Swoop · Updated July 18, 2026
Privacy
Swoop is designed for transparent, self-hosted career automation. Your operator controls the instance and its data.
Data stored
Account details, career profile, job preferences, applications, generated documents, hiring contacts, activity history, and encrypted credentials you choose to add.
How data is used
To discover and score jobs, prepare application materials, assist with submissions, manage your pipeline, and operate the service. Swoop does not sell candidate data.
AI providers
When you use AI features, relevant profile and job text is sent to the operator-configured AI provider. Swoop records the model, token counts, and cost—but never provider credentials—in its usage ledger.
Billing data
The payment processor handles card information. Swoop stores customer, subscription, checkout, and webhook identifiers needed to grant plans and add-ons; it does not store complete payment-card numbers.
Access, retention, and deletion
You can download a portable account export or permanently delete candidate-owned data from Settings. Generated artifacts are pruned according to the instance retention setting. Operators should keep backups only as long as necessary.
Security
Credentials are encrypted at rest, sessions use secure cookies in production, mutating requests require CSRF protection, and sensitive values are excluded from logs.
Self-hosters are the data controller for their deployment and should adapt these notices to their jurisdiction, hosting arrangement, tax obligations, payment terms, and providers before public launch. This repository text is a product template, not legal advice.