DRAFT — requires human and legal review before launch.
This document is a working draft prepared for the private beta. It is not legal advice. Text in [brackets] must be completed or confirmed by the operator before it is relied on.
Privacy Policy
Last updated: [date — set at review]
Interview Reps (“we”, “us”) is operated by [operator legal name]. This policy explains what we collect when you use Interview Reps during its private beta, why, who helps us process it, and the choices you have.
What we collect
- Account: your email address, used to send sign-in links and codes. There is no password.
- Profile: the role you are preparing for, your interview date (optional), your daily practice goal, your time zone, and when you confirmed you are 18 or older and accepted these documents.
- Practice activity: the answers you choose in exercises, whether they were correct, lesson progress, XP, streaks, and which days you practised.
- Written answers: the text of written practice answers you choose to submit, and the AI feedback and scores returned for them.
- Speaking your answers (optional): in written-answer boxes you can press “Start speaking” to dictate instead of typing. Interview Reps does not record, receive or store audio. Your web browser turns your speech into text, and to do that it may send your audio to its provider — for example Google (Chrome), Apple (Safari) or another browser provider — under that provider’s own privacy terms. Only the resulting text is placed in your answer box, where you can edit it, and it reaches us only if you submit that answer, exactly like a typed answer. The first time, after you choose “Continue”, the app asks your browser for microphone permission (your browser shows its own Allow / Block prompt); as soon as access is granted, the app switches that microphone connection off again without recording or keeping anything, and your browser’s speech service takes over. You can withdraw microphone permission in your browser settings at any time.
- Resume (optional): if you choose to personalize your practice, the resume file you upload (PDF or Word), the details extracted from it (such as education, roles, projects, skills and results), details you add by hand, and when you agreed to resume processing. We remove the name at the top of your resume, email addresses, phone numbers, links and street addresses, and skip lines about date of birth, citizenship, visa status and similar personal attributes, before any text is sent for extraction.
- Personalized practice (optional): interview questions written from the details you confirmed, the answers you write to them, and the AI feedback and scores returned.
- Feedback: messages you send us through the in-app feedback form, the category you choose, and the app page it was sent from.
- Product analytics (first-party): a small, fixed set of events stored in our own database — that you opened the app on a given day, that you opened a lesson, and that AI feedback was unavailable when you asked for it. These records hold no IP address, device details, answer text or email address.
- Error reports: when something breaks, technical details of the error (such as the page path, browser type and the code location) are sent to our error monitoring provider. We remove email addresses, written answers, sign-in tokens and URL query strings before a report leaves the app, and we do not record sessions.
- Service logs: our hosting and database providers process IP addresses and request information to deliver the service and keep short-lived security and operational logs. [Confirm providers’ log retention periods.]
Cookies and local storage
We use only the cookies needed to keep you signed in (set by our authentication provider). We do not use advertising cookies or third-party analytics cookies. Your browser’s local storage keeps your place in an unfinished lesson on your device. [Reviewer: confirm whether any cookie notice or consent mechanism is required for the jurisdictions of your users.]
How we use it
- To run the practice experience: lessons, progress, streaks, and study plans.
- To give AI feedback on written answers when you ask for it.
- If you opt in, to extract details from your resume for you to review. Nothing extracted is used until you confirm it.
- If you opt in, to write practice interview questions from the details you confirmed, and to give AI feedback on your answers to them.
- To understand whether the beta is working (activation, return visits, drop-off).
- To fix bugs and keep the service secure.
- To reply when you contact us.
We do not sell your personal information, and we do not use it for advertising.
Service providers
- Supabase — database and sign-in (hosting region: [region]).
- Vercel — web hosting.
- Anthropic — generates feedback on written answers. When you submit a written answer for feedback, its text and the exercise prompt are sent to Anthropic’s API. If you opt in to resume personalization, the text of your resume (with your name and contact details removed) is also sent to Anthropic’s API to extract details for you to review. To write personalized questions, only the details you confirmed (their category and text) and your target role are sent; answers to those questions are sent for feedback like any written answer. Your original file, unconfirmed or rejected details and contact details are never sent. [Confirm and summarise Anthropic’s current API data-retention and model-training terms before publishing.]
- [Email provider] — delivers sign-in emails.
- Sentry — error monitoring (scrubbed as described above).
Speech-to-text is not one of our service providers: it is a feature of the browser you choose, run by that browser’s provider, and we never receive the audio.
How long we keep it
We keep your account and practice data while your account exists. Written answers are kept [retention period — decide, e.g. until account deletion or N days]. Error reports are kept according to [error-monitoring retention]. Feedback messages are kept [period].
Resume files: the original file is deleted as soon as you confirm the extracted details. Files that are rejected (unreadable, too large, or not a PDF or Word document) are deleted right away, and files you never confirm are deleted within 14 days of upload. Details you confirm or add are kept until you delete them or your account. Personalized questions and your answers to them are kept until you delete your personalized data or your account; deleting a detail also deletes the questions written from it. To prevent the same question earning XP twice, we keep a minimal, content-free XP payment record linked to your account for each question that earned XP: a one-way code made from the question and your account, the XP amount and the date. It contains no resume, question, answer, employer or fact text. It is kept when you delete your personalized data and removed when you delete your account.
Your choices
- Delete your account at any time from your profile. This permanently removes your account and all practice data, written answers, resume files and details, feedback and analytics records. [Confirm backup retention and describe it here.]
- Review, edit or delete any resume detail, or delete your resume and all personalized data at once, from the Personalize page. Your practice progress is not affected.
- Edit your role, interview date, goal and time zone in your profile.
- Ask for a copy of your data or any other privacy request by emailing support@getinterviewreps.com.
Age
Interview Reps is for people aged 18 and over. Do not use it if you are under 18.
Security
Data is encrypted in transit. Each learner can read only their own records, enforced in the database itself. No system is perfectly secure; tell us at support@getinterviewreps.com if you find a problem.
Your rights
[Reviewer: determine which privacy laws apply to the operator and to beta users (for example GDPR / UK GDPR, CCPA/CPRA or other U.S. state laws) and add the required disclosures: legal bases, rights, how to exercise them, and any international transfer terms.]
Changes
We will update this page when our practices change and, for material changes, tell you in the app before they take effect.
Contact
[Operator legal name], [postal address]. Email: support@getinterviewreps.com.