1. Who we are
Dream Library is the operator and controller of the personal information covered by this policy. If you need help or want to exercise a privacy right, contact us at:
- General support: support@dream-library.app
- Privacy requests: privacy@dream-library.app
- Legal notices: legal@dream-library.app
If you require our registered business address for a formal legal notice or regulatory request, email legal@dream-library.app and we will provide the current notice address.
2. Scope
This policy applies to Dream Library mobile apps, the Dream Library website, the Dream Library marketplace, Telegram bot, support interactions, and any related services we operate under the Dream Library brand.
3. Information we collect
We collect the following categories of information:
- Account and identity information. Email address, display name, password hash, referral code, account status, and sign-in metadata when you choose Apple or Google sign-in.
- Telegram bot information. Telegram user id, chat id, username, first and last name if Telegram provides them, language code, bot conversation state, active generation job id, stop or blocked status, and short-lived app handoff token records.
- Profile and preferences. Language, theme, notification preferences, subscription tier, reading preferences, and similar settings.
- User content. Prompts, blueprint inputs, story preferences, generated books, books you upload, extracted text, generated audio, feedback submitted during editing, marketplace listings, reviews, bookmarks, highlights, reading lists, and reading progress.
- Payment and entitlement information. Subscription plan, purchase receipts, transaction identifiers, billing status, payout details for creators, and limited payment metadata. We do not receive full card numbers for Stripe purchases and we do not receive payment card data from Apple or Google in-app purchases.
- Technical and device information. IP address, approximate location derived from IP, device model, operating system version, app version, request logs, crash or delivery diagnostics, and push notification tokens when you opt in to notifications.
- Support and moderation information. Emails you send us, safety reports, abuse reports, appeals, and records of moderation or enforcement actions.
4. How we use information
We use personal information to:
- Create and secure accounts, authenticate sign-in, and manage sessions.
- Generate books, process books you choose to upload, create audiobooks, save drafts, sync reading state, and deliver purchased or unlocked content.
- Process subscriptions, one-time purchases, creator payouts, refunds, and receipt validation.
- Operate the marketplace, display listings, process reports, and enforce our policies.
- Send service notifications, purchase confirmations, password reset emails, and optional push or Telegram bot notifications.
- Operate the Telegram bot, including interview prompts, chapter-ready messages, feedback collection, app handoff, and stop-notification controls.
- Detect fraud, abuse, spam, policy violations, and security incidents.
- Improve product quality, reliability, and customer support.
- Comply with law, enforce our agreements, and protect users and Dream Library.
5. Legal bases
Where GDPR or similar laws apply, we rely on the following legal bases:
- Contract. To provide the service you request, including account creation, book generation, marketplace participation, and billing.
- Legitimate interests. To keep the service secure, prevent abuse, debug issues, moderate the marketplace, and improve reliability.
- Consent. For optional push notifications and any other processing that requires consent under applicable law, including disclosed third-party AI processing of uploaded books where required.
- Legal obligations. To keep financial, tax, fraud-prevention, and law-enforcement records when required.
6. Sharing and processors
We do not sell personal information. We share information with the providers, platforms, and authorities described below to run the service, comply with law, and support the disclosed speech-provider model-development use.
Uploaded books are not public by default. If you create an unlisted audiobook link, the title, author, cover, and audio are available to anyone who receives that link until it expires or you revoke it.
- Anthropic. Receives prompts and generation context needed to return story output. It also receives limited excerpts from generated or uploaded books when we run a safety review.
- Google Vertex AI (Gemini). Receives relevant audiobook text and context when speaker and voice annotations are needed.
- Third-party AI speech services. Receive the text segments and selected voice needed to create audiobook audio. A speech provider's standard terms may allow submitted content to be used to develop, train, or improve AI models.
- Tavily. Receives research queries used for optional grounding during generation flows.
- Stripe. Processes web checkout payments, billing events, and creator payout operations where used.
- Apple and Google billing services. Used to validate receipts, purchases, and subscription states.
- Expo Push, APNs, and FCM. Used to deliver push notifications you enable.
- Telegram. Used to receive bot messages and deliver bot replies or chapter-ready notifications when you interact with the Dream Library Telegram bot.
- Infrastructure and hosting vendors. Used only to host, store, back up, and secure Dream Library systems.
- Professional advisers and authorities. Shared only when required for legal compliance, audits, disputes, or enforcement.
7. AI, moderation, and marketplace review
Dream Library is an AI-assisted storytelling service. To operate the service, prompts, generation context, uploaded-book excerpts, and audiobook text may be processed by the service providers described above. We send only the content needed for generation, safety review, speaker annotation, or speech synthesis. Content submitted to the marketplace, flagged by users, or escalated to support may also be reviewed by Dream Library personnel or contractors for quality, safety, abuse prevention, dispute handling, or legal compliance.
Dream Library does not use your content for ad targeting. Except for the disclosed speech-provider model-development use, we use it to provide the service you requested, maintain trust and safety, and improve operational quality.
8. Retention
- Account and library information are kept while your account remains active.
- An original uploaded book file is deleted after a successful import. An unfinished import and its temporary file expire within 24 hours.
- Imported book text remains in your library as chapters and a stored manuscript until you delete the book or your account, subject to backup, fraud-prevention, and legal retention needs.
- Generated audiobook audio remains available with the book until you delete the book or your account, subject to backup, fraud-prevention, and legal retention needs.
- If you delete your account, we delete or de-identify active account data subject to technical, backup, fraud-prevention, and legal retention needs.
- Operational request logs are typically retained for up to 30 days unless needed longer for security investigations.
- Backups are typically retained for up to 90 days before rotation.
- Financial, tax, payout, and fraud-prevention records may be retained longer where required by law or contract.
- Telegram chat bindings and bot conversation state are kept while your account or bot conversation remains active, unless you stop the bot, block it, delete your account, or ask us to delete the data subject to legal and security retention needs.
9. Your rights and choices
Depending on where you live, you may have the right to:
- Access, correct, or delete your personal information.
- Request a copy of the personal information we hold about you.
- Object to or restrict certain processing.
- Withdraw consent for optional notifications.
- Stop Telegram bot notifications from the bot settings or by blocking the bot.
- Appeal a moderation or privacy decision where required by law.
You can delete your account from within the app where the feature is available, or contact privacy@dream-library.app for help. For California residents, Dream Library does not sell personal information and does not knowingly share personal information for cross-context behavioral advertising.
10. International transfers
Dream Library and its service providers may process information in the United States and other countries where we or our vendors operate. When required, we use contractual or statutory transfer safeguards designed to protect personal information across borders.
11. Children
Dream Library is not directed to children under 13. In the EEA and UK, the service is intended for users aged 16 and older unless a lower age is permitted by local law with valid parental or guardian consent. If you believe a child has provided personal information in violation of this policy, contact privacy@dream-library.app.
12. Security
We use administrative, technical, and organizational safeguards designed to protect personal information. No system is completely secure, so we cannot guarantee absolute security, but we work to reduce risk through access controls, encryption where appropriate, credential protection, monitoring, and operational review.
13. Changes to this policy
We may update this Privacy Policy from time to time. If we make a material change, we will post the revised version here and may also notify you in the app or by email where required by law.