Privacy policy
Last updated 1 August 2026
InterviewPad is a collaborative interview pad operated by lastnode, inc. (“we”). This policy explains what we collect, why, and what happens to it — for interviewers who hold accounts and for candidates who join interviews without one.
What we collect
Account holders (interviewers): your name, email address, and sign-in credentials (a Google account, or a password we store only as a salted hash). If you upgrade, billing runs through Stripe — we store your Stripe customer and subscription identifiers, never your card details.
Candidates:no account is required or offered. You join with a name you choose, or anonymously — in which case you appear under a generated alias (like “Amber Otter”), not your identity. During an interview we handle the content of the session: the code written in the pad, and — only in sessions where recording is enabled — audio and its transcript.
Recording and consent
Recording never starts silently. Before joining a pad, every candidate sees a disclosure stating whether the session is recorded, transcribed, and monitored, and joining is how consent is given; the time of consent is stored. Practice sessions are not recorded and leave no monitoring record. Audio may include the interviewer’s microphone and the audio of the video call the interviewer shares.
Integrity signals
In sessions where the interviewer enables integrity tracking — and the lobby disclosure says so — we record paste events and tab switches for the candidate only, while the session is running. Interviewer activity is never tracked. Sessions without tracking collect nothing.
AI processing
Recordings are transcribed, and on paid plans a summary and scorecard are generated from the transcript, code, and interviewer notes using AI models (Anthropic Claude or Cloudflare Workers AI). AI output is labelled as such. Model providers process this data to provide the feature; we do not permit them to train on it.
Retention
- Audio recordings are deleted automatically: after 30 days on the free plan, 365 days on Pro.
- Transcripts, summaries, notes, and code snapshots are kept while the owning account exists.
- Account deletion — and with it the interviews it owns — can be requested at the address below.
Who can see interview data
The interviewer who owns a pad, and their teammates if they work in a shared team workspace. Account holders can also configure an outbound webhook that sends completed-session data to an endpoint they choose. We do not sell personal data, run no advertising, and use no analytics trackers on these pages.
Service providers
We run on a small set of subprocessors, each receiving only what its job needs: Cloudflare (hosting, storage, transcription), Neon (database), Stripe (payments), Google (optional sign-in), useSend (transactional email), and Anthropic (AI summaries on paid plans).
Security
Traffic is encrypted in transit. Session credentials live in httpOnly cookies unreadable by page scripts. Recordings are never publicly addressable — every playback request is re-authorised against the session’s owner or their team.
Your rights
You can request access to, correction of, or deletion of your personal data. Candidates: the organisation that interviewed you controls the interview record, so start there — but you can always contact us and we will help. Reach us at support@interviewpad.ai.
Changes
When this policy changes materially, the date above changes with it, and account holders are notified by email.