Netrium Technologies
  • Home
  • About
  • Services
  • Contact

Privacy Policy

Last updated: August 14, 2026  |  Effective: August 14, 2026

Introduction

Netrium Technologies ("Netrium," "we," "our," or "us") operates Interview Drill AI (the "App"), a mobile application that helps you practise job interviews with an AI interviewer and receive automated feedback on your answers.

This Privacy Policy explains what information we collect, why we collect it, who we share it with, how long we keep it, and the choices and rights you have. It applies to the App and to the related pages on netriumtechnologies.com. It does not apply to any third-party website or service that we link to.

For the purposes of the EU and UK General Data Protection Regulation ("GDPR"), Netrium Technologies is the data controller of the personal data described in this policy.

The short version:

  • To give you interview practice and feedback, we record your voice, transcribe it, and analyse your answers.
  • Your recordings and transcripts are processed by third-party AI providers acting on our instructions. They are contractually barred from using your content to train their models.
  • We do not sell or share your personal information, and we do not use third-party advertising or analytics trackers in the App.
  • Voice recordings and resumes are stored in private buckets that only you can access. Profile photos, if you upload one, are stored in a publicly readable location — see section 1.7.
  • You can ask us to delete your account and all associated data at any time. See Your Privacy Rights.

Contents

  • 1. Information We Collect
  • 2. How We Use Your Information
  • 3. Legal Bases (GDPR)
  • 4. Who We Share Data With
  • 5. AI Processing and Automated Scoring
  • 6. Security
  • 7. How Long We Keep Data
  • 8. Your Privacy Rights
  • 9. California Privacy Rights
  • 10. International Transfers
  • 11. Children's Privacy
  • 12. Data Breach Notification
  • 13. Changes to This Policy
  • 14. Contact Us

1. Information We Collect

We collect only what the App needs in order to work. Every category is listed below, including data that is generated about you rather than provided by you.

1.1 Account and authentication data

  • Email address — if you sign in with Google, Apple, or email.
  • Phone number — if you sign in with a phone number. We send a one-time passcode by SMS to verify it.
  • Name — provided by you, or supplied by Google or Apple when you use social sign-in. If you use Apple's "Hide My Email" feature, we receive only Apple's relay address.
  • Authentication tokens and session identifiers — used to keep you signed in. We never receive or store your Google, Apple, or email password.

1.2 Profile information

  • Profile photo, if you choose to upload one.
  • Optional links you add, such as LinkedIn, GitHub, or a portfolio URL.
  • Skills, years of experience, and proficiency levels you enter.
  • Target companies, roles, application status, and any notes you record about them.

1.3 Resume data

  • The resume file you upload (PDF or document), stored in a private bucket.
  • Text and structured data extracted from it — such as skills, roles, and experience — produced by sending the extracted text to our AI provider for parsing.

A resume often contains more personal data than the App needs, including your home address, date of birth, or nationality. We do not require any of it. Please consider removing details you would rather not share before uploading.

1.4 Voice, audio, and transcript data

  • Voice recordings of your answers during practice sessions, stored in a private bucket.
  • Transcripts of what you and the AI interviewer said.
  • Audio metadata such as duration and timestamps.

Speech recognition: to show your answer as live text while you speak, the App uses the speech recognition service built into your device's operating system. Depending on your device and settings, that service may transmit audio to your device manufacturer for processing, subject to that manufacturer's own privacy policy. This happens at the operating system level and is outside our control.

We do not use your voice to identify you. We do not create a voiceprint, perform biometric matching, or use your recordings to recognise or authenticate you. Recordings are used only to transcribe and evaluate your interview answers.

1.5 Practice and performance data

  • Companies, roles, and job descriptions you practise against, including the text of any job posting you paste or the URL of any posting you ask us to import.
  • Interview type (behavioural, technical, screening) and session duration.
  • Questions asked, your answers, per-answer scores, and written feedback.
  • Progress data: streaks, experience points, mastery levels, achievements, and identified areas for improvement.
  • Questions you save to practise again.

