Legal
Privacy Policy
Last updated: June 9, 2025
Information we collect
Account information
When you create an account, we collect your email address, display name, and password. You may also add a profile photo.
Reading activity
We collect data about your reading sessions, including books you add, time spent reading, pages read, and reading streaks.
Content you create
This includes highlights, reflections, notes, and any other content you enter in the App.
Book club data
When you create or join book clubs, we collect club details, shared reflections, and meeting information.
Device and usage data
We collect anonymized analytics data about how you use the App, including feature usage, screen views, and crash reports. We also collect your device type and operating system version to improve compatibility.
Contacts
If you choose to invite friends to a book club, we access your contacts only at the moment of the invitation. We do not store your contact list on our servers.
Camera and photos
If you upload a profile photo or scan a book cover, we access your camera or photo library only for that purpose.
Waitlist
If you joined our waitlist before the App launched, we collected your email, name (optional), preferred device, and IP address (for rate limiting). We do not use cookies or tracking pixels on this website.
How we use your information
- Provide the service: store your reading data, display your highlights and reflections, and power book club features.
- Generate reflection questions: your highlights, notes, and reading context are sent to our AI provider (Anthropic) to generate personalized reflection questions. This data is used solely for generation and is not used to train AI models.
- Send notifications: reading reminders, book club updates, and other in-app notifications you have opted into.
- Process payments: subscription management through RevenueCat and Apple's App Store. We do not store your payment card details.
- Improve the App: anonymized analytics help us understand how features are used and identify issues.
- Communicate with you: service updates, account notifications, and responses to your inquiries.
We will not send unsolicited marketing emails, share your information with advertisers, or sell your data.
Third-party services
We use the following services to operate Nookclub:
- Supabase for data storage and authentication
- Anthropic for AI-generated reflection questions
- RevenueCat for subscription management
- PostHog for product analytics (anonymized)
- Apple Push Notification service for push notifications
- Resend for transactional email delivery
- Upstash for rate limiting
- Vercel for website hosting
Each service processes data only as needed to provide its function and is subject to its own privacy policy. Your data may be transferred to and stored on servers located outside your country of residence, including in the United States.
Data sharing
We do not sell, rent, or share your personal information with third parties for their marketing purposes. We share data only with the service providers listed above, and only to the extent necessary to operate Nookclub. We may disclose your information if required by law or to protect our rights, safety, or property.
Content you share within a book club is visible to other members of that club.
Data retention
We retain your account and reading data for as long as your account is active. If you delete your account, we permanently delete all your personal data, including reading history, highlights, reflections, and profile information. Content shared in book clubs may remain visible in anonymized form. Anonymized analytics data may be retained indefinitely.
Your rights
You have the right to:
- Access the personal data we hold about you
- Correct inaccurate information in your account
- Delete your account and all associated data from within the App
- Withdraw consent for optional data processing (e.g. push notifications, contacts access)
- Request a copy of your data
You can exercise most of these rights directly in the App. For data access or export requests, email nookclub@outlook.com. We will respond within 30 days.
Children's privacy
Nookclub is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, please contact us at nookclub@outlook.com and we will delete the account promptly.
Security
We use industry-standard security measures to protect your data, including encryption in transit and at rest. However, no method of transmission or storage is 100% secure, and we cannot guarantee absolute security.
Breach notification
In the event of a data breach that poses a real risk of significant harm, we will notify affected users by email and through the App within 72 hours of becoming aware of the breach. We will also notify the Office of the Privacy Commissioner of Canada and the Commission d'accès à l'information du Québec as required by law. Our notification will describe the nature of the breach, the data involved, the steps we are taking, and what you can do to protect yourself.
Changes to this policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you through the App or by email. Your continued use of Nookclub after changes take effect constitutes acceptance of the updated policy.
Contact
Nookclub is operated from Montreal, Quebec, Canada. For questions about personal information protection under Quebec law, contact us at the email below.
Questions about this policy? Reach us at nookclub@outlook.com.
Your use of Nookclub is also governed by our Terms of Service.