Pageling is a reading companion from ARTIFACTS LLP that helps you capture, organise, revisit, and learn from
passages, highlights, notes, books, and articles. This Privacy Policy explains what personal data Pageling handles,
why it is handled, when it is shared, how long it is kept, and the choices available to you.
Privacy at a Glance
- Your library content belongs to you. ARTIFACTS does not claim ownership of your highlights, notes, scans, or
imported content.
- Core text recognition is performed on your device. A page image used for ordinary OCR is not uploaded to
ARTIFACTS merely to recognise its text.
- The optional Smart Scan feature sends the selected text, selection coordinates, book title when available, and a
reduced copy of the page image to ARTIFACTS's secure cloud function and Google Gemini so the selection can
be corrected using its surrounding context.
- We do not sell personal data and do not use your reading content for advertising.
- We do not use third-party advertising SDKs or collect an advertising identifier in the current version of Pageling.
- Cloud sync, analytics, AI features, connected imports, and notifications are explained below so you can make
informed choices.
- Pageling is intended for users aged 18 or older while it includes the current Google Gemini Smart Scan service.
- You may delete individual content or delete your Pageling account and associated cloud data.
1. ScopeWho is responsible for Pageling
The data controller/data fiduciary responsible for Pageling is:
ARTIFACTS LLP LLPIN: ACS-5971 Location: Bangalore, Karnataka, India Privacy and legal enquiries:
contact@artifacts.software Product support: support@artifacts.software Website: https://artifacts.software/
2. Scope
This Policy applies to the Pageling mobile applications, Pageling web pages that link to it, Pageling support, and
related cloud features (together, "Pageling"). The general ARTIFACTS Privacy Policy also applies to company-level
website and communication activity. This Pageling Policy controls if the two policies conflict about Pageling.
Third-party services have their own privacy practices. For example, Apple, Google, Amazon Kindle, Instapaper, and
a book-information provider govern information they independently receive from you.
3. Information Pageling handles
3.1 Account and profile information
When you sign in, Pageling may receive and store your name, email address, profile image, account identifier,
sign-in provider, authentication tokens, and basic account settings. Google Sign-In information is received from
Google when you choose that method. We use this information to authenticate you, keep your data separated from
other users, support cloud features, and secure your account. We do not receive your Google password. Authentication credentials are handled by the sign-in provider and Firebase Authentication.
3.2 Library and reading information
Pageling may process information you create or add, including:
- books, articles, authors, editions, cover references, and identifiers;
- highlights, passages, notes, tags, favourites, folders, and reading status;
- streaks, reading activity, goals, progress, and aggregate library counts;
- recommendations, wish-list entries, and preferences; and
- dates, ordering, and other metadata needed to organise and sync the library.
This information is stored in the app's protected local storage. Some library information is also stored in Firebase
Firestore when cloud sync is available and enabled for your account or plan. Cloud records are separated by your
Pageling account identifier.
3.3 Camera, photo library, barcode, and ordinary OCR data
If you grant permission, Pageling can use the camera or photo library to capture or choose a book page, identify a
book barcode, or attach content. Pageling's standard OCR uses Google ML Kit on the device to recognise text. For
this ordinary OCR path, the page image and OCR operation remain on the device and are not uploaded to
ARTIFACTS solely for text recognition.
The recognised text, the portion you choose to save, selection rectangles, and related book information become
part of your library only when you save them. Device-local image references may be retained on the device as
needed by the feature. They are not included in normal Firestore library sync unless Pageling clearly tells you
otherwise before an upload.
Camera and photo-library access is optional. You can deny or later revoke it in device settings and continue using
features that do not need that permission.
3.4 Optional Smart Scan AI processing
Smart Scan is optional and is not required for standard on-device OCR. If you affirmatively choose Smart Scan,
Pageling sends the following for the page you selected:
- the OCR text selected on the device;
- a bounded, reduced-resolution copy of the full page or relevant page area, which may still contain readable
surrounding text;
- selection coordinates or rectangles needed to identify the chosen passage;
- the book title when available; and
- technical request data, such as request time, app version, account entitlement, and quota usage.