1.6 Technical and log data

  • IP address, request timestamps, and standard server logs, recorded by our hosting provider when the App communicates with our backend. These are used for security, abuse prevention, and debugging.
  • Approximate location inferred from IP address (country or region level). We do not collect GPS or precise location.

What we do not collect. The App contains no third-party advertising SDKs, no analytics or product-telemetry SDKs, and no crash-reporting SDK. We do not collect advertising identifiers (IDFA/AAID), device fingerprints, contacts, calendar, photos beyond a profile picture you choose, precise location, or health data. We do not track you across other companies' apps or websites, and we therefore do not respond differently to Do Not Track or Global Privacy Control signals — there is no cross-site tracking to turn off.

1.7 Profile photos are publicly readable

If you upload a profile photo, it is stored in a storage bucket configured for public read access. Anyone who knows or guesses the file's URL can view that image without signing in. Your other data — recordings, resumes, transcripts, and session history — is stored in private buckets that require your own authenticated session to access. If you would prefer your photo not to be publicly reachable, do not upload one, or remove it in the App.

2. How We Use Your Information

  • To run practice sessions — generate interview questions, hold the voice conversation, transcribe your answers.
  • To give you feedback — score answers, write improvement suggestions, identify recurring weaknesses, and track progress over time.
  • To personalise questions — tailor questions to the role, company, job description, and resume you provide.
  • To maintain your account — authenticate you, keep you signed in, store your history.
  • To keep the service secure — detect and prevent fraud, abuse, and unauthorised access, and enforce our Terms of Service.
  • To support you — respond when you contact us.
  • To comply with law — meet legal obligations and respond to lawful requests.

We do not use your voice recordings, transcripts, resume, or answers to train our own AI models, and our AI providers are contractually barred from using them to train theirs. We do not use your content for advertising or for marketing profiling.

3. Legal Bases for Processing (EEA and UK)

If you are in the European Economic Area or the United Kingdom, we rely on the following legal bases under Article 6 GDPR:

PurposeLegal basis
Creating and maintaining your account; delivering practice sessions and feedbackPerformance of a contract (Art. 6(1)(b))
Processing your resume and any optional profile detailsPerformance of a contract, and your consent where you choose to provide optional data (Art. 6(1)(b), 6(1)(a))
Security, abuse prevention, debugging, and service improvementLegitimate interests in operating a secure and functional service (Art. 6(1)(f))
Optional promotional messagesConsent, withdrawable at any time (Art. 6(1)(a))
Meeting legal obligations and responding to lawful requestsLegal obligation (Art. 6(1)(c))

Where we rely on legitimate interests, we have assessed that our interest in operating the service does not override your rights and freedoms. You may object to this processing — see Your Privacy Rights.

4. Who We Share Data With

We do not sell your personal information and we do not share it for cross-context behavioural advertising. We disclose data only to the categories of service provider below, each of which processes it on our documented instructions under a data processing agreement and may not use it for its own purposes.

Category of recipientWhat it receivesWhy
Cloud infrastructure providers
(hosting, database, authentication, file storage)
All account data, profile details, resumes, voice recordings, transcripts, session and progress data, IP address and server logs Run our backend, store your data, and authenticate your sign-in
AI language processing providers Resume text, job descriptions and imported job postings, interview questions, your typed and transcribed answers, and session transcripts Generate interview questions, parse resumes, score answers, and write feedback and weakness summaries
Conversational voice AI providers Live audio of the voice interview, plus the role, company, and interview type for context Power the real-time spoken conversation with the AI interviewer
Identity and sign-in providers Authentication request; we receive your email, name, and a token in return Let you sign in without a separate password
Document preview services A temporary, expiring link to your uploaded resume — only when the file is not a PDF, and only when you open the in-app preview. The provider can retrieve the file contents via that link while it is valid. Render a preview of document formats the App cannot display natively
Company logo and branding lookup services The company name or website domain you enter — not your identity or any account data Display a company's logo in the App
SMS delivery partners used by our authentication provider Your phone number and the one-time passcode Deliver the verification code when you sign in by phone

All of these providers are established commercial vendors bound by written data processing agreements that restrict them to processing your data on our instructions. You may request the identity of the specific providers we use at any time by emailing privacy@netriumtechnologies.com, and we will supply an up-to-date list.

