Novelist — Privacy Policy

Effective date: July 12, 2026

Novelist is an AI-assisted story-writing app: you pick a genre and a few options, create characters, and Novelist writes chapters with you — plus a bundled "Discover" library of ready-to-read stories. This policy explains, in plain English, what data the app handles and the choices you have.


1. Who we are

Novelist is an iOS app developed and operated by Abdullah Al Hadi (publishing as Mukashi) ("we", "us"). For the purposes of the EU/UK/EEA General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA/CPRA), Abdullah Al Hadi is the data controller for personal data handled through the app. For any privacy question, contact mukashi.dev@gmail.com.


2. Data we collect

An anonymous account (no name, email, or password)

On first launch, Novelist creates an anonymous account for your device using Firebase Authentication's anonymous sign-in. No name, email address, phone number, or password is ever requested or collected. This anonymous account is a random identifier tied to your app install; we cannot use it to look up who you are, because we hold no directly-identifying information about you. Everything our backend stores (below) is keyed to this anonymous ID.

On your device

The app keeps a local copy of your content on your device (using Apple's SwiftData framework and iOS user defaults) so it works smoothly and can be read back quickly:

On our backend (Firebase Cloud Firestore)

Because Novelist generates each chapter on our server and continues your story across sessions, the story content you create is also stored on our backend (Google's Firebase Cloud Firestore), keyed to your anonymous account ID. This server-side copy — not just the on-device copy — is where your story lives between chapters. It includes:

Because we operate this backend, our systems can technically access this stored content — for example, through the administrative tools we use to run usage limits, prevent abuse, monitor cost, and provide support. It is never linked to your name or email, because we don't collect one. We do not sell it, use it for advertising, or share it with anyone except the service providers in Section 5.

Sent to Anthropic's AI models to generate text

When you generate or regenerate a chapter, add a chapter, redirect the plot, use Fine-Tune steering, or edit a paragraph, our backend sends the material needed to fulfil that request to Anthropic's Claude AI models (a "Sonnet" model for prose, or a faster "Haiku" model for utility and rate-limited fallback). This includes your story setup and characters, the running story memory/summary, the tail of the previous chapter (for continuity), and any custom instructions you type into Fine-Tune, Redirect Plot, or Edit paragraph. Generated and submitted text may also be passed through an automated content-safety check (also performed by Claude) before it is returned.

This content is associated only with your anonymous account ID — never with a name or email. Anthropic processes it to generate the requested text and safety result; per Anthropic's commercial API terms, content submitted through its API is not used to train Anthropic's models by default. We do not send your story or character content to any other AI vendor. Discover's bundled library stories are pre-written and are not generated per-user.

Firebase Analytics

We use Firebase Analytics (configured without advertising-identifier support — no IDFA, no ad personalization, no cross-app tracking, no ads) to understand feature usage. It collects:

We never send the text of your stories, your premise/idea, character descriptions, or your Fine-Tune/Redirect Plot/Edit instructions to Analytics — only the categorical events listed above. We do not request App Tracking Transparency and never read your device's advertising identifier. Novelist does not use Firebase Crashlytics or any other crash-reporting, or any other third-party analytics/advertising SDK.

Firebase App Check

Novelist uses Firebase App Check (Apple's App Attest) to confirm that requests to our backend come from a genuine, unmodified copy of the app (anti-abuse). App Check tokens are attestations about the app binary and device, not personal data.

In-app purchases (Novelist Pro)

Novelist offers Novelist Pro, an auto-renewing subscription (weekly, monthly, or yearly) handled entirely through Apple's StoreKit 2. Apple processes the payment — your card and billing details are never seen by the app or by us. Your entitlement status is stored locally and on our backend (keyed to your anonymous ID) so limits and access work correctly. As described above, Analytics receives only non-financial purchase events (product identifier and outcome) — never your payment method, receipt, or transaction ID. Restore Purchases asks Apple (not us) which products are tied to your Apple Account.

Export and sharing

Novelist can export a story as EPUB, PDF, or plain text and hand it to iOS's standard share sheet. Where that file goes next (Files, Mail, Messages, AirDrop, a third-party app, etc.) is entirely your choice — we never receive a copy.

Narration

The "Listen" feature uses Apple's on-device AVSpeechSynthesizer (the system text-to-speech engine already built into iOS). Narration happens entirely on your device — no story text is sent anywhere to produce it, and there is no cloud text-to-speech vendor involved.


3. Permissions the app asks for

Novelist does not request access to the camera, microphone, photo library, contacts, location, motion data, or notifications. It has no need for any of them.


4. How we use this data

We do not sell your personal information, and we do not share it for cross-context behavioural advertising (as those terms are defined under the CCPA/CPRA). We do not build advertising profiles or share data with data brokers.


5. Who we share data with

No other third-party analytics, advertising, or tracking SDK is bundled in the app. These providers primarily process data on servers in the United States; for EEA/UK/Swiss users, international transfers rely on Standard Contractual Clauses incorporated into each provider's terms.


6. How long we keep it


7. Your rights and choices


8. Children's privacy

Novelist is a general-audience creative-writing app and is not directed to children under 13 (or the minimum age in your country). It includes an optional content-tone setting that lets you steer generated stories toward more age-appropriate themes, but this is a creative preference, not a child-directed mode — the app can also generate mature themes (e.g., horror, dark/gritty tone, romance) at your request. We do not knowingly collect personal information from children. If you believe a child has used the app and provided us information, email mukashi.dev@gmail.com and we will address it.


9. Security


10. Changes & contact

If we change this policy, the new version replaces this page and the "Effective date" above is updated; material changes (e.g., a new third-party service, a new category of data) are noted in the app's release notes. This policy applies alongside our Terms of Use.

Questions, requests, or complaints: mukashi.dev@gmail.com.