Privacy Policy
Effective Date: April 5th, 2026
Plotmi, Inc. ("Plotmi," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains what information we collect, how we use it, who we share it with, how we protect it, and your rights regarding your data. It applies to every part of the Plotmi platform — Reader Sanctum, Writer's Sanctum, the Circle, Plotmi Vibes, Sneak Peeks, Full Reports, Chatmi, The Lab, Cue Cards, Plotmi Clubs, Plotmi Elite, and any other surface we operate.
Please also review our Terms of Service, Confidentiality & NDA, Cookies Policy, and GDPR Policy, which complement this document.
1. Information We Collect
1.1 Account & Profile Information
- Name, email address, and password (passwords are stored using one-way hashing — we never see the plaintext).
- Handle (your @username) and display name.
- Profile photo, bio, and any optional fields you choose to fill in.
- Date of account creation and activity history.
1.2 Payment Information
- Billing name and address.
- Card details — processed and stored securely by our third-party payment processor (Stripe). Plotmi does not store full credit card numbers on its own servers.
- Transaction history, including dates, amounts, and products purchased.
- Subscription status (active, paused, canceled).
1.3 Creative Work & Manuscript Content
- Written manuscripts, scripts, novels, novellas, pilots, and serialized content uploaded to Plotmi.
- Sneak peek excerpts you share with readers.
- Promo posts, loglines, hooks, and pitch materials.
- Project metadata: title, genre, word count, page count, author name, collaborators.
- Writer's Sanctum work-in-progress materials, outlines, character notes, and structural notes.
- Lab and Cue Card content shared with collaborators.
1.4 Reader Behavioral & Engagement Data
- Reading session timestamps, duration, and frequency.
- Navigation patterns: page views, scroll behavior, time per page, re-reads, dwell times.
- Interaction data: clicks, taps, highlights, pauses, stamp placements.
- Written feedback, reactions, stickers, votes, and notes left on creative work.
- Plotmi Vibes selections — what you mark as Fire, Mid, or Snorefest, and on what.
- Plotmi Letters and stamp progress (P-L-O-T-M-I game state).
- Game participation: predictions, guesses, throwback votes, friday confessions, and other weekly engagements.
1.5 Voice Memos & Audio Data
- Audio recordings you choose to submit (in Full Reports for reader feedback, or in The Lab / Cue Cards for collaborator notes).
- Automated text transcriptions of those recordings, generated via a third-party transcription API.
- Metadata: recording duration, timestamp, the work the memo is attached to.
Voice features are fully optional. You can use Plotmi entirely without recording audio.
1.6 Direct Messages (Chatmi)
- The content of messages you send and receive within Chatmi.
- Conversation metadata: participants, timestamps, read receipts.
Chatmi messages are private to participants but stored on our servers to enable the feature. We do not actively read your DMs, but they may be reviewed if reported for abuse or required by legal process.
1.7 Community Content
- Posts you make in the Circle and clubs.
- Comments, reactions, and stickers you give to other posts.
- Save lists, bookmarks, and any items you mark as "watch later" or similar.
- Club memberships and participation history.
1.8 Technical & Device Data
- IP address, approximate location (derived from IP), and timezone.
- Browser type and version, operating system, and device type.
- Screen size and viewport dimensions (used to deliver appropriate layouts).
- Referrer URL (the page you came from).
- Cookies, session tokens, and similar tracking technologies (see Section 5 and our Cookies Policy).
- Log files capturing access times, errors, and platform usage.
1.9 Communications With Us
- Emails, support tickets, and any messages you send to support@plotmi.com.
- Feedback you submit through forms, surveys, or the Feedback button.
- Responses to surveys or research invitations (where you choose to participate).
1.10 Information From Third-Party Services
If you sign in via a third-party authentication provider (e.g., Google, Apple) or connect a social account, we may receive your name, email, and profile photo as permitted by that provider. We do not receive your social media passwords.
2. How We Use Your Information
2.1 To Operate the Platform
- Create and maintain your account.
- Display the right content to the right people (your sneak peek to your invited readers, your posts to the Circle, etc.).
- Generate engagement reports for writers based on reader behavior.
- Process payments, manage subscriptions, and handle refunds.
- Send service-related emails (account notices, security alerts, receipt confirmations).
2.2 To Improve Plotmi
- Analyze platform usage in aggregate to identify bugs, friction points, and opportunities to improve the product.
- Test new features (A/B testing, beta releases).
- Train internal tools — but not third-party AI models or LLMs on your creative work.
2.3 To Keep the Platform Safe
- Detect and prevent fraud, abuse, harassment, and security incidents.
- Investigate reports of NDA violations or terms violations.
