Privacy Policy
Last updated: April 30, 2026
At KitabHub ("Platform", "we", "us", or "our"), your privacy is fundamental to everything we build. This Privacy Policy explains what information we collect, why we collect it, how we use and protect it, and what rights you have over your data.
1. Our Data Philosophy
KitabHub does not use algorithms to collect user data. We do not employ automated profiling, behavioral tracking algorithms, or hidden data-harvesting techniques. The only information we have is what you voluntarily provide to us or what is generated through your normal use of the Platform (e.g., which pages you visit).
We do not access your device unless you explicitly grant permission. KitabHub will never access your phone's camera, photo library, file system, contacts, microphone, or any other device resource unless you specifically grant that permission through your device's operating system. You can revoke these permissions at any time through your device settings.
2. Information We Collect
2.1 Information You Provide Directly
- Account Information: Name, email address, username, password (hashed and never stored in plain text), and profile details such as bio, profile picture, and role selection (Reader, Author, Translator, Editor, or Publisher).
- Profile & Preference Data: Age, gender, location, language preferences, favorite genres, reading interests, and any other information you choose to add to your profile.
- Content You Create: Reviews, posts, dialogues, reading lists, journal entries, book club contributions, and any other user-generated content.
- Communications: Messages you send to us via support channels or feedback forms.
2.2 Information Generated Through Use
- Usage Data: Pages visited, features used, search queries, reading activity, interactions (likes, bookmarks, follows), and time spent on the Platform.
- Device & Technical Data: Browser type, device type, operating system, IP address, and general location derived from your IP address. We collect this data through standard web server logs, not through algorithms or tracking scripts.
2.3 Third-Party Authentication
If you sign in using Google, Apple, or LinkedIn, we receive only the minimum information necessary for authentication (typically your name, email address, and a unique identifier). We do not receive or store your password from these providers.
3. How We Use Your Information
We use the information you provide to:
- Operate the Platform: Create and manage your account, authenticate your identity, and deliver the services you request.
- Personalize Your Experience: Suggest authors, translators, editors, and publishers based on the preferences and interests you share with us.
- Support Authors & Publishers: Help authors and publishers deliver promotions and advertisements to the correct audience by using aggregated, anonymized demographic data (such as age ranges, general locations, and gender distributions).
- Improve the Platform: Analyze aggregated usage patterns to fix bugs, develop new features, and improve overall user experience.
- Communicate with You: Send essential service notifications, security alerts, and (with your consent) updates about new features or content.
- Ensure Safety & Security: Detect and prevent fraud, abuse, and violations of our Terms of Service.
4. What We Do NOT Do
We believe transparency is best served by being explicit about what we do not do:
- We do not sell your personal information. Your data is never sold to third parties, data brokers, or advertisers.
- We do not share usernames, real names, or images with anyone. Your identity information is never disclosed to third parties for their marketing or commercial purposes.
- We do not use algorithms to collect your data. There are no hidden trackers, behavioral profiling engines, or automated data-harvesting systems.
- We do not access your device without your permission. Camera, files, contacts, and other device features are only accessed when you explicitly grant permission through your operating system.
5. Demographic Data & Advertising
We use demographic data such as age, location, and gender to help authors and publishers understand their audience and provide better services and products. This data is:
- Aggregated and anonymized before being shared with authors or publishers. Individual users are never identified.
- Used for audience insights only, such as "60% of readers interested in historical fiction are aged 25–34" — never "User Jane Doe, age 28, likes historical fiction."
- Never sold. Authors and publishers receive aggregate reports through the Platform; the underlying personal data is never transferred.
6. When We Share Information
We share your information only in the following limited circumstances:
- Service Providers: Trusted third-party services that help us operate the Platform (e.g., cloud hosting, email delivery, authentication providers). These providers receive only the minimum data necessary and are contractually bound to protect your information.
- Legal Compliance: When required by law, legal process, or government request, or to protect the rights, property, or safety of KitabHub, our users, or the public.
- Business Transfers: In connection with a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you before your information is transferred and becomes subject to a different privacy policy.
- With Your Consent: We may share information when you direct us to or give explicit consent.
8. Data Security
We take the security of your data seriously and implement industry-standard measures to protect it:
- All passwords are hashed using bcrypt and never stored in plain text.
- Data in transit is encrypted using TLS/SSL.
- Access to production databases is restricted to authorized personnel only, bound to localhost, and protected by firewalls.
- We employ rate limiting, brute-force protection (Fail2ban), and DDoS mitigation (Cloudflare).
- Regular security updates are applied automatically.
While we strive to use commercially acceptable means to protect your data, no method of electronic storage or transmission over the internet is 100% secure. We cannot guarantee absolute security.
9. Your Rights
Depending on your jurisdiction, you may have the following rights regarding your personal information:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate or incomplete data.
- Deletion: Request deletion of your personal data. See our Data Deletion Policy for details.
- Portability: Request a machine-readable export of your data.
- Restriction: Request that we restrict processing of your data in certain circumstances.
- Objection: Object to processing of your data for certain purposes, including direct marketing.
- Withdraw Consent: Where processing is based on consent, you may withdraw consent at any time.
To exercise any of these rights, contact us at privacy@kitabhub.app. We will respond within thirty (30) days.
10. Data Retention
We retain your personal information for as long as your account is active or as needed to provide the services you requested. When you delete your account, we will delete or anonymize your personal data within thirty (30) days, except where retention is required by law (e.g., for tax, legal reporting, or fraud prevention purposes).
Aggregated, anonymized data that cannot be used to identify you may be retained indefinitely for analytics and Platform improvement.
11. Children's Privacy
KitabHub is not directed to children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will take steps to delete that information promptly. If you believe a child under 13 has provided us with personal information, please contact us at privacy@kitabhub.app.
12. International Data Transfers
Your information may be processed and stored in countries other than your own. By using the Platform, you consent to the transfer of your information to countries that may have different data protection laws than your jurisdiction. We take appropriate safeguards to ensure your data is treated securely and in accordance with this Privacy Policy.
13. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you by email, in-app notification, or by posting a prominent notice on the Platform at least thirty (30) days before the changes take effect. We encourage you to review this policy periodically. Your continued use of the Platform after the effective date constitutes acceptance of the updated policy.
14. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us:
- Privacy inquiries: privacy@kitabhub.app
- General support: support@kitabhub.app