Welcome to Moonbows. We respect your privacy and are committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you use our service.
By accessing or using Moonbows, you agree to the collection and use of information in accordance with this policy. If you disagree with any part of this policy, please discontinue use of our service immediately.
1. Information We Collect
1.1 Personal Information
We collect the following types of personal information:
Account Information: When you register, we collect your name, email address, and authentication details.
Profile Information: Any additional information you provide in your user profile.
Authentication Data: If you sign in with Google, we receive authentication information from your Google account, which may include your name, email address, profile picture, and Google ID.
Communication Data: When you contact us directly, we may keep records of your communications to help solve any issues you might be having.
1.2 Usage Information
We collect information about how you use our service:
Reading Progress: Information about which stories and episodes you've read, including last read position, timestamp, and story/episode identifiers.
Bookmarks: Stories and episodes you've bookmarked, including bookmark creation timestamps and associated content identifiers.
User Preferences: Your personalized settings and preferences, such as language preferences, display settings, and notification preferences.
Device Information: Information about your device, including browser type, operating system, and screen resolution to optimize your reading experience.
Usage Patterns: Information about how you interact with our platform, including reading habits, feature usage, and time spent on various sections.
1.3 Automatically Collected Information
When you use our service, we automatically collect certain information:
Log Data: We collect log information when you use our platform, including your IP address, browser type, access times, pages viewed, and other system activities.
Device Information: We collect information about the device you use to access our service, including hardware model, operating system, unique device identifiers, and mobile network information.
Cookies and Similar Technologies: We use cookies and similar tracking technologies to track activity on our service and hold certain information (see Section 3 for more details).
2. How We Use Your Information
We use your information for the following purposes:
Service Provision: To create and maintain your account, authenticate users, and provide our service.
Personalization: To remember your reading progress, bookmarks, and preferences to provide a tailored experience.
Service Improvement: To understand how users interact with our service, identify popular features, and improve the overall user experience.
Communications: To send you service-related notices, updates, security alerts, and support messages.
Technical Administration: To maintain and administer our systems, troubleshoot problems, and ensure the security of our platform.
Legal Compliance: To comply with applicable laws, regulations, legal processes, or enforceable governmental requests.
User Support: To provide customer support and respond to your inquiries or requests.
Analytics: To analyze usage patterns and trends to improve our content and service offerings.
2.1 Legal Basis for Processing (EU/EEA Users)
If you are located in the European Union or European Economic Area, we collect and process your personal data based on the following legal grounds:
Contract Performance: Processing necessary for the performance of our contract with you to provide our services.
Legitimate Interests: Processing necessary for our legitimate interests, provided these interests do not override your fundamental rights and freedoms.
Legal Obligation: Processing necessary to comply with applicable laws and regulations.
Consent: Processing based on your specific and informed consent, which you may withdraw at any time.
3. Cookies and Similar Technologies
We use cookies and similar tracking technologies to track activity on our service and store certain information. Cookies are files with a small amount of data which may include an anonymous unique identifier.
3.1 Types of Cookies We Use
Essential Cookies: Necessary for the operation of our website, enabling core functionality such as security and authentication.
Functionality Cookies: Used to remember your preferences and settings, such as language preference and display settings.
Performance/Analytics Cookies: Help us understand how visitors interact with our website by collecting and reporting information anonymously.
Authentication Cookies: Used to identify you when you sign in to our service, enabling us to provide a secure and personalized experience.
3.2 How We Use Cookies
We use cookies for:
Authentication and maintaining your login session
Storing your preferences
Remembering your reading progress
Understanding how you use our website
Analyzing the performance of our website
Providing personalized content and recommendations
3.3 Managing Cookies
You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. Most browsers allow you to control cookies through their settings preferences. However, if you reject cookies, you may not be able to use some portions of our service, as certain features require cookies to function.
We implement appropriate technical and organizational measures to protect your personal data against unauthorized or unlawful processing, accidental loss, destruction, or damage.
4.1 Data Security Measures
Your data is stored in secure databases and we use industry-standard encryption for data in transit. Our security measures include, but are not limited to:
Encryption of sensitive data both at rest and in transit
Secure authentication mechanisms
Regular security assessments and audits
Access controls and permission restrictions
Monitoring systems for detecting and addressing security breaches
Regular backup procedures to prevent data loss
4.2 Data Breach Procedures
In the event of a data breach that affects your personal information, we will notify you and the relevant supervisory authorities as required by applicable law. We will provide information about the breach, the potential impact, and the measures we are taking to address the breach and mitigate possible adverse effects.
4.3 International Data Transfers
Your information may be transferred to and processed in countries other than the country in which you reside. These countries may have different data protection laws than your country of residence. We will take appropriate safeguards to ensure that your personal information remains protected in accordance with this Privacy Policy and applicable law.