If you ask the App to import a job posting from a link, our server fetches that page directly from the site you specified in order to read the job details. That request comes from our infrastructure, not from your device, and does not carry your identity.

We may also disclose personal data (a) to comply with law, legal process, or an enforceable governmental request; (b) to enforce our Terms of Service or investigate potential violations; (c) to protect the rights, property, or safety of Netrium, our users, or the public; or (d) to a successor entity in connection with a merger, acquisition, or sale of assets, in which case we will notify you before your data becomes subject to a different privacy policy.

5. AI Processing and Automated Scoring

The App uses automated systems to generate interview questions, score your answers, and produce written feedback and weakness summaries. These outputs are estimates produced by a language model. They can be wrong, inconsistent, or unfair, and they are not an assessment of your actual competence, employability, or prospects.

These scores are used solely to help you practise inside the App. We do not use them to make any decision that produces a legal or similarly significant effect on you, we do not share them with employers or recruiters, and we do not use them to determine your access to any product, service, or opportunity. If you are in the EEA or UK and wish to contest a score or request human review, contact us at privacy@netriumtechnologies.com.

Please do not enter information in your answers that you would not want processed by our AI providers — for example government identification numbers, financial account details, health information, or another person's confidential information.

6. Security

We apply the following technical and organisational measures:

  • Encryption in transit using TLS for all communication between the App, our backend, and our providers.
  • Encryption at rest for stored data, applied by our hosting provider.
  • Row-level security in our database, so records are readable only by the account that owns them, enforced at the database layer rather than only in application code.
  • Private storage buckets for resumes and voice recordings, reachable only through short-lived, expiring links generated for your authenticated session. (Profile photos are the exception — see section 1.7.)
  • No long-lived credentials in the App. The App ships only with a publishable key that carries no privileged access; all privileged operations run server-side.
  • Access controls limiting which Netrium personnel can access production data, granted on a need-to-know basis.

No method of transmission or storage is completely secure. While we work to protect your information, we cannot guarantee absolute security, and you use the App at your own risk. Keep your device and your sign-in method secure, and tell us promptly if you believe your account has been compromised.

7. How Long We Keep Data

DataRetention
Account and profile dataFor as long as your account is open
Voice recordingsFor as long as your account is open, or until you delete the session
Transcripts, scores, and feedbackFor as long as your account is open, so you can review your progress
Uploaded resume and parsed resume dataUntil you replace or remove it, or close your account
Server and security logsTypically up to 90 days
Records we must keep by lawFor the period the applicable law requires

When you ask us to delete your account, we delete your personal data from our production systems within 30 days. Copies held in encrypted backups are overwritten on our normal backup rotation, within 90 days of deletion.

8. Your Privacy Rights

Subject to your local law, you have the right to:

  • Access the personal data we hold about you, and receive a copy in a portable, machine-readable format.
  • Correct inaccurate or incomplete data. You can edit most profile details directly in the App.
  • Delete your account and associated personal data.
  • Restrict or object to processing based on our legitimate interests.
  • Withdraw consent at any time where we rely on it, without affecting processing carried out before withdrawal.
  • Opt out of promotional messages, using the unsubscribe link or your notification settings.
  • Not be discriminated against for exercising any of these rights. We will not degrade the service or charge you differently.

How to exercise your rights

Some actions are available directly in the App: you can edit your profile, manage your skills and target companies, and remove your resume. To delete your account and all associated data, email privacy@netriumtechnologies.com from the address associated with your account, or use the account deletion option in the App where it is available. We will confirm once deletion is complete.

We respond to rights requests within 30 days (or 45 days for requests under the CCPA, extendable by a further 45 days where permitted, with notice to you). We may need to verify your identity before acting, which we do by confirming control of the email address or phone number on the account. We will not ask you for more personal data than is necessary to verify you.

If you are in the EEA or UK and believe we have not handled your data lawfully, you may lodge a complaint with your local supervisory authority. We would appreciate the chance to address your concern first.