The request travels through a Firebase Cloud Function operated for ARTIFACTS and is processed by the Google
Gemini API to correct or interpret the selection in context. ARTIFACTS does not save the submitted page image or
raw prompt in the Pageling database. We retain limited operational metadata, such as request counts, result status,
latency, and input-size measurements, to enforce quotas, troubleshoot failures, prevent abuse, and control cost.
ARTIFACTS will make Smart Scan available in a public production build only after verifying that the project uses an
active billing-enabled paid Gemini API service. Under Google's current terms for that paid service, Google states
that submitted prompts and responses are not used to improve its products. Google may process or temporarily
retain data for security, abuse monitoring, and legally required disclosures under its applicable terms. ARTIFACTS
does not intentionally enable optional prompt sharing, model-improvement, or project-level prompt logging for
Pageling; those production settings must be verified before public release.
Smart Scan is available only to users aged 18 or older. Do not use it for material that you do not want processed in
the cloud. Review the preview carefully because nearby text may be readable in the reduced page image. You can
cancel without sending the request and continue with ordinary on-device OCR.
3.5 Connected imports
Pageling may let you open Amazon Kindle or Instapaper in an embedded browser and import supported highlights,
book or article metadata, and related reading information at your direction. You sign in on the provider's page.
ARTIFACTS does not intentionally read or store the password you enter there.
Provider session cookies and web-storage data may remain on your device so that the connected service can keep
you signed in. The provider receives the information that a normal visit to its site would receive, such as your IP
address, browser or device information, and account activity. You can sign out of the provider, clear the connection
in Pageling where available, or clear app data to remove local session information.
Content you choose to import becomes Pageling library content and may sync like other library content if cloud sync is enabled. Amazon, Instapaper, and other providers are independent services governed by their own terms and privacy policies.
3.6 Search, catalogue, and recommendation requests
To find book details, covers, editions, or recommendations, Pageling may send search queries and book metadata
such as title, author, genre, ISBN, or barcode to Google Books, Open Library, or another catalogue provider
identified in the app. We do not intentionally send the text of your private highlights or notes for ordinary catalogue
searches. The provider may receive technical information such as your IP address and request metadata according to its own policy.
3.7 Purchases and subscriptions
If you buy a subscription, one-time product, or other paid entitlement, Apple App Store or Google Play processes
your payment. ARTIFACTS does not receive your full payment-card number. Pageling and RevenueCat receive
purchase and entitlement information such as product identifier, store, transaction or original-transaction reference, purchase status, renewal or expiry status, offer eligibility, and a Pageling app-user identifier. We use it to unlock features, restore purchases, provide support, prevent fraud, and maintain accounting records. Apple, Google, and RevenueCat process information under their own privacy terms.
3.8 Analytics, diagnostics, and security information
Pageling may process technical and usage information needed to operate and secure the app, including app
version, operating system, device model, language, time zone, installation identifier, feature state, performance
measurements, crash stack traces, error logs, request status, and security signals.
Firebase Crashlytics is enabled in release builds to help diagnose crashes. Crash reports may include installation
identifiers, device and app metadata, and technical traces around a failure. Pageling does not intentionally attach
your Firebase user identifier or the text of highlights, notes, searches, tags, or scans to Crashlytics reports.
The Firebase Analytics SDK and limited event instrumentation are included in the app, but Analytics collection is
currently disabled in Pageling's native configuration and again at app startup. The current app does not present an
analytics opt-in control. ARTIFACTS will not enable optional product analytics in a public build unless Pageling first
provides a user-visible choice and a way to withdraw it. If you opt in after such a control is introduced, the events
are designed not to include raw reading content, search terms, tag names, content identifiers, or your Firebase user
identifier. Essential security, purchase, and crash processing is separate from optional product analytics.
3.9 Notifications
If you enable notifications, Pageling schedules reminders on your device. A notification may include a saved
highlight or reminder text, which can be visible on the lock screen to anyone who can see your device. You can
disable notifications or hide notification previews in Pageling or system settings. Pageling currently uses local
scheduling for these reminders; if remote push notifications are introduced, this Policy will be updated before
materially different data is used.
3.10 Support and communications
When you contact us, we process your email address, name, message, attachments, support history, and
information reasonably needed to investigate the issue. Please avoid sending page images, copyrighted passages,
passwords, or sensitive personal information unless necessary for the support request.
