The commitments that don't change, whatever ships next.
The GitHub scopes we request are read-only. We can read what you approve; we cannot modify your code.
GitHub and LinkedIn are read through their official OAuth consent flows. Nothing is scraped.
We never email employers on your behalf without explicit, per-job approval.
You're the customer, not the product. Your profile is never sold or made searchable to recruiters.
The boring, important parts — the ones that keep the blast radius of any single token close to zero.