Privacy Policy

Last updated: January 2025

Introduction

Booky ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our browser extension and associated services.

Data We Collect

We collect the following types of information: - Account information: email address and authentication data when you create an account. - Bookmark data: URLs, page titles, and metadata of pages you bookmark. - AI-generated data: categories, tags, and summaries produced by AI analysis of your bookmarks. - Usage data: browsing history within the extension, feature usage patterns, and preferences. - Device data: browser type, extension version, and operating system for compatibility purposes.

How We Use Your Data

We use your information to: - Provide and maintain the Booky extension and its features. - Categorize and tag your bookmarks using AI. - Sync your bookmarks across devices. - Improve our services and develop new features. - Communicate with you about updates and support. - Process payments and manage subscriptions.

AI Features and Data Processing

When using our built-in AI categorization, bookmark metadata (title, URL) is sent to our AI processing pipeline via secure edge functions. We use third-party AI providers (OpenRouter) to analyze this data. If you use the Bring Your Own Key (BYOK) feature, your bookmark data is sent directly from your browser to the AI provider using your personal API key. In this case, we do not have access to the AI processing data.

Third-Party Services

We use the following third-party services: - Supabase: database hosting, authentication, and cloud functions. - OpenRouter: AI model providers for bookmark categorization. - Payment processors: for subscription management. Each of these services has their own privacy policy governing data handling.

Data Security

We implement industry-standard security measures including: - Row-level security (RLS) on all database tables. - Encrypted data transmission (TLS/SSL). - Secure authentication via Supabase Auth. - No storage of raw API keys on our servers when using BYOK. While we strive to protect your data, no method of electronic transmission or storage is 100% secure.

Data Retention

We retain your data for as long as your account is active or as needed to provide services. If you delete your account, we will remove your personal data within 30 days, except where retention is required by law.

Your Rights

You have the right to: - Access and download your bookmark data at any time via the export feature. - Request deletion of your account and associated data. - Opt out of AI categorization and use manual organization. - Update your personal information through your account settings. - Withdraw consent for data processing at any time.

Cookies and Local Storage

The Booky extension uses browser local storage to cache bookmark data for offline access and performance. We do not use tracking cookies. Authentication tokens are stored securely in the browser's extension storage.

Children's Privacy

Booky is not intended for use by children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us so we can remove it.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes through the extension or via email. Your continued use of Booky after changes constitutes acceptance of the updated policy.

Contact Us

If you have questions about this Privacy Policy or your data, please contact us through the contact form on our website or email us at support@getbooky.app.