Privacy Policy
Effective as of May 2026. High-level summary; not individualized legal advice.
Who we are
TookBooks™ helps readers discover YA books, keep shelves, publish optional public profiles, and participate in moderation-aware reviews and circles.
This policy explains what data we process, why we process it, and the choices available to you.
What we collect
Account details: email, username, hashed password, birth year where required for eligibility, optional bio, optional profile photo URL.
Reading & social graph: shelves, ratings, reviews, highlights, quotes, follows, invitations, moderation flags where applicable.
Safety & abuse prevention: moderation events, appeals, administrator notes needed to investigate reports.
Technical identifiers: HTTP session cookie, rate-limit tokens, timestamps, coarse IP-derived signals if your host logs them, browser errors if you enable telemetry (e.g., Sentry).
Cookies & storage
We rely on strictly necessary cookies (and similar mechanisms) so you remain signed in and so we can mitigate abuse.
We do not use advertising trackers in the reference deployment of this app.
Analytics & measurement
Server logs may include coarse IP-derived signals if your reverse proxy attaches them—see hosting docs. TookBooks™ does not load ad-tech or social pixels by default; describe any Plausible, Umami, GA4, or similar tools in ANALYTICS_DISCLOSURE when you enable them.
Why we use data
Provide and secure the service, authenticate you, show shelves and reviews you choose to share, power search, and display community activity you opt into.
Detect spam, harassment, and policy violations; respond to safety reports; improve reliability and investigate incidents.
Children & teens
TookBooks™ is intended for users who meet the minimum age stated in the Terms (13+). We do not knowingly collect data from children under that threshold without verifiable parental consent.
Parents needing removal or minors’ data workflows should route through CONTACT_EMAIL until PARENTAL_RIGHTS_EMAIL is staffed.
Retention
We keep data only as long as needed to operate the service, satisfy legal obligations, or resolve disputes. Backups may persist for a limited period consistent with how your host stores snapshots.
Your controls
Update profile fields, adjust privacy toggles, delete your own reviews when policy allows, block other users, and request account help through the contact channel above.
International transfers
If you access TookBooks™ from outside the region where servers run, your data may be processed there. Use the service only if you are comfortable with that processing.
Third parties
Book metadata may come from Open Library. Search indexes may be hosted on Meilisearch. Hosting, TLS termination, database, and observability providers depend on your deployment.
Contact
For privacy questions, use the Contact page (set CONTACT_EMAIL so we can reply from production).
