← Back to mazle.ai

Privacy Policy

Effective Date: March 15, 2026

Mazle.ai ("Company", "we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website at https://mazle.ai and our related applications, tools, and services (collectively, the "Services").

By using the Services, you consent to the data practices described in this policy.

1. Information We Collect

1.1 Information You Provide

  • Account Data: Name, email address, organization name when you register.
  • Recruitment Data: Job requisitions, candidate names, emails, interview plans, and feedback that you create or upload.
  • Communication Data: Messages you send through our Slack integration or other chat interfaces.
  • Payment Data: Billing information processed by our third-party payment provider (Dodo Payments). We do not store full payment card details.

1.2 Information Collected Automatically

  • Usage Data: Pages visited, features used, timestamps, and interaction patterns via PostHog analytics.
  • Device Data: Browser type, operating system, IP address, and device identifiers.
  • Cookies: Authentication cookies (e.g., mazle-auth) for session management across subdomains.

1.3 Information from Third-Party Integrations

  • Google Calendar: Calendar availability and event details (with your explicit OAuth consent). Scopes: calendar.readonly, calendar.events.
  • Slack: Workspace identity, user ID, and messages sent to the Mazle bot (with your workspace admin's consent).
  • Google Authentication: Email and profile information when you sign in with Google (via Supabase Auth).
  • Meeting Recordings: Audio and video from interviews conducted through integrated meeting platforms (via Recall.ai), used solely for generating interview feedback.

2. How We Use Your Information

We use collected information to:

  • Provide, operate, and maintain the Services;
  • Create and manage your account;
  • Generate AI-powered interview plans, feedback, and scorecards;
  • Schedule interviews and manage calendar integrations;
  • Process Slack messages and deliver agent responses;
  • Process payments and manage billing;
  • Send transactional notifications (e.g., feedback ready, intake processed);
  • Improve and personalize the Services;
  • Detect and prevent fraud or abuse;
  • Comply with legal obligations.

3. AI Processing

We use third-party AI providers (including Anthropic Claude and OpenAI) to:

  • Generate structured interview plans from intake call transcripts;
  • Produce interview feedback and candidate scorecards;
  • Power the conversational Slack agent for recruiting operations;
  • Conduct voice-based intake calls.

Data sent to AI providers is used solely for generating outputs and is not used to train their models. We use API-based access with data processing agreements in place.

4. Data Storage and Security

  • Database: All user data is stored in Supabase (PostgreSQL) with Row Level Security (RLS) enforcing multi-tenant data isolation.
  • Encryption: OAuth tokens (Google Calendar, Slack) are encrypted at rest using Fernet symmetric encryption.
  • Transport: All data in transit is encrypted via TLS/HTTPS.
  • Access Control: Internal API endpoints use secret-based authentication. Database access is restricted to service roles.
  • Meeting Recordings: Processed by Recall.ai and AWS Lambda. Transcripts are stored temporarily for feedback generation and are not retained beyond processing.

5. Data Sharing and Disclosure

We do not sell your personal data. We share data only with:

  • Service Providers: Supabase (database), Anthropic/OpenAI (AI processing), Recall.ai (meeting recording), AWS (compute and Lambda functions), Dodo Payments (billing), PostHog (analytics).
  • Within Your Organization: Team members in your Mazle organization can access shared requisitions, candidates, and feedback.
  • Legal Requirements: When required by law, regulation, legal process, or government request.

6. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access the personal data we hold about you;
  • Request correction of inaccurate data;
  • Request deletion of your data;
  • Withdraw consent for optional data processing;
  • Export your data in a portable format;
  • Object to or restrict certain processing activities.

To exercise these rights, contact us at rishit@mazle.ai.

7. Cookies and Tracking

We use the following cookies:

  • mazle-auth: Authentication session cookie on the .mazle.ai domain (essential, cross-subdomain).
  • PostHog cookies: Analytics and product usage tracking (with cross_subdomain_cookie: true).

We do not use third-party advertising cookies.

8. Data Retention

We retain your data for as long as your account is active or as needed to provide the Services. Specifically:

  • Account Data: Retained until account deletion.
  • Recruitment Data: Retained until you delete requisitions, candidates, or your account.
  • Meeting Transcripts: Retained for feedback generation; raw recordings are not stored permanently.
  • Chat History: Slack agent conversation history is retained for context continuity and can be cleared by the user at any time.
  • Analytics Data: Retained per PostHog's data retention policies.

Upon account deletion, we will delete or anonymize your personal data within 30 days, except where retention is required by law.

9. International Data Transfers

Your data may be processed in the United States (AWS, Supabase, AI providers) and India (our operations). We ensure appropriate safeguards are in place for cross-border transfers, including data processing agreements with our service providers.

10. Children's Privacy

The Services are not intended for individuals under 18 years of age. We do not knowingly collect personal data from children. If we become aware of such collection, we will delete the data promptly.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page with a revised effective date. Continued use of the Services after changes constitutes acceptance.

12. Contact Us

For questions or concerns about this Privacy Policy or our data practices:

Mazle.ai

Email: rishit@mazle.ai

Website: https://mazle.ai