Panelio

Privacy policy

Effective 6 October 2026. Panelio is made by Bose Ventures LLC, 2150 N First St, Suite 400-2010, San Jose, CA 95131. Questions to support@panelio.ai.

Panelio runs technical interviews inside a Zoom meeting. This page says what Panelio collects, why, for how long, who else touches it, and what you can ask for. It covers the Zoom app, the app at app.panelio.ai, and this site.

Who decides

The employer that adds Panelio to its Zoom account is the controller of its interview data, and the business under California law. Panelio is its processor and service provider, and handles that data only to run the service for that employer, under the terms and the data processing addendum. If you are a candidate, the employer that invited you decides what happens to your data, and its own privacy notice applies too.

Panelio decides for itself only about the data of this site's visitors, people who ask for a demo or write to support, and the records it keeps to run, secure and bill the service.

What Panelio collects

The Zoom data Panelio uses

Panelio reaches Zoom data only through the permissions the person adding it grants, and only for the features below.

Zoom dataWhy Panelio uses itWhat is kept
Your Zoom profile: user id, name, email, account idTo sign you in and find your workspaceOn your membership while the workspace keeps you; erased when you remove the app
Your Zoom sign-in tokensTo do the things below on your behalfEncrypted; given back to Zoom and deleted when you remove the app
Meetings Panelio makes, moves or cancelsTo give each round its own Zoom meeting, and move or cancel it when you askThe meeting's ID and link on the round
Your Zoom contactsTo find a colleague you invite to look at a role's candidatesRead when the address book opens; only the person you invite is kept
In the meeting: its ID, your role in it, who is in itTo run the round in the right meeting, know the candidate, and hold a debrief only among the teamOn the round's record
The meeting's audio and Zoom's transcript, through Realtime Media StreamsThe transcript of the round, the voice check with consent, and Panelio's voice when it holds the turnThe transcript, for the retention period; never the audio
A token for one meeting, and its passcodeTo let Panelio join that meeting on behalf of the interviewer in itNothing; neither is stored
Your Marketplace planTo put the account on the plan it boughtThe plan's name and ids, and each change without any amount; the Zoom user id of whoever bought it or changed it is erased when they remove the app

Panelio uses Zoom data only to provide these features to the employer that added it. It does not sell Zoom data, use it for advertising, or use it, or let anyone use it, to train or improve an artificial intelligence or machine learning model, Panelio's or anyone else's. OpenAI, which runs Panelio's models on Panelio's own account, does not train its models on it. Zoom shows everyone in the meeting when an app is reaching its content, and Panelio's own participant is in the participant list by name.

Why

To run the round, to build the evidence pack the employer's people confirm, to let a person make the decision on the record, to send the mail the employer's people ask Panelio to send (invitations, notes to the team and, after a decision, a note to the candidate), to keep the service working and safe, and to bill the employer through the Zoom Marketplace. Interview data is never used to train models.

AI, and automated decisions

Panelio does not make hiring decisions. The model shortlists resumes against the job description with the evidence beside each name, suggests follow-up questions to the interviewer, grades against the employer's answer key and anchors after the round, and drafts notes; it never advances, declines or scores a candidate on its own. Every decision is recorded by a named person; the grades a model suggests quote the transcript or the code they come from, and a grade the record cannot ground is left blank for the interviewer. A candidate can ask to talk to a human at any point of an AI-led screen and nobody asks why. Where the law requires a notice of an automated employment decision tool or a bias audit, the employer carries it; Panelio puts its notice in every invitation it sends, and the audit export gives the employer every decision with its actor, its reason and its rubric version.

The voice check

The voice check confirms that the same person joins every round of a candidate's interviews for a role. An employer may turn it off, and it never runs in a demo workspace.

This schedule is Panelio's public written policy for biometric information, as the Illinois Biometric Information Privacy Act asks of whoever holds it. It also meets Texas's rule to destroy biometric identifiers within a year after their purpose ends, Washington's rules on notice, consent and keeping them no longer than necessary, and Colorado's 24-month limit after the last interaction: the voiceprint goes at the decision, and never more than a year after the last round.

How long

Audio is transcribed and not kept as audio. A candidate's record (the transcript, the code timeline, the whiteboard, the evidence pack, and the resume as its file and its text) is kept for 90 days after the employer's decision on the candidate by default, then erased; the employer sets the period, from 30 days to one year. What stays for the employer's audit is each decision as it was recorded (who, what, when and why), the shortlist's order and the dates of the rounds, with the candidate as a number. When the employer deletes a role for good, its candidates' resumes go with it, and each of its candidates is kept only as a number, with no name or email. A public pack link expires at the decision plus the retention period at the latest. A voiceprint is deleted when the employer records its hiring decision for the role, and never later than one year after the candidate's last round of that role, whichever comes first; the record of the candidate's answer to the voice check stays as the record of consent, with the name they signed under, after the rest of their record is erased or their role is deleted. The link to a candidate's own code and the files read from it are deleted at the decision. Erasure of a candidate's data within 30 days of the employer's request. A demo workspace's synthetic candidates are labelled as generated and never mix with an employer's data.

