Plain-language notice

Privacy &
classroom use

What epuble stores, which outside services help it run, and what teachers and students should check before using it for learning.

Last updated 2 August 2026

Guest mode is quickest

No account is created. Guest reading activity remains in the open browser tab and clears when the tab closes.

An account can sync

Signing in lets epuble store an email, an optional alias, EPUBs and a private reading workspace.

Use permitted texts

Upload only EPUBs you own or are allowed to use, including licensed and public-domain editions.

Guest mode

Guest mode creates no epuble account and does not ask for an email or alias. Highlights, annotations, bookmarks and reading progress made as a guest remain only in the current browser tab. Closing the tab ends that guest session and clears its reading activity.

The exception is an online dictionary lookup: the selected word is sent through epuble to Free Dictionary API. If that service has no result, epuble may ask Wiktionary. The EPUB reader library itself is included with epuble and is not fetched from a third-party software CDN.

Presentation tip: use Guest mode for a peer demonstration. It avoids collecting participant details and keeps the focus on the reading activity.

Account data

If you choose to sign in, epuble uses your account data to authenticate you, display your shelf, open your books and restore your reading work across sessions.

Identity and sign-in

  • Your email address.
  • An optional alias that you enter yourself. It does not need to be your legal name.
  • A temporary six-digit email code when email sign-in is used. It expires after 10 minutes.
  • A random session identifier after sign-in. A normal session lasts up to 30 days unless you sign out or delete the account sooner.
  • If you choose Google sign-in, Google supplies a verified email address and a sign-in identifier so epuble can recognise the account.

This version of epuble does not ask for or store a date of birth or gender.

Books and reading activity

  • EPUB files you upload, together with book details such as title and author.
  • Annotations and highlights, including any private note text you write.
  • Bookmarks, reading progress and reading history.
  • Saved reader state needed to reopen a book where you left it.

These items are associated with your account and are not shown to peers through the ordinary reader. “Private” does not mean end-to-end encrypted: the person or organisation administering this epuble deployment can technically administer its Cloudflare storage. Do not enter sensitive personal, health or wellbeing information in reading notes.

Storage & deletion

Signed-in account data, uploaded EPUBs and saved reading activity remain in epuble’s active storage until you delete the relevant content or delete the account. Temporary sign-in codes expire after 10 minutes, and ordinary sessions expire after 30 days.

To delete everything associated with your epuble account:
Shelf → Account & privacy → Delete account and data

Account deletion removes the account, uploaded books and saved reading activity from epuble’s active application storage and signs the browser out. Infrastructure security logs or backups controlled by a service provider may follow that provider’s own limited retention schedule.

Signing out alone does not delete saved books or reading activity. Guest-mode activity needs no deletion request because it is cleared when its tab closes.

Service providers

epuble relies on the following services to provide specific features. When a service is used, it may also receive ordinary connection information such as an IP address and browser details under its own terms and privacy practices.

Cloudflare
Hosts epuble and provides D1 database storage, R2 file storage and KV storage for temporary codes and sessions. Privacy policy
Resend
Delivers one-time sign-in emails, so it processes the destination email address and email delivery content and metadata. Privacy policy
Google
Used only when you choose “Continue with Google”; epuble requests basic sign-in identity information. Privacy policy
Dictionary sources
A word you look up may be sent to Free Dictionary API, with Wiktionary / Wikimedia used as a fallback.

School and classroom use

Before asking students to create accounts or upload work, the teacher and school should decide whether epuble is appropriate for their setting and apply their own requirements. In particular, check:

  • the school’s privacy and data-handling policy;
  • student and parent or guardian notice and consent, where required;
  • acceptable-use expectations and account supervision;
  • child-safety, wellbeing and reporting procedures;
  • copyright permissions for every uploaded text; and
  • who administers the deployment and who is authorised to access stored data.

For a short demonstration, Guest mode is the lower-data option. Use a public-domain built-in title and fictional or non-sensitive sample annotations.

This notice describes how this version of epuble is designed to work. It is not legal advice, a claim of compliance, or a substitute for local school policy and professional judgement.