This Privacy Policy explains how BingeReader ("BingeReader," "we," "us," or "our") collects, uses, discloses, and protects information when you use our website, sign-up and account pages, web reader, device sync features, and any related services (collectively, the "Service"), including when you sign in or connect a third-party account (such as Google) through OAuth.
If you do not agree with this Policy, please do not use the Service.
1. Who We Are
BingeReader is a managed platform that unifies a reader's ebook, audiobook, and comic library across multiple sources and devices, provisions each account an isolated reading environment, and syncs reading position, highlights, and library data across devices (Kobo, KOReader, web, and others).
Contact: hello@bingereader.app
2. Pilot Status — What This Means for You
BingeReader is currently in an open pilot:
- Sign-up is open to anyone via email/password or a magic link. There is no invitation requirement and no waitlist.
- We are not currently charging for the Service or processing payments. No payment card or billing information is collected at this stage.
- Because this is a pilot, features, data retention practices, and this Policy may change as the Service matures toward general availability. We will update the "Last updated" date above and provide notice of material changes as described in Section 11.
3. Information We Collect
3.1 Information you provide directly
- Account information: name (or, if not provided, the local part of your email address), email address, and password (stored as a salted hash, never in plain text) — or, if you use magic-link sign-in, just your email address.
- OAuth / "Sign in with" account information: if you choose to sign in or connect using a third-party identity provider (for example, Google), we receive basic profile information from that provider — typically your name, email address, and profile picture — as authorized by the permissions ("scopes") you approve during that sign-in flow. We do not receive your third-party account password.
- Library content: the book files you upload or import (EPUB, MOBI, PDF, CBZ/CBR, M4B, MP3), associated metadata (title, author, series, tags, genre, description, cover art), and files imported from a Calibre library export.
- Reading data: reading status, reading position, highlights, notes, bookmarks, and reading session history (dates, durations, progress).
- Device connection information: information needed to sync with a Kobo device or KOReader, such as your platform-issued sync endpoint configuration. We do not collect or store your Kobo account credentials — our sync method does not require them.
- Delivery destinations: if you use Send-to-Kindle, the Kindle email address you provide.
- Support communications: information you send us when contacting support.
3.2 Information collected automatically
- Usage and device data: IP address, browser type, device type, operating system, pages/features accessed, and timestamps, collected via standard server logs.
- Sync and diagnostic logs: logs related to device sync activity (e.g., Kobo/KOReader sync attempts, success/failure states) used to diagnose and improve sync reliability.
- Cookies and similar technologies: we use cookies or equivalent local storage to keep you signed in, remember preferences, and maintain session security. We do not currently use third-party advertising or cross-site tracking cookies.
3.3 Information from third parties (OAuth and integrations)
When you connect a third-party account to BingeReader — such as signing in with Google, or (in future releases) connecting cloud storage for automated book ingestion, or connecting a third-party reading tracker — we receive only the information that provider makes available based on the permissions you grant. This may include:
- Basic identity information (name, email, profile photo) from an identity provider like Google, used solely to authenticate you and create or match your BingeReader account.
- Where you explicitly authorize it in a future release, limited access to a designated folder (e.g., a cloud storage "drop folder") or reading-activity data on a connected third-party tracker, used only to perform the specific integration function you enabled.
We do not request or use OAuth permissions beyond what a given feature needs, and we do not use your third-party account data for any purpose you have not authorized.
4. How We Use Information
We use the information described above to:
1. Create, authenticate, and secure your account (including via password, magic link, or third-party OAuth sign-in).
2. Provision and operate your isolated reading environment (library storage, web reader, annotation hub).
3. Synchronize your reading position, highlights, and library across your connected devices (Kobo, KOReader, web).
4. Provide features you use, such as Calibre import, Send-to-Kindle delivery, OPDS catalog access, and (in later releases) cloud-folder ingestion or third-party tracker sync.
5. Fetch book metadata and cover art to enrich your library entries.
6. Monitor, maintain, and troubleshoot the Service, including sync reliability and storage quotas.
7. Communicate with you about your account, sync status, support requests, and material changes to the Service or this Policy.
8. Detect, prevent, and address technical issues, abuse, or violations of our Terms of Service.
We do not use your library content or reading data to serve advertising, and we do not build advertising profiles from it.
