Privacy Policy

Wonderfnovel Privacy Policy

Effective Date: Sep 10, 2025
Controller: “Wonderfnovel”, “we”, “us”
Contact: contact@wonderfnovel.com

This Privacy Policy explains how we collect, use, share, retain, and protect your personal data when you use Wonderfnovel mobile apps, websites, and related services (“Services”). If you do not agree with this policy, please do not use the Services.

1) Scope

This policy applies to all Wonderfnovel Services. For certain features (e.g., subscriptions, promotions, A/B tests), we may present additional notices; those notices apply together with this policy.

2) What We Collect
2.1 Information You Provide

Account details: display name, email address.
(When using Sign in with Apple/Google, we only receive the minimum required info such as name and email. Apple may provide a private relay email at privaterelay.appleid.com if you choose “Hide My Email.”)

Optional profile data: age range, gender, country/region (only if you choose to provide).

Content & interactions: novels you publish, comments you post, likes, favorites, bookshelf items.

Transactions: purchase records for Coins/VIP (amount, product, time, store order ID). We do not store full payment card numbers—app-store billing handles payment.

Support/feedback: details you share when contacting us.

2.2 Device & Usage Data

Device model, OS version, app version, language, time zone.

Log and crash data for troubleshooting and security.

IP address and coarse location (for risk control, localization, or legal/rights purposes).

2.3 Cookies & Similar Technologies (Web)

Used for login persistence, preferences, performance analytics, and abuse prevention. See Section 9.

2.4 Third-Party Sources

Identity: Apple (Sign in with Apple), Google (Firebase Auth/Google Sign-In).

Billing: Apple In-App Purchase / Google Play Billing (we receive necessary reconciliation fields from the app stores).

Infrastructure: cloud hosting, storage/CDN, logging/monitoring, and security providers.

We do not use your in-app reading or interaction data for ads without your consent.

3) How We Use Your Information (Purposes & Legal Bases)

We process data to:

Provide & maintain the Services: account creation/sign-in, bookshelf/reading/commenting, Coins/VIP purchases and entitlements, order reconciliation.

Personalize content & recommendations: based on your in-app behavior and preferences. You can turn off personalization in privacy/settings, after which we show generic content.

Customer support: troubleshooting, service messages, and handling feedback.

Security & fraud prevention: verify accounts/activities, prevent spam/abuse, audit and handle disputes.

Analytics & improvement: product metrics, conversion/performance analysis, A/B tests (consent where required).

Compliance: tax/accounting record-keeping, responding to lawful requests.

Where applicable (e.g., EU/UK), we rely on performance of a contract (to provide the Service), legitimate interests (security, improvement, anti-fraud), legal obligations (tax/accounting), and consent (e.g., optional marketing/personalization).

4) Sharing & Disclosure

We do not sell your personal data. We share only as necessary:

Service providers/processors: cloud, CDN, logging/monitoring, support, risk & compliance—bound by contracts (confidentiality and data-protection obligations).

Payment/app stores: to complete purchases, refunds/appeals, and reconciliation.

Legal/compliance: to comply with lawful requests, court orders, or to protect rights, safety, and property.

Business transactions: during reorganization/merger, in compliance with law and with continuing protection under this policy or a similar standard.

5) International Transfers

Your data may be processed in other countries. We implement appropriate safeguards (e.g., Standard Contractual Clauses, access controls) and choose locations with adequate protection where feasible.

