Privacy

Plainly, what this place does and does not do with what you write.

Who can read a book

Only its members. A book is private by access control: the server checks that you are a member before it sends you anything from it.

Notes

Each note has a scope: everyone in the book, only its author, or a few chosen members. Notes are filtered on the server by that scope. A note you may not see is never sent to your browser — not hidden, not sent. Deleting a note removes it at once.

Not end-to-end encrypted

Text is stored as text. The operator (Isaac) and the database host (Neon) can technically read what is stored. If that is not acceptable for something, do not write it here.

History

Every save of every block is kept, with who and when. Deleting a block hides it from the story; its revisions stay in History (that is the point of History) and can be restored by any member.

What we keep about you

A first name you chose, a random key for your private link, and — only if you add one and click its link — an email address. No password. No analytics, no trackers, no third-party scripts, no external fonts or images. Requests are rate-limited by a short-lived hash of your connection address, which is not kept.

Links

Your private link signs its holder in as you. Keep it to yourself. “Make a new link” on your page kills every old one. An invite works once and expires after 30 days. A sign-in email link works once and expires after 30 minutes.