A member's account stays while the workspace keeps them. Removing Panelio from Zoom erases the person at once, in every workspace: their name, their email and their Zoom login (the sign-in tokens, which Panelio also tells Zoom to revoke, and the Zoom user and account ids) are deleted, and the notes, ratings and decisions they recorded stay as the employer's hiring record under "A former member". A whole workspace is deleted 7 days after one of its admins asks for it in Settings, Data, with its files, voiceprints and key, unless an admin cancels before then. The count of interview rounds and resumes a workspace used stays with its Zoom account when the workspace is deleted, by month under the account's id and nothing else, since the plan is the account's. To hold the mail limits, Panelio keeps a count of each day's mail per workspace and per invited address, each address only as a one-way hash, never the address itself. Plan changes are kept, without any amount, as the account's billing record, and without the Zoom user id of anyone who has removed the app. A demo request is kept until it is deleted on request.

Who else touches it

Subprocessors: Vercel, Supabase, OpenAI, Resend, Vultr. Changes are emailed to workspace admins 30 days ahead.

SubprocessorWhat it doesRegionWhen
Vercelhosts the app and the API, and Panelio's seat in each live meetingUnited States and EU edgealways
Supabasethe database, stored resume files and realtime channelsUnited States (Ohio)always
OpenAIthe model behind grading, the coach, the AI interviewer and the agent, on Panelio's account; no training on the dataUnited Statesalways
Resendtransactional email: invitations, the candidate's note, reviewer nudgesUnited Stateswhen a workspace sends email
Vultrthe execution box that runs the candidate's code, in a container with no network; nothing is kept there after a runUnited States (New Jersey)when a round runs code

Zoom runs the meeting, the sign-in and the Marketplace under the employer's own agreement with Zoom; what Zoom does with meeting data is in Zoom's own privacy statement. An applicant tracking system the employer connects is the employer's own account under its own agreement with that vendor. A public code repository a candidate gives is read from GitHub. Panelio sells personal information to no one.

Where

Panelio is offered to employers in the United States. The database and the stored files live in the United States (Ohio), and every subprocessor processes the data in the United States; requests may pass through the hosting network's nearest edge. The app runs on Vercel. Model calls go to OpenAI on Panelio's account. An employer brings no model keys.

Security

TLS on every connection; each workspace's sensitive records encrypted with a key of its own; access by role inside a workspace and to the workspace's own data only. If a security incident reaches an employer's data, Panelio tells the workspace's admins within 72 hours of confirming it, with what was reached and what was done. The security page has the detail.

Cookies

The app at app.panelio.ai sets only the cookies it needs to sign you in, all of them secure and out of reach of the page's scripts:

CookieWhat it doesHow long
pn_sessionKeeps you signed in, signed so it cannot be forged7 days, or until you sign out
pn_oauthTies Zoom's sign-in back to the browser that started it10 minutes, during sign-in
pn_joinHolds a sign-in, encrypted, while you choose whether to join a workspace you were invited to30 minutes

The app also remembers in the browser how wide you like the meeting panel and which invitations you set aside for now. This site sets no cookies. Neither runs analytics, advertising or tracking of any kind. Both load the Manrope font from Google Fonts, which receives the browser's network address to serve it. Zoom's own sign-in page sets Zoom's cookies under Zoom's terms.

Your rights

Candidates, and anyone else whose data an employer put into Panelio. Ask the employer: it can give you a copy of your interview data, correct it or erase it, and tell you how its decision was made. Panelio erases a candidate's data within 30 days of the employer's request and helps the employer answer. A request that reaches Panelio about an employer's hiring is passed to that employer, and you are told it was.

Members of a workspace. Ask your workspace admin to change or remove your membership. Removing Panelio from Zoom erases your name, your email and your Zoom login at once, in every workspace you are in, and Panelio tells Zoom to revoke its access; what you recorded stays on the employer's hiring record under "A former member".

Everyone, for the data Panelio decides about. You may ask to know what Panelio holds about you, to have a copy, to correct it or to delete it, by writing to support@panelio.ai yourself or through someone you authorize. Panelio may ask you to confirm it is you before it answers, and answers within 45 days. Nobody is treated differently for asking.

Sale and sharing. Panelio does not sell personal information and does not share it for advertising across sites, and has not in the past twelve months, so there is nothing to opt out of. The voiceprint, the one piece of sensitive personal information Panelio handles, is used only for the purpose its notice states.

California applicants

This is the notice at collection for what Panelio processes for an employer when you apply in California. The employer gives its own notice too, and your requests go to it.

CategoryWhat, for whatHow long
IdentifiersName and email, to invite you and keep your rounds togetherThe employer's period after its decision, 30 days to one year
Professional or employment information, educationYour resume and the job you applied for, to shortlist and to ask about your experienceThe same
Audio and electronic informationThe meeting's audio, heard to make the transcript and never kept; the transcript, your code and the whiteboard, as the record of the roundThe same; the audio not at all
AssessmentsGrades against the role's rubric, each quoting the record, confirmed or changed by a personThe same; each decision stays for the employer's audit
Biometric information, sensitiveA voiceprint, only with your written consent, to confirm the same person joins every roundUntil the hiring decision, one year after your last round at most

None of it is sold or shared for advertising.

Children

Panelio is for employers and their hiring teams and is not meant for children. Employers must not use it to interview anyone under 16, and Panelio does not knowingly collect the data of anyone under 16; if it learns it has, it deletes it.

Changes

This page changes when the product does, and the date at the top moves. A change that matters is emailed to workspace admins 30 days before it takes effect.

Contact

support@panelio.ai. Bose Ventures LLC, 2150 N First St, Suite 400-2010, San Jose, CA 95131.