Privacy Policy
Last updated August 2, 2026.
This policy explains what information StreetSignal collects, how we use it, and who we share it with.
Information we collect
- Account information — your email address and password, handled by our authentication provider, Supabase.
- Recruiting data you enter — the firms, groups, roles, and interview statuses you add to My Recruiting.
- Free-question redemptions — the email address you provide to unlock free sample questions, even if you don't create an account.
- Billing information — if you purchase a Monthly Pass or Season Pass, Stripe processes your payment and shares limited details (such as subscription status and a Stripe customer ID) back to us. We never see or store your full card number.
- Interview submissions — if you use Submit Questions, we collect the firm/group/role/ round/year you specify, the question text you enter, any additional context you provide, and a proof screenshot you upload to verify the interview. This is stored privately and used only for admin review — see "Interview submissions and proof" below.
- Basic usage and hosting logs — collected automatically by our hosting provider, Vercel, as part of running the Service.
- Product usage analytics — pages you visit and actions you take in the Service (for example, revealing an answer or starting checkout), collected through our analytics provider, PostHog, to understand and improve the product.
How we use it
We use this information to run your account, provide Vault access you've paid for, process payments, send account and transactional emails (like confirmations and receipts), enforce the free-questions limits, and keep the Service secure and working. We don't sell your personal information.
Interview question reports
Interview questions in the Vault come from candidate reports. Reports are stored and displayed without attaching the source's name or contact information to the public record — the firm, group, and year are shown, not who reported it.
Interview submissions and proof
If you submit interview questions to earn Vault access, the question text, any additional context you enter, and your proof screenshot are stored privately and are used only to let an admin verify and review your submission — they are never published, shown to other users, or made public. Before uploading, we encourage you to redact your name, email address, the interviewer's identity, meeting links, and any other personal or confidential information the screenshot doesn't need to show to serve as proof.
We don't automatically delete proof screenshots or submitted question text after review. If you want a submission's proof file removed — for example, a privacy request, or you want to withdraw an abandoned submission — contact us and an admin will delete the private file directly (subject to anything we're required to keep for review-integrity purposes). The submission and question records themselves, and any reward already earned from them, are kept for audit purposes even after the proof file is deleted.
If your submission is approved, the question itself is added to the Vault the same way any other reported question is — without attaching your name or contact information to the public record (see "Interview question reports" above). Your proof screenshot is never published; it stays visible only to admins, who access it through a short-lived, expiring link rather than a public URL.
Product analytics and session replay
We use PostHog to measure how the Service is used so we can improve it — which pages and features people use, and how flows like signing up or starting checkout perform. We identify your activity by your account's internal ID, never by using your email as an identifier, and we do not send PostHog your question or answer text, recruiting notes, payment details, or — for interview submissions — your submitted question text, proof screenshots or file paths, or admin review notes. Only counts and status values (e.g. how many questions you submitted) are ever sent.
For a sample of sessions, PostHog also records an anonymized replay of on-screen activity to help us find and fix usability problems. Replays mask all form inputs (including anything you type, such as email addresses and passwords), and we do not record the sign-in, password, account, admin, Submit Questions, or Stripe checkout screens. You can opt out of analytics and replay using your browser's "Do Not Track" setting or a tracker-blocking extension.
Third parties we use
- Supabase — user accounts, authentication, and our database.
- PostHog — product usage analytics and session replay, used to understand and improve the Service.
- Stripe — payment processing and subscription billing.
- Resend — transactional email (account, billing, and free-question emails).
- Vercel — hosting and infrastructure.
Each of these providers processes data on our behalf under their own privacy and security practices.
Cookies
We use cookies set by Supabase to keep you signed in. We don't use advertising or third-party tracking cookies.
Data retention and deletion
We keep account and recruiting data for as long as your account is active. To request deletion of your account and associated personal data, contact us — we'll process the request, subject to any records we're required to keep for billing, tax, or fraud-prevention purposes.
Children's privacy
StreetSignal isn't directed at children under 13, and we don't knowingly collect information from them.
Changes to this policy
If we make material changes to this policy, we'll update the "Last updated" date above.
Contact
Questions about this policy or your data? Reach out via our contact page.