9. California Privacy Rights

This section applies to California residents under the California Consumer Privacy Act as amended by the CPRA.

We have not sold or shared personal information in the preceding 12 months, and we do not do so now. "Sale" and "sharing" carry their CCPA meanings, including sharing for cross-context behavioural advertising. We do not knowingly sell or share the personal information of consumers under 16.

Categories of personal information we have collected in the preceding 12 months:

CCPA categoryCollectedExamples in the App
IdentifiersYesName, email, phone number, account ID, IP address
Customer records (Cal. Civ. Code § 1798.80)YesResume contents, employment history you provide
Commercial informationNo—
Biometric informationNoWe record audio but do not create voiceprints or use audio to identify you
Internet or network activityYesServer logs of your requests to our backend. No cross-site tracking.
Geolocation dataCoarse onlyCountry or region inferred from IP address. No precise location.
Audio, electronic, or similar informationYesVoice recordings and transcripts of practice answers
Professional or employment informationYesSkills, roles, target companies, resume data
Education informationYes, if you provide itEducation details contained in an uploaded resume
Inferences drawn to create a profileYesPerformance scores, identified weaknesses, readiness indicators
Sensitive personal informationSee below—

Sensitive personal information. We do not intentionally collect sensitive personal information as the CPRA defines it. We do not process biometric information for the purpose of uniquely identifying you. A resume you upload may incidentally contain sensitive details such as racial or ethnic origin or immigration status; we do not seek, use, or disclose that information for any purpose beyond storing your file and extracting skills and experience. Because we use sensitive personal information only for purposes permitted under the CCPA regulations, we do not offer a separate "Limit the Use of My Sensitive Personal Information" control — but you may delete your resume at any time.

Sources of the information above: you, your device, your sign-in provider, and our service providers. Business purposes for collection are those listed in section 2. Recipients are the service providers listed in section 4.

You may exercise your rights to know, delete, correct, and opt out by emailing privacy@netriumtechnologies.com. You may use an authorised agent, who must provide written proof of authorisation; we may still ask you to verify your identity directly.

10. International Data Transfers

We are based in the United States, and our hosting and AI providers process data in the United States and other countries. If you use the App from outside the United States, your information will be transferred to and processed in a country whose data protection laws may differ from those of your own.

Where we transfer personal data out of the EEA, the UK, or Switzerland, we rely on the European Commission's Standard Contractual Clauses (and the UK Addendum where applicable) with our providers, together with supplementary technical measures including encryption in transit and at rest. You may request a copy of the relevant safeguards by contacting us.

11. Children's Privacy

The App is not directed to children. You must be at least 16 years old to use Interview Drill AI, and by using it you confirm that you are. We do not knowingly collect personal data from anyone under 16. If we learn that we have, we will delete it promptly. If you believe a child under 16 has provided us with personal data, contact privacy@netriumtechnologies.com and we will act on it.

12. Data Breach Notification

If a personal data breach occurs that is likely to result in a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours of becoming aware of it, where GDPR requires. Where the breach is likely to result in a high risk to you, or where applicable state law requires it, we will notify you directly without undue delay, describing what happened, what data was involved, and what steps you can take.

13. Changes to This Privacy Policy

We may update this Privacy Policy as the App evolves. We will change the "Last updated" date above and, for material changes — such as collecting a new category of data, adding a new AI provider, or using your data for a new purpose — we will give you prominent advance notice in the App or by email before the change takes effect. Where the change requires your consent, we will ask for it. Previous versions are available on request.

14. Contact Us

For any question, concern, or request about this policy or your data:

  • Privacy enquiries and rights requests: privacy@netriumtechnologies.com
  • Data Protection Officer: dpo@netriumtechnologies.com
  • General contact: netriumtechnologies.com/contact

Netrium Technologies, data controller for Interview Drill AI.

Netrium Technologies

Building intelligent solutions for a connected world.

Legal

  • Privacy Policy
  • Terms of Service

© 2026 Netrium Technologies. All rights reserved.