Privacy Policy

Last updated 7 September 2026.

The short version

You can use almost all of FreeCareerPath without an account, and without us storing anything about you. If you make an account, we store what you give us and what you create here — nothing more. We don't sell your data, we don't run advertising trackers, and you can have everything deleted by sending one email.

Using the site without an account

Career paths, lessons, the question bank, company pages and the mock interview catalog are all readable logged out. When you browse this way, the only things kept are stored in your own browser's local storage and never sent to us:

  • Which roadmap nodes you've marked complete.
  • Your light/dark theme preference.
  • A hint about whether you were recently signed in, so gated features don't flicker on load.

Clearing your browser data clears all of it. We have no copy.

What we store if you create an account

Registering with email stores your name, your email address, and a securely hashed version of your password — never the password itself. If you sign in with Google instead, Google tells us your name, email address and profile picture, and we store those; we never receive your Google password.

Your session is kept in an httpOnly cookie, which JavaScript running on the page cannot read. It exists to keep you signed in and nothing else.

What you create here

Signed-in features save what you put into them, tied to your account:

  • Roadmap progress and completed milestones, merged from this browser when you first sign in.
  • Saved items and projects you've bookmarked or started.
  • Resume content you enter into the resume tool — including the name, email, phone number and history you type there.
  • Job applications you track, including companies, roles and your own notes.
  • Mock interview sessions: the code you write, how many times you ran it, and the result.
  • Explain Mode submissions and the feedback they were graded with.

This is your working material. We use it to run the features you asked for and to understand which parts of the product work — not to profile you or to build anything we sell.

Certificates are public on purpose

If you earn a completion certificate, it gets a public verification page at /verify/… showing your name, the track you finished and the date it was issued. That page needs to load without a login — that is what makes it verifiable to someone you share it with — so it can be viewed and indexed by anyone who has the link. Don't claim a certificate if you don't want your name on a public page; ask us and we'll revoke one you've already earned.

Third parties your data reaches

A few features can't run entirely on our own servers. When you use them, the relevant content is sent to the provider named here and handled under their terms:

  • OpenAI — when you submit an answer in Explain Mode, your answer and our rubric are sent to the OpenAI API for grading. Nothing else about you is sent with it.
  • Wandbox — when you run code in a mock interview, your code is sent to Wandbox's public compile API to be executed. It is a free public service with no account, so treat anything you run there as leaving our systems.
  • Google — only if you choose Google sign-in, and only to authenticate you.
  • Our hosting and database providers, which store the data above so the site can serve it back to you.

Because of the first two: please don't paste API keys, passwords, or anyone else's personal information into the code editor or an Explain Mode answer.

Cookies and analytics

The only cookie we set is the session cookie described above. We have no advertising cookies, no third-party analytics platform, and no cross-site trackers. Product usage events exist in our code as a placeholder that currently writes nothing anywhere; if we ever connect a real analytics provider, this page will say which one before it goes live.

Email

We'll email you about your own account — password resets, security notices, and occasional reminders about a roadmap you started. Every reminder-style email will carry a one-click unsubscribe. We don't send marketing on anyone else's behalf and we never share your address with them.

How long we keep it

Account data and the content you create stay until you delete them or delete your account. When you delete your account we remove your personal data and the content tied to it, and revoke any certificates issued to you. Backups roll off on their own schedule, generally within 30 days. Anonymous, aggregate counts that can't be traced back to you may be kept.

Your control

Whatever jurisdiction you're in, you can ask us to show you what we hold, correct it, export it, or delete all of it — and we'll do it without asking you to justify the request. Email freecareerpath@gmail.com from the address on your account and we'll act within 30 days.

Children

FreeCareerPath isn't intended for children under 13, and we don't knowingly collect their data. If you believe a child has created an account, email us and we'll remove it.

Changes to this policy

We'll update this page as the product changes, and the date at the top will move. If a change materially affects what we collect or who we send it to, we'll tell account holders by email rather than relying on you to re-read this page.