Legal
Privacy Policy
Last updated: July 2026
The short version
Your reading list stays private to you. We don't sell your data, we don't advertise, and we collect only what's needed to deliver your evening digest.
Who we are
My Daily Read is operated by David Fore, a sole trader, acting as the data controller for personal data processed through the App. You can reach us at privacy@mydailyread.ai.
Chrome extension
The My Daily Read Chrome extension only collects information when you actively click the save button. It does not track your browsing history, run analytics in the background, or read pages you don't save.
- activeTab / tabs: Used to read the URL and title of the tab you are currently viewing so we can save it to your reading list.
- storage: Used to keep you signed in locally inside the extension popup. No browsing data is stored there.
- No background tracking: The service worker only wakes up when you interact with the extension. It does not monitor tabs, keystrokes, or navigation.
Data collection, storage, and deletion
When you save a link through the extension, we collect the page URL and title, plus an optional source tag, and store it in your secure account on our backend database. This is the same data you would see in your reading list on mydailyread.ai.
Your account email, saved links, and generated summaries are stored on our backend. The extension itself keeps only a small local sign-in token in Chrome storage so it knows who you are; it does not store your browsing history or saved links locally.
You can delete individual saved links at any time from your reading list, or delete your entire account from the App settings. Deleting your account removes your reading history and personal data from our systems. If you need help removing data, contact us at privacy@mydailyread.ai.
What we collect
- The links you choose to save.
- Basic account info (your email) if you create an account to sync across devices.
- Limited diagnostic data to keep the App working reliably.
How we use it and our legal basis
We use your data for the following purposes:
- Providing the service (account, saving links, generating your digest) — legal basis: performance of our contract with you.
- Billing and subscription management through our reseller Paddle — legal basis: performance of our contract and compliance with tax and accounting law.
- Security, fraud prevention, and reliability (diagnostic logs, abuse detection) — legal basis: our legitimate interests in keeping the App safe.
- Service emails (digest, verification, important account notices) — legal basis: performance of our contract.
- Optional marketing emails, where applicable — legal basis: your consent, which you can withdraw at any time.
AI processing
To create summaries, the contents of articles you save may be processed by AI model providers acting as our processors under contract. They do not use your data to train their models.
Sharing and subprocessors
We don't sell your data or share your reading list with third parties for advertising. We share data only with the providers needed to run the App:
- Paddle.com Market Ltd — our Merchant of Record. Paddle processes your payment details, billing address, tax data, and order history to take payment, calculate tax, issue invoices, and manage your subscription. See Paddle's Privacy Notice.
- Hosting and database provider — to store your account and saved links.
- Email delivery provider — to send your digest and account emails.
- AI model providers — to generate summaries (see above).
- Professional advisers and authorities — only where required by law.
How long we keep your data
- Account data and saved links: kept while your account is active, then deleted within 30 days of account deletion.
- Generated digests and summaries: same as account data.
- Diagnostic and security logs: up to 90 days.
- Billing records held by Paddle: retained by Paddle for as long as required by tax and accounting law (typically 6–10 years, depending on jurisdiction).
- Email suppression list (unsubscribes and bounces): kept indefinitely so we don't email you again.
Security
We use appropriate technical and organisational measures to protect your data, including encryption in transit (HTTPS/TLS), encryption at rest for our database, role-based access controls, and least-privilege access for administrators. No system is perfectly secure, but we work to keep your data safe and to respond quickly to any incident.
Your rights
Subject to applicable law, you have the right to:
- Access the personal data we hold about you.
- Rectify inaccurate or incomplete data.
- Erase your data ("right to be forgotten"). You can delete your account at any time from the App settings.
- Restrict or object to certain processing, including processing based on legitimate interests.
- Port your data — receive a copy of your saved links and account data in a structured, machine-readable format.
- Withdraw consent for any processing based on consent, at any time.
- Lodge a complaint with your local data protection authority.
To exercise any of these rights, email privacy@mydailyread.ai. We aim to respond within 30 days.
International transfers
Our providers may process your data in countries outside your own, including the United States and the European Economic Area. Where required, we rely on appropriate safeguards such as Standard Contractual Clauses to protect your data during transfer.
Contact
Privacy questions? Email us at privacy@mydailyread.ai.