- Enforce our Terms, NDA, and community guidelines.
- Protect Plotmi's rights, property, users, and the public.
2.4 To Communicate With You
- Send transactional emails (confirmations, password resets, account changes).
- Send product updates and announcements about new features.
- Send optional marketing emails (you can unsubscribe anytime).
- Respond to your inquiries.
2.5 For Legal & Compliance Reasons
- Comply with applicable laws, regulations, court orders, and lawful requests.
- Respond to government, regulatory, or law-enforcement inquiries.
- Defend against legal claims involving Plotmi.
3. What We Do NOT Do With Your Information
We want to be explicit about the things we never do:
- We do not sell your personal information.
- We do not rent or trade your personal information to advertisers.
- We do not train AI models or LLMs on your creative work, voice recordings, or transcriptions.
- We do not publish or distribute your manuscripts, scripts, or any creative work without your explicit permission.
- We do not read your Chatmi messages for analytics or marketing purposes.
- We do not display third-party advertisements on Plotmi.
4. How We Share Your Information
4.1 With Other Plotmi Users (As You Direct)
- Readers you invite can see your sneak peeks, full reports, or other work you choose to share with them.
- Collaborators in The Lab or Cue Cards can see content you've made available within that workspace.
- Other community members can see your public profile, handle, posts, comments, reactions, and stamps in the Circle.
- Chatmi recipients can see messages you send them.
All readers and users who access confidential creative work are bound by our Confidentiality & NDA.
4.2 With Service Providers
We use trusted third-party service providers to operate the platform. They access only the information they need to perform their function and are contractually required to handle data securely. Key providers include:
- Supabase — database, authentication, and storage.
- Stripe — payment processing.
- Vercel — hosting and content delivery.
- Email delivery services — transactional and marketing email.
- Third-party AI transcription APIs — for optional voice memo transcription.
- External content APIs (e.g., TMDB, Google Books, Open Library) — to look up film/book cover images and metadata. We send only the search query (title/author/ISBN); we do not send your personal data.
- Analytics services (e.g., Plausible or similar privacy-respecting analytics) — to understand aggregate platform usage.
4.3 For Legal Reasons
We may disclose your information if required by law, subpoena, court order, regulatory inquiry, or lawful process. We may also disclose information when we believe in good faith that disclosure is necessary to:
- Enforce our Terms, NDA, or other agreements.
- Investigate or prevent fraud, abuse, or security issues.
- Protect the rights, property, or safety of Plotmi, our users, or the public.
4.4 In Business Transfers
If Plotmi is involved in a merger, acquisition, restructuring, sale of assets, or bankruptcy, your information may be transferred to the acquiring or successor entity. We will notify users in advance of such a transfer and the resulting privacy implications.
4.5 With Your Consent
We may share information for other purposes with your explicit consent.
5. Cookies & Tracking Technologies
We use cookies and similar technologies to:
- Keep you logged in.
- Remember your preferences and settings.
- Understand aggregate platform usage.
- Detect security threats.
We do not use third-party advertising cookies. You can manage cookies through your browser settings, but disabling them may limit platform functionality. See our Cookies Policy for details.
6. Voice Memos & Transcription — Detailed Disclosures
Because voice data is sensitive, we want to be especially clear here.
- Voice recording is optional. You are never required to leave a voice memo on Plotmi.
- When you record a voice memo, the audio file is stored securely on our servers (via Supabase storage).
- For transcription, the audio is transmitted to a third-party AI transcription service. The transcription is returned to Plotmi and displayed alongside the original recording.
- The third-party transcription provider processes audio solely for the purpose of producing the transcription. Per our agreements with these providers, they do not retain your audio long-term, do not use it to train their models, and do not sell or share it.
- You can delete your voice memos at any time. Once deleted, they are removed from active systems and will be purged from backups in the ordinary course (typically within 30-90 days).
- Voice content is confidential under our NDA. Recipients of your voice notes cannot share or redistribute them.
7. Data Security
We take security seriously and implement industry-standard measures to protect your information:
- Encryption in transit (TLS/HTTPS) for all data exchanged between your device and our servers.
- Encryption at rest for stored data, including manuscripts, voice files, and database contents.
- Access controls limiting who at Plotmi can access user data, with strict logging.
- Secure password storage (one-way hashing with salting).
- Regular security reviews of our infrastructure and dependencies.
- Third-party providers are vetted for security practices and contractually obligated to protect your data.
However, no system is 100% secure. We cannot guarantee absolute security. You are responsible for safeguarding your account credentials. If you believe your account has been compromised, contact us immediately at support@plotmi.com.
