← Back to Home

Privacy Policy

Last Updated: April 9, 2026

1. Introduction

InterviewLM ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered technical assessment platform ("Service").

This policy applies to all users of the Service, including organizations that purchase assessment credits ("Customers") and individuals who participate in interviews ("Candidates").

Please read this Privacy Policy carefully. By using the Service, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

2.1 Information You Provide

Account Information (Customers)

  • Name and email address
  • Organization name and details
  • Billing information (processed by third-party payment providers)
  • Password (stored in encrypted form)

Candidate Information

  • Name and email address (provided by the Customer)
  • Interview responses and code submissions
  • AI chat interactions
  • Terminal commands and outputs
  • Assessment scores and performance metrics

Assessment Content

  • Custom coding problems and test cases created by Customers
  • Assessment configurations and settings
  • Evaluation criteria and rubrics

2.2 Information Automatically Collected

Session Recording Data

When Candidates participate in interviews, we automatically record:

  • Code changes and edit history (timestamped)
  • File operations (create, read, update, delete)
  • AI assistant conversations and prompts
  • Terminal commands, outputs, and errors
  • Test execution results
  • Timestamps for all activities
  • Browser and device information

Usage Information

  • IP addresses and geographic location (country-level)
  • Browser type, version, and settings
  • Operating system and device information
  • Pages visited and features used
  • Time spent on the Service
  • Referral sources

Cookies and Tracking Technologies

We use cookies and similar tracking technologies to track activity on our Service and hold certain information:

  • Essential Cookies: Required for authentication and core functionality
  • Analytics Cookies: Help us understand how users interact with the Service
  • Preference Cookies: Remember your settings and preferences

3. How We Use Your Information

We use the information we collect for the following purposes:

3.1 To Provide and Maintain the Service

  • Process and manage user accounts
  • Facilitate technical interviews and assessments
  • Execute code in secure sandboxed environments
  • Provide AI-powered coding assistance to Candidates
  • Generate assessment reports and analytics
  • Enable session recording and playback

3.2 To Improve and Optimize the Service

  • Analyze usage patterns and trends
  • Develop new features and functionality
  • Improve AI assistant performance and accuracy
  • Optimize code execution environments
  • Enhance user experience and interface design
  • Conduct research and development

3.3 For Communication

  • Send interview invitations to Candidates
  • Notify users of assessment results (if configured)
  • Provide customer support and respond to inquiries
  • Send service announcements and updates
  • Deliver marketing communications (with consent)

3.4 For Security and Legal Compliance

  • Detect and prevent fraud, abuse, and security incidents
  • Monitor compliance with our Terms of Service
  • Comply with legal obligations and law enforcement requests
  • Protect the rights, property, and safety of InterviewLM, our users, and the public

3.5 With Your Consent

We may use your information for other purposes with your explicit consent.

4. How We Share Your Information

4.1 With Customers (For Candidate Data)

Candidate interview data (code submissions, chat logs, session recordings, and assessment results) is shared with the Customer who initiated the assessment. This is necessary to fulfill the core purpose of the Service.

4.2 With Service Providers

We share information with third-party service providers who perform services on our behalf:

  • Cloud Infrastructure: AWS, Vercel, Modal (for hosting and compute)
  • AI Services: Anthropic (Claude AI for coding assistance)
  • Payment Processing: Paddle (for billing and payments)
  • Email Delivery: Resend (for transactional emails)
  • Analytics: Analytics providers (for usage metrics)

These service providers are contractually obligated to use your information only as necessary to provide their services and to protect your information.

4.3 For Legal Reasons

We may disclose your information if required to do so by law or in response to:

  • Valid legal process (subpoenas, court orders)
  • Law enforcement or government agency requests
  • Protection of our legal rights and safety
  • Investigation of fraud or security issues

4.4 Business Transfers

If InterviewLM is involved in a merger, acquisition, or sale of assets, your information may be transferred. We will provide notice before your information is transferred and becomes subject to a different privacy policy.

4.5 Aggregated and De-identified Data

We may share aggregated, anonymized, or de-identified information that cannot reasonably be used to identify you. This may include industry reports, research papers, or product improvements.

5. Data Retention

5.1 Retention Periods

  • Account Data: Retained for the duration of your account plus 90 days after closure
  • Session Recordings: Retained for 12 months by default, configurable by Customers (up to 24 months)
  • Assessment Results: Retained for 12 months by default
  • Billing Information: Retained for 7 years to comply with tax and accounting requirements
  • Analytics Data: Retained for 24 months

5.2 Early Deletion

You may request early deletion of your data by contacting [email protected]. We will delete your data within 30 days of verification, except where we are required by law to retain it.

