Privacy Policy

    Last Updated: August 3, 2026

    We process personal data only where it is necessary to provide Librisync, respond to requests, operate accounts and libraries, send product messages you have not opted out of, and improve public pages with anonymous cookieless reach measurement. Language and accessibility choices such as i18nextLng and font_scale are stored locally as UI preferences. No advertising, retargeting, social pixels, session recording, or profiling are used.

    Your Privacy Rights Under GDPR

    As a data subject under the General Data Protection Regulation (GDPR), you have the following rights:

    • Right to Access: You can request a copy of all personal data we hold about you
    • Right to Rectification: You can request corrections to inaccurate personal data
    • Right to Erasure: You can request deletion of your personal data
    • Right to Data Portability: You can request your data in a machine-readable format
    • Right to Object: You can object to processing of your personal data
    • Right to Restrict Processing: You can request limitation of data processing
    • Right to Withdraw Consent: You can withdraw consent at any time

    Exercise Your Rights

    You can exercise your data rights directly in your account settings or by contacting us at privacy@librisync.com

    What Data We Collect

    Account Information

    • Email address (required for account creation)
    • Name (optional)
    • Profile picture (optional)
    • Account preferences and settings, including language, privacy and cookie choices, email preferences, feedback messages, and founder-call requests you submit

    Library Data

    • Book titles, authors, and ISBN numbers you add
    • Book covers and metadata
    • Reading progress and notes
    • Custom tags and categories

    Technical Data

    • IP address and request metadata, processed for security, rate limiting, abuse prevention, and server logs; where possible, IP addresses are hashed, shortened, or deleted when no longer needed
    • Browser type and version
    • Device information, app and browser events, API usage metadata, and diagnostic logs needed to operate and secure the service

    Consent Records

    We maintain records of your cookie, analytics, affiliate tracking, and email communication preferences, including opt-ins, opt-outs, unsubscribe events, suppression status, timestamps, and source information where required to prove or respect your choices.

    Legal Basis for Processing

    Contractual Necessity

    Processing your account and library data to provide our book management services.

    Legitimate Interest

    Security monitoring, abuse and fraud prevention, service reliability, product improvement using aggregated or necessary operational data, admin audit logs, and handling requests you send us, balanced against your privacy rights.

    Consent

    No automatic cookie banner is shown because identifier-free reach measurement, A/B funnel counts, affiliate redirect counts, and daily product usage aggregates do not use tracking cookies, analytics browser storage, visitor IDs, device IDs, fingerprinting, advertising pixels, retargeting, or session recording. Persistent A/B attribution, detailed affiliate sessions, and marketing remain optional and consent-based.

    Website Optimization (A/B Testing)

    For public landing pages we may deliver different content variants. The default flow is visitorless and counts page views, CTA clicks, signup starts, and signup completions only by experiment, variant, normalized path, and day. It creates no visitor ID or browser storage. Persistent return attribution only occurs with explicit Analytics consent.

    The following data is collected:

    • Pseudonymous visitor ID or campaign identifier (randomly generated, not directly identifying you)
    • Assigned page version (e.g., Version A or B)
    • Identifier-free daily counts for page views, CTA clicks, signup starts, and signup completions; additional individual events only after Analytics consent
    • If you register or sign in after giving analytics consent, the visitor ID or campaign parameters may be linked to your user account to measure conversion and product email effectiveness

    Storage: visitorless A/B counts contain no visitor or user identifier and create no cookie, localStorage, or sessionStorage entry. Persistent assignments and user links are stored only after Analytics consent. Essential UI preferences such as language and font size remain separate.

    Legal basis: identifier-free aggregate measurement serves the legitimate interest in operating and improving Librisync with minimal privacy impact. Persistent attribution requires consent; necessary account and security processing remains based on contract performance or legitimate interest.

    Retention period: Identifier-free aggregate A/B and product usage counters are retained for no more than 13 months. Consent-based individual attribution is deleted or aggregated when no longer required and normally no later than 12 months after the experiment ends.

