Privacy policy

We collect the minimum needed to run a reading and writing platform, we never sell your data, and you can always get a copy of it — or delete it.

1. Data we collect

  • Account data: your name, username, email and password (stored hashed — we cannot read it), plus optional profile details like a bio, avatar and country.
  • Content: the stories, comments and claps you create — by definition public when published.
  • Usage data: which stories are read, read-completion, approximate country (from IP, truncated after use for payouts) and basic device info — all used for author earnings, fraud detection and product improvement.
  • Payment data: handled by the payment provider you choose (e.g. PayPal) or recorded as a manual-transfer proof you upload. We never store full card numbers.

2. How we use your data

  • Running the service: accounts, publishing, reading, notifications.
  • Calculating writer earnings and preventing fraud (this is why per-read country matters).
  • The weekly digest and essential account emails. You can opt out of the digest; account-critical emails continue.
  • Site analytics in aggregate — never your identity as a reader.

We do not sell personal data, and we do not run third-party behavioural advertising networks.

3. Cookies

Essential cookies keep you signed in, remember your dark-mode choice and protect forms (CSRF). A consent banner appears where required, and declining leaves everything working — you simply see the anonymous experience.

4. Who we share with

Only what has to move to make the site work: the email provider that delivers notifications, the payment provider you pay with, and competent authorities when the law compels it (we review every request). Writers never see your email; they only see public engagement on their stories.

5. Your rights

  • Access & portability: request a copy of your data — we provide it in a readable format.
  • Correction: edit your profile any time from settings.
  • Deletion: delete your stories any time; request full account deletion and we remove personal data within 30 days, keeping only what the law requires us to keep (like fraud records).
  • Objection: object to a specific use of your data and we will review it with you.

6. Retention & security

Passwords are hashed, sessions are protected, uploads are validated and the site runs over HTTPS. Raw view logs are aggregated after earnings are calculated; deleted accounts are purged on a 30-day cycle. If a breach ever affects you, we will tell you directly and quickly.

This policy may be updated as the product evolves; material changes are announced on the site. Continued use after an update means acceptance.

✉ privacy@blog.encylife.com

Last updated: October 2026