FalcoBot
Reads public job postings on behalf of one named jobseeker who has asked for them, and applies on their instruction.
What it does on your site
- Read-only. It fetches job postings you have already published. It does not sign in, does not submit anything while crawling, and holds no account on your site.
- One person at a time. Every fetch is on behalf of one named jobseeker who asked Falco to look. It is not building a database to resell.
- 1 request per second per host, burst of 2, at most 4 requests in flight overall. Self-imposed, and
Retry-Afteris honoured.
How to stop it
robots.txt— fetched per origin, cached and obeyed, includingCrawl-delay.- A TDM reservation —
/.well-known/tdmrep.json,ai.txt, aTDM-Reservationheader, or an in-pagenoaitoken. Any one of them blocks the fetch. - Block the User-Agent —
FalcoBot/0.1.0 (+https://falco-job.com/bot; contact hello@falco-job.com) - Write to a human — hello@falco-job.com. A request to stop is honoured without argument.
Verifying it really is us
Every request carries an HTTP Message Signature (RFC 9421) over @authority, @method, @path and signature-agent, using Ed25519 and tagged web-bot-auth. The public keys are at
https://falco-job.com/.well-known/http-message-signatures-directory, so you can check a signature without contacting us. Anything claiming to be FalcoBot whose signature does not verify against that directory is not us.
The machine-readable version of this page is /.well-known/falco-agent.json.
Who runs it
Falco — hello@falco-job.com