    Identifier-free product usage analytics

    Successful book additions, wishlist additions, loans, shares, reading completions, and scan actions are counted per event and day in Supabase. No user, visitor, session, IP, URL, book, or shelf identifier is stored in these analytics rows. Separate scan abuse protection temporarily uses a pseudonymous account token for a brief duration and cannot be joined to usage counters.

    Cookie Policy

    Essential Cookies

    These cookies are necessary for the website to function and cannot be disabled. They include:

    • Authentication and session management
    • Security and fraud prevention
    • Basic functionality and user preferences

    Do Not Track

    We respect Do Not Track (DNT) for browser-side reach measurement: the Simple Analytics beacon is not sent when DNT is enabled. Identifier-free product counters are generated server-side and do not inspect browser DNT state. Non-essential persistent identifiers remain disabled unless you explicitly enable the related preference.

    Data Sharing and Transfers

    We do not sell your personal data. LibriSync does not permanently store the scan images itself; they are transmitted to AI service providers for analysis. We only share data with service providers or third parties in these limited circumstances:

    Service Providers

    • Supabase (Database): Core infrastructure for authentication, database, and storage located in the European Union; serverless Edge Functions are globally routed
    • Simple Analytics: Anonymous cookieless reach measurement without consent using a browser-side one-pixel image beacon. Known public routes keep only fixed allowlisted Social and SEO source categories; sensitive parameters and identifiers are filtered out. Known app routes are measured after book and shelf identifiers are normalized. Auth, admin, reset-password, and token routes are excluded. No cookies, browser storage, visitor/device IDs, fingerprinting, advertising, retargeting, or session replay are used. Do Not Track (DNT) is fully respected.
    • Netlify Web Analytics: Cookieless reach measurement performed server-side from Netlify CDN request logs to operate and improve the website and evaluate aggregate pageviews, unique visitors, top pages, sources, and coarse locations. Depending on the request, Netlify processes the requested path, timestamp and technical request metadata, referrer/source, coarse location, and IP address used to compute unique visitor metrics. LibriSync loads no Netlify analytics JavaScript, sets no Netlify analytics cookie, creates no visitor or device ID, and stores no additional raw analytics copy. Legal basis: Art. 6(1)(f) GDPR — our legitimate interest in operating the website securely and cost-effectively and carrying out low-impact aggregate reach measurement. Netlify processes customer data for the term of the service agreement and deletes it after termination in accordance with its DPA and service deletion rules; availability in the dashboard depends on the periods configured and provided by Netlify. Netlify, Inc. and its sub-processors may process data in the United States or other non-EEA countries. Transfers are safeguarded by the EU-US Data Privacy Framework where applicable and European Commission Standard Contractual Clauses otherwise. Netlify Privacy Statement · Netlify Data Processing Agreement (DPA).
    • Google Books API: Book metadata lookup — your IP address is transmitted to Google when API calls are made
    • OpenAI: AI-based text and image processing for book detection and suggestion generation — required feature data such as book metadata or images are processed without unnecessary account identifiers
    • Google Gemini: AI-powered image and text recognition for analyzing bookshelf photos — photos are transmitted to recognize titles and covers. Please avoid uploading photos with people or confidential documents.
    • Open Library (openlibrary.org): Book metadata lookup, cover images, and author photos — your search queries (titles, ISBNs, author names) are transmitted to Open Library's public API
    • Internet Archive (archive.org): Book cover image search — book titles and author names are transmitted to the Internet Archive's public API to locate cover images
    • WorldCat (OCLC, worldcat.org): ISBN and book metadata lookup — ISBN numbers and search queries are transmitted to the WorldCat SRU API operated by OCLC (US-based)
    • Rainforest API (rainforestapi.com): Amazon product data proxy — ISBN numbers and search queries are transmitted to the Rainforest API to fetch book metadata and pricing from Amazon product pages
    • Resend (Email): Transactional and product email delivery, including account confirmations, password resets, onboarding & lifecycle notifications, founder messages, and support responses via EU-hosted servers. Email open-tracking pixels are not used without consent; delivery status events and link clicks may be processed to ensure delivery and measure engagement.
    • Amazon (Affiliate Program): Book links may redirect you to Amazon. When you click these affiliate links, we may record a pseudonymous click event, timestamp, referrer or campaign parameters, and book or link target to measure referrals and prevent abuse. Amazon may set its own cookies and track purchases through the Amazon Associates Program. We may receive a commission on qualifying purchases at no additional cost to you. Legal basis: consent for analytics where required and legitimate interest for referral accounting and abuse prevention. See Amazon's Privacy Notice.