8. Data Retention
We retain your information for as long as your account is active, and for a reasonable period afterward to comply with legal obligations, resolve disputes, prevent fraud, and enforce our agreements.
8.1 Retention Periods
- Active accounts: data is retained for as long as the account is active.
- Closed accounts: most personal data is deleted or anonymized within 90 days, with some categories retained longer for legal or audit reasons.
- Financial records: retained for the period required by tax and financial regulations (typically 7 years).
- Backups: data may persist in backups for up to 90 days after deletion from active systems, then is purged.
- Aggregated & anonymized data: may be retained indefinitely, as it cannot be linked back to you.
9. Your Rights & Choices
Depending on where you live, you may have one or more of the following rights regarding your personal data:
- Access: Request a copy of the personal information we hold about you.
- Correction: Request corrections to inaccurate or incomplete information.
- Deletion ("Right to Erasure"): Request deletion of your personal information, subject to legal and contractual obligations (e.g., we may need to retain transaction records for tax purposes).
- Data Portability: Request a copy of your data in a structured, machine-readable format.
- Restriction: Request that we limit certain processing.
- Objection: Object to certain types of processing, including direct marketing.
- Opt-Out of Marketing: Unsubscribe from marketing emails at any time. You will still receive transactional emails (receipts, account notices).
- Withdraw Consent: Where processing is based on consent, you may withdraw it at any time.
To exercise any of these rights, email support@plotmi.com. We will respond within 30 days. We may need to verify your identity before processing requests to protect your account.
EU/UK residents: see our GDPR Policy for more detail on your rights under European data protection law. California residents: you have additional rights under the California Consumer Privacy Act (CCPA), described in Section 13 below.
10. Children's Privacy
Plotmi is intended for users aged 18 and older. We do not knowingly collect personal information from anyone under 18. If we learn that we have collected personal information from a minor, we will delete it as soon as possible and terminate the associated account.
If you believe a minor has provided us with personal information, please contact support@plotmi.com immediately.
11. International Users & Data Transfers
Plotmi is based in California, United States of America. If you access the platform from outside the United States, your information will be transferred to, stored, and processed in the United States, where data-protection laws may differ from those in your country.
By using Plotmi, you consent to this transfer. For users in the European Economic Area, the United Kingdom, or other jurisdictions with cross-border transfer restrictions, we rely on appropriate safeguards such as Standard Contractual Clauses where required. See our GDPR Policy for details.
12. EU/UK Users — GDPR Rights
If you are located in the European Economic Area, the United Kingdom, or Switzerland, you have specific rights under the General Data Protection Regulation (GDPR) and equivalent local laws, including the rights listed in Section 9 above plus the right to lodge a complaint with a supervisory authority. See our full GDPR Policy.
13. California Users — CCPA/CPRA Rights
If you are a California resident, you have specific rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA):
- Right to know what personal information we collect, use, disclose, and sell (we don't sell).
- Right to delete personal information, subject to legal exceptions.
- Right to correct inaccurate personal information.
- Right to opt out of "sale" or "sharing" of personal information. Plotmi does not sell personal information.
- Right to limit use of sensitive personal information.
- Right to non-discrimination — we will not deny service, charge different prices, or reduce service quality if you exercise your privacy rights.
To exercise these rights, email support@plotmi.com. We may need to verify your identity.
14. Do Not Track
Some browsers offer a "Do Not Track" (DNT) signal. There is currently no industry standard for how DNT signals should be honored. Plotmi does not currently respond to DNT signals, but we maintain privacy-respecting practices regardless.
15. Third-Party Links
Plotmi may contain links to third-party websites or services. We are not responsible for the privacy practices of those third parties. We encourage you to review their privacy policies before providing any information.
16. Account Closure & Data Deletion
You can close your account at any time through your settings or by contacting support@plotmi.com. Upon closure:
- Your public profile, posts, and reactions will be removed or anonymized.
- Your manuscripts and voice memos will be deleted from active systems.
- Confidentiality obligations of other users who accessed your work remain in effect under the NDA.
- Some information may be retained as described in Section 8 (legal, fraud, financial).
- Backups will be purged in the ordinary course (typically within 30-90 days).
17. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify users of material changes via email, in-app notice, or both, at least 30 days prior to the changes taking effect (unless changes are required by law or for security reasons, in which case shorter notice may apply). Your continued use of Plotmi after the effective date of any modifications constitutes acceptance of the updated policy. If you do not agree, you should stop using the platform and may close your account.
18. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or how we handle your data:
Email: support@plotmi.com
Subject line for privacy requests: "Privacy Request"
Response time: within 30 days
For data-protection-specific inquiries from EU/UK users, see our GDPR Policy.