails (account verification, daily summaries, application receipts, password reset)
  • AWS Lightsail - hosting for the worker that runs your automations

Each subprocessor is bound by a data processing agreement and used only for the stated purpose.

7. Your Rights

You have the right to:

  • Access all data we hold about you (use the Export button in Account Settings)
  • Correct inaccurate data (edit your profile)
  • Delete your account and all associated data (use the Delete Account button in Account Settings)
  • Withdraw consent for processing at any time by deleting your account

8. Data Retention

We retain your data for as long as your account is active. When you delete your account, all associated data is deleted immediately from our production systems. Backups are purged on a rolling 30-day schedule.

9. Contact

For privacy questions or to exercise your rights, contact us at privacy@ronin.work.