    Legal Requirements

    We may disclose personal data if required by law, court order, or to protect our rights and safety.

    International Data Transfers

    Our core infrastructure (Supabase, Resend) processes and stores data within the European Union where configured. Some third-party service providers are based in the United States or may process data outside the European Economic Area (EEA). When your data is transferred outside the EEA, we ensure appropriate safeguards are in place:

    • EU-US Data Privacy Framework: Where applicable, our US-based providers are certified under the EU-US Data Privacy Framework (e.g., Google)
    • Standard Contractual Clauses (SCCs): We rely on EU-approved Standard Contractual Clauses for transfers to providers not covered by adequacy decisions

    Service providers with US-based processing: Netlify, Google (Books API, Gemini AI), OpenAI, Open Library, Internet Archive, WorldCat (OCLC), Rainforest API, and Amazon.

    Data Security

    • All data encrypted in transit (TLS 1.3) and at rest (AES-256)
    • Regular security audits and vulnerability assessments
    • Access controls and authentication for all systems
    • Notification of the competent supervisory authority without undue delay and, where feasible, within 72 hours unless a breach is unlikely to result in a risk to individuals' rights and freedoms; affected individuals are informed without undue delay when it is likely to pose a high risk
    • Privacy by design principles in all development

    Data Retention

    • Account Data: Retained while your account is active and as long as needed to handle open support, feedback, founder-call, or legal requests
    • Library Data: Retained until account deletion
    • Consent Logs: Consent, unsubscribe, suppression, and email delivery logs are retained for up to 7 years where needed to prove compliance and respect opt-outs
    • Deleted Accounts: Account and library data are permanently deleted within 30 days unless a longer retention period is legally required or records needed to honour opt-outs or address security needs must be retained

    Automated Decision-Making

    Librisync does not make any legally binding or similarly significant automated individual decisions about you (Article 22 GDPR). AI-powered features, recommendations, email segmentation, and A/B tests serve only as supportive, personalization, or measurement tools and do not produce legal effects for you.

    Children's Privacy

    Our service is intended for persons aged 16 and older. We do not knowingly collect personal data from children under 16. If we become aware that we have collected data from a child under 16 without parental consent, we will delete that data promptly. If you believe your child has provided us with personal data, please contact us at privacy@librisync.com.

    Right to Lodge a Complaint (Art. 77 GDPR)

    If you believe that the processing of your personal data violates the GDPR, you have the right to lodge a complaint with a supervisory authority. The competent supervisory authority for our company is:

    Bayerisches Landesamt für Datenschutzaufsicht (BayLDA)

    Promenade 18

    91522 Ansbach, Germany

    Phone: +49 (0) 981 180093-0

    Email: poststelle@lda.bayern.de

    Website: www.lda.bayern.de

    Obligation to Provide Data

    To create an account and use Librisync, you must provide a valid email address. Without this information, we cannot provide our service (contractual necessity under Art. 6(1)(b) GDPR). All other personal data (name, profile picture) is voluntary.

    Contact Information

    Data Controller:

    Sebastian Taatz Consulting UG (haftungsbeschränkt)

    Sebastian Taatz

    Raiffeisenstr. 2

    97209 Veitshöchheim, Germany

    Email: privacy@librisync.com

    Phone: +4915567113162

    For any privacy-related questions or to exercise your rights, please contact us using the information above. We will respond without undue delay and generally within one month. If a legally permitted extension is required, we will inform you within the first month.

    Changes to This Policy

    We may update this privacy policy from time to time. We will notify you of material changes by email or through our service. Where legally required, we will ask for renewed consent before the changed processing starts.