Privacy Policy

Effective Date: July 19, 2026

Scrivy ("we," "us," or "our") operates the website scrivy.co (the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.

1. Information We Collect

We collect the following types of information when you use Scrivy:

  • Account Information: Your name, email address, and password (stored in hashed form) when you create an account.
  • Book Content: PDF files and cover images that you upload to the platform.
  • Payment Information: Payment details are collected and processed directly by Stripe. We do not store your full credit card number, CVV, or other sensitive payment details on our servers. We may receive and store limited information from Stripe, such as the last four digits of your card, card brand, and billing email.
  • Usage Data: Basic information about how you interact with the Service, such as pages visited and actions taken, collected through server logs.
  • Amazon Advertising Data (optional): If you use the Book Scout extension's Sync feature while signed in to the Amazon Ads console, the extension reads your advertising profile and marketplace context, campaigns, ad groups, keywords, targets, budgets, bids, customer search terms, and associated performance metrics such as impressions, clicks, spend, attributed sales, ACoS, and ROAS. This read-only import runs only after you click Sync.

2. How We Use Your Information

We use the information we collect to:

  • Provide, operate, and maintain the Service.
  • Process your ARC distribution orders and facilitate payments through Stripe.
  • Send you transactional emails related to your account and orders (e.g., order confirmations, review notifications).
  • Respond to your inquiries and provide customer support.
  • Improve and personalize your experience on the Service.
  • Detect, prevent, and address technical issues, fraud, or security concerns.

3. Payment Processing

All payments on Scrivy are processed through Stripe. When you make a payment, you are redirected to Stripe Checkout to complete the transaction. Stripe collects and processes your payment information in accordance with their own Privacy Policy. We receive confirmation of successful payments but do not handle or store your full payment card details.

4. Data Storage & Security

We take reasonable administrative, technical, and physical measures to protect your information from unauthorized access, loss, misuse, or alteration.

  • Passwords are stored using industry-standard hashing.
  • Book files (PDFs) and cover images are stored securely using Vercel Blob storage.
  • All data is transmitted over HTTPS encrypted connections.

While we strive to protect your personal information, no method of electronic storage or transmission over the Internet is 100% secure. We cannot guarantee absolute security.

5. Third-Party Services

We use the following third-party services to operate Scrivy. Each service has its own privacy policy governing how it handles your data:

  • Stripe — Payment processing. Stripe collects and stores your payment information. See the Stripe Privacy Policy.
  • Vercel Blob — Secure file storage for uploaded PDFs and cover images. See the Vercel Privacy Policy.
  • Resend — Transactional email delivery (emails sent from noreply@scrivy.co). See the Resend Privacy Policy.
  • Amazon Advertising — Accessed directly in your browser only when you click Sync while signed in to the Amazon Ads console. See the Amazon Privacy Notice.

We do not sell, rent, or share your personal information with third parties for their marketing or advertising purposes.

6. Amazon Ads Integration

Scrivy offers an optional, read-only Amazon Ads import through the Book Scout Chrome extension so authors can analyze and optimize their book ad campaigns in Scrivy. It is off by default. A sync starts only when you connect the extension to Scrivy, sign in to advertising.amazon.com in Chrome, and click Sync in the extension popup. The selected Amazon Ads tab must remain open while the import runs.

What we access

  • Advertising profile information: your Amazon Ads profile ID(s), account type (e.g., KDP author, seller, vendor), and marketplace.
  • Campaign data: campaigns, ad groups, ads, keywords, targets, bids, budgets, and their configuration.
  • Performance metrics: impressions, clicks, spend, attributed sales, orders, customer search terms, ACoS, ROAS, and related reporting data shown by the Amazon Ads console.

How we store and use it

  • Amazon session cookies remain within Amazon's page context. The extension uses CSRF and account-context headers transiently inside your signed-in Amazon Ads browser tab. It does not store this session information in extension storage or send it to Scrivy.
  • The extension normalizes the report data and sends it over HTTPS to your private Scrivy account. Campaign and performance data is stored to power dashboards, historical reporting, and account-specific optimization recommendations.
  • The integration is read-only. It does not create, edit, pause, or otherwise change your Amazon Ads campaigns.
  • We do not sell, rent, or share your Amazon Advertising data with any third party, and we do not use it to train general-purpose machine learning models.

How you can stop access

  • Cancel a running sync, disconnect the extension from Scrivy, sign out of Amazon Ads, disable the extension, or uninstall it. Any of these actions prevents further Amazon Ads imports.

