Last updated: October 25, 2025
Personal Information
Your privacy is very important to us. We only collect and process the minimum amount of personal data necessary to provide our Services. When you sign up or log in through Auth0 (using Google or email/password), we receive limited user information such as your name, email address, and Auth0 user ID. We do not sell, lease, or share your personal information with third parties for marketing purposes. We may record impersonalized technical data, such as IP address, browser type, file type, conversion duration, and error flags, strictly for performance monitoring and security improvements.
Account and Authentication Data
Readoku uses Auth0 as a secure authentication provider. When you log in, Auth0 authenticates your identity and returns basic user data to us, which we store to manage your account. You can log in using Google or a username and password. We do not store your password directly—Auth0 handles all sensitive authentication data. You can delete your account anytime under Account Settings, which removes your user data from both Auth0 and our database.
User Files and Highlights
When you upload a PDF file, it is processed temporarily for the purpose of extracting highlights. We do not read, view, or permanently store your PDF files. All uploaded files are deleted automatically and immediately after processing. We only retain the extracted highlights and limited metadata (e.g., filename and file size) so that you can later access and manage them through your account. You can delete your highlights or account data at any time.
Data Retention and Deletion
Uploaded PDF files are deleted immediately after processing. Extracted highlights and metadata remain securely stored in our database until you delete them or remove your account. When you delete your account, all associated data, including highlights and metadata, are permanently removed. We do not create backup copies of your files or highlights once deleted.
Security
We take security seriously and use industry-standard measures to protect your personal data. All communication between your browser, our servers, and Auth0 is encrypted via HTTPS with HSTS enabled. Our systems are regularly monitored to prevent unauthorized access, disclosure, or alteration of information. Access to user data is strictly limited to authorized personnel for essential operations only.
Cookies and Analytics
Readoku uses essential cookies to maintain secure sessions and manage user authentication. We may also use Google Analytics to understand user interactions and improve the Service. Google Analytics collects only aggregated, anonymized information and operates under Google’s Privacy Policy. You can disable cookies through your browser settings, though some features of the website may not function properly without them.
Email Addresses and Communication
If you register with Readoku, we may use your email address to send account-related notifications such as password resets or important updates about the Service. We do not send marketing emails or newsletters unless you explicitly opt in. We do not sell, rent, or share your email address with any third party.
Exceptional Disclosures
We may disclose personal information only when required by law, legal process, or court order, or when necessary to protect our legal rights, enforce our Terms of Use, or safeguard the security of users or the public.
Links to Third-Party Websites
Our website may contain links to third-party websites. We are not responsible for the privacy practices or content of those websites. Please review the privacy policies of any external sites you visit.
General Data Protection Regulation (GDPR)
We comply with the European Union’s General Data Protection Regulation (GDPR). Depending on the context, Readoku may act as a data controller (when managing your account or highlights) or as a data processor (when handling PDF files temporarily for highlight extraction). You have the right to access, rectify, delete, or restrict processing of your data, as well as the right to data portability. To exercise your rights, contact us at contact@readoku.com. All data processing occurs within the EU or in regions ensuring an adequate level of data protection.
Your Rights Under GDPR
As a user, you have the right to request access to your personal data, correct inaccurate information, request deletion of your data, or object to data processing. You also have the right to lodge a complaint with your local Data Protection Authority if you believe your rights have been violated.
Changes to This Policy
We may update this Privacy Policy from time to time. The latest version will always be available at https://readoku.com/privacy/. Continued use of the Service after changes are posted constitutes acceptance of the revised policy.
Contact
If you have any questions or concerns regarding this Privacy Policy or how we handle your data, please contact us at contact@readoku.com.