Privacy Policy
Last Updated: February 14, 2026
Introduction
Booxs ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use the Booxs mobile application ("App").
Information We Collect
Account Information
When you create an account, we collect:
- Email address — used for authentication and account recovery
- Name — displayed as your author name within the App
Content You Create
When you use the App, we store:
- Booxs (stories) you create, including text, titles, and descriptions
- Media files (photos, videos, audio recordings) you choose to attach to your Booxs
- Community posts, comments, and interactions you make within the Community Feed
Automatically Collected Information
- Authentication tokens — stored securely on your device (Keychain) to keep you signed in
- Local preferences — cached locally on your device using standard iOS storage (UserDefaults)
Information We Do NOT Collect
- We do not track your location
- We do not collect device identifiers for advertising
- We do not use third-party analytics or tracking SDKs
- We do not sell or share your personal data with advertisers
- We do not access your contacts, calendar, or other device data
How We Use Your Information
We use your information solely to:
- Provide and maintain the App's functionality
- Authenticate your identity and secure your account
- Store and deliver content you create
- Enable sharing of Booxs via share links
- Enable community features (posts, comments, likes, follows)
- Send you important account-related communications
Data Storage and Security
- Account data is stored using AWS Cognito (managed authentication service)
- Content is stored in AWS DynamoDB (encrypted database) and AWS S3 (encrypted file storage)
- All data is transmitted over HTTPS (TLS encryption)
- Authentication tokens are stored in the iOS Keychain (hardware-backed secure storage)
- We use AWS WAF (Web Application Firewall) for protection against common attacks
- Media files are stored in private S3 buckets with no public access
Data Retention
- Your content is retained as long as your account is active
- When you delete a Boox, it is permanently removed from our servers
- You may request complete account deletion by contacting us (see below)
- Incomplete media uploads are automatically deleted after 24 hours
Third-Party Services
We use the following third-party services to operate the App:
| Service | Purpose | Privacy Policy |
| Amazon Web Services (AWS) |
Cloud infrastructure, authentication, storage |
AWS Privacy |
| Apple Sign In (optional) |
Social login |
Apple Privacy |
| Google Sign In (optional) |
Social login |
Google Privacy |
We do not share your personal data with any other third parties.
Your Rights
You have the right to:
- Access your personal data
- Correct inaccurate personal data
- Delete your account and associated data
- Export your content
- Withdraw consent at any time by deleting your account
Children's Privacy
Booxs is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy within the App and updating the "Last Updated" date.
Contact Us
If you have any questions about this Privacy Policy or wish to exercise your rights, please contact us at:
Email: dmitriy@haloai.tech