Information stored on your device
Role Rover stores résumé text and extracted facts; identity and contact fields; search-profile variants; reusable answers; jobs; monitors; application materials; contacts; interviews; follow-ups; local AI activity; and temporary reviewed ATS field proposals in browser-managed extension storage. If enabled, user-supplied USAJOBS and Apify credentials are stored in dedicated browser-profile records excluded from complete backups, diagnostics, and AI requests.
Live IndexedDB and browser storage are not separately encrypted by Role Rover. Operating-system disk encryption and browser-profile security are the device-level controls.
Complete backup export is password-protected by default using AES-256-GCM with PBKDF2-SHA-256 key derivation. The password is not stored or recoverable. You may deliberately disable protection to create a readable plain-JSON backup; older plain backups remain importable. Treat every backup as sensitive.
When information leaves your device
- Supported job and application sites receive searches, page navigation, and application values you explicitly select for filling.
- USAJOBS: its official USAJOBS Search API receives the selected title, location, remote filter, registered API email as its required User-Agent, and authorization key. It does not receive your résumé or application history from Role Rover.
- Apify: after setup and per-run confirmation, fixed actors receive at most 25 canonical public LinkedIn or Indeed posting URLs. Public company information, visible job-poster details, and published emails may be requested. No résumé, profile, cookies, site credentials, CAPTCHA material, notes, or application history is sent. Your Apify account may be charged.
- Ollama: local job analysis communicates through localhost with bounded public job context and verified qualification facts. Identity/contact facts and raw résumé text are excluded.
- Claude: after explicit enablement and disclosure acceptance, a separate local companion may send bounded public job context and verified qualification facts to Anthropic. Identity/contact facts are excluded. Raw résumé text and search preferences are sent only under the separate monitor-recommendation consent.
- Chrome built-in AI: when Chrome reports its browser-managed model available, bounded job context and verified qualification facts may be processed by that local browser model. Identity/contact facts are excluded, and prompts are not sent to a Role Rover-operated service.
- Email sharing: opening a share draft passes the reviewed recipient, summary, and links to your configured mail application. Role Rover does not access your mailbox or send the message.
No profile or résumé data is transmitted to a Role Rover-operated server. External AI sharing is off by default and requires an affirmative action.
Information Role Rover does not collect
Role Rover does not collect analytics, advertising identifiers, telemetry for a publisher backend, job-site passwords, cookies, CAPTCHA solutions, payment information, precise location, or health information. It does not sell user data or use it for advertising or unrelated profiling.
Optional USAJOBS and Apify credentials remain in the current browser profile and are not protected by an operating-system keychain. Disconnect removes the associated credential; Apify disconnect also removes its optional host permission.
Permissions and browsing activity
Role Rover uses browser storage, alarms, notifications, scripting, active-tab access, and narrowly declared site permissions for visible monitoring and application-assistance features. Optional site access is requested for user-selected workflows. It uses page URLs, titles, listings, descriptions, visible fields, and confirmation evidence only as required by those features. It does not bypass sign-in or human-verification controls.
Your choices and deletion
You can clear transient copilot data, delete AI Activity, disconnect optional providers, revoke optional site permissions in Chrome, export a complete backup, export sanitized diagnostics, or use Delete all data. Review downloaded files before sharing them.
Uninstalling Role Rover removes browser-managed extension storage according to Chrome's behavior. Export a backup before uninstalling if you want a portable copy. Files already downloaded to your computer are not removed by uninstalling.
Chrome Web Store Limited Use
The use of information received from Chrome APIs adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements. Role Rover uses and transfers data only as necessary to provide or improve its disclosed single purpose. It does not sell user data, use it for personalized advertising or unrelated profiling, or permit humans to read it except when you deliberately provide specific information for support or when legally required.
Changes to this policy
Material changes to data handling will be disclosed before the changed practice begins, and the effective date on this page will be updated. Product behavior and third-party services can change; the current extension and this published policy must remain aligned.
Privacy contact
Email support@getrolerover.com. Do not include passwords, API keys, cookies, CAPTCHA content, or an unredacted résumé.