Sparky Reads

Privacy policy

Last updated 2026-05-08 · Plain English version below the legal one

The TL;DR. We store: which books you added, your reading progress, your highlights, and the GitHub or Google sub claim that identifies you on sign-in. We do not sell anything. We do not run ads. We do not share your reading history with anyone. You can export everything as JSON or delete your account at any time.

1. Who we are

Sparky Reads is operated by Joona Tyrninoksa, a sole developer based in Helsinki, Finland. You can reach the operator at the email address listed in the GitHub repository github.com/Joona-t/lovespark-reads.

2. What we collect

2.1 Identity (required)

2.2 Reading data (you create it)

2.3 Operational data

2.4 What we do NOT collect

3. Cookies

We set three cookies, all functional, none for tracking:

No banner is displayed because we do not set non-essential cookies.

4. Where your data lives

Application servers run on Fly.io (multiple regions). Static assets are served via Cloudflare. Backups are sent nightly to Backblaze B2 (United States). All data is encrypted in transit (TLS 1.2+).

Cloudflare may process your IP address to terminate TLS and protect against denial-of-service attacks. Cloudflare's privacy policy: cloudflare.com/privacypolicy.

5. Legal basis (GDPR Art. 6)

6. Your rights (GDPR Art. 12-22)

7. Data retention

8. Children

The service is not directed at users under 16. If you are under 16, please do not create an account. If you are a parent or guardian and believe your child has created an account, contact the operator and we will delete it.

9. Changes to this policy

We will update this page when material changes occur. Material changes affecting how we use your data will be announced via the dashboard banner and via email (if we have your email).


Self-host version: when you run Sparky Reads on your own computer via ./reads serve, none of this policy applies. All your data stays on your machine. The dashboard does not call out to our servers.