Privacy Policy
Last updated: July 31, 2026
Interviewlary is a sole proprietor brand operated by Omar Wassef .
This Privacy Policy explains what personal data we collect when you use interviewlary.com, how we use it, who we share it with, and what rights you have. By using the service you agree to the practices described here.
1. Who We Are
| Brand | Interviewlary |
|---|---|
| Operator | Omar Wassef (sole proprietor) |
| Website | https://interviewlary.com |
| Contact | support@interviewlary.com |
2. Data We Collect
2.1 Account Data
- Full name and email address
- Authentication identifiers managed by Supabase and your chosen sign-in provider
2.2 Interview Setup Data
- Job role or title you are practising for
- Skills and competencies you enter
- Job description text you paste into the platform
2.3 Interview Content
- Text transcripts of your spoken answers — voice audio is transcribed and discarded; we do not retain raw audio recordings
- AI-generated scores and written feedback for each session
2.4 Usage Data
- Number of interview sessions completed and remaining in the current billing period (Starter plan: 10 sessions/month, resets on your billing renewal date)
- Subscription plan status and feature interactions
- Timestamps of key actions (e.g. session start/end)
- If you accept analytics: predefined product events such as page category, sign-up or login method, interview lifecycle stage, text or voice mode, skipped or auto-submitted questions, coarse counts, score range, plan category, and checkout stage
- If you accept analytics while signed in: your pseudonymous internal account ID and a random analytics device ID. We do not send your name or email to Amplitude
2.5 Payment Data
- Subscription status and billing period (received from Paddle)
- We do not store card numbers, bank details, or any raw payment instrument data — this is handled exclusively by Paddle
2.6 Technical Logs
- IP address, browser type and version, operating system
- Error reports and crash diagnostics
- Used solely for security monitoring and platform reliability
3. How We Use Your Data
We use the data collected for the following purposes:
| Purpose | Data used |
|---|---|
| Conduct mock interviews and deliver AI feedback | Interview setup data, transcripts |
| Manage your account and authenticate you | Account data |
| Manage your subscription and billing status | Usage data, payment status from Paddle |
| Track monthly session usage (up to 10 sessions/month on Starter) | Usage data |
| Send transactional account emails (verification, password reset, notices) | Email address |
| Monitor and fix errors on the platform | Technical logs |
| Prevent fraud and enforce acceptable use | Account data, technical logs |
| Understand user journeys, feature usage, interview completion, product errors, retention, and subscription conversion, only after analytics consent | Pseudonymous, predefined analytics events |
We do not sell your personal data to any third party.
4. Third-Party Processors
We share data with the following processors only to the extent necessary to operate the service. Each operates under its own privacy policy and applicable data protection law.
| Processor | Role | Privacy Policy |
|---|---|---|
| Paddle | Payment processing. Paddle acts as the Merchant of Record for all subscription transactions. Card and payment data is handled exclusively by Paddle and is never stored by Interviewlary. | paddle.com/legal/privacy |
| OpenAI | Processes interview text for question generation and feedback when selected, provides English text-to-speech, and may provide fallback transcription or Arabic text-to-speech. Data processed depends on the feature used and may include interview text or temporary voice audio. | openai.com/policies/privacy-policy |
| OpenRouter | Optional text-generation provider for interview questions and feedback. Data processed: interview setup text, transcripts, and generated responses. | openrouter.ai/privacy |
| Gemini TTS | Primary text-to-speech engine for Arabic mode. User data processed: transcribed text (for speech synthesis). Role: Data Processor. | policies.google.com/privacy |
| OpenAI TTS | See the OpenAI entry above. Interviewlary sends only the text needed for speech generation. | openai.com/policies/privacy-policy |
| Deepgram | Speech-to-text provider for Arabic mode. Temporary voice audio is transmitted for transcription and is not stored in the Interviewlary database. | deepgram.com/privacy |
| Groq | Speech-to-text provider for English mode and an optional text-generation fallback. Temporary audio or interview text is transmitted for the requested operation and is not stored as raw audio by Interviewlary. | groq.com/privacy |
| Supabase | Stores all user account data and interview data in a secure hosted database | supabase.com/privacy |
| Railway | Hosts the application server and backend infrastructure | railway.com/legal/privacy |
| Resend | Provides transactional email delivery for Supabase authentication and account messages when configured. Paddle handles payment receipts. | resend.com/legal/privacy-policy |
| Sentry | Error tracking and performance monitoring | sentry.io/privacy |
| Amplitude | Optional product analytics, loaded only after you accept analytics. Interviewlary sends a pseudonymous internal account ID when signed in, a random analytics device ID, and predefined product events. It does not send names, email addresses, interview answers, transcripts, recordings, resumes, payment details, Paddle webhook data, or authentication tokens. | amplitude.com/privacy |
5. Cookies
We use the following cookies:
Session Cookies (Required)
Set for authentication purposes. These cookies or equivalent local session tokens are required for the platform to function. They may persist across browser restarts until they expire, are refreshed, are revoked, or you log out. They do not track you across other websites.
