Privacy Policy

Last updated August 16, 2026.

Overview

Cleared Colorado is a public job discovery site operated and published by Sean Flading. Users apply directly with employers. We do not collect resumes, applications, clearance proof, Social Security numbers, birth dates, or sensitive candidate documents.

Information We Collect

Job-alert subscribers provide an email address and the search preferences they choose to save, such as role-interest starters, keywords, named workplaces, held clearance, polygraph, employer, freshness, and a daily or weekly email schedule. Role starters are stored as ordinary saved searches rather than user profiles. Contact emails may include the information a sender chooses to provide about a correction, privacy request, or site question.

How We Use Information

We use alert information to confirm an address, match new eligible jobs to saved searches, send a conditional daily alert or weekly roundup when matches exist, and provide signed management and unsubscribe links. Weekly roundups use the prior seven days and do not send during quiet weeks. We use contact messages to respond to requests and maintain listing quality.

ChatGPT App

The Cleared Colorado ChatGPT app receives only the job-search filters or public job identifier needed to answer a tool request. Filters may include a held-clearance or polygraph value only when you explicitly provide it; the app does not infer either value. We process those values only to query current public listings and return a bounded public result, and the app does not persist tool inputs after the request. We do not receive the full ChatGPT conversation, request a ChatGPT identity, create a user profile, sell or share app-request data for advertising, or use app requests for advertising. OpenAI and our infrastructure providers may process the request under their own terms and privacy policies. If you open an employer application link, that employer receives the normal browser request and its privacy practices apply.

At the application level, each tool's filters and public job identifiers exist only while that request is processed and are discarded when the response completes. Cleared Colorado does not create a per-user copy of the response or a tool-action history. The fixed MCP outcome and timing headers contain no prompt, filter, job identifier, or user value and are not stored by the application. Because no app-request profile or history is retained by Cleared Colorado, there is no app-request record to access or delete here; you control which filters you provide in ChatGPT. Hosting and platform providers may separately retain limited request and security metadata under their own policies.

Analytics And Cookie Choices

On eligible public pages, Google Analytics loads in advanced consent mode with analytics cookies and advertising features denied by default. Before you allow analytics cookies, or after you decline them, Google receives limited cookieless signals about public page use and privacy-safe events for basic measurement and modeling but may not read or write Analytics cookies. If you allow analytics cookies, Google Analytics can measure more detailed journeys and site performance. Advertising storage, advertising user data, advertising personalization, Google Signals, and ad-personalization signals remain disabled. You can change your choice using the analytics preferences link in the footer.

We do not send your search words, email address, private alert tokens, or admin activity to Google Analytics. Google may process limited page, event, device, browser, and approximate-location information under its own privacy terms.

To understand whether the choice screen works, we separately count when it is shown and whether a visitor selects allow or decline. This first-party count remains separate from Google Analytics and stores only the event type, time, and a daily one-way deduplication value derived from an ephemeral browser-tab ID that is never retained by the server.

Anonymous Operational Measurement

Following a signed job link uses a read-only redirect that does not itself create an analytics record. A browser-confirmed employer-link activation may create a qualified click. The qualified-click endpoint issues or reads an eight-hour, signed, HTTP-only first-party session cookie and limits the count to one event per session and job in any rolling 30-minute period. The request body cannot choose that session identity. We transform it into a one-way, purpose-specific deduplication value and never store the raw session or cookie value. Qualified-click records may also contain the first public landing pathname in that browser tab and a coarse category for Google search, another recognized search engine, non-search traffic, or an unknown source. The signed session preserves that initial context; we discard the raw referrer URL, query string, and fragment. These records otherwise contain the job, employer, page surface, optional list position, and time, but no IP address, user agent, account, email address, or search words. They remain separate from Google Analytics and are deleted after 13 calendar months. Historical raw redirect diagnostics collected under the prior measurement design are retained only until that same deletion window expires.

Email And Unsubscribe

You can change the schedule, edit, pause, or delete saved searches, and unsubscribe from job alerts using the signed links included in alert emails. Management and unsubscribe links do not expose your email address in the URL, and no account or password is created.

Security And Retention

We use administrative access controls, CSRF protection, signed private links, and rate limits on public forms. We keep subscriber, saved-search, delivery, suppression, rate-limit, and audit records as long as needed to operate the service, honor unsubscribe requests, troubleshoot abuse, and maintain listing quality. Sanitized email-provider event details are deleted after 90 days. Operational email records do not retain message content or private management and unsubscribe tokens.

Third-Party Services

We use infrastructure providers for hosting, database storage, analytics with optional cookies, email delivery, and the optional ChatGPT app connection. Hosting and platform providers may process limited request, device, network, and security metadata under their own policies. Email delivery providers process recipient and message data so confirmations and matching job alerts can be sent and delivery status can be monitored.

Contact

For privacy questions or data requests, contact hello@clearedcolorado.com. You can also review the site's Terms of Use.