Version 2 · Last updated August 2026 · Strut early access
Strut is a job search tool in early access. You can use two of its tools without an account: a job fit evaluator (paste a job description and your CV to get an AI score across five dimensions) and a STAR story builder (turn rough interview answers into structured stories).
You can also create an account. An account saves your work and adds the rest of the product: a pipeline of the roles you track, a CV profile, AI CV tailoring, cover letters and follow-up tasks.
The two cases are different, and this notice describes both. Without an account, what you enter is not linked to your identity. With an account, the data listed in What data we collect is linked to your name and your email address.
Strut is run from the United Kingdom and is offered to people in the United Kingdom. It is not directed at people in the European Union, and Strut has not appointed an EU representative.
Strut does not block anyone from creating an account, and some people outside the United Kingdom have already done so. If you are one of them, this notice still describes what Strut does with your data, and you still have the rights set out below.
Strut plans to offer the product in the United States when early access ends. That has not happened yet, and this notice describes the position today. Strut updates this notice before the change takes effect, and you will see a new version number.
If you use the tools without an account, we collect only anonymous usage data:
This data cannot be linked back to you — it contains no name, email, or other identifying information.
If you create an account, we store the following and link it to your account:
Strut does not store contact records. An earlier version of this notice said it did. That was wrong: the feature has not been built, and Strut holds no names, employers, email addresses or LinkedIn addresses of other people. If Strut adds it, this notice will say so before the feature ships.
Strut applies a row-level access rule to every one of these tables, so one account cannot read another account's rows.
We use your email address to send you the messages the product needs to send — sign-in links, and confirmation of a change you asked for, such as closing your account. We will not send marketing email or share your address with third parties.
Content you paste into the tools is processed to generate results. Here is exactly what happens:
A CV or an interview answer often carries detail that data protection law treats as special category data, and holds to a higher standard than ordinary personal data. Strut does not ask for it, but it arrives inside the text you provide. The usual sources are:
What Strut does with it. Nothing specific. Strut does not look for this detail, does not pull it out into its own field, and does not use it to score you. It is stored as part of your CV text like any other sentence, and it is sent to the AI provider as part of that text. Removing your name, email address and phone number does not remove any of it.
Strut does not yet ask for your explicit consent to this. The law normally requires explicit consent before a service processes special category data. Strut has not built that step. We are telling you this rather than describing a consent process that does not exist. Until it is built:
Data protection law requires a legal ground for each purpose. These are the grounds Strut relies on:
The legal ground Strut relies on for each thing it does with your data
| What Strut does | Legal ground | What that means |
|---|---|---|
| Runs the evaluator and the STAR builder for a visitor with no account | Legitimate interests | You asked the tool to do a job. Running it is what you came for, and no account exists to form an agreement with. |
| Runs your account and everything in it | Performance of a contract | You asked for the service. Holding your roles, stories and CV is how Strut delivers it. |
| Sends you sign-in links and confirmation messages | Performance of a contract | Your account cannot work without them. Strut sends no marketing email. |
| Emails an evaluation result to you when you ask | Consent | You choose this by entering an address. You can decline and still use the tool. |
| Counts anonymous usage to see whether the tools work | Legitimate interests | The records hold no name, email or other identifier. |
| Enforces free-tier limits and prevents abuse | Legitimate interests | A random identifier in a cookie. Strut cannot run a free tier without it. |
| Handles special category detail inside your CV | No ground is in place yet | See Sensitive detail in a CV above. Strut is telling you this rather than claiming a consent step it has not built. |
Strut uses four other companies to run the product. Each one only processes your data to do the job in this table, and none of them may use it for their own purposes.
The companies that process your data on Strut's behalf, and where they do it
| Company | What it does for Strut | Where | Protection relied on |
|---|---|---|---|
| Anthropic | Runs the AI that scores roles, reads CVs and builds STAR stories | United States | Standard contractual clauses with the UK addendum, under Anthropic's terms for API customers |
| Supabase | Holds the database, your uploaded CV file, and the documents Strut builds | European Union (Frankfurt, Germany) | UK adequacy regulations for the European Economic Area |
| Vercel | Serves the website and runs the code behind every request | United States | Standard contractual clauses with the UK addendum, under Vercel's terms |
| Resend | Delivers the email Strut sends you | United States | Standard contractual clauses with the UK addendum, under Resend's terms |
Strut uses no third-party analytics or advertising company, and sells your data to nobody.