Send ordinary product and technical support requests to support@artifacts.software. Send privacy, legal,
copyright, and personal-data requests to contact@artifacts.software.
4. Information Pageling does not currently seek
The current version of Pageling is not designed to access your contacts, microphone, precise location, health
records, financial account credentials, or advertising identifier. It does not contain a third-party advertising SDK. If a
future feature requires a new sensitive permission or materially different use, Pageling will explain it at the point of
collection and this Policy and the relevant app-store disclosures will be updated.
5. Why we process information
Depending on the feature and applicable law, we process information to:
- provide the app, account, OCR, library, sync, import, discovery, purchase, and support functions you request;
- perform our contract with you and deliver purchased entitlements;
- act on your acknowledgement or consent for optional Smart Scan, future optional analytics, notifications, photos,
and camera permissions where consent is required;
- secure Pageling, authenticate accounts, enforce quotas, prevent fraud and abuse, and diagnose failures;
- improve reliability, accessibility, usability, and feature performance using appropriately limited data;
- communicate service, safety, account, and material policy information;
- comply with law, tax, accounting, legal-process, and consumer-protection duties; and
- establish, exercise, or defend legal claims.
Where we rely on legitimate interests, they are the limited interests described above, balanced against your rights.
Where local law requires consent, we rely on consent instead. You can withdraw optional consent prospectively
without affecting processing that was lawful before withdrawal.
6. When information is disclosed
We disclose information only as reasonably necessary for the purposes in this Policy:
- Google Firebase: authentication, cloud database, cloud functions, app integrity/security features, diagnostics, and optional analytics.
-. Google Gemini API: optional Smart Scan processing after your choice, as described in Section 3.4.
- Google Sign-In: authentication when you choose Google.
- Apple App Store and Google Play: app distribution, purchases, refunds, subscription management, safety, and
platform compliance.
- RevenueCat: purchase validation, entitlement management, restoration, and subscription analytics.
- Google Books, Open Library, and similar catalogue providers: book lookup, cover, edition, barcode, and
recommendation requests.
- Amazon Kindle, Instapaper, or another connected provider: only when you open or direct an import from that
provider.
- Professional advisers and infrastructure suppliers: limited access where reasonably necessary for legal,
security, accounting, email, hosting, or support services, subject to appropriate duties.
- Authorities or affected parties: when reasonably necessary to comply with valid law or legal process, protect
people, investigate abuse, secure Pageling, or protect legal rights.
- A successor organisation: as part of a genuine merger, financing, reorganisation, insolvency, or sale, subject to
this Policy, notice where required, and applicable law.
We do not sell personal data. We do not disclose your reading content to data brokers or use it for targeted
advertising.
7. On-device storage, cloud sync, and control
Pageling is designed so that important reading functions use on-device storage. An account identifier separates
local records belonging to different users. Cloud sync may copy eligible library records to Firestore so they can be
restored or used across supported devices.
Deleting content in Pageling removes it from the active local library and, where sync applies, sends a corresponding
deletion to the cloud. Sync timing, offline devices, backups, and technical failures can delay removal. Avoid sharing
an account with another person. If you use multiple devices, connect each device before account deletion so it can
receive the latest state, and remove app data from any device that remains offline.
8. Retention
We retain information only for as long as reasonably necessary for the relevant purpose:
- Local library data: until you delete it, delete the account and local data, clear app storage, or uninstall the app,
subject to how the operating system handles files and backups.
- Cloud library and profile data: while your account is active and until you delete the item or account, followed by a
reasonable period for deletion from active systems and provider backups.
- Smart Scan content: not stored in the Pageling database; it is processed transiently to return the result. Google
may temporarily retain API data for abuse monitoring as stated in its terms. Limited quota, security, and request
metadata may be retained for up to 12 months unless needed longer for an active security or legal matter.
- Crashlytics data: generally retained by Firebase for 90 days.
- Optional analytics: retained only for a proportionate product-analysis period and ordinarily no longer than 14
months, unless aggregated or de-identified.
- Purchase and entitlement records: while needed to provide or restore the entitlement and afterward as required
for accounting, fraud prevention, tax, dispute, or legal obligations.
