Arius Forge

Privacy Policy

Last updated 21 September 2026

Who this covers

Arius Forge is a private tool operated by Arius Automation for its own team and invited collaborators. It covers the web application at forge.ariusautomation.com and the “Arius Forge — Job Collector” Chrome extension. Access requires an account; there is no public sign-up.

What is collected

  • Account details. Your name, email address and avatar, as supplied by GitHub when you sign in.
  • Session data. A session token that keeps you signed in, together with the IP address and browser user agent recorded when that session is created.
  • Upwork job postings.When you ask the extension to send a job, it reads the posting you are viewing: title, description, budget, contract terms, skills, screening questions, attachments listed on the page, and the public client information Upwork displays. On a search sweep it sends that page’s markup so the listing cards can be read on the server.
  • Work you create. Proposals, projects, notes and knowledge base material you add, along with repositories you connect for case study generation.

The extension reads a page only when you press a button in it. It does not track your browsing, record clicks or keystrokes, and does not read pages on any site other than Upwork.

What it is used for

Everything collected is used to run the product for you: signing you in, reviewing and scoring job postings, writing proposal drafts from your own knowledge base, and keeping a history of what was collected and when. Nothing is used for advertising, and nothing is sold or rented.

Who it is shared with

Data is processed by a small number of services on our behalf:

  • Anthropic and OpenAI. Job posting text and relevant knowledge base excerpts are sent to these model providers to score a posting and to draft proposals. Both state that API content is not used to train their models.
  • Supabase. Hosts the Postgres database where the above is stored.
  • GitHub. Provides sign-in, and supplies repository contents when you connect a repository.

Beyond these, data is disclosed only where the law requires it. It is never sold or transferred to third parties for their own purposes, never used for anything unrelated to the purpose above, and never used to assess creditworthiness or for lending.

How long it is kept

Job postings, proposals and knowledge base material are kept until you or an administrator delete them. Sessions expire on their own and can be ended at any time by signing out. Removing the extension deletes the session token held in your browser.

Security

Traffic runs over HTTPS. Access is restricted to signed-in members of the organisation, and what each person can reach is governed by their assigned role. The extension stores only a session token locally and never receives your GitHub password.

Your choices

You can ask for a copy of your data or for it to be deleted by writing to support@ariusautomation.com. Because accounts are issued by the organisation, requests are handled through it.

Changes

If this policy changes, the date at the top changes with it, and the Chrome Web Store listing is updated to match.