6. Data Security

We implement industry-standard security measures to protect your information:

6.1 Technical Safeguards

  • Encryption in transit (TLS 1.3) and at rest (AES-256)
  • Secure authentication with bcrypt password hashing
  • Regular security audits and penetration testing
  • Automated vulnerability scanning
  • Code execution in isolated sandboxed environments
  • Database access controls and audit logging

6.2 Organizational Safeguards

  • Employee access controls (principle of least privilege)
  • Security training for all personnel
  • Incident response procedures
  • Regular backups with encryption

6.3 Limitations

While we strive to protect your information, no security system is impenetrable. We cannot guarantee the absolute security of your data. You are responsible for maintaining the confidentiality of your account credentials.

7. Your Rights and Choices

7.1 Access and Portability

You have the right to request access to your personal information and receive a copy in a portable format (JSON or CSV). Contact [email protected] to submit a request.

7.2 Correction

You can update your account information at any time through your account settings. For Candidate data corrections, contact the Customer who administered your assessment.

7.3 Deletion

You can request deletion of your personal information by contacting [email protected]. We will honor deletion requests except where retention is required by law or necessary for legitimate business purposes.

7.4 Opt-Out of Marketing

You can opt out of marketing communications at any time by clicking the "unsubscribe" link in emails or contacting [email protected]. You will continue to receive transactional emails necessary for the Service.

7.5 Cookie Preferences

Most browsers allow you to control cookies through their settings. Note that disabling essential cookies may limit your ability to use certain features of the Service.

7.6 For Candidates

If you participated in an interview, your data is controlled by the Customer (the organization that invited you). For privacy requests regarding interview data, please contact the Customer directly. We will assist with requests as a data processor.

8. Regional Privacy Rights

8.1 GDPR (European Economic Area)

If you are located in the EEA, you have additional rights under the General Data Protection Regulation (GDPR):

  • Right to object to processing
  • Right to restrict processing
  • Right to data portability
  • Right to withdraw consent
  • Right to lodge a complaint with a supervisory authority

Our legal basis for processing your data includes: performance of contract, legitimate interests, and consent (where applicable).

8.2 CCPA (California)

If you are a California resident, you have rights under the California Consumer Privacy Act (CCPA):

  • Right to know what personal information is collected
  • Right to know if personal information is sold or disclosed
  • Right to opt-out of the sale of personal information (we do not sell data)
  • Right to deletion
  • Right to non-discrimination for exercising CCPA rights

8.3 Other Regions

We respect privacy rights under other applicable laws and will comply with valid requests in accordance with local regulations.

9. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence, including the United States. These countries may have data protection laws that differ from your jurisdiction.

We use appropriate safeguards for international data transfers, including:

  • Standard Contractual Clauses (SCCs) approved by the European Commission
  • Adequacy decisions for certain countries
  • Certification mechanisms where available

10. Children's Privacy

The Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If you become aware that a child has provided us with personal information, please contact us at [email protected], and we will take steps to delete such information.

11. Third-Party Links

The Service may contain links to third-party websites or services that are not operated by us. We are not responsible for the privacy practices of these third parties. We encourage you to review the privacy policies of any third-party sites you visit.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of material changes by:

  • Email notification to your registered email address
  • Prominent notice on the Service
  • Updating the "Last Updated" date at the top of this policy

Your continued use of the Service after changes become effective constitutes acceptance of the updated Privacy Policy.

13. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

InterviewLM Privacy Team

Email: [email protected]

General Support: [email protected]

Data Protection Officer: [email protected]

Response Time

We will respond to privacy requests within 30 days. For GDPR requests, we will respond within one month (extendable by two additional months for complex requests).

14. Data Processing Addendum (For Customers)

For Customers who use the Service to process Candidate data, we act as a data processor. A Data Processing Addendum (DPA) is available upon request and forms part of our service agreement. The DPA includes:

  • Details of processing activities
  • Security measures and certifications
  • Sub-processor list
  • Data subject rights assistance
  • Data breach notification procedures
  • Standard Contractual Clauses (where applicable)

Contact [email protected] to request a DPA.

This Privacy Policy was last updated on April 9, 2026. We are committed to protecting your privacy and handling your data with care and transparency.