Privacy Policy

Privacy Policy

Your privacy matters to us. Here's how we protect your family's data.

Last Updated: January 19, 2026

1. Introduction

BookOfMe ("we", "our", or "us") is committed to protecting your privacy and the privacy of your children. This Privacy Policy explains how we collect, use, and safeguard your information when you use our Service.

2. Information We Collect

2.1 Account Information

When you create an account, we collect:

  • Email address
  • Password (stored securely using industry-standard encryption)
  • Display name (optional)

2.2 Character Profile Information

When you create character profiles, we collect text descriptions only:

  • Character name (we recommend using nicknames)
  • Age
  • Physical description text (for AI image generation)

Important: We do NOT collect photos, images, or biometric data of children. All character illustrations are AI-generated fictional artwork based solely on text descriptions you provide. We strongly recommend using fictional names or nicknames rather than real names.

2.3 Generated Content

We store AI-generated stories and images for your account so you can access them in your library. These are fictional artistic creations, not photographs or likenesses of real individuals.

2.4 Payment Information

Payment processing is handled securely by Stripe. We never see, store, or have access to your credit card numbers or bank account details. We only receive confirmation of successful transactions and maintain records of credit purchases for your account history.

2.5 Automatically Collected Information

When you use our Service, we may automatically collect:

  • IP address (for security and fraud prevention)
  • Browser type and device information
  • Pages visited and features used
  • Date and time of access

3. How We Use Your Information

We use your information to:

  • Provide and maintain the Service
  • Generate personalized stories and AI illustrations
  • Process transactions and manage your credits
  • Send important service-related communications (account, billing, security)
  • Improve our Service quality and user experience
  • Ensure content safety and prevent abuse
  • Comply with legal obligations

We do NOT: Sell your personal information, share it with advertisers, or use it for purposes unrelated to providing the Service.

4. AI Processing and Third-Party Services

Your character descriptions and story prompts are processed by AI systems to generate content. We use trusted third-party AI and infrastructure providers:

  • OpenRouter/OpenAI: Story text generation
  • fal.ai: Image generation
  • Supabase: Database and authentication
  • Vercel: Website hosting
  • Stripe: Payment processing

These providers process data on our behalf under strict contractual obligations to protect your privacy.

5. Data Storage and Security

We implement appropriate security measures to protect your data:

  • Encrypted data transmission (HTTPS/TLS)
  • Secure password hashing (bcrypt)
  • Secure session management
  • Limited access controls to user data

Your data is stored on secure servers in the United States provided by Supabase and Vercel. While we implement strong security measures, no method of electronic transmission or storage is 100% secure, and we cannot guarantee absolute security.

6. Data Sharing

We do not sell your personal information. We may share data only in these circumstances:

  • Service Providers: Third-party services that help us operate (listed in Section 4)
  • Legal Requirements: When required by law, subpoena, or government request
  • Safety: To protect the rights, safety, or property of BookOfMe, our users, or the public
  • Business Transfers: In connection with a merger, acquisition, or sale of assets (with notice)

7. Children's Privacy (COPPA Compliance)

BookOfMe is designed for adults (18+) to create content for children.Children do not use our Service directly, and we do not knowingly collect personal information from children under 13 years of age.

  • All accounts must be created by adults (18 years or older)
  • We do not collect photos or images of children
  • Character descriptions are provided by the adult account holder
  • We do not have actual knowledge that any user is under 13

If you believe a child under 13 has created an account or provided personal information, please contact us immediately at privacy@bookofme.io and we will promptly delete such information.

8. Your Rights

Depending on your location, you may have the following rights:

  • Access: Request a copy of your personal data
  • Correction: Request correction of inaccurate data
  • Deletion: Request deletion of your account and associated data
  • Export: Download your stories in PDF format
  • Opt-out: Unsubscribe from marketing communications
  • Objection: Object to certain processing of your data

To exercise these rights, please contact us at privacy@bookofme.io. We will respond within 30 days.

9. California Privacy Rights (CCPA)

California residents have additional rights under the California Consumer Privacy Act:

  • Right to know what personal information is collected
  • Right to know if personal information is sold or disclosed and to whom
  • Right to opt out of the sale of personal information (we do not sell your data)
  • Right to request deletion of personal information
  • Right to non-discrimination for exercising these rights

10. International Data Transfers

Your information may be transferred to and processed in the United States and other countries where our service providers operate. These countries may have different data protection laws. By using our Service, you consent to such transfers. We ensure appropriate safeguards are in place to protect your data in accordance with this Privacy Policy.

11. Data Retention

We retain your data for as long as your account is active. Upon account deletion request, your personal data and generated content will be permanently removed within 30 days, except where retention is required by law (e.g., financial records for tax purposes).

12. Cookies and Tracking

We use only essential cookies necessary for the Service to function:

  • Authentication cookies (to keep you logged in)
  • Session cookies (to maintain your preferences)
  • Security cookies (to prevent fraud)

We do not use: Advertising cookies, third-party tracking cookies, or analytics that track you across other websites.

13. Changes to This Policy

We may update this Privacy Policy periodically. We will notify you of material changes by posting the updated policy on this page, updating the "Last Updated" date, and/or sending you an email notification. We encourage you to review this policy periodically.

14. Contact Us

If you have questions about this Privacy Policy, wish to exercise your rights, or have concerns about how we handle your data, please contact us: