Privacy Policy

Privacy Policy

Effective Date: August 7, 2026

Effective Date: August 7, 2026

Last Updated: August 7, 2026

Last Updated: August 7, 2026

Pageling is a reading companion from ARTIFACTS LLP that helps you capture, organise, revisit, and learn from

passages, highlights, notes, books, and articles. This Privacy Policy explains what personal data Pageling handles,

why it is handled, when it is shared, how long it is kept, and the choices available to you.


Privacy at a Glance


- Your library content belongs to you. ARTIFACTS does not claim ownership of your highlights, notes, scans, or

imported content.

- Core text recognition is performed on your device. A page image used for ordinary OCR is not uploaded to

ARTIFACTS merely to recognise its text.

- The optional Smart Scan feature sends the selected text, selection coordinates, book title when available, and a

reduced copy of the page image to ARTIFACTS's secure cloud function and Google Gemini so the selection can

be corrected using its surrounding context.

- We do not sell personal data and do not use your reading content for advertising.

- We do not use third-party advertising SDKs or collect an advertising identifier in the current version of Pageling.

- Cloud sync, analytics, AI features, connected imports, and notifications are explained below so you can make

informed choices.

- Pageling is intended for users aged 18 or older while it includes the current Google Gemini Smart Scan service.

- You may delete individual content or delete your Pageling account and associated cloud data.


1. ScopeWho is responsible for Pageling


The data controller/data fiduciary responsible for Pageling is:

ARTIFACTS LLP LLPIN: ACS-5971 Location: Bangalore, Karnataka, India Privacy and legal enquiries:

contact@artifacts.software Product support: support@artifacts.software Website: https://artifacts.software/


2. Scope


This Policy applies to the Pageling mobile applications, Pageling web pages that link to it, Pageling support, and

related cloud features (together, "Pageling"). The general ARTIFACTS Privacy Policy also applies to company-level

website and communication activity. This Pageling Policy controls if the two policies conflict about Pageling.

Third-party services have their own privacy practices. For example, Apple, Google, Amazon Kindle, Instapaper, and

a book-information provider govern information they independently receive from you.


3. Information Pageling handles

3.1 Account and profile information

When you sign in, Pageling may receive and store your name, email address, profile image, account identifier,

sign-in provider, authentication tokens, and basic account settings. Google Sign-In information is received from

Google when you choose that method. We use this information to authenticate you, keep your data separated from

other users, support cloud features, and secure your account. We do not receive your Google password. Authentication credentials are handled by the sign-in provider and Firebase Authentication.

3.2 Library and reading information

Pageling may process information you create or add, including:

- books, articles, authors, editions, cover references, and identifiers;

- highlights, passages, notes, tags, favourites, folders, and reading status;

- streaks, reading activity, goals, progress, and aggregate library counts;

- recommendations, wish-list entries, and preferences; and

- dates, ordering, and other metadata needed to organise and sync the library.

This information is stored in the app's protected local storage. Some library information is also stored in Firebase

Firestore when cloud sync is available and enabled for your account or plan. Cloud records are separated by your

Pageling account identifier.

3.3 Camera, photo library, barcode, and ordinary OCR data

If you grant permission, Pageling can use the camera or photo library to capture or choose a book page, identify a

book barcode, or attach content. Pageling's standard OCR uses Google ML Kit on the device to recognise text. For

this ordinary OCR path, the page image and OCR operation remain on the device and are not uploaded to

ARTIFACTS solely for text recognition.

The recognised text, the portion you choose to save, selection rectangles, and related book information become

part of your library only when you save them. Device-local image references may be retained on the device as

needed by the feature. They are not included in normal Firestore library sync unless Pageling clearly tells you

otherwise before an upload.

Camera and photo-library access is optional. You can deny or later revoke it in device settings and continue using

features that do not need that permission.

3.4 Optional Smart Scan AI processing

Smart Scan is optional and is not required for standard on-device OCR. If you affirmatively choose Smart Scan,

Pageling sends the following for the page you selected:

- the OCR text selected on the device;

- a bounded, reduced-resolution copy of the full page or relevant page area, which may still contain readable

surrounding text;

- selection coordinates or rectangles needed to identify the chosen passage;

- the book title when available; and

- technical request data, such as request time, app version, account entitlement, and quota usage.

The request travels through a Firebase Cloud Function operated for ARTIFACTS and is processed by the Google

Gemini API to correct or interpret the selection in context. ARTIFACTS does not save the submitted page image or

raw prompt in the Pageling database. We retain limited operational metadata, such as request counts, result status,

latency, and input-size measurements, to enforce quotas, troubleshoot failures, prevent abuse, and control cost.

ARTIFACTS will make Smart Scan available in a public production build only after verifying that the project uses an

active billing-enabled paid Gemini API service. Under Google's current terms for that paid service, Google states

that submitted prompts and responses are not used to improve its products. Google may process or temporarily

retain data for security, abuse monitoring, and legally required disclosures under its applicable terms. ARTIFACTS

does not intentionally enable optional prompt sharing, model-improvement, or project-level prompt logging for

Pageling; those production settings must be verified before public release.

Smart Scan is available only to users aged 18 or older. Do not use it for material that you do not want processed in

the cloud. Review the preview carefully because nearby text may be readable in the reduced page image. You can

cancel without sending the request and continue with ordinary on-device OCR.

3.5 Connected imports

Pageling may let you open Amazon Kindle or Instapaper in an embedded browser and import supported highlights,

book or article metadata, and related reading information at your direction. You sign in on the provider's page.

ARTIFACTS does not intentionally read or store the password you enter there.

Provider session cookies and web-storage data may remain on your device so that the connected service can keep

you signed in. The provider receives the information that a normal visit to its site would receive, such as your IP

address, browser or device information, and account activity. You can sign out of the provider, clear the connection

in Pageling where available, or clear app data to remove local session information.

Content you choose to import becomes Pageling library content and may sync like other library content if cloud sync is enabled. Amazon, Instapaper, and other providers are independent services governed by their own terms and privacy policies.

3.6 Search, catalogue, and recommendation requests

To find book details, covers, editions, or recommendations, Pageling may send search queries and book metadata

such as title, author, genre, ISBN, or barcode to Google Books, Open Library, or another catalogue provider

identified in the app. We do not intentionally send the text of your private highlights or notes for ordinary catalogue

searches. The provider may receive technical information such as your IP address and request metadata according to its own policy.

3.7 Purchases and subscriptions

If you buy a subscription, one-time product, or other paid entitlement, Apple App Store or Google Play processes

your payment. ARTIFACTS does not receive your full payment-card number. Pageling and RevenueCat receive

purchase and entitlement information such as product identifier, store, transaction or original-transaction reference, purchase status, renewal or expiry status, offer eligibility, and a Pageling app-user identifier. We use it to unlock features, restore purchases, provide support, prevent fraud, and maintain accounting records. Apple, Google, and RevenueCat process information under their own privacy terms.

3.8 Analytics, diagnostics, and security information

Pageling may process technical and usage information needed to operate and secure the app, including app

version, operating system, device model, language, time zone, installation identifier, feature state, performance

measurements, crash stack traces, error logs, request status, and security signals.

Firebase Crashlytics is enabled in release builds to help diagnose crashes. Crash reports may include installation

identifiers, device and app metadata, and technical traces around a failure. Pageling does not intentionally attach

your Firebase user identifier or the text of highlights, notes, searches, tags, or scans to Crashlytics reports.

The Firebase Analytics SDK and limited event instrumentation are included in the app, but Analytics collection is

currently disabled in Pageling's native configuration and again at app startup. The current app does not present an

analytics opt-in control. ARTIFACTS will not enable optional product analytics in a public build unless Pageling first

provides a user-visible choice and a way to withdraw it. If you opt in after such a control is introduced, the events

are designed not to include raw reading content, search terms, tag names, content identifiers, or your Firebase user

identifier. Essential security, purchase, and crash processing is separate from optional product analytics.

3.9 Notifications

If you enable notifications, Pageling schedules reminders on your device. A notification may include a saved

highlight or reminder text, which can be visible on the lock screen to anyone who can see your device. You can

disable notifications or hide notification previews in Pageling or system settings. Pageling currently uses local

scheduling for these reminders; if remote push notifications are introduced, this Policy will be updated before

materially different data is used.

3.10 Support and communications

When you contact us, we process your email address, name, message, attachments, support history, and

information reasonably needed to investigate the issue. Please avoid sending page images, copyrighted passages,

passwords, or sensitive personal information unless necessary for the support request.

Send ordinary product and technical support requests to support@artifacts.software. Send privacy, legal,

copyright, and personal-data requests to contact@artifacts.software.

4. Information Pageling does not currently seek

The current version of Pageling is not designed to access your contacts, microphone, precise location, health

records, financial account credentials, or advertising identifier. It does not contain a third-party advertising SDK. If a

future feature requires a new sensitive permission or materially different use, Pageling will explain it at the point of

collection and this Policy and the relevant app-store disclosures will be updated.

5. Why we process information

Depending on the feature and applicable law, we process information to:

- provide the app, account, OCR, library, sync, import, discovery, purchase, and support functions you request;

- perform our contract with you and deliver purchased entitlements;

- act on your acknowledgement or consent for optional Smart Scan, future optional analytics, notifications, photos,

and camera permissions where consent is required;

- secure Pageling, authenticate accounts, enforce quotas, prevent fraud and abuse, and diagnose failures;

- improve reliability, accessibility, usability, and feature performance using appropriately limited data;

- communicate service, safety, account, and material policy information;

- comply with law, tax, accounting, legal-process, and consumer-protection duties; and

- establish, exercise, or defend legal claims.

Where we rely on legitimate interests, they are the limited interests described above, balanced against your rights.

Where local law requires consent, we rely on consent instead. You can withdraw optional consent prospectively

without affecting processing that was lawful before withdrawal.

6. When information is disclosed

We disclose information only as reasonably necessary for the purposes in this Policy:

- Google Firebase: authentication, cloud database, cloud functions, app integrity/security features, diagnostics, and optional analytics.

-. Google Gemini API: optional Smart Scan processing after your choice, as described in Section 3.4.

- Google Sign-In: authentication when you choose Google.

- Apple App Store and Google Play: app distribution, purchases, refunds, subscription management, safety, and

platform compliance.

- RevenueCat: purchase validation, entitlement management, restoration, and subscription analytics.

- Google Books, Open Library, and similar catalogue providers: book lookup, cover, edition, barcode, and

recommendation requests.

- Amazon Kindle, Instapaper, or another connected provider: only when you open or direct an import from that

provider.
- Professional advisers and infrastructure suppliers: limited access where reasonably necessary for legal,

security, accounting, email, hosting, or support services, subject to appropriate duties.

- Authorities or affected parties: when reasonably necessary to comply with valid law or legal process, protect

people, investigate abuse, secure Pageling, or protect legal rights.

- A successor organisation: as part of a genuine merger, financing, reorganisation, insolvency, or sale, subject to

this Policy, notice where required, and applicable law.

We do not sell personal data. We do not disclose your reading content to data brokers or use it for targeted

advertising.

7. On-device storage, cloud sync, and control

Pageling is designed so that important reading functions use on-device storage. An account identifier separates

local records belonging to different users. Cloud sync may copy eligible library records to Firestore so they can be

restored or used across supported devices.

Deleting content in Pageling removes it from the active local library and, where sync applies, sends a corresponding

deletion to the cloud. Sync timing, offline devices, backups, and technical failures can delay removal. Avoid sharing

an account with another person. If you use multiple devices, connect each device before account deletion so it can

receive the latest state, and remove app data from any device that remains offline.

8. Retention

We retain information only for as long as reasonably necessary for the relevant purpose:

- Local library data: until you delete it, delete the account and local data, clear app storage, or uninstall the app,

subject to how the operating system handles files and backups.

- Cloud library and profile data: while your account is active and until you delete the item or account, followed by a

reasonable period for deletion from active systems and provider backups.

- Smart Scan content: not stored in the Pageling database; it is processed transiently to return the result. Google

may temporarily retain API data for abuse monitoring as stated in its terms. Limited quota, security, and request

metadata may be retained for up to 12 months unless needed longer for an active security or legal matter.

- Crashlytics data: generally retained by Firebase for 90 days.

- Optional analytics: retained only for a proportionate product-analysis period and ordinarily no longer than 14

months, unless aggregated or de-identified.

- Purchase and entitlement records: while needed to provide or restore the entitlement and afterward as required

for accounting, fraud prevention, tax, dispute, or legal obligations.

- Support records: ordinarily up to 24 months after the issue is resolved, and longer only when reasonably needed

for a continuing relationship, safety, dispute, or law.

