The fine print

Privacy Policy

Last updated: March 2026

What we collect

Spinecrackers stores the data you enter directly — item titles, authors, notes, reading status, cover URLs, and shelf names. Your account is identified by the email address you used to sign up. No analytics, tracking pixels, or advertising identifiers are used.

How it is stored

All data is stored in a Supabase project hosted on AWS infrastructure. Each user's records are isolated by a row-level security policy keyed to their user ID — your collection is not visible to other users.

Cover images you add or that are fetched automatically are downloaded and stored in Supabase Storage under your user-scoped path, eliminating reliance on third-party image hosts.

Third-party services

When you add a new item, the app may query the following public APIs to look up metadata and cover images:

  • iTunes Search API (Apple)
  • Open Library API (Internet Archive)
  • Google Books API
  • ComicVine API

These queries include only the title or ISBN you searched for. No account information is sent to these services.

Data deletion

You can delete any item or shelf at any time from within the app. To request full account deletion, contact scott.harriman@gmail.com.

Changes

If this policy changes materially, the “last updated” date above will be revised. Continued use of the app after a change constitutes acceptance of the updated policy.