Privacy Policy
Snug is a personal home-library app: it tracks the books you own, lend out, and borrow. This page explains what information the app collects, why, and what happens to it. It's written for a small friends-and-family beta, so it's plain, and it will be updated (with the date above changed) if that changes.
Who runs this
Snug is an independent, single-developer project, not a company. There's no ad network, no data broker relationship, and no plan to sell your information to anyone.
What we collect
- Account info. The email address you sign up with, used only for authentication (sign-up codes, sign-in links, password resets).
- Profile. Your first name, an optional last name, a username, and an optional profile photo. Other signed-in Snug users can find you by searching for your username, and they will see your name and username.
- Friends and sharing. Friend requests and the friend connections you accept. When you log a lend or borrow with a friend, that loan is shared with them (the book, the dates, and any condition photo or note on it). Comments you write on a book are visible to your friends who also own a copy of it, and notes on a shared loan are visible to the other person on that loan.
- Your library data. Titles, authors, ISBNs, notes, due dates, and lending/borrowing history: everything you enter or scan into the app.
- Reports and blocks. If you report a note or a person, we store the report: which note or person, the reason and any detail you add, a copy of the reported text so it survives being deleted, and your account, so we can review it and act on it. The person you report is not told who reported them. If you block someone, we store that block so it keeps working.
- Photos. Book cover photos, shelf-scan photos, and lending/borrowing condition photos that you take or choose to add. These are stored under your account and used to display your library and, for shelf scans, to identify books automatically (see "AI scanning" below).
- Contacts (optional). If you grant contacts permission, Snug reads your device contacts' names and phone numbers to let you pick a name when logging a lend or borrow. Only the one contact you pick is saved with that loan. Your full contact list is never uploaded to our servers, and permission is only requested when you tap the contacts picker.
- Push notification token. A device-level token, plus a random identifier generated when you install the app, used to send reminders and friend notifications to your device. It identifies your device for notifications only.
- Scan usage counters. How many shelf/barcode scans you've run this month, used only to enforce a fair monthly limit on AI scanning calls. Your reminder settings are stored the same way, to decide which reminders to send you.
AI scanning
When you scan a shelf or a barcode, the photo is sent to Anthropic's Claude API to read titles and authors off spines and covers. Only the photo itself is sent for that purpose. No account info, contacts, or other library data is included in that call. Anthropic processes the image to return the extracted text; it is not used to identify you personally.
Who we share data with
- Supabase: the database, authentication, and file storage that runs the app. Your data is protected by row-level security, meaning it isn't visible to other users' accounts.
- Anthropic (Claude): receives shelf/barcode photos to power AI scanning, as described above.
- OpenAI: receives the photos you add to the app (profile photo, book covers, condition photos, photos in comments) so an automated check can catch unsafe images and confirm that a book photo shows a book. No account details are sent with the photo.
- Expo: delivers push notifications. It receives your push token and the text of each notification.
- Resend: sends the account emails (sign-up codes, sign-in links, password resets). It receives your email address and the content of those emails.
- Google Books: receives ISBNs and titles/authors you scan or enter, to look up cover art and book details. No account or personal data is sent.
We do not use third-party advertising or analytics/tracking SDKs, and we do not sell or share your data with data brokers.
Deleting your data
Settings → Delete Account permanently removes your books, loans, photos, and account in one action. There's no waiting period and no way to undo it, by design. This is also how to stop all future use of your data by the app.
Don't have the app installed, or can't sign in? Email support@getsnugapp.com from the address on your account and we'll delete your account and data for you.
Security
Data is transmitted over HTTPS and stored in Supabase Postgres with row-level security policies, so one account can't read another account's data.
Children's privacy
Snug is not directed at children under 13, and we don't knowingly collect information from them.
Changes to this policy
If what's collected or shared changes, this page will be updated and the effective date above will change. Given this is a small beta, check back occasionally.
Contact
Questions about this policy or your data: support@getsnugapp.com