- Support records: ordinarily up to 24 months after the issue is resolved, and longer only when reasonably needed
for a continuing relationship, safety, dispute, or law.
Deletion may not immediately remove encrypted backup copies, security logs, transaction records held by an app
store, or information that law requires us or another provider to retain. Such information remains protected, is
isolated from ordinary use where feasible, and is removed or de-identified when the applicable need expires.
9. Your choices and rights
Depending on your location, you may have rights to receive notice, access or obtain a copy of personal data,
correct inaccurate data, delete data, withdraw consent, restrict or object to some processing, nominate another
person where applicable, and complain to a privacy authority.
You can use Pageling's controls to edit or delete library items, manage sync, change notification permissions,
disconnect supported imports, restore purchases where available, or delete your account. If optional analytics is introduced later, Pageling will also provide a way to manage that choice. You may email
contact@artifacts.software for a privacy request or support@artifacts.software for product assistance. We may
need to verify that the request concerns your account. We will not discriminate against you for exercising a privacy
right.
Account deletion
Pageling provides an in-app account-deletion control. Because deletion is security-sensitive, you may need to sign
in again. You can also begin an account-deletion request at https://artifacts.software/pageling/delete-account or by emailing contact@artifacts.software.
Deleting the account is intended to delete the Firebase Authentication account and Pageling cloud records
associated with it, including synced library content and profile information, except information that must be retained
for a legal reason. It does not automatically cancel an Apple or Google subscription; cancel the subscription in the
applicable store before or after deleting the account. It also cannot delete independent records held by Apple,
Google, Amazon, Instapaper, or another third party under its own account and policy.
Account deletion is irreversible once completed. Export or copy anything you want to keep first. Removal from
active systems begins promptly, but provider backups and authentication recovery systems may take additional
time to age out.
10. International processing
ARTIFACTS is established in India. Providers supporting Pageling may process information in India, the United
States, the European Economic Area, and other countries where they or their subprocessors operate. Privacy
protections can differ by country. Where required, we use contractual, organisational, or other recognised
safeguards for transfers and remain responsible for choosing providers appropriate to the processing.
11. Security
We use reasonable administrative, technical, and organisational safeguards designed for the nature of the
information, including encrypted network transport, platform-protected local storage, access controls,
account-scoped cloud rules, restricted production access, data minimisation, dependency review, and monitoring
for security failures. No service or storage method is perfectly secure. Keep your device and sign-in account protected, use device-level encryption and a screen lock, hide sensitive notification previews, and notify us promptly if you believe your account or data has been compromised.
12. Age eligibility and children
Pageling is a general-purpose reading tool intended for adults. It is not directed to, and must not be used by,
anyone under 18. This age position avoids collecting children's personal data without the verifiable parental-consent
systems that may be required under applicable law and is also required for the current Google Gemini service used
by Smart Scan.
We do not knowingly collect personal data from a person under 18 or use children's personal data for targeted
advertising or profiling. If you believe a person under 18 created an account or provided personal data, email
contact@artifacts.software. We will investigate, restrict the account where appropriate, and delete the information when required.
13. Copyright and sensitive information
Only scan, save, or import material that you are authorised to use. Pageling is a personal organisation tool; it does
not grant permission to reproduce or distribute a book or article. Avoid placing highly sensitive personal information
in scans, notes, tags, or Smart Scan requests. If you choose to do so, Pageling handles it under this Policy, but the
service is not designed as a medical-record, financial-record, or legal-document repository.
14. Changes to this Policy
We may update this Policy as Pageling, its providers, or the law changes. The current version will show its effective
date. For a material change, we will provide reasonable advance or in-app notice when required and seek fresh
consent before a new use when applicable law requires it. An update will not retroactively convert private reading
content into advertising data or transfer ownership of your content to ARTIFACTS.
15. Contact and grievance handling
Questions, privacy requests, and grievances may be sent to:
Privacy and Grievance Contact ARTIFACTS LLP Privacy and legal enquiries: contact@artifacts.software
Product support: support@artifacts.software Location: Bangalore, Karnataka, India
Please include "Pageling privacy" in the subject line and enough information for us to understand the request. We
will acknowledge and address it within the period required by applicable law. If you are not satisfied, you may
contact the competent privacy authority in your jurisdiction.