LitRoom

Beta privacy

Privacy, in plain language.

LitRoom is an iOS book-club beta operated from the United States. This policy explains the personal information LitRoom handles through the app and this link gateway.

Contact

For privacy questions or requests, contact LitRoom at donovan@litroom.io.

Information LitRoom handles

How LitRoom uses information

LitRoom uses this information to authenticate accounts; provide profiles, reading, clubs, invitations, conversations, meetings, and notifications; personalize discovery; generate discussion prompts and requested meeting artifacts; enforce access controls; prevent abuse; troubleshoot and secure the service; and meet legal obligations.

Visibility

Profile fields, handles, avatars, public posts and replies, and public or listed club information can be visible to other readers or the public according to the feature and your settings. Private club conversations, notebooks, join-request answers, and meeting artifacts are limited to authorized users, while still being processed by LitRoom and its service providers.

Providers and disclosures

LitRoom uses Apple for Sign in with Apple, notifications, and TestFlight; Supabase for authentication and avatar storage; Resend for authentication email; Render for application and database hosting; LiveKit for live audio, video, and meeting recording; Cloudflare for DNS, link delivery, recording storage, and transcription support; OpenAI for discussion prompts and, when used, transcription or recap generation; Sentry and Better Stack for errors and operational logs; and Open Library and Google Books for book metadata and covers.

These providers process information for the service functions LitRoom uses. Information may also be disclosed when required by law, to protect readers or the service, or in connection with a business transaction subject to appropriate safeguards.

Retention and deletion

Local onboarding context is kept for up to seven days, and unsubmitted join-answer drafts are removed after 24 hours. Pending join requests expire after 14 days; answers attached to resolved requests are deleted after 30 days.

Other account information and content are kept while the beta account is active or as needed to provide and secure LitRoom. Operational logs, backups, soft-deleted records, and limited integrity or audit records can remain for a reasonable period after they are no longer shown in ordinary product views, or longer when required for security, dispute resolution, or legal obligations.

Permanent account deletion is available inside the iOS app. Deletion removes the authentication account, profile, memberships, personal settings, and other account-linked personal records, and immediately ends access. If the account is the only administrator of a club that still has other members, another administrator must be chosen before deletion can proceed.

Deleting one account does not delete shared club documents, notes, recordings, transcripts, recaps, or meeting notes when other club members remain. Those artifacts remain available according to the club's access controls. LitRoom removes the deleted account's stored name and structured links back to the account, including its profile, user identifier, speaker label, and provider-linked attribution. The artifact content itself is not deleted or rewritten; words, images, audio, or video in it may still identify the former member from the content or their voice. If the account is the only member of a club, or no members remain, the deletion confirmation identifies that empty club and its contents for closure.

Email donovan@litroom.io to request access, correction, export, or deletion help when the in-app control is unavailable. LitRoom will verify the request and explain any information that must be retained for security, legal, fraud-prevention, dispute, or service-integrity reasons.

Your choices

You can edit available profile and visibility settings, manage notification preferences, remove certain authored content, and sign out. iOS controls notifications, camera, microphone, and selected-photo access; you can change those choices in iOS Settings. LitRoom does not request your contacts or precise device location.

Security and processing location

LitRoom uses HTTPS, iOS Keychain session storage, membership-based authorization, restricted private-content routes, and signed recording links. No storage or transmission method is completely secure. Information can be processed in the United States and other locations where the providers above operate.

Children

LitRoom does not ask for a date of birth in the current beta. If you believe a child provided personal information without the permission required where they live, contact LitRoom so the situation can be reviewed.

This link gateway

This gateway does not inspect or display invitation query values, call the LitRoom API, set cookies, load analytics, or emit application logs. Cloudflare still processes ordinary request information to deliver and protect it. The gateway serves Apple Universal Link metadata, beta-install guidance, and this policy.

Changes

LitRoom may update this policy as the beta changes. The date below will be updated, and additional notice will be provided when appropriate.