Legal

Privacy Policy

Plain-language version: Codeward stores what it needs to run your account and grade your work, shares data only with the services that make those features work, and never sells it.

Last updated: 20 July 2026

What we collect

  • Account details — your name and email. If you sign in with Google, we receive your basic profile and email from Google; if you sign up with email, we store your email and a bcrypt-hashed password (never the plaintext).
  • Profile — the experience level and target company you set during onboarding.
  • Your work — practice progress, notes, revision flags, saved sheets, mentor chat messages, and the submissions and scores from Code Review, Bug Hunt, and Build It.

We do not collect payment information — the service is free.

How we use it

To run your account, save your progress, grade your submissions, and let the AI mentor tailor its help to your context (target company, experience level, and what you’ve already done). That’s it — no advertising, no profiling for third parties.

Third-party services

Codeward relies on a small set of providers to work. Relevant data is sent to them only to deliver the feature you’re using:

  • Google — optional sign-in (OAuth). We use it only to authenticate you; we don’t store Google access/refresh tokens.
  • Groq — runs the AI mentor and grades your submissions. Your message or submission text is sent to Groq to generate a response.
  • Voyage AI — generates the embeddings used for the mentor’s knowledge retrieval.
  • JDoodle — executes your Build It code when you click “Run Tests.” The code you submit is sent to JDoodle’s sandbox to run.
  • Neon — the PostgreSQL database where your account and work are stored.
  • Upstash — rate limiting and usage counters.
  • Vercel — hosting and privacy-friendly, aggregate analytics.

Each provider has its own privacy terms governing how it handles the data it receives.

Cookies

We use a single essential cookie to keep you signed in (your authentication session). There are no advertising or cross-site tracking cookies.

Retention & your choices

Your data is kept while your account is active. You can request that your account and its associated data be deleted — email us and it will be removed. Deleting your account cascades to your sheets, notes, chat history, and practice attempts.

Contact

Questions about privacy? Reach us via the contact page.