Your practice stays yours
Privacy Policy
PrepTap requires Sign in with Apple so it can protect and synchronize your interview-practice progress. We do not sell personal information, serve advertising, or track you across apps and websites.
1. Sign in and identifiers
Sign in with Apple is required to use PrepTap. We request no Apple name or email scope. Apple gives PrepTap a stable account identifier; we transform it into an internal user ID and use it only for authentication, session security, synchronization, export, and deletion. Access and refresh credentials are stored in the iOS Keychain. On our Microsoft Azure service, session tokens are stored as one-way hashes and the Apple authorization needed for account deletion is stored with reversible encryption.
2. Practice information
PrepTap stores your interview level, topic focus, preparation timeline, daily practice target, answers, confidence selections, practice dates, concept progress, and active-sprint snapshot locally on your device. Completed practice interactions—including question and option identifiers, confidence, and completion time—are linked to your internal user ID and synchronized to Azure for app functionality.
The local copy powers Today, Journey, sprint summaries, and offline resume. A first launch requires internet access to sign in. After a valid session has already been restored, downloaded questions and local progress can remain available during a temporary outage while that saved session is still valid. A revoked, missing, transferred, or expired Apple credential requires you to sign in again.
3. Service and diagnostic information
PrepTap contacts our Azure-hosted service for authentication, synchronized progress, versioned curriculum, question content, and service configuration. Public catalog requests are designed not to include your local answers, profile, Apple identifier, or a persistent installation identifier.
Like most internet services, the hosting layer temporarily processes limited request information needed to deliver and secure each request. PrepTap retains only minimized application diagnostics such as request time, route template, response status, duration, and coarse failure class. These diagnostics are unlinked, are used only for app functionality, reliability, and abuse prevention, and are retained for no more than 30 days. Retained request and application logs do not contain IP addresses, authorization credentials, Apple identifiers, answer selections, or account exports.
4. What PrepTap does not do
- We do not request your Apple name or email address.
- We do not use third-party advertising or cross-app tracking.
- We do not sell or rent personal information.
- We do not request an advertising identifier.
- We do not use practice data for advertising or data-broker purposes.
5. Service providers
Apple provides Sign in with Apple and processes App Store downloads, purchases, crash information, and device analytics according to your Apple settings and Apple’s privacy policy. Microsoft Azure hosts PrepTap authentication, synchronized progress, curriculum, public pages, encrypted secrets, and limited operational diagnostics. These providers process information on our behalf under their applicable service terms and security commitments.
6. Retention, sign out, and deletion
Local practice information remains until you reset it, delete your account, or remove the app. Synced practice data and the encrypted Apple authorization remain until account deletion. PrepTap access tokens are short-lived and refresh sessions rotate and expire. Request and application logs are retained for no more than 30 days.
Sign Out closes the PrepTap session on that device but preserves local practice progress. Reset all progress removes local practice data without deleting the account. Delete Account revokes the Apple authorization, removes synchronized practice data and account secrets from Azure, and then clears the device’s Keychain session and local PrepTap practice data. Continuous Azure database backups may preserve deleted records for up to 7 days before they expire.
After deletion, Azure retains an indefinite, minimal pseudonymous deletion-security record solely to invalidate stale credentials and prevent them from restoring a deleted account. It contains no Apple authorization or practice content and cannot be used to reconstruct the account. Azure administrative and control-plane audit records may remain for up to 90 days; they record operator actions on cloud resources, not app-user activity.
7. Security
PrepTap uses HTTPS for production network requests, iOS Keychain for session credentials, iOS data protection for local app storage, managed identities for Azure access, and encryption for the Apple grant retained for deletion. No system can guarantee absolute security, but we minimize transmitted information and restrict production access to operational systems.
8. Children’s privacy
PrepTap is a general interview-preparation product and is not directed to children under 13. We do not knowingly collect personal information from children.
9. Changes to this policy
We may update this policy as PrepTap changes. We will post the revised policy here with a new effective date and provide additional notice when a change materially affects how information is handled.
Contact
Questions or privacy requests can be sent to sherwood_lee@hotmail.com.