Privacy policy
Onceover is built local-first. Your profile lives in your browser, and nothing leaves your device unless you choose a feature that needs it. This page says plainly what is stored, where, and what is sent.
What is stored, and where
| Data | Where it lives | Leaves your device? |
|---|---|---|
| Your profile (facts from your resume or LinkedIn text) | Your browser, encrypted on your computer | Assisted mode sends only the few facts a request needs, with zero retention. If you turn on optional sync, an encrypted copy is stored; the server cannot read it. |
| Answer library, corrections, tracker entries, application copies | Your browser, encrypted | Not unless you sign in and turn on sync. Then they are stored as encrypted copies: the server sees ids, dates and tracker status, never the content. |
| Voice input (optional) | Not stored by Onceover | Your browser turns speech into text with its own speech service (Google in Chrome), so the audio leaves your device. Skip voice if that is a problem. |
| Settings (mode, preferences) | Your browser | No. |
| Hours Saved page | Created only when you share it | Yes, on purpose. See below. |
Local mode and Assisted mode
Local mode: form data never leaves this browser. Use it for visa, council and other sensitive portals.
Assisted mode: long answers are drafted by a hosted model. Each request carries only what that one form needs: the question, the job text on the page, and the profile facts used for the draft. It is processed with zero retention: nothing is kept after the answer is returned. Assisted mode is opt-in and needs a verified email address.
Permissions explained
The extension asks for the minimum: activeTab, scripting, sidePanel and storage. It has no access to your tabs list, history or network traffic. It never presses a site’s Submit button, and it skips password, payment, one-time-code and captcha fields.
Analytics
Onceover records product events such as install, onboarding step, fill started or completed, and data exported or deleted. Events never include field values, page text or URLs. Where a site type is recorded, it is a category only. You can opt out in Settings. This website sets no tracking scripts or cookies.
Hours Saved and share pages
Hours Saved is an estimate: the number of fields filled multiplied by a baseline time per field. The method is shown in the app. A public Hours Saved page exists only if you create it. It shows only what you chose to include (hours, number of applications, fields filled) and is identified by a random link, not your name or email. You can turn it off at any time.
Export and delete
Open Data & privacy in the app to download everything as JSON, or to delete everything in two steps. Deleting removes your local data, and your synced copy and share pages if you created any.
Contact
Questions about this page: hello@onceover.app.