Strut is run from the United Kingdom, but none of the companies above is a UK company. So your data leaves the United Kingdom, and this is where it goes:
To ask about the safeguards for any of these transfers, contact support@strutcareer.com.
Scoring, parsing, and story generation use the Anthropic Claude API. Your experience data with the direct identifiers removed, job description text, and interview answer text are sent to Anthropic for processing.
Anthropic does not use API inputs to train its models. This policy applies to all API usage and is distinct from Anthropic's consumer product (Claude.ai), which has different terms. You can review Anthropic's API data usage policy at anthropic.com/legal/privacy.
Anonymous usage events are stored in Supabase (a hosted Postgres database in the EU). These records contain no personal data — only event types, scores, and the anonymous IDs described above.
Strut uses this telemetry only to evaluate tool quality and to inform product development.
Account records are held in the same database. The CV file you upload and the documents Strut builds for you are held in the file storage of the same Supabase project. Account records are not anonymous — What data we collect above lists what an account holds. Strut uses them to operate the product for you, not as analytics.
Steve Bailey, a sole trader trading as Strut, is the data controller for personal data processed by Strut.
If you used the tools without an account: usage telemetry is anonymous and cannot be linked back to you — there is no personal data to access or delete. An evaluation result you asked Strut to email to you holds your email address, and Strut deletes it automatically — see Data retention below.
If you have an account: the data listed above is personal data, and you have the right to:
To exercise a right you cannot exercise in the product, contact support@strutcareer.com. We will respond within 30 days.
You also have the right to lodge a complaint with the Information Commissioner's Office (ico.org.uk), the UK data protection regulator.
We use your browser's localStorage to store your anonymous visitor ID.
If you tick "Remember my email on this device" when signing in, we also store that email address in your browser's localStorage (strut.rememberedEmail), so you do not have to retype it next time. It is stored only if you ask for it, only on that device, and it is never sent to us or to anyone else — the choice itself is not submitted with the sign-in form. Untick the box and sign in once to remove it, or clear your browser's site data at any time.
We set one first-party, httpOnly cookie (strut_sid) to identify your browser for up to 30 days. It holds a random, unguessable identifier — not derived from your IP address, browser fingerprint, or any personal information — and is used only to enforce free-tier usage limits on the job evaluator and CV parser, and to confirm a later "email me my results" request came from the same browser that ran the evaluation. It is not used to track you across other sites and is never shared with any third party.
No third-party analytics or advertising trackers are used.
Anonymous usage telemetry is retained for the duration of the early access period and reviewed before any public launch.
Job evaluator results for anonymous (non-account) use — including the email address, if you used "email me my results" — are automatically deleted 30 days after the evaluation was run. If you create an account before then, your most recent result is carried over into your profile and the temporary copy is deleted on the same schedule.
Account data is retained for as long as your account is open. You can delete an individual role, story or task in the product at any time, and Strut removes it.
If you close your account, Strut deletes your account and everything in it — roles, stories, CVs and notes — 30 days after you ask it to. Your account stays fully usable for those 30 days, and you can cancel on any day inside them, from your profile or from the link in the confirmation email. After that date the data cannot be recovered.
Emails Strut sends you. When Strut cannot deliver an email immediately, it holds the message in a queue and tries again. Each entry in that queue holds your email address and the text of the message. Strut deletes an entry 30 days after the message is delivered, or 30 days after Strut stops trying to deliver it. Strut keeps the entry for that period so that a message which never arrived can be traced. If you close your account, Strut deletes every entry addressed to you at the same time as the rest of your data.
When this notice changes what Strut does with your data, the version number goes up and the change is listed here.
Strut is operated by Steve Bailey, a sole trader. For any privacy-related questions or to exercise your rights, contact support@strutcareer.com.