Last Updated: July 17, 2026
1. Information We Collect
We collect limited information necessary to operate, secure, maintain, and improve the App.
1.1 Account Information
Users must create an account to access certain features of Coorabook.
When an account is created or used, we may collect:
• Display name or profile name
• Email address
• Profile photo, if uploaded
• Account authentication information generated by our authentication service
This information is used to create, authenticate, maintain, and support the user account.
We do not have access to users’ account passwords in readable form.
1.2 Reader Profile and Preferences
To personalize book discovery and improve the user experience, the App may collect:
• Preferred book genres
• Reader profile category
• Reading level or grade-group preference
• Other book discovery preferences selected by the user
We do not require users to provide their date of birth or precise age.
1.3 User Library and Reading Activity
When users interact with the App, we may store:
• Books saved to a personal library
• Book-related preferences
• Reading interests
• App activity related to book discovery and library management
This information allows users to create, manage, and access their personal reading library.
1.4 Scanned Book Images and OCR Processing
Coorabook may request access to the device camera so that users can scan book covers.
When a user scans a book cover:
The captured image is temporarily uploaded to Google Firebase Cloud Storage.
Google Cloud Vision accesses the temporarily stored image through a secure Firebase URL.
Optical character recognition, or OCR, is used to extract book-related text such as a title, author name, or ISBN.
After OCR processing is completed, the captured image is automatically deleted from Firebase Cloud Storage.
Captured book-cover images are not permanently stored by Coora Labs Inc.
Captured images are not:
• Sent to OpenAI
• Used for advertising
• Used to create advertising profiles
• Added to a user’s permanent library
• Used for purposes unrelated to book identification
Users should not scan documents or images containing personal information unrelated to a book.
1.5 AI and Automated Processing
Some Coorabook features use automated systems and third-party artificial intelligence services, including the OpenAI API.
Depending on the feature being used, limited book-related information may be transmitted to OpenAI, including:
• Text extracted from a scanned book cover
• Book title
• Author name
• ISBN
• Book description
• Publication or book metadata
• Other limited book information necessary to generate the requested result
This information may be used to:
• Organize or correct book information
• Generate estimated recommended age ranges
• Generate estimated grade levels
• Generate estimated Lexile® levels
• Identify series information
• Generate related-book recommendations
• Improve the presentation of book information
Coorabook does not intentionally transmit the following information to OpenAI:
• User email addresses
• Profile photos
• User account IDs
• Login credentials or passwords
• A user’s entire personal library
• Personal information that is not necessary for the requested book-related feature
• The captured book-cover image itself
OpenAI processes limited book-related information as a service provider under its applicable API terms, privacy policies, and data-processing practices.
AI-generated information may be inaccurate or incomplete and should be treated as an estimate rather than an official assessment.
1.6 Automatically Collected Technical Information
When users access the App, we or our service providers may automatically collect limited technical and diagnostic information, including:
• Device type
• Operating system and version
• App version
• App interaction information
• App instance or device identifiers
• Crash reports
• Diagnostic information
• Performance and reliability information
This information is used to maintain security, diagnose errors, understand feature performance, and improve the App.
2. How We Use Information
We may use information collected through Coorabook to:
• Create and manage user accounts
• Authenticate users
• Provide book search and discovery features
• Identify books through scanning and OCR
• Generate automated book information and recommendations
• Store and manage personal reading libraries
• Personalize book discovery based on user-selected preferences
• Maintain App security and prevent misuse
• Diagnose crashes and technical problems
• Improve functionality, performance, and reliability
• Respond to support requests
• Process account deletion and privacy requests
• Communicate important service, security, or policy updates
• Comply with applicable legal obligations
We do not sell or rent users’ personal information.
3. Book Metadata Services
To identify books and retrieve book information, Coorabook may transmit limited book-related information to external book metadata providers.
These services may include ISBNdb.
Information sent to a book metadata provider may include:
• ISBN
• Book title
• Author name
• Other information required to identify a book
These services may return:
• Book titles
• Author names
• Book descriptions
• Cover images
• Publication details
• Series information
• Other book metadata
No user account password is transmitted to book metadata providers.
4. Third-Party Service Providers
Coorabook relies on third-party service providers to operate and support the App.
These providers may include:
Google Firebase
Google Firebase may be used for:
User authentication
Firestore cloud database services
Temporary and persistent cloud storage
Analytics
Crash reporting
App performance and diagnostic services
Profile photos may be stored in Firebase Cloud Storage until the user removes the photo or deletes the account.
Scanned book-cover images are stored only temporarily and are automatically deleted after OCR processing.
Google Cloud Vision API
Google Cloud Vision may process temporarily uploaded book-cover images to extract book-related text using OCR technology.
