1. Scope
This policy applies when you visit orecot.com, create or use an Orecot account, use the browser or Windows applications, practice an interview, use live assistance or career tools, purchase a plan, or contact support.
Orecot provides AI-assisted interview practice, live conversation support, and career-planning tools. You decide which information to provide and when to enable microphone or screen-capture access.
2. Information Orecot handles
Account information can include your email address, display name, Google profile details, authentication identifiers, plan, account status, and account timestamps.
Content you provide can include candidate-profile text, a resume filename and extracted profile, job descriptions, company and role details, saved questions and answers, practice responses, interview reports, application records, compensation scenarios, cover letters, support messages, and text or selected screen content submitted for assistance.
When you enable a live audio feature, microphone or system audio is transmitted to OpenAI for realtime transcription or conversation. Orecot stores the resulting text, questions, responses, reports, and usage records when the feature requires them. Orecot does not write raw microphone or system audio to its database.
When you upload a resume or similar document, Orecot temporarily sends the file to OpenAI to extract a compact candidate profile, deletes the temporary OpenAI file after processing, and stores the resulting profile text and filename rather than the original file.
Operational information can include usage-session timing, billable seconds, feature events, request metadata, IP address, browser or device details, error information, and security events. Stripe supplies subscription and billing identifiers needed to manage paid plans; Orecot does not receive full payment-card numbers.
3. How information is used
Orecot uses information to provide and personalize the service, authenticate accounts, transcribe audio, generate interview guidance and reports, operate career tools, save requested records, meter plan minutes, process subscriptions, answer support requests, prevent abuse, diagnose failures, and protect the service.
- Generate realtime transcripts, interviewer speech, answer guidance, evaluations, and career documents.
- Keep your saved profile, interview, application, compensation, and support records available to your account.
- Enforce account permissions, subscription status, usage allowances, and security controls.
- Measure privacy-safe signup, checkout, purchase, and completed-practice events when Google Ads consent is allowed and granted.
Orecot does not sell personal information. Google Ads does not receive interview content or personal account details from Orecot's conversion events.
4. Service providers
Orecot shares information with service providers only as needed to run the product. Those providers process information under their own terms and privacy commitments and may operate in countries other than yours.
- Supabase provides Google and email authentication plus the Postgres database used for account and product records.
- OpenAI processes audio, text, documents, and selected images for transcription and AI output. Orecot sends Responses API requests with storage disabled.
- Stripe processes checkout, payment, subscription, invoice, and tax information for paid plans.
- Amazon Web Services hosts the Orecot API, while Cloudflare hosts and protects the website and distributes downloads.
- Google provides account sign-in and, after consent where required, advertising conversion measurement.
5. Cookies and browser storage
Orecot uses browser storage needed to keep you signed in, complete OAuth callbacks, remember product preferences, and preserve privacy choices. Marketing cookies or Google Ads tags are enabled only when Orecot's consent rules allow them. You can review or change the advertising choice from the Privacy choices control on the website.
6. Retention and deletion
Orecot keeps account and product records while they are needed to provide the service, support your account, enforce plan limits, protect the platform, resolve disputes, and meet legal obligations. You can delete individual saved answers, profiles, applications, compensation scenarios, and interview sessions where the product provides that control.
You can request account-data deletion through the signed-in support center. Active paid subscriptions must be canceled or resolved first. Product-data deletion can leave limited authentication identity, deletion-audit, billing, backup, security, or legally required records under Orecot's and its providers' retention rules.
7. Your choices and rights
You control whether to grant microphone, system-audio, notification, or screen-capture permission. You can update or clear supported product records, sign out, cancel a subscription from the dashboard, and use the support center for access, correction, deletion, or privacy requests.
Depending on where you live, applicable law may give you additional rights concerning access, correction, deletion, portability, restriction, or objection. Orecot may need to verify your identity before completing a request.
8. Security
Orecot uses authenticated endpoints, per-user authorization, database access controls, server-side provider credentials, usage-session validation, and transport encryption. No system is completely secure, so Orecot cannot guarantee that unauthorized access, loss, or disruption will never occur.
9. Changes and contact
Orecot may update this policy when the product, providers, or legal requirements change. The effective date above will be updated, and additional notice will be provided when appropriate.
For privacy questions or requests, open the Help Center or submit a ticket from the signed-in Orecot support center.