5. How We Share Information
We do not sell your personal information or your library/reading data, and we do not share it with third parties for their own marketing purposes.
We may share information only in the following circumstances:
- Service providers: infrastructure and hosting providers (e.g., our cloud server provider), email delivery providers (for magic links, verification, and support notifications), and, where you enable a specific integration, the third party you connected (e.g., Google for OAuth sign-in, or a cloud storage or reading-tracker provider you authorize in a future release). These providers act on our behalf and are bound to use data only to provide the relevant service.
- Delivery destinations you choose: e.g., sending a book file to the Kindle email address you provide, or making your library available via an OPDS feed URL you generate and control.
- Legal and safety reasons: if required by law, legal process, or to protect the rights, property, or safety of BingeReader, our users, or others.
- Business transfers: if BingeReader is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction, subject to this Policy or a policy at least as protective.
6. Data Retention and Deletion
- We retain your account information, library content, and reading data for as long as your account is active.
- You may delete individual books, highlights, or your entire account at any time through account settings or by contacting support. Deleting your account removes your library files, metadata, and reading data from active systems, subject to reasonable backup retention windows and legal retention obligations.
- Because BingeReader is in pilot, backups are limited and export tooling is still being built out (see Section 8). If you need your data before a full export feature ships, contact support and we will help you retrieve it.
- Kobo/KOReader sync diagnostic logs are retained only as long as needed to diagnose and resolve sync issues.
7. Data Security
We take reasonable technical and organizational measures to protect your information, including:
- Passwords stored as salted hashes, never in plain text.
- Isolated per-account reading environments, so one account's library and data are not directly accessible from another account's environment.
- We do not collect or store your Kobo account credentials.
- No card or payment data is collected during this pilot phase.
No method of transmission or storage is 100% secure. We cannot guarantee absolute security, but we will notify affected users as required by law in the event of a data breach affecting their personal information.
8. Your Rights and Choices
Depending on your location, you may have rights to:
- Access, correct, or delete your personal information.
- Export your library files, metadata, and annotations (a full "Export Everything" feature is planned; in the interim, you may request an export via support, and original-format file download is already available per book).
- Withdraw consent for a connected third-party (OAuth) account at any time by disconnecting it in account settings or revoking access directly from the third party's account permissions page (e.g., Google Account → Security → Third-party access).
- Object to or restrict certain processing, where applicable law provides this right.
To exercise these rights, contact hello@bingereader.app. We will respond within a reasonable time and in accordance with applicable law.
We do not currently sell personal information and do not knowingly collect information from children under 13 (or the minimum age required by your local law). If you believe a child has provided us information, contact us and we will delete it.
California residents (CCPA/CPRA): BingeReader is based in California, and if you are a California resident you have the right to know what personal information we collect, request deletion of it, correct inaccurate information, and not be discriminated against for exercising these rights. We do not sell or share personal information for cross-context behavioral advertising, so there is no "opt-out of sale/sharing" action required. To submit a request, email hello@bingereader.app; we will verify your identity before fulfilling account-specific requests.
9. Third-Party Sign-In and Integrations (OAuth)
When BingeReader offers "Sign in with Google" or similar third-party sign-in/integration options:
- We use the OAuth 2.0 standard (or the provider's supported authentication protocol) and only request the minimum scopes needed for the feature (e.g., basic profile and email for sign-in; folder read access for a book-ingestion integration you explicitly enable).
- We do not receive or store your third-party account password.
- You can review and revoke BingeReader's access at any time from the third-party provider's own account/security settings, and from BingeReader account settings.
- Your use of a third-party provider (e.g., Google) is also governed by that provider's own privacy policy and terms.
10. International Users
BingeReader operates from the United States, and our infrastructure and service providers may be located in the United States or other countries. By using the Service, you understand and consent to your information being processed in the United States (and potentially other locations where our providers operate), which may have different data protection laws than your home country, subject to the protections described in this Policy.
11. Changes to This Policy
Because BingeReader is in active pilot development, we may update this Policy as features change (for example, when payments, mobile apps, or new integrations launch). We will update the "Last updated" date and, for material changes, provide notice via email or an in-product notice before the changes take effect.
12. Contact Us
Questions, requests, or concerns about this Privacy Policy or your data:
Email: hello@bingereader.app
Website: https://bingereader.app