OpenAI API
OpenAI may process limited book-related text and metadata to provide automated book analysis, reading-level estimates, series information, and recommendations.
Account email addresses, profile photos, user IDs, passwords, full personal libraries, and captured images are not intentionally sent to OpenAI.
ISBNdb API
ISBNdb may receive limited book-identification information and return book metadata.
Third-party providers process information according to their own terms, privacy policies, security practices, and data-processing arrangements.
We review the third-party services used by Coorabook and seek to limit information transmitted to what is reasonably necessary to provide the relevant feature.
5. Disclosure of Information
We may disclose limited information to service providers that process information on our behalf to operate the App.
We may also disclose information when reasonably necessary to:
• Comply with applicable laws or valid legal requests
• Protect users, Coora Labs Inc., or the public
• Investigate fraud, abuse, security incidents, or violations of our Terms
• Complete a merger, acquisition, financing, reorganization, or transfer of business assets, subject to applicable law
We do not sell personal information to data brokers or advertisers.
6. Analytics and Diagnostics
We may use services such as Firebase Analytics and Firebase Crashlytics.
Depending on configuration and device settings, these services may process:
• App interaction information
• App instance identifiers
• Device information
• Crash logs
• Diagnostic data
• Performance information
This information is used to maintain, secure, analyze, and improve Coorabook.
We do not use scanned book-cover images for advertising or advertising profiling.
7. Data Storage and Security
User information may be stored using cloud infrastructure operated by Google and other service providers.
We implement reasonable administrative, technical, and organizational safeguards designed to protect information from:
• Unauthorized access
• Unauthorized disclosure
• Loss
• Misuse
• Alteration
• Destruction
Information transmitted between the App and service providers is protected using appropriate transmission-security measures where supported.
No information system can guarantee absolute security.
8. Data Retention and Deletion
We retain personal information only for as long as reasonably necessary to:
• Provide the App
• Maintain user accounts and libraries
• Fulfill the purposes described in this Privacy Policy
• Protect the security and integrity of the Service
• Resolve disputes
• Comply with legal obligations
Different types of information have different retention periods.
Scanned Book-Cover Images
Scanned book-cover images are temporarily uploaded to Firebase Cloud Storage and automatically deleted immediately after OCR processing is completed.
Account and Library Information
Account information, profile information, preferences, and library information are retained while the account remains active or as otherwise necessary to provide the Service.
Users may delete their account through the App Settings.
Users who cannot access the App may also request account deletion through the Account Deletion Request page on the Coorabook website or by contacting:
support@cooralabs.com
When an account is deleted:
• Account information is deleted
• Library information is deleted
• Reading preferences and activity associated with the account are deleted
• Profile photos stored by Coorabook are deleted
Deletion is normally completed within 30 days unless limited retention is reasonably necessary for legal compliance, security, fraud prevention, dispute resolution, or another lawful purpose.
Information that has been aggregated or de-identified so that it can no longer reasonably identify an individual may be retained.
9. User Privacy Rights
Depending on the user’s location and applicable law, users may have the right to:
• Request access to personal information
• Request correction of inaccurate information
• Request deletion of personal information
• Withdraw consent where processing is based on consent
• Object to or restrict certain processing
• Request information about service providers that process personal information
• Submit a complaint to an applicable privacy regulator
Privacy requests may be submitted to:
support@cooralabs.com
We may need to verify the identity of the person making the request before completing it.
10. Children’s Privacy
Coorabook is not intended for children under the age of 13.
Children under 13 are not permitted to create an account or use the App.
We do not knowingly collect personal information from children under 13.
If we learn that personal information has been collected from a child under 13, we will take reasonable steps to delete the information.
Additional information concerning younger users and parental supervision is available in the Coorabook Children’s Privacy Notice.
11. International Data Processing
Coora Labs Inc. operates from Canada.
Information may be processed or stored in Canada, the United States, or other countries in which our service providers operate.
Privacy and data-protection laws in those countries may differ from the laws of the user’s country.
Where required, we take reasonable steps to use service providers and data-processing arrangements that support lawful international data processing.
12. Changes to This Privacy Policy
We may update this Privacy Policy to reflect:
• Changes to the App
• Changes to third-party services
• Changes to data practices
• Legal or regulatory requirements
• Security or operational developments
When this Privacy Policy is updated, the “Last Updated” date will be revised.
If a change materially affects how personal information is collected, used, or disclosed, we will provide additional notice or obtain consent where required by applicable law.
13. Contact Us
Questions, privacy requests, and complaints regarding this Privacy Policy may be submitted to:
Coora Labs Inc.
Email: support@cooralabs.com