Privacy Policy
Last updated: June 5, 2026
This policy explains what information Crossed Hearts uses to operate accounts, reading access, purchases, physical orders, campaigns, email updates, and support.
Information We Collect
- Account details such as name, email address, password hash, role, verification status, and login activity.
- Purchase and access records such as title, chapter, amount, currency, Stripe reference, invoice, and refund status.
- Physical order and campaign details such as shipping address, pledge amount, order status, and payment status.
- Email records for OTP, welcome messages, upload announcements, invoices, refunds, and support messages.
How We Use Information
- To create accounts, verify users, keep users signed in, and protect access.
- To unlock purchased chapters, show library history, generate invoices, and process refunds for payment issues.
- To ship physical books, manage preorders, track campaign goals, and send important updates.
- To detect fraud, suspicious access, payment abuse, or attempts to bypass site protections.
Sharing
We only share information with service providers needed to run the website, such as payment processors, email providers, hosting, storage, analytics, and shipping support. We do not sell user data.
Security and Retention
Passwords are stored as hashes, sensitive configuration belongs in environment variables, and production access should use HTTPS, Stripe webhooks, email authentication, backups, and admin controls. Records are kept while needed for access, orders, accounting, support, legal, and security purposes.
Your Choices
- You may unsubscribe from marketing emails where an unsubscribe option is provided.
- You may contact support to request account help, data corrections, or payment issue review.
- Some records must be retained for security, legal, payment, or accounting requirements.