Privacy Policy

Last updated: March 16, 2026

Introduction

Readway ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered reading platform.

By using Readway, you agree to the collection and use of information in accordance with this policy.

1. Information We Collect

1.1 Information You Provide

  • Account Information: Email address, name (optional), password (encrypted)
  • Profile Data: Reading preferences, interests, profile picture (optional)
  • Content: Books you upload, notes, highlights, bookmarks
  • Communications: Messages you send to us, feedback, support requests
  • Waitlist Data: Email address, referral information, position in queue

1.2 Automatically Collected Information

  • Usage Data: Pages viewed, reading time, feature usage, interaction patterns
  • Device Information: Device type, operating system, browser type, IP address
  • Reading Analytics: Reading speed, comprehension metrics, completed books
  • Cookies and Tracking: Session data, preferences, analytics (see Cookie Policy below)

1.3 AI-Generated Data

  • AI-generated summaries and insights based on your reading
  • Personalized recommendations and predictions
  • Reading comprehension analysis

2. How We Use Your Information

We use collected information for the following purposes:

2.1 Service Delivery

  • Provide and maintain the Readway platform
  • Process your books and generate AI insights
  • Personalize your reading experience
  • Manage waitlist and early access

2.2 Communication

  • Send transactional emails (account updates, waitlist notifications)
  • Provide customer support
  • Send marketing communications (with your consent)
  • Notify you of Service updates and new features

2.3 Improvement and Analytics

  • Analyze usage patterns to improve the Service
  • Train and improve our AI models
  • Conduct research and development
  • Monitor and prevent technical issues

2.4 Legal and Security

  • Comply with legal obligations
  • Protect against fraud and abuse
  • Enforce our Terms of Service
  • Protect our rights and the rights of others

3. How We Share Your Information

We do NOT sell your personal information. We may share your information in the following circumstances:

  • Service Providers: Third-party vendors who perform services on our behalf (e.g., hosting, analytics, email delivery, payment processing)
  • AI Processing: AI service providers (OpenAI, Anthropic, Google) to generate insights. We use enterprise agreements with data protection guarantees.
  • Legal Requirements: When required by law, court order, or government request
  • Business Transfers: In connection with a merger, acquisition, or sale of assets
  • With Your Consent: When you explicitly authorize us to share information

4. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption: Data encrypted in transit (TLS/SSL) and at rest (AES-256)
  • Access Control: Strict employee access controls and authentication
  • Infrastructure: Secure cloud hosting with regular security audits
  • Monitoring: Continuous monitoring for suspicious activity
  • Data Minimization: We collect only necessary data

However, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security.

5. Your Privacy Rights

Depending on your location, you may have the following rights:

GDPR Rights (EU/EEA Users)

  • Right to Access: Request a copy of your personal data
  • Right to Rectification: Correct inaccurate or incomplete data
  • Right to Erasure: Request deletion of your data ("right to be forgotten")
  • Right to Restriction: Limit how we use your data
  • Right to Data Portability: Receive your data in a machine-readable format
  • Right to Object: Object to processing based on legitimate interests
  • Right to Withdraw Consent: Withdraw consent at any time

California Privacy Rights (CCPA/CPRA)

  • Right to know what personal information is collected
  • Right to delete personal information
  • Right to opt-out of sale (we do not sell data)
  • Right to non-discrimination for exercising rights

To exercise these rights, contact us at privacy@readway.ai

6. Data Retention

We retain your information for as long as necessary to provide the Service and fulfill the purposes described in this policy.

  • Account Data: Until you delete your account (plus 30 days for backups)
  • Uploaded Books: Until you delete them or close your account
  • Usage Analytics: Aggregated data may be retained indefinitely
  • Legal Requirements: Some data retained longer if required by law

7. Cookies and Tracking Technologies

We use cookies and similar technologies to:

  • Essential Cookies: Required for the Service to function (authentication, security)
  • Analytics Cookies: Help us understand how you use the Service (Google Analytics)
  • Preference Cookies: Remember your settings and preferences

You can control cookies through your browser settings. Note that disabling essential cookies may limit functionality.

8. Third-Party Services

We use the following third-party services:

  • Hosting: Vercel (infrastructure)
  • Database: Supabase (data storage)
  • Email: Resend (transactional emails)
  • AI Models: OpenAI, Anthropic, Google (AI processing)
  • Analytics: Privacy-focused analytics tools

These services have their own privacy policies. We recommend reviewing them.

9. International Data Transfers

Your information may be transferred to and maintained on servers located outside your country. We ensure appropriate safeguards are in place (e.g., Standard Contractual Clauses for EU data transfers).

10. Children's Privacy

Readway is not intended for children under 13 (or 16 in the EU). We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.

11. AI and Machine Learning

We use AI to enhance your reading experience. Here's how it works:

  • Processing: Your books are processed by AI to generate summaries and insights
  • Personalization: AI analyzes your reading patterns to provide recommendations
  • Data Usage: Your data is NOT used to train public AI models
  • Privacy: AI processing happens on secure servers with data protection agreements

12. Marketing Communications

We may send you marketing emails about new features, updates, and promotions. You can opt-out at any time by:

  • Clicking "Unsubscribe" in any email
  • Updating your email preferences in account settings
  • Contacting us at support@readway.ai

Note: You cannot opt-out of transactional emails (e.g., account notifications, security alerts).

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by:

  • Posting the updated policy on this page
  • Updating the "Last updated" date
  • Sending you an email notification (for significant changes)

Your continued use of the Service after changes constitutes acceptance of the updated policy.

14. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or your data, please contact us:

We will respond to your request within 30 days.