Privacy policy

Last updated: 21 September 2026

Invilot is a live, transcript-grounded assistant for interviewers. It never scores or ranks candidates and never makes hiring decisions. This page explains what data we process, why, and where it is kept.

What we process

  • Account details: your email address and, if you sign in with Google, the name and profile photo on your Google account.
  • Interview preparation: the role, job description, candidate label, CV text and questions you enter.
  • Interview content: the written transcript of the conversation, evidence linked to it, question-and-answer records and coverage notes.
  • Technical records: duration, cost and, for debugging, inputs/outputs of AI calls; these are stored with the interview they belong to.
  • The date you acknowledged the first-use data processing notice. Your theme and language preference stay in your browser only.
  • Usage measurement: which pages you open and which product steps you use (e.g. interview created, live interview started/ended and its duration, a suggestion used or skipped, report opened). These events carry only your user id and counts; no transcript, question, CV, report text, name or e-mail is sent. No screen recording is made. An identifier is kept in your browser's local storage, not in a cookie.

Audio

Microphone audio streams from your browser directly to a speech-recognition provider (AssemblyAI or OpenAI) and is turned into text. Raw audio is not stored on our servers; only the resulting text is.

Who it is shared with

  • We use these infrastructure providers to run the service: Cloudflare (hosting and database), Clerk (sign-in), OpenAI (language model and speech recognition), AssemblyAI (speech recognition), TypeSafe (live conversation classification), PostHog (usage measurement, hosted in the EU).
  • We do not sell your data, use it for advertising, or use it to train our own models.
  • Interviews you create are visible only to you; they are not shared with any other user.

Candidates

  • As the interviewer, you are responsible for telling the candidate the conversation will be transcribed and for obtaining any required consent.
  • Invilot does not infer protected or sensitive attributes (e.g. health, origin, beliefs) and does not perform emotion recognition or personality inference.

Retention and deletion

  • By default, interviews are kept until you delete them. On the Settings page you can choose a retention period of 30 or 90 days instead; it counts from the interview's last update, and expired interviews are permanently deleted once a day.
  • Deleting an interview from the interview list permanently deletes its transcript, evidence, report and technical records.
  • You can delete your account yourself on the Settings page: all your interviews, settings, notice acknowledgement, usage analytics records and your sign-in account are permanently deleted. You can also send a deletion request to the address below.

Contact

Questions and deletion requests: support@invilot.com