6) Retention & Deletion (Important)

We keep data only as long as necessary for the stated purposes, then delete or anonymize it. Typical retention periods (unless law requires longer):

Data Category Purpose Typical Retention
Basic account data (name, email, login identifiers) Provide Services & authentication Account lifetime + 30 days after deletion
Avatar, bookshelf, reading history Service & personalization Account lifetime; deleted or anonymized immediately after account deletion (see backup note)
Comments/community content Display & moderation On deletion: deleted or shown as “Deleted user” without identifying you
Orders/transactions (Coins/VIP) Billing, reconciliation, tax & audit 7 years (or as required by local law)
Security/access logs (incl. IP) Risk control, anti-fraud, audit 12 months (serious risk events may extend to 24 months)
Support/complaint materials Dispute handling & compliance 6–24 months after case closure
Backups Disaster recovery Rolling backups for ≤ 90 days, then overwritten

Backups: When you delete data or your account, we remove/anonymize it in online systems immediately; historical backups are overwritten within ≤ 90 days and are not searchable/usable in production.

7) In-App Account Deletion (On-Device “Delete Account”)

You can permanently delete your account directly in the app:
Me → Settings → Delete Account

Verification & cooling-off: To prevent mistakes, we may ask for re-confirmation or security checks. In some regions a cooling-off period up to 7 days may apply; after that, deletion is irreversible.

Processing time: Online system deletion/anonymization occurs within 72 hours (unless law requires otherwise). Backups are cleared within ≤ 90 days.

Deletion scope: Account profile, avatar, bookshelf, reading history, session tokens, third-party bindings (Apple/Google), and identifiable interaction data are deleted or anonymized.

Necessary retention:

Orders/transactions & tax records: retained for 7 years (or as legally required).

Anti-fraud/security audit logs: typically 12 months, up to 24 months for specific incidents.

Dispute/complaint materials: 6–24 months post-closure.

Effects: After deletion you cannot recover the account; purchased entitlements (Coins/VIP/unlocks) are removed and cannot be restored or transferred.

If you can’t log in: email contact@wonderfnovel.com
to request deletion; we will verify your identity and process as above.

For Sign in with Apple using “Hide My Email,” we treat the relay email as your account identifier; after deletion the association is removed.

8) Your Rights

Subject to applicable law, you have the right to access/export, rectify, delete, restrict processing, withdraw consent, and object to certain processing (e.g., direct marketing).

Use the in-app Settings/Privacy controls or email contact@wonderfnovel.com
.

We may request additional verification to protect your account.

Marketing/notifications: turn off in the app or via the unsubscribe link in emails.

Personalization: disable in privacy/settings to stop behavior-based recommendations (we will still perform essential operations and anti-abuse processing).

9) Cookies & Local Storage (Web)

On the website, we use cookies or local storage for login persistence, language/theme preferences, analytics, and security. You can manage cookies in your browser; disabling them may affect functionality. The app doesn’t use browser cookies but may use local storage for session and preferences.

10) Security

We apply transport encryption, access controls, least-privilege, logging/auditing, and backup/disaster-recovery to protect your data. Still, no system is 100% secure. Please use strong, unique credentials and keep them confidential.

11) Children & Minors

The Services are not directed to children under 13 (or the equivalent minimum age in your jurisdiction). If you believe we collected data from a child without proper consent, contact contact@wonderfnovel.com
and we will promptly delete it. In some regions, minors must use the Services only with verified parental consent and supervision.

12) Third-Party Links & Services

The Services may contain links to third-party sites/services (e.g., creator tools, social media). Those are governed by their own privacy policies; please review them before use.

13) Changes to This Policy

We may update this policy. For material changes, we will notify you in the app or on our website and allow reasonable time before they take effect. Your continued use of the Services constitutes acceptance of the updated policy.

14) Contact Us (Data Protection / Account Issues)

Email: contact@wonderfnovel.com

If you believe your request was not handled properly, and your local law provides for it, you may lodge a complaint with your data protection authority.

Appendix: Platform/Payments Notes

In-app purchases (Coins/VIP): All payments are processed by the app stores (Apple/Google). We do not store your full payment card details.

Sign in with Apple: We follow data-minimization principles and respect “Hide My Email.” We do not use your in-app interaction data for advertising without consent.

Google/Firebase Sign-In: We process only the identifiers necessary for authentication (ID token/UID, email, avatar) in compliance with Google/Firebase policies.