← Canonscribe
The short version: your manuscript lives on your own device, not on our servers. We send scene text to our AI providers only to generate the specific response you asked for. We collect your email for login and hand billing off entirely to Stripe — we never see your card number. We don't sell your data, ever.
1. What we collect
- Account info — your email address, via Supabase Authentication (Google sign-in or a magic link).
- Billing info — your name, payment method, and transaction history are collected and processed directly by Stripe, our payment processor. We receive only what's needed to manage your subscription (plan, status, credit balance) — never your full card number.
- Usage data — which features you use, how many AI credits you've spent, and error logs, used to operate the Service and enforce the credit limits described in the Terms of Service.
- Manuscript content, transiently — when you use an AI feature (continuity digest, chat, analysis, Plot Grid, and so on), the relevant scene text is sent to our backend and forwarded to whichever AI provider is handling that request, solely to generate the response. We do not intentionally store your manuscript text on our servers beyond what's needed to process that one request — your manuscript itself lives locally on your device.
2. Who we share data with
We use a small number of third-party services to run Canonscribe (our "sub-processors"). We do not sell your data to anyone, for any reason.
- Supabase — authentication and account data.
- Stripe — payment processing and subscription billing.
- Anthropic (Claude) and DeepSeek — process the manuscript excerpts you submit, solely to generate the AI feature you requested. Anthropic's API terms state that API inputs and outputs are not used to train their models. DeepSeek's API is governed by its own terms, which we encourage you to review directly if this matters to you.
- Our hosting provider — runs the backend server that proxies these requests.
3. What stays local
Your manuscript — every scene, chapter, and revision — is stored in your browser's or app's local storage (IndexedDB), not on our servers.
This means we cannot recover your manuscript if you clear your browser data, lose your device, or uninstall the app without exporting first. Back up your work using the Export feature regularly — during this beta, we don't hold a server-side copy of your book to restore from.
4. Data retention & deletion
- Account and billing data is retained as long as your account is active, plus whatever period tax or financial-recordkeeping law requires afterward.
- To delete your account, email admin@osatari.com. We'll delete your account and associated billing records within a reasonable time, except where we're legally required to retain something.
- Manuscript content stays wherever you left it — deleting your Canonscribe account doesn't touch data stored on your own device.
5. Security
We use industry-standard measures — encryption in transit, access controls — to protect your account and billing data. No system is perfectly secure, and we can't guarantee absolute protection. Manuscript content living on your own device rather than a central database is itself a meaningful part of that protection: there's no central manuscript store to breach.
6. Children's privacy
Canonscribe isn't directed at children under 13, and we don't knowingly collect information from them.
7. Beta status & changes to this policy
Canonscribe is in active beta. Our features, data model, and this policy may change as the product develops. We'll note material changes here with an updated effective date.