Legal
Last updated: April 22, 2026
BookSculpt ("we", "us") respects your privacy. This Privacy Policy explains what personal information we collect, how we use it, and the choices you have. It applies to booksculpt.pro and all related services (the "Service").
By using the Service you acknowledge that your information will be processed as described below.
Account data: name, email, hashed password, profile picture, timezone, author bio, website, writing goals.
Content you create: manuscripts, chapters, outlines, notes, project covers, team-member email addresses you invite.
Payment data: we do not store payment card numbers. Stripe (our PCI-compliant processor) handles all card data; we only store Stripe customer IDs, subscription status, and transaction history.
Usage data: pages visited, features used, AI word counts, export events, device/browser info, IP address, and timestamps.
Support data: messages you send to support@booksculpt.pro or via the Contact form.
Cookies: authentication cookies (HTTP-only, secure) for session management; limited first-party analytics cookies; no third-party advertising cookies.
When you use AI features, your prompts and relevant chapter context are sent to our AI providers (currently Anthropic Claude via Emergent Integrations) solely to generate the requested output. Providers are contractually bound not to use your content to train their models.
We do not use Your Content to train any machine-learning models.
We share personal data only with:
We do not sell or rent your personal information.
We retain account data while your account is active. After account deletion, manuscripts and project data are deleted within 30 days (except anonymised logs retained for security/audit purposes up to 12 months). Payment records are retained for 7 years to comply with tax law.
Depending on your location (EEA/UK/Switzerland under GDPR, California under CCPA/CPRA, or similar regimes), you may have the right to:
To exercise any of these rights, email privacy@booksculpt.pro. We will respond within 30 days.
We use industry-standard safeguards including TLS/HTTPS for data in transit, bcrypt hashing for passwords, HTTP-only secure cookies, role-based access control, rate limiting, and encrypted database backups. No system is 100% secure; notify us immediately at security@booksculpt.pro if you suspect a breach.
BookSculpt is operated from the United States. If you access the Service from outside the U.S., your data will be transferred to and processed in the U.S. We rely on Standard Contractual Clauses where applicable for transfers from the EEA, UK, and Switzerland.
BookSculpt is not directed to children under 13 (or 16 in the EEA). We do not knowingly collect personal data from children. If you believe a child has provided us data, contact privacy@booksculpt.pro and we will delete it promptly.
The Service does not currently respond to Do Not Track browser signals. We do, however, honour the Global Privacy Control (GPC) signal for California residents.
We may update this Privacy Policy periodically. Material changes will be notified via email or in-app notice at least 14 days in advance. Continued use after the effective date constitutes acceptance.
Questions or concerns? Email privacy@booksculpt.pro. For general support, use support@booksculpt.pro.
Made with Emergent