Privacy Policy

Last Updated: 9/3/2026

1. Introduction

Welcome to BuzzyReader ("we," "our," or "us"). We are committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our application.

2. Information We Collect

When you sign in using your Google Account, we receive the following basic profile information provided by Google:

  • Your email address
  • Your name
  • Your profile picture

This information is used strictly to authenticate you and display your profile within the app.

3. How Your Data is Stored

BuzzyReader operates completely on top of your personal Google Drive.

  • Books and Reading Data: Any EPUB files you upload, along with your reading progress, highlights, and notes, are stored directly in a hidden "App Data" folder within your personal Google Drive.
  • Zero Developer Access: We (the developers of BuzzyReader) do not have access to read, view, or modify your books, highlights, or reading data. The data flows directly between your device and your Google Drive.
  • No Central Database: We do not store your reading history, books, or personal information on any central servers.

4. Permissions and API Usage

BuzzyReader requests the https://www.googleapis.com/auth/drive.appdata scope to read and write configuration and reading files strictly within the isolated application data folder created for this app in your Google Drive. We also request standard profile scopes (openid, email, profile) to enable sign-in and account authentication.

BuzzyReader's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

5. Data Protection and Security Mechanisms

We take the security of your data seriously and implement robust technical and organizational measures to safeguard user data:

  • Encryption in Transit: All data transmitted between your browser, BuzzyReader, and Google APIs is encrypted in transit using industry-standard Transport Layer Security (TLS 1.2 or higher / HTTPS).
  • Encryption at Rest: User files, reading progress, and annotations stored in your personal Google Drive are protected by Google's secure storage infrastructure, encrypted at rest using AES-256 standard encryption.
  • Access Controls and Storage: We do not store your credentials, files, or reading data on any external servers. OAuth access tokens are stored strictly client-side or in secure, encrypted session cookies solely to authorize direct requests to Google APIs during your active session.
  • No Human Access: No developers, staff, or third parties have access to your Google Drive content, books, or personal reading records.
  • No Sale or AI/ML Training: We do not sell, rent, trade, or transfer Google user data to third parties. We do not use user data obtained through Google Workspace APIs to develop, improve, or train generalized artificial intelligence (AI) and/or machine learning (ML) models.

6. Data Retention and Deletion

Because your data is stored in your personal Google Drive, you have full control over its retention and deletion:

  • You can delete individual books and reading data directly from within the BuzzyReader application interface at any time.
  • You can permanently revoke BuzzyReader's access to your Google account at any time via your Google Account Security Settings, which disconnects the app and allows you to clear any hidden application data.
  • Since we do not maintain a central database or external server copies of your files, revoking access or removing files leaves no residual user data on our systems.

7. Contact Us

If you have any questions or concerns about this Privacy Policy or our security practices, please contact us at arussellturner@gmail.com.