Legal

Privacy Policy

Effective date: March 24, 2026

1. Introduction

We take your privacy seriously. This Privacy Policy explains what personal data Litbook collects, why we collect it, how we use it, and your rights regarding it. By using Litbook, you agree to the practices described in this policy. If you have questions, contact us at hello@litbook.app.

2. Information We Collect

We collect the following categories of information:

Account information

Your name, email address, and (if you sign in via Google OAuth) your Google profile photo.

Usage data

Lessons you generate, vocabulary progress, streak data, lesson preferences, and CEFR level settings.

Payment information

Payments are processed securely by Stripe. We never store your card details — only a Stripe customer ID and subscription status.

Communications

If you email us at hello@litbook.app, we keep that correspondence to respond and improve our support.

3. How We Use Your Data

  • To provide, maintain, and improve the Litbook service.
  • To personalise AI-generated lessons to your level, topics, and weak spots.
  • To send essential transactional emails (e.g. receipts, account notices). We do not send marketing emails without your explicit consent.
  • To produce aggregate, anonymised analytics that help us understand how users engage with the Service.
  • To comply with legal obligations.

4. Data Sharing

We do not sell your personal data. We share your data only with the following third-party processors, all of whom are GDPR-compliant:

  • OpenAI — used to generate lesson texts and exercises.
  • Supabase — our database and authentication provider.
  • Stripe — payment processing.
  • Vercel — hosting and infrastructure.

Each processor has entered into data processing agreements and is bound by appropriate safeguards.

5. Data Retention

  • We retain your account data for as long as your account is active, plus 30 days after deletion (to allow recovery if requested).
  • After that period, your personal data is permanently deleted from our systems.
  • You can request a full export of your data or immediate deletion at any time by contacting hello@litbook.app.

6. Your Rights (GDPR)

If you are located in the European Economic Area, you have the following rights under GDPR:

  • Access — request a copy of the personal data we hold about you.
  • Rectification — ask us to correct inaccurate data.
  • Erasure — request deletion of your personal data (“right to be forgotten”).
  • Restriction — ask us to limit how we process your data.
  • Portability — receive your data in a structured, machine-readable format.
  • Objection — object to processing based on legitimate interests.

To exercise any of these rights, contact us at hello@litbook.app. You also have the right to lodge a complaint with your national data protection supervisory authority.

7. Cookies

  • We use essential session cookies required to keep you logged in and the Service functioning.
  • We do not use third-party tracking cookies or advertising cookies.
  • We do not use analytics cookies without your consent.
  • You can control cookies through your browser settings; disabling essential cookies may affect Service functionality.

8. Security

  • All data is encrypted in transit using TLS and encrypted at rest.
  • Access to your personal data is restricted to authorised personnel only.
  • In the event of a data breach that affects your rights, we will notify you within 72 hours of becoming aware.
  • While we take reasonable precautions, no system is completely secure; please safeguard your account credentials.

9. Children

The Service is not directed at children under the age of 16. We do not knowingly collect personal data from anyone under 16. If you believe a minor has provided us with personal data, please contact us at hello@litbook.app and we will promptly delete it.

10. Changes to This Policy

We will notify you of material changes to this Privacy Policy via email or in-app notice before the changes take effect. Your continued use of the Service after the effective date of any updated policy constitutes your acceptance of those changes.

11. Contact / DPO

For any privacy-related questions, data requests, or concerns, contact us at hello@litbook.app. This address also serves as the point of contact for data protection enquiries.