- Local reading and notes stay on your device unless transferred
- Transfers depend on the features you choose
- Privacy contact: [email protected]
1. Provider and scope
elixirevo handles data for BookRack (com.elixirevo.bookrack) and this app website as described below. This policy reflects the currently implemented features and supplements in-app permission disclosures. Send privacy inquiries and requests for access, correction, deletion or permission-related assistance to [email protected].
BookRack does not require a separate BookRack registration or developer-hosted account. Connecting a Google account is for the Google Drive features you choose; it does not create a BookRack account.
2. Data used by each feature
Data is processed as needed for the feature you use. Personal information inside a file is processed as part of that document.
| Feature | Data and purpose | Storage or destination |
|---|---|---|
| Documents, notes and reading | Selected files and names, covers, pen strokes and pressure, highlights, sticky notes, notebooks, reading positions and display settings, used to read, edit and restore your work. | App-private storage on your device. Export, sharing, backup or sync sends data to your selected destination. |
| Cloud import and sync | Account identifier and email, server address, username, password, domain, authorization tokens, remote file listings and selected files. Sync also uses covers, annotations, positions, enabled upscale results, a random installation identifier and change records for conflict handling. | Connection settings stay on the device. Authentication, file requests and sync data are exchanged with the Google Drive account or NAS/server you connect. |
| Screen notes | Your handwriting and, if you enable screen inclusion and approve Android screen sharing, an image of the screen at save time. | Saved in a notebook on your device. Syncing or sharing that notebook may transfer its contents like other documents. |
| Web reading | URLs and search terms you enter, history, tabs, bookmarks, previews, and website cookies, web storage and login sessions. | Stored in the device’s WebView and web history. Requests go to visited sites and their resource providers; search terms go to Google Search. |
| Wi-Fi file receiving | Peer network addresses, session code/token, file names and contents, and transfer progress. | Transferred directly between a browser and the BookRack device on the local network, without a developer relay server. |
| AI upscaling and optional modules | Selected documents/images, models, processing settings and device/accelerator compatibility information. | Upscaling runs on the device. Models are downloaded from GitHub distribution infrastructure; optional modules in the Play edition come through Google Play. Downloading a model does not itself upload your documents. |
| Email support | Sender email and the name, company, message and attachments you choose to provide. | Handled in the operator’s Gmail mailbox to answer inquiries and discuss enterprise agreements. |
3. Google Drive permissions
Cloud import requests drive.readonly to list Drive files and read the ones you select. This grants read access to files you can access in Drive; it is not limited to a single selected file. The import feature does not modify or delete remote files.
Sync uses drive.file to manage files created by or made available to the app. Documents and sync records are stored in the BookrackSync folder of the storage you connect. Your chosen account’s email and identifier are used to manage the connection. Google access tokens are not permanently saved in app files or backups.
Google data is used to provide the import and sync features you request, not for advertising, sale or training general AI models. You can remove the connection in the app or revoke access in your Google account’s connected-app settings. Disconnecting does not delete files already copied or uploaded.
4. Optional permissions and screen capture
You choose files and folders through Android’s file picker. The current app does not request contacts, precise location, microphone, camera or all-files storage access.
- Display over other apps: shows the floating button and writing surface when you enable screen notes.
- Screen capture: when saving with screen inclusion enabled, the app requests Android screen-sharing approval. Personal information visible within the approved capture area may be included. You can instead save handwriting only.
- Notifications, foreground services and wake locks: used for status and progress of screen notes, screen capture or upscaling tasks.
- The accessibility service feature for extracting text from other apps is excluded from the current distributed build.
- Denying or revoking an optional permission in Android settings disables or limits the related feature. Basic reading of local documents remains separately available.
6. Safeguards and transport security
Cloud connection information, including server passwords, is encrypted with AES-GCM using Android Keystore and stored in app-private storage. This does not mean documents and notebooks have app-level end-to-end or password encryption. Protect exported files and backups separately. Android automatic cloud backup and device migration are excluded in the app configuration; user-initiated backup and restore are available.
Google APIs and model downloads use HTTPS; FTPS uses TLS. Wi-Fi receiving uses HTTP, and FTP and HTTP WebDAV do not encrypt transport. SMB protection depends on server settings and the app does not enforce session encryption. A pairing code authorizes access but does not encrypt the transfer. Use a trusted network or VPN and prefer HTTPS WebDAV or FTPS when possible.
7. Retention
Local documents, annotations, reading positions, settings, web storage and connection details remain until you delete them or clear the app’s data. Models and upscale results may also remain until deleted through the feature or by clearing app data. The operator does not retain a separate developer-server copy of this local content.
Files and change records in connected storage remain there without an automatic expiry. Deletion records, older file objects and the provider’s trash, versions or backups may remain separately. Website cookies/login data and browsing history have separate deletion controls.
Inquiries sent directly to the operator are retained as needed to respond and follow up; unnecessary information is deleted when that purpose is complete. Information still needed for an enterprise contract or a legal retention obligation is kept for the required purpose and period, with the reason explained on request.
8. Deletion, disconnecting and your rights
- Local documents and notes: delete them in the library or clear BookRack’s app data in Android settings. Uninstalling removes app-private data but does not automatically delete exports, backups or cloud copies.
- Cloud connections: import and sync connections are separate. Remove saved connections in each feature and, where needed, revoke Google account access.
- Synced documents: distinguish “delete from this device” from “delete from all devices.” A sync deletion does not mean every older remote object, record or item in trash is immediately physically erased.
- To remove the complete sync copy, stop and disconnect sync on all connected devices, then remove the BookrackSync folder and provider trash, versions and backups in your storage, and delete local copies on each device. Removing a shared folder affects every device using it.
- Web history and cookies: use the web library’s More menu to clear browsing history and, separately, site logins and cookies.
- For information held directly by the operator, email the contact below to exercise applicable rights of access, correction, deletion, restriction or withdrawal of consent. We may verify your authority using the minimum necessary information. We cannot arbitrarily erase files remotely from your device or independent storage.
9. This website
This website reads your browser language and saves a language you manually select in localStorage for later visits. Clear site data in your browser to remove that preference. We use no advertising or visitor analytics scripts on the website. Serving the page transmits your IP address and standard HTTP request information to the hosting server.
10. Children and guardians
Where applicable law requires a parent or guardian’s consent, do not provide a child’s information to the operator without that consent. A guardian who believes a child’s information was improperly provided can contact us below to request deletion or other appropriate action.
11. Changes and notice
We will update this page and its effective date when features or data practices change. Changes requiring additional consent or in-app disclosures will follow applicable law and platform policy. If optional paid features introduce new payment data processing, we will describe the actual practices before or as required for their use.
GET IN TOUCH
Provider and contact
Provider: elixirevo · App: BookRack (com.elixirevo.bookrack)
Privacy requests and enterprise licensing inquiries
[email protected]