Novilot

Kebijakan privasi

Versi dokumen:

Lihat juga ketentuan layanan dan cara kami menangani AI dan tulisan Anda.

Novilot adalah aplikasi menulis untuk novelis. Naskah Anda adalah hal paling pribadi yang bisa Anda masukkan ke perangkat lunak, dan halaman ini menjelaskan persis apa yang terjadi padanya dan pada sisa data Anda. Versi singkat: tulisan Anda tetap milik Anda, kami memakainya hanya untuk menjalankan fitur yang Anda minta, kami tidak pernah menjual data, dan kami tidak pernah memakai kata-kata Anda untuk melatih model AI.

Apa yang kami kumpulkan

  • Data akun. Alamat email Anda dan versi hash kata sandi (di-hash dengan bcrypt; kami tidak dapat melihat kata sandi itu sendiri).
  • Tulisan Anda. Proyek, bab, entri Story Bible, kerangka, catatan, versi bab, dan apa pun yang Anda buat di aplikasi. Ini disimpan agar aplikasi dapat menampilkannya kembali kepada Anda. Tidak pernah dipublikasikan kecuali Anda secara eksplisit membagikannya (misalnya, tautan pembaca beta yang Anda buat).
  • Data kerja AI. To power features like autocomplete, continuity checking, and voice matching, we store material derived from your manuscript: summaries, style profiles, continuity observations, and text embeddings. These are private working data, subject to the deletion and retention details below.
  • Data pemakaian. Fitur mana yang Anda pakai dan peristiwa produk dasar (misalnya, bahwa suatu analisis dijalankan), plus pemakaian kredit yang menopang penagihan adil. Kami juga menghitung kata yang ditulis untuk tujuan dan rentetan Anda sendiri.
  • Data penagihan. Payments are handled by Dodo Payments. We never see or store your card number; we store your Dodo Payments customer and checkout references, subscription status, and payment and refund records needed to maintain your credit balance.
  • Pesan yang Anda kirim kepada kami. Masukan yang Anda kirim di aplikasi dan email yang Anda kirim kepada kami.

Bagaimana fitur AI memakai naskah Anda

Anthropic's Claude API processes manuscript passages for AI features. OpenAI's embeddings API processes paragraphs and search queries to support meaning-based manuscript search. Preparing this search index can run in the background after you save or import chapters. Requests use encrypted connections. A full-manuscript analysis may process the entire manuscript within the coverage shown for that scan.

  • We do not use your writing to train AI models or opt your manuscript into provider training programs. Anthropic and OpenAI do not train on commercial API content by default.
  • We send content needed for the feature and its supporting processing, such as search indexing. Provider retention is separate from model training.
  • Hasil AI (saran, analisis) disimpan di akun Anda agar Anda tidak membayar untuk menghasilkannya ulang.

AI provider retention

We do not promise Zero Data Retention. Anthropic's standard API policy deletes inputs and outputs within 30 days, with exceptions for legal obligations and policy enforcement. Flagged content may remain for up to two years and safety classifications for up to seven years. Feedback deliberately submitted to Anthropic can be retained for five years and may be used for training; we do not submit your manuscript as provider feedback.

OpenAI's standard API abuse-monitoring retention is up to 30 days, with longer retention possible for legal or safety reasons. The embeddings endpoint does not retain application state. Deleting a project in Novilot does not itself erase provider logs or override their retention obligations.

Lihat Anthropic's retention policy dan OpenAI's API data controls.

Human access

Private means your manuscript is not public or available to other writers unless you share it. It does not mean end-to-end encryption: our servers and processors need readable text to provide the service. People with privileged infrastructure or database access can technically access it. Operational access must be limited to what is necessary for support, debugging, security, abuse investigations, or legal obligations, not browsing your work for personal or commercial use.

Service providers can also permit authorized human access under their agreements, including safety review. We cannot promise that no person will ever review content. Text you choose to include in a support message is available to the people handling it.

Analitik

We use Google Analytics and PostHog to understand how the product is used so we can improve it. PostHog session replay is configured to mask text and inputs. Sentry helps diagnose errors; request-body collection and default personal-data collection are disabled, and replay text and inputs are masked. Diagnostic metadata may still be processed. We do not intentionally send manuscript text to analytics or error reports. We do not run ads.

Cookie

  • nc_session: cookie penting yang membuat Anda tetap masuk. Aplikasi tidak dapat berfungsi tanpanya.
  • Cookie analitik dari Google Analytics dan PostHog, hanya dipakai untuk tujuan di atas.

Di mana data Anda tinggal dan siapa yang memprosesnya

Data Anda disimpan di basis data Postgres terkelola dan dilayani melalui Vercel. Kami membagikan data hanya dengan penyedia layanan yang dibutuhkan untuk menjalankan Novilot, dan hanya untuk tujuan itu:

  • Vercel (hosting)
  • Prisma Postgres (basis data)
  • Anthropic (fitur AI)
  • OpenAI (manuscript and query embeddings for search)
  • Dodo Payments (pembayaran)
  • Kirim ulang (email transaksional)
  • Google Analytics dan PostHog (analitik)
  • Sentry (error monitoring)
  • Dropbox and GitHub (only when you connect an external backup destination)

We do not sell your data. Manuscript processing is limited to providing the service, your chosen sharing and backup features, and necessary legal or security obligations.

Retensi dan penghapusan

  • Project deletion removes its manuscript, chapter history, Story Bible, summaries, continuity records, embeddings, and saved analyses from the active database. Manuscript-derived voice profiles are invalidated so they cannot keep deleted excerpts.
  • Chapter deletion removes that chapter and its version history, and invalidates affected derived analyses and voice profiles. Project-level Story Bible entries, outlines, and notes you have retained remain until you edit them or delete the project.
  • To delete your entire account, contact us (see below). Account deletion removes your writing, AI working data, usage history, profile, and linked in-app feedback from the active database. Records required by law, such as payment records held by the payment provider, can have separate retention obligations.
  • Our Prisma Postgres plan keeps automated database snapshots for seven days. Deleted data can remain in an earlier snapshot until it expires. This backup window is separate from the AI-provider retention and external copies described on this page.
  • Exports, copies shared with others, and backups in your connected Dropbox or GitHub account are not erased by deleting a Novilot project or account. You control those copies separately.
  • The browser can hold analysis caches and unsynced edits. Deleting through the app clears the affected local copies on that device. Copies on offline or other devices may remain until cleared there.
  • Anda dapat mengekspor naskah kapan saja dari aplikasi (DOCX, EPUB, HTML, Markdown, atau PDF).

Hak Anda

Tergantung di mana Anda tinggal (misalnya, di bawah GDPR atau CCPA), Anda mungkin memiliki hak untuk mengakses, memperbaiki, mengekspor, atau menghapus data pribadi Anda, dan untuk keberatan terhadap pemrosesan tertentu. Hubungi kami dan kami akan menghormati permintaan ini untuk semua orang, terlepas dari lokasi.

Anak-anak

Novilot tidak ditujukan kepada anak di bawah 13 tahun, dan kami tidak dengan sengaja mengumpulkan data mereka.

Perubahan

Jika kami mengubah kebijakan ini, kami akan memperbarui halaman ini dan tanggal di bagian atas. Jika perubahan secara bermakna memengaruhi cara naskah Anda ditangani, kami akan memberi tahu Anda di aplikasi atau melalui email sebelum berlaku.

Kontak

Email support@novilot.com, atau gunakan tombol "Kirim masukan" di dalam aplikasi. Permintaan privasi dijawab oleh manusia.