PhonoLeaf ("the app", "we", "our") turns epub books stored in your Google Drive into read-aloud audio, on your own device. This policy explains what data the app touches, why, and — just as importantly — what it never does.
| Data | Why | Where it goes |
|---|---|---|
| Google Drive access (read-only) | To list and download the epub files in the folder you choose | Directly between your device and Google — never through us |
| Your Google display name | For the "Good morning, {name}" greeting on the Home screen | Stored on your device only |
| Book titles/authors | To look up genre and page-count metadata | Sent to Open Library (openlibrary.org), a public, third-party book database — no personal or account data is included |
| Reading progress, stats, settings, voice choice | So the app remembers your place and preferences | Stored on your device only (browser storage / app storage) — never transmitted anywhere |
| Book covers | Cached so they don't re-download every time | Stored on your device only |
PhonoLeaf requests read-only access to Google Drive (the drive.readonly scope). This is a broad, Google-classified "restricted" scope — broader than the app strictly needs for the one folder you connect — chosen because it's the only way to support "connect a folder once, new books appear automatically" without you re-selecting files every time. Because of that scope, PhonoLeaf is required to go through Google's own app verification process; see Google's own explanation of what that review covers at support.google.com/cloud/answer/13463737.
The app never modifies, deletes, or uploads anything to your Drive. It only lists and downloads the epub files inside the one folder you pick.
Because PhonoLeaf has no backend of its own, your device talks directly to a short, fixed list of external services:
Everything else — your reading progress, listening stats, theme choice, voice preference, and which folder you've connected — is stored locally in your browser's or app's own storage. It never leaves your device. Uninstalling the app, clearing site data, or using "Reset listening data" in Settings removes it.
Signing out revokes the app's access to your Google account. On the native app, this also revokes the underlying Google authorization grant, not just the local session.
Because PhonoLeaf has no backend, there is no account of yours sitting on a server for us to hand over or erase — everything is on your own device, and you can act on it directly, without asking us and without waiting:
If you have a question we can't answer through the app itself, contact us using the address below.
PhonoLeaf is not directed at children under 13, and we do not knowingly collect data from children. Since PhonoLeaf has no backend, it does not collect data from anyone, of any age, on any server we operate.
If this policy changes, the updated version will be posted at this same URL with a new effective date.
Questions about this policy: baileyke90@gmail.com