Security and privacy

Where the interview lives

This page is the specific version of the claim on the front page. It lists every field we store, names every company that touches your audio, and says what we cannot do even if asked.

The short version

Transcripts, evidence quotes, candidate names, notes and submittals are written to the recruiter's own computer and are never uploaded. What reaches our servers is counts and durations. Audio is sent, in short chunks, to a speech-to-text provider while the interview runs, and is not retained by them or by us.

What is stored on our servers

One row per interview, with exactly these fields and nothing else:

FieldExampleWhy
interview ida random identifierso a retry does not create a second row
organisation, seatyour agency, which recruiterthe coverage report is per recruiter
role id, kit versionwhich question set was usedso a report can say which version of a kit was run
sourcevideo, phone or in personcoverage differs by format
started, ended, duration, paused seconds47 minutes, 65 seconds pausedthe time-saving claim is measurable
consent acknowledgement, jurisdictionnotice read aloud, Californiaa record that the decision was made
questions total and covered11 of 12coverage
must-asks total and covered4 of 4the number that matters most
follow-ups shown and used18 shown, 5 usedcoaching
scorecard areas and areas scored6 of 6completeness
fit score7.5one number, no text
submittal exported, export kindstrue, Word and emailwhether the interview finished properly
app version, operating system0.9.0, Windowsso a fault can be tied to a build

That table is the whole of it. The API refuses any request that carries a field outside that list, and the database table it writes to has no free-text and no document column at all — every column is a number, a date or a short label. Two independent mechanisms, because a promise that depends on one of them being maintained is not a promise.

What never leaves the recruiter's computer

These are written to a folder in the recruiter's own user profile. They can open it, copy it, back it up or delete all of it from Settings. Deleting is immediate and unrecoverable, and there is no copy anywhere else.

What happens to the audio

While an interview runs, the app sends short chunks of audio to be transcribed and receives back text. The chunk is processed and discarded; nothing is stored by us at any point, and no audio file is ever created on disk.

Transcription is served by Groq, with OpenAI as the fallback when Groq is rate-limited or unavailable. Text generation — the question kit, the follow-ups, the scorecard reasoning and the submittal — runs on Cerebras, Groq and OpenAI depending on the task. All three are used under their paid API terms, under which submitted data is not used to train models.

Subprocessors

WhoWhat they handleWhere
Groqspeech to text, and some text generationUnited States
OpenAItext generation, speech-to-text fallbackUnited States
Cerebrastext generation for live suggestions and scoringUnited States
Vercelhosting for the APIUnited States
Supabasethe database holding the table aboveUnited States
Cloudflarethis website and the download filesGlobal edge
Stripepayments — they hold the card, we never see itUnited States
Resendsign-in links and the weekly report emailUnited States

Encryption and access

Deleting things

What we cannot do

We cannot read an interview. Not for support, not for debugging, not on request. The content is not somewhere we can reach — it is on a computer we have no access to. If you report a fault, the diagnostics the app can send contain the application log and your machine's details, and no interview content at all.

Reporting something

Security issues: [email protected]. We reply within two working days and we will not threaten anyone who reports a genuine issue in good faith.

A data processing agreement is available — email [email protected] or read the summary.

Last updated 10 September 2026. This page describes what the software actually does; if you find something here that is not true of the build you are running, tell us and we will correct the page or the software the same week.