Privacy Policy
Effective date: July 17, 2026
Lo-Fi Library is a personal writing and publishing platform that lets you
plan stories, write chapters, and optionally publish them to a public
library. This policy explains what information we collect, how we use it,
and the choices you have. It applies to the Lo-Fi Library website
(lofi-library.com) and the Lo-Fi Library mobile app.
Who we are
Lo-Fi Library is operated by an individual hobbyist developer and is hosted
on a privately managed server. It is a small, community-oriented project,
not a commercial company. We do not sell your data, and we do not run
third-party advertising.
Information we collect
We only collect what we need to run the service:
-
Account information. A username and a password. Passwords
are never stored in plain text - they are stored as a salted PBKDF2 hash.
-
Google sign-in (optional). If you choose to sign in with
Google, we receive your email address and basic Google profile information
(such as your name and profile picture) to create and identify your
account. We do not receive your Google password.
-
Your content. The material you create - projects, notes,
characters, settings, locations, plot beats, chapters, your pen name, and
bookmarks. This is stored so you can access and edit it across sessions
and devices.
-
Your profile picture. If you upload an avatar, the image
is stored on our server and shown next to your name across the site.
-
Feedback you send. If you send an author private feedback
or editorial notes, we store the message. Plain feedback reaches the
author without your username, but it carries a reference code that lets
administrators trace repeated abuse back to an account. Editorial notes
are attributed — the author sees who wrote them.
-
Technical and security data. Your IP address and basic
request logs, used to keep accounts secure (rate limiting, abuse and
intrusion prevention). We use essential cookies for login sessions and
for protection against cross-site request forgery (CSRF).
How we use your information
- To create your account and sign you in.
- To store, display, and let you edit your writing and planning data.
- To publish content that you explicitly choose to publish to the Library.
- To keep the service secure and prevent abuse.
- To deliver email you have asked for, and occasional announcements.
Email we send you
We send two kinds of email, and you control them separately:
-
Transactional. Reader feedback and editorial notes on
your works, password resets, and account notices. These are the point of
having an account, so they always go out.
-
Announcements. Occasional service news from the
administrators. You can switch these off at any time under
Email preferences in your profile, or from the
unsubscribe link in the footer of any announcement. Turning them off does
not affect the transactional email above.
We do not sell your address, and we do not send marketing on behalf of
anyone else.
Cookies
We use only essential cookies: a session cookie to keep you logged in and a
CSRF-protection token. We do not use advertising or third-party tracking
cookies.
Content you choose to publish
Anything you publish to the public Library - including the chapters you
publish and the pen name you display - becomes publicly visible by your
choice. You can unpublish that content at any time from your account, which
removes it from public view going forward.
How your information is shared
We do not sell or rent your personal information. We do not share it with
third parties for their own marketing. Limited infrastructure providers help
us deliver the site securely (for example, network routing and tunneling
services that carry encrypted traffic between you and our server). Content
you publish is, by design, shared publicly as described above.
Data security
- Passwords are stored as salted PBKDF2 hashes, never in plain text.
- Traffic is served over HTTPS.
- We apply login rate limiting and IP-based protections against abuse.
- Automatic backups are taken before major changes to your stored data.
No online service can guarantee perfect security, but we take reasonable
steps to protect your information.
Data retention and deletion
We keep your account and content for as long as your account is active.
You can delete your account yourself from your profile
— no need to ask us. Deletion is a two-step process with a seven-day
grace period, so signing back in during that window cancels it; after the
window your account and content are removed. You can also export your
projects to a file from your profile at any time. Some minimal security
logs may persist for a short period for abuse prevention.
Children
Lo-Fi Library is not directed to children under 13, and we do not knowingly
collect personal information from children under 13. If you believe a child
has provided us information, please contact us and we will remove it.
Changes to this policy
We may update this policy from time to time. When we do, we will revise the
effective date at the top of this page. Significant changes may also be
announced in our community.
Contact us
Questions about this policy, or requests to access or delete your data, can
be sent to us through our community Discord server:
discord.gg/DJxNeBsCJK.