Information StoryBloom processes
Depending on the features you use, StoryBloom stores account information such as username and email address; profile information; stories, chapters, drafts, covers, tags, comments, messages, update follows, library shelves, reading progress and history, Memory Petals and private notes, Reading Paths, Story DNA, preferences, notifications, reports, appeals, moderation records, and technical/security logs.
How information is used
StoryBloom uses this information to authenticate accounts, save and publish content, personalize reading, provide search and recommendations, deliver notifications and recovery emails, support community features, prevent abuse, investigate reports, maintain backups, and operate and secure the service.
Private content
Drafts, private Memory Petals, private notes, and private collaboration spaces are not intentionally published to other users unless you choose a sharing feature that makes them available. Administrators or service providers may access limited information when reasonably necessary for security, support, moderation, legal compliance, or technical operation.
Service providers
StoryBloom currently relies on infrastructure and transactional-email providers to operate the service. Render may process hosted application data and logs as part of hosting. Brevo may process sender/recipient information and transactional-email data when StoryBloom sends verification, recovery, or account messages. Cover files are stored on StoryBloom's configured persistent storage unless another storage provider is enabled by the operator.
Advertising, sale of data, and cookies
StoryBloom's current free, noncommercial operating model does not include a third-party advertising network and does not sell personal information as a revenue source. StoryBloom uses session cookies and similar local/browser storage needed for sign-in, CSRF protection, appearance preferences, reader settings, autosave/recovery, and other requested functionality.
Children under 13
StoryBloom is not directed to children under 13 and does not permit users under 13 to create accounts. If the operator learns that personal information was collected from a child under 13 in circumstances covered by applicable children's privacy law, the operator should take appropriate steps to close the account and delete or otherwise handle the information as legally required.
Your controls
StoryBloom provides controls to update profile and notification settings, manage blocked users, clear reading history, export supported account/story data, delete stories, and request or perform account deletion through the available account tools.
Retention
Active account and content data is kept while needed to provide the service. Deleted content may remain for a limited period in backups. Security, moderation, fraud-prevention, transaction, or legal records may be retained longer when reasonably necessary for those purposes.
Security
StoryBloom hashes passwords, uses CSRF protections, supports HTTPS in production hosting, restricts administrative tools by role, and separates persistent database/upload storage from application code. No online service can guarantee absolute security.
Contact
For privacy questions, requests, or concerns, contact us at support@storybloomfiction.com.