1. Account Data
We process information such as name, verified email, hashed password, language, country, preferences and data required to secure the account.
Sign-up and recovery codes are temporary and expire automatically.
This Policy explains the data Ovotus uses to provide a secure, synchronized digital library adapted to your country.
Last updated: September 12, 2026We process information such as name, verified email, hashed password, language, country, preferences and data required to secure the account.
Sign-up and recovery codes are temporary and expire automatically.
We store books saved to My Library, reading progress, last page, chapter, reading dates and ratings.
This lets readers resume, synchronize devices, calculate ratings and personalize the experience.
IP address and country may be processed to select the relevant catalog, language, currency and payment methods.
We also process sessions, browser, device, technical logs and events required for security and diagnostics.
We retain transaction references, provider, amount, currency, status, dates, subscription term and purchased books or formats.
Payment providers process sensitive details under their own policies. Ovotus does not retain full card numbers.
Offline content, local progress and certain preferences may be stored in protected browser or App storage.
They remain on the device until expiry, removal by Ovotus or deletion of App data by the user.
With permission, a notification token may be used for new books, transactions, expirations and important account events.
Support tickets contain messages, email, replies and attached images or PDFs. Permanently closing a resolved ticket deletes its conversation and attachments.
Ovotus does not sell personal data. Necessary data may be processed by hosting, MongoDB, Redis, email services, payment providers and essential technical tools.
Each provider receives only data needed for its task and remains subject to applicable obligations.
Data is retained for the account lifetime or as long as required for service, support, security, legal and accounting duties.
Codes, sessions, temporary exports, old notifications and expired files are cleaned according to their periods. Account deletion removes associated data from active databases, subject to mandatory exceptions.
Ovotus uses HTTPS, password hashing, secure cookies, access controls, CSRF tokens, abuse limits and file validation.
No system can guarantee absolute security. Use a strong password and promptly report suspicious activity.
You can edit information and delete your account in Settings. Depending on applicable law, you may request access, correction, deletion, restriction or objection through Report a Problem.