Data Safety and Transparency
Data Safety and Transparency
Effective Date: June 28, 2025
This page explains how Synsto Publishing ("Synsto", "we", "our", "us") collects, uses, shares, and protects data across our Android application, iOS application, and website. This disclosure is provided in compliance with Google Play Store Data Safety requirements, Apple App Store Privacy Nutrition Labels, the Information Technology Act 2000 (India), the General Data Protection Regulation (GDPR), and other applicable international privacy standards.
1. At a Glance
- We do not sell your personal data to any third party.
- We do not display advertisements and do not use your data for advertising or behavioural profiling.
- We do not collect precise location, contacts, microphone input, or camera data for core app functionality.
- Biometric data (fingerprint / Face ID) is processed on your device only and never transmitted to our servers.
- Payment card data is processed by Razorpay directly and is never stored on Synsto servers.
- All data is transmitted over encrypted connections (HTTPS/TLS).
- You can request deletion of your data at any time.
2. Data We Collect
| Data Type | Examples | Required or Optional | Purpose |
|---|---|---|---|
| Account Information | Name, email address, phone number, password | Required | Account creation and authentication |
| Profile Information | Display name, profile picture, author biography | Optional | Personalisation and author profiles |
| Purchase and Order Data | Transaction history, subscription status, order details, shipping address | Required for purchases | Order processing and content delivery |
| Device Identifiers | Device model, OS version, app version, device ID, installation ID | Required | App functionality, security, and fraud prevention |
| Push Notification Token | Firebase-generated token unique to your device and app installation | Required if notifications enabled | Delivering push notifications |
| Reading and Listening Activity | Reading progress, bookmarks, audiobook position, playback speed | Required | Syncing your library progress across devices |
| Diagnostics and Crash Data | Crash logs, error reports, performance data | Required | Bug fixing and app stability |
| Usage Data | Features used, pages viewed, session duration | Required | Improving app performance and user experience |
| Support Communications | Emails and messages sent to our support team | Optional | Providing customer support |
| Author Submission Data | Manuscripts, book files, government-issued ID (for identity verification) | Required for authors only | Manuscript review, publishing, and copyright protection |
We do not collect: Precise GPS location, contacts list, microphone recordings, camera images (except optional profile pictures on iOS), financial card numbers, or biometric templates.
3. How We Use Your Data
| Purpose | Data Used | Legal Basis |
|---|---|---|
| Account creation and management | Name, email, phone, password | Contract performance |
| Processing purchases and delivering content | Purchase data, device identifiers | Contract performance |
| Syncing library and reading progress | Reading and listening activity | Contract performance |
| Sending service notifications | Push notification token, email | Consent (can be withdrawn) |
| Fraud detection and account security | Device identifiers, usage data, IP address | Legitimate interest |
| App performance and bug fixing | Diagnostics, crash logs | Legitimate interest |
| Author identity verification and copyright protection | Author submission data, government ID | Legal obligation and legitimate interest |
| Legal compliance and responding to legal requests | Any relevant data as required | Legal obligation |
| Customer support | Support communications, account information | Contract performance |
4. Data We Do Not Use
- We do not use your data for targeted advertising.
- We do not use your data for behavioural profiling or tracking.
- We do not share your data with advertising networks.
- We do not use third-party analytics for advertising purposes. Firebase is used solely for crash reporting and push notifications.
- We do not use the Advertising ID (GAID/IDFA) on Android or iOS.
5. Data Sharing
We do not sell, rent, or trade your personal data. We share data only with the following trusted parties, strictly for operational purposes:
| Third Party | Purpose | Data Shared | Their Privacy Policy |
|---|---|---|---|
| Razorpay | Payment processing | Order amount, billing name, email. No card data stored by Synsto. | razorpay.com/privacy |
| Google Firebase | Push notifications and crash reporting only | Push notification token, crash logs | firebase.google.com/support/privacy |
| Google Sign-In | Social authentication | Name and email address (with your consent) | policies.google.com/privacy |
| Cloud Hosting Provider | Secure data storage and infrastructure | Encrypted account and content data | Subject to data processing agreements |
| Legal Authorities | Legal compliance, court orders, law enforcement | Only as required by applicable law | N/A |
5.1 Disclosure in Copyright and Legal Claims
If a verified copyright infringement complaint or legal claim is made against content published on our platform, Synsto may disclose the relevant author's identity, contact information, and submitted documentation to the claimant or to competent legal authorities. Authors consent to this disclosure upon submission of content to our platform, as stated in our Terms and Conditions.