Optional Analytics Storage
Amplitude does not load, initialize, create an analytics identifier, or send an analytics request unless you explicitly accept analytics. If you accept, Interviewlary stores your consent choice and a random analytics device ID in your browser and sends only predefined product events. Session Replay, automatic page or element tracking, form tracking, network tracking, and other automatic capture are disabled.
You can accept, reject, or manage analytics in the consent notice. After making a choice, the persistent Privacy settings control lets you change or withdraw it at any time. Rejecting analytics does not block or reduce access to Interviewlary. When you withdraw consent, collection stops, queued in-memory events are cleared, and the analytics identity is reset. Your consent choice is saved locally so that the service can respect it on later visits.
6. Data Retention
- Your personal data is retained for as long as your account is active.
- If you request deletion of your account and data, we will remove your personal data within 30 days of receiving a written request.
- Duplicate-prevention records for completed AI operations may temporarily contain a copy of generated output for up to 7 days. Failed or abandoned operation records are removed after approximately 24 hours.
- Pseudonymous Amplitude analytics events are collected only while analytics consent is active and retained only as long as needed for product analytics, subject to the retention controls available for our Amplitude account. We periodically review this data and honor applicable deletion requests.
- There is currently no self-service account deletion button. Send a written request to support@interviewlary.com from your account email address.
7. Your Rights
You have the following rights with respect to your personal data:
- Right to access — request a copy of the personal data we hold about you
- Right to rectification — request correction of inaccurate or incomplete data
- Right to erasure — request deletion of your personal data
- Right to restriction — request that we limit how we process your data in certain circumstances
- Right to withdraw analytics consent — use the persistent Privacy settings control at any time, without losing access to the service
To exercise any of these rights, email support@interviewlary.com with your account email address and the specific request. We will respond within a reasonable timeframe.
8. Data Security
We implement industry-standard measures to protect your data including HTTPS/TLS encryption in transit, secure hosted infrastructure via Supabase and Railway, and access controls limiting who can view personal data. However, no method of transmission over the internet is 100% secure.
9. Children
Interviewlary is not directed at individuals under the age of 18. We do not knowingly collect personal data from minors. If you believe a minor has provided us with personal data, contact us at support@interviewlary.com and we will delete it promptly.
10. International Data Transfers and Arabic Language Interface
Interviewlary provides a full Arabic-language interface/UI, enabling users to interact with the service in Arabic. This may involve the processing of data, including interview content, through third-party processors that operate globally. By using the Arabic interface, you acknowledge and consent to the potential transfer and processing of your data in accordance with this Privacy Policy and the privacy policies of our third-party processors, regardless of your geographic location.
11. Governing Law
This Privacy Policy is governed by the laws of the Arab Republic of Egypt .
12. Changes to This Policy
We may update this policy from time to time. When we do, we will update the "Last updated" date at the top. Continued use of the service after changes constitutes acceptance of the updated policy.
13. Contact
For any privacy-related questions or requests:
Email: support@interviewlary.com
Website: https://interviewlary.com
Related policies:
- Terms of Service
- Refund Policy