Stopping access does not automatically delete report data already imported into your account. To request deletion of previously collected Amazon Ads data, email hello@scrivy.co. We will delete stored Amazon Ads data within 30 days after a verified deletion request, except where we are required to retain it for legal or accounting purposes.

7. Book Scout Chrome Extension

Scrivy offers an optional browser extension, Scrivy Book Scout, that shows book research data (sales rank, estimated sales, pricing, and review statistics) on supported Amazon book pages you visit. For connected users it can also import Amazon Ads reporting after the user explicitly clicks Sync, as described in Section 6. This section describes exactly what the extension collects and how that data is used.

What the extension collects

  • Publicly visible book information from Amazon book pages you view or analyze: title, author, price, Best Sellers Rank, review count and rating, categories, series, format, and product description. This powers the on-page research features and, for connected accounts, your Book Scout dashboard.
  • Book search terms you enter on Amazon, used solely to label which search surfaced each book in your own research log (the visible "Found via" feature).
  • Books you choose to track, which the extension re-checks periodically from your browser to power rank, price, and review alerts.
  • Scrivy connection information, including the connected account's name and email for display in the popup, plus an account token stored locally in Chrome extension storage to authenticate requests to Scrivy. Disconnecting the extension removes that local token.
  • Amazon Ads reporting you choose to sync, including account/marketplace context, campaigns, ad groups, targets, bids, budgets, performance metrics, and customer search terms. Ads data is not read until you click Sync.

What the extension does not collect

  • Nothing is transmitted without a connected account. Until you explicitly connect the extension to a Scrivy account, all analysis happens locally in your browser and no data is sent to us.
  • No general browsing history. The extension operates only on supported Amazon pages, on advertising.amazon.com during a user-initiated sync, and on the Scrivy connection page. It does not observe, collect, or transmit your activity on unrelated websites.
  • No non-book shopping activity. For the book research feature, product pages that are not books (based on Amazon's own category data) are discarded in your browser and never transmitted.

How this data is used and shared

  • Your research log (which books you analyzed and which searches surfaced them) is private to your account.
  • Imported Amazon Ads data is private to your account and is used for your reporting, history, and optimization recommendations.
  • Publicly visible book statistics (rank, price, review counts) contributed by connected users are pooled into an aggregate book database that improves features like historical rank and price ranges for all users. This aggregate data contains no information about who viewed a book.
  • We do not sell or transfer this data to third parties, do not use it for advertising, and do not allow humans to read it except with your consent, for security purposes, or as required by law.

Your controls

  • Delete any search or any individual book from your research log at any time from the Book Scout dashboard; deleted items are excluded from every view and analysis.
  • Disable automatic analysis from the extension popup, disconnect your account at any time, or uninstall the extension to stop all collection immediately.

Limited Use disclosure

Scrivy's use and transfer of information received from Google APIs and from the Book Scout browser extension adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements. Data collected by the extension is used only to provide and improve the user-facing features described above and prominently in the extension's listing.

8. Cookies

Scrivy uses only essential cookies required for the Service to function. Specifically, we use a session cookie to keep you signed in via NextAuth. We do not use any cookies for tracking, advertising, or analytics purposes.

9. Your Rights

Depending on your jurisdiction, you may have the following rights regarding your personal information:

  • Access: Request a copy of the personal data we hold about you.
  • Correction: Request correction of inaccurate or incomplete personal data.
  • Deletion: Request deletion of your personal data, subject to legal obligations or legitimate business interests.
  • Data Portability: Request a machine-readable copy of your data.

To exercise any of these rights, please contact us at hello@scrivy.co. We will respond to your request within 30 days.

10. Data Retention

We retain your personal information for as long as your account is active or as needed to provide you the Service. If you request account deletion, we will delete your personal data within 30 days, except where we are required to retain it for legal, accounting, or regulatory purposes. Uploaded book files and cover images will be removed from our storage upon account deletion or upon your request.

11. Children's Privacy

Scrivy is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal data from a child under 18, we will take steps to delete that information promptly. If you believe we have inadvertently collected such information, please contact us at hello@scrivy.co.

12. Changes to This Policy

We may update this Privacy Policy from time to time. When we make changes, we will update the "Effective Date" at the top of this page. We encourage you to review this policy periodically to stay informed about how we are protecting your information. Your continued use of the Service after any changes constitutes your acceptance of the updated Privacy Policy.

13. Contact Us

If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at:

Scrivy

Email: hello@scrivy.co