6. Data Security Measures
- Encrypted transmission: All data is sent over HTTPS/TLS encrypted connections.
- Secure authentication: Session tokens are stored in encrypted secure storage on your device.
- Two-factor authentication: Available for all user accounts.
- Biometric processing: Fingerprint and Face ID data is processed by your device's operating system only. It is never transmitted to or stored on Synsto servers.
- Content protection: Screenshot and screen recording are blocked within ebook and audiobook reader screens to protect copyrighted content.
- Encrypted content delivery: Digital book and audiobook files are encrypted during download and decrypted locally on your device.
- Access controls: Access to personal data within Synsto systems is restricted to authorised personnel only.
Despite these measures, no method of electronic transmission or storage is 100% secure. In the event of a data breach that poses a risk to your rights, we will notify affected users as required by applicable law.
7. Data Retention
- Account data: Retained for as long as your account is active. Deleted or anonymised within 30 days of a verified account deletion request.
- Purchase and transaction records: Retained for a minimum of 7 years as required under Indian financial and tax laws.
- Crash and diagnostics data: Retained for up to 90 days.
- Support communications: Retained for up to 2 years.
- Author submission documents (including identity verification): Retained for a minimum of 5 years for copyright protection and legal compliance purposes.
8. Your Rights and Controls
Depending on your location, you may have the following rights regarding your personal data:
| Right | Description | Applicable To |
|---|---|---|
| Right to Access | Request a copy of the personal data we hold about you | All users |
| Right to Correction | Request correction of inaccurate or incomplete data | All users |
| Right to Deletion | Request deletion of your account and personal data | All users |
| Right to Withdraw Consent | Withdraw consent for notifications or optional data processing at any time | All users |
| Right to Data Portability | Request your data in a portable format (GDPR) | EU/UK users |
| Right to Object | Object to processing based on legitimate interests (GDPR) | EU/UK users |
| Right to Non-Discrimination | We will not discriminate against you for exercising your privacy rights (CCPA) | California users |
To exercise any of these rights, contact us at info@synsto.com. We will respond within 30 days.
9. Account Deletion
You can delete your account and request removal of your personal data through any of the following methods:
- From within the app: Settings → Account → Delete Account.
- By emailing info@synsto.com with the subject line "Account Deletion Request".
Upon a verified deletion request, your personal data will be deleted or anonymised within 30 days, except where retention is required by law (such as transaction records and author submission documents).
10. Children's Data
Our Services are not directed at children under the age of 13. We do not knowingly collect personal data from children under 13. If we become aware that a child under 13 has provided personal data without parental consent, we will delete it promptly. If you believe this has occurred, contact us at info@synsto.com.
11. International Data Transfers
Synsto is based in India. Your data may be processed and stored in India or in other countries where our service providers operate (including Google and Razorpay infrastructure locations). By using our Services, you consent to this transfer. Where data is transferred outside India or the European Economic Area, we ensure appropriate safeguards are in place including standard contractual clauses or equivalent protections.
12. Compliance with International Standards
This Data Safety disclosure is designed to align with the requirements of:
- Google Play Store — Data Safety section requirements
- Apple App Store — Privacy Nutrition Label requirements
- Information Technology Act, 2000 and IT (Amendment) Act, 2008 — India
- Digital Personal Data Protection Act, 2023 (DPDPA) — India
- General Data Protection Regulation (GDPR) — European Union and United Kingdom
- California Consumer Privacy Act (CCPA) — United States
- Berne Convention and WIPO Copyright Treaty — for author data and IP protection
13. Updates to This Page
We may update this Data Safety information to reflect changes in our practices, services, or applicable law. The updated page will be posted here with a revised effective date. Continued use of our Services after changes are posted constitutes your acceptance of the updated information.
14. Contact Us
For any questions about data safety, privacy, or to exercise your data rights:
General and privacy enquiries: info@synsto.com
Editorial and submissions: editorial@synsto.com
Website: www.synsto.com
The Synsto Reader.
Join a global community of bibliophiles. Receive first-edition updates, exclusive author interviews, and new chapters delivered directly to your library.
"Every great narrative begins with a single subscribe."