Deletion may not immediately remove encrypted backup copies, security logs, transaction records held by an app

store, or information that law requires us or another provider to retain. Such information remains protected, is

isolated from ordinary use where feasible, and is removed or de-identified when the applicable need expires.

9. Your choices and rights

Depending on your location, you may have rights to receive notice, access or obtain a copy of personal data,

correct inaccurate data, delete data, withdraw consent, restrict or object to some processing, nominate another

person where applicable, and complain to a privacy authority.

You can use Pageling's controls to edit or delete library items, manage sync, change notification permissions,

disconnect supported imports, restore purchases where available, or delete your account. If optional analytics is introduced later, Pageling will also provide a way to manage that choice. You may email

contact@artifacts.software for a privacy request or support@artifacts.software for product assistance. We may

need to verify that the request concerns your account. We will not discriminate against you for exercising a privacy

right.

Account deletion

Pageling provides an in-app account-deletion control. Because deletion is security-sensitive, you may need to sign

in again. You can also begin an account-deletion request at https://artifacts.software/pageling/delete-account or by emailing contact@artifacts.software.

Deleting the account is intended to delete the Firebase Authentication account and Pageling cloud records

associated with it, including synced library content and profile information, except information that must be retained

for a legal reason. It does not automatically cancel an Apple or Google subscription; cancel the subscription in the

applicable store before or after deleting the account. It also cannot delete independent records held by Apple,

Google, Amazon, Instapaper, or another third party under its own account and policy.

Account deletion is irreversible once completed. Export or copy anything you want to keep first. Removal from

active systems begins promptly, but provider backups and authentication recovery systems may take additional

time to age out.

10. International processing

ARTIFACTS is established in India. Providers supporting Pageling may process information in India, the United

States, the European Economic Area, and other countries where they or their subprocessors operate. Privacy

protections can differ by country. Where required, we use contractual, organisational, or other recognised

safeguards for transfers and remain responsible for choosing providers appropriate to the processing.

11. Security

We use reasonable administrative, technical, and organisational safeguards designed for the nature of the

information, including encrypted network transport, platform-protected local storage, access controls,

account-scoped cloud rules, restricted production access, data minimisation, dependency review, and monitoring

for security failures. No service or storage method is perfectly secure. Keep your device and sign-in account protected, use device-level encryption and a screen lock, hide sensitive notification previews, and notify us promptly if you believe your account or data has been compromised.

12. Age eligibility and children

Pageling is a general-purpose reading tool intended for adults. It is not directed to, and must not be used by,

anyone under 18. This age position avoids collecting children's personal data without the verifiable parental-consent

systems that may be required under applicable law and is also required for the current Google Gemini service used

by Smart Scan.

We do not knowingly collect personal data from a person under 18 or use children's personal data for targeted

advertising or profiling. If you believe a person under 18 created an account or provided personal data, email

contact@artifacts.software. We will investigate, restrict the account where appropriate, and delete the information when required.

13. Copyright and sensitive information

Only scan, save, or import material that you are authorised to use. Pageling is a personal organisation tool; it does

not grant permission to reproduce or distribute a book or article. Avoid placing highly sensitive personal information

in scans, notes, tags, or Smart Scan requests. If you choose to do so, Pageling handles it under this Policy, but the

service is not designed as a medical-record, financial-record, or legal-document repository.

14. Changes to this Policy

We may update this Policy as Pageling, its providers, or the law changes. The current version will show its effective

date. For a material change, we will provide reasonable advance or in-app notice when required and seek fresh

consent before a new use when applicable law requires it. An update will not retroactively convert private reading

content into advertising data or transfer ownership of your content to ARTIFACTS.

15. Contact and grievance handling

Questions, privacy requests, and grievances may be sent to:

Privacy and Grievance Contact ARTIFACTS LLP Privacy and legal enquiries: contact@artifacts.software

Product support: support@artifacts.software Location: Bangalore, Karnataka, India

Please include "Pageling privacy" in the subject line and enough information for us to understand the request. We

will acknowledge and address it within the period required by applicable law. If you are not satisfied, you may

contact the competent privacy authority in your jurisdiction.

ARTIFACTS LLP

ARTIFACTS LLP

Email: support@artifact.software

Email: support@artifact.software