5. Third-Party Services
We may use third-party services to support our application. These services may have access to your personal information only to perform specific tasks on our behalf and are obligated not to disclose or use it for any other purpose.
5.1 Third-Party Service Providers
Third-party services we use include:
Google Authentication: For user authentication and account creation.
Database Hosting Services: For storing user data and content.
Cloud Storage Providers: For storing media files and other content.
Analytics Providers: To help analyze how our service is used.
Customer Support Tools: To provide user support and manage inquiries.
5.2 Third-Party Links
Our service may contain links to third-party websites, services, or applications that are not owned or controlled by us. We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party sites or services. We encourage you to review the privacy policies of any third-party sites you visit.
6. Your Data Rights
Depending on your location, you may have the following rights with respect to your personal data:
6.1 General Data Rights
Access: You have the right to access personal data we hold about you.
Rectification: You have the right to correct inaccurate personal data or complete incomplete data.
Erasure: You have the right to request the deletion of your personal data in certain circumstances.
Restriction: You have the right to request restriction of processing of your personal data in certain circumstances.
Data Portability: You have the right to receive your personal data in a structured, commonly used format and to transmit it to another controller.
Objection: You have the right to object to the processing of your personal data in certain circumstances.
6.2 Additional Rights for EU/EEA Residents
If you are a resident of the European Union or European Economic Area, you have additional rights under the General Data Protection Regulation (GDPR):
Withdrawal of Consent: If processing is based on consent, you have the right to withdraw your consent at any time.
Complaint: You have the right to lodge a complaint with a supervisory authority.
Automated Decision-Making: You have the right not to be subject to automated decision-making, including profiling, which produces legal or similarly significant effects.
6.3 California Privacy Rights
California residents have specific rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA):
Right to Know: You have the right to know what personal information we collect and how we use and disclose it.
Right to Delete: You have the right to request deletion of personal information we have collected from you.
Right to Opt-Out: You have the right to opt-out of the sale or sharing of your personal information.
Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights.
Right to Correct: You have the right to request correction of inaccurate personal information.
Right to Limit Use of Sensitive Personal Information: You have the right to limit the use and disclosure of sensitive personal information.
6.4 How to Exercise Your Rights
To exercise any of these rights, please contact us using the contact information provided in Section 10. We will respond to your request within the timeframe required by applicable law. We may ask for additional information to verify your identity before processing your request.
7. Data Retention
We will retain your personal information only for as long as is necessary for the purposes set out in this Privacy Policy. We will retain and use your information to the extent necessary to comply with our legal obligations, resolve disputes, and enforce our policies.
7.1 Retention Periods
Different types of data are retained for different periods:
Account Information: We retain your account information for as long as your account is active. After account deletion, we may retain certain information for legal and legitimate business purposes for a limited period.
Usage Data: Reading progress, bookmarks, and preferences are retained as long as your account is active, or for up to 24 months after your last activity.
Log Data: Server logs are typically retained for 90 days for security and troubleshooting purposes.
Communication Data: Customer support communications may be retained for up to 24 months to maintain service quality and address recurring issues.
7.2 Account Deletion
If you request deletion of your account, we will delete your personal information, except for information that we are required to retain for legal or legitimate business purposes. This may include:
Information required for tax, legal reporting, or auditing obligations
Aggregated or anonymized data that no longer identifies you
Information necessary to detect and prevent fraud or other security incidents
Information retained based on our legitimate interest, where allowed by applicable law
8. Children's Privacy
Our service is not intended for use by children under the age of 13 (or 16 in certain jurisdictions). We do not knowingly collect personally identifiable information from children under 13.
If you are a parent or guardian and you are aware that your child has provided us with personal information, please contact us immediately. If we discover that we have collected personal information from a child without verification of parental consent, we will delete such information from our servers immediately.
If you believe we might have any information from or about a child under the applicable minimum age, please contact us using the information provided in Section 10.
9. Changes to This Privacy Policy
We may update our Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, and other factors. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last Updated" date at the top.
For significant changes that materially affect your rights or how we use your personal information, we will provide additional notice, such as email notifications or prominent notices within our service, prior to the changes becoming effective.
You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page, unless stated otherwise.
Continued use of our service after the effective date of a revised Privacy Policy constitutes your acceptance of the revised terms.
10. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us at:
For data subject requests, please include "Privacy Request" in the subject line of your email and provide sufficient information for us to identify your account and respond to your request.
For EU/EEA residents: If you believe we are unlawfully processing your personal information, you also have the right to complain to your local data protection supervisory authority.
11. Governing Law
This Privacy Policy is governed by and construed in accordance with the laws applicable in the jurisdiction where our services are provided, without giving effect to any principles of conflicts of law.
Any disputes relating to this Privacy Policy shall be subject to the exclusive jurisdiction of the courts in the applicable jurisdiction, except where prohibited by applicable law.