Last updated 6 September 2026

Privacy Policy

The short version. Everything you save — every link, title, note, tag and collection — is stored on your phone. Nook has no analytics, no trackers and no ads, and nothing you save is uploaded anywhere.

There is one exception, and it is something you switch on deliberately. If you sign in with Google and back up, a copy of your library is stored on Nook's own server so it survives a lost phone. Nook requires a Google account, and once you sign in your library is backed up to Nook's own server so it survives a lost phone.

What Nook stores on your device

When you share a link to Nook, the following is written to a private database inside Nook's own app storage, which no other app on your phone can read:

Uninstalling Nook deletes all of it.

Signing in with Google

Signing in with Google is required to use Nook. The app asks for it once, during setup, and never again unless you sign out. It is what gives your library somewhere to live besides one phone.

Links you share to Nook are saved to your device immediately, before any sign-in check — a link you sent to Nook is never lost to a sign-in prompt, even if you have not finished setting up yet.

Google Sign-In is the only Google service Nook uses. There is no Firebase, no analytics SDK and no Google-hosted database; the sync server is ordinary Node and Postgres run by us.

When you sign in, Google tells Nook the following about your Google account:

What Google sharesWhy Nook needs it
Your Google account identifierTo know which synced library is yours. This is the field sync actually runs on.
Your email addressTo show you which account you are signed in as, and to reach you about your account if something goes wrong with it.
Your name and profile pictureShown in Settings so you can confirm the right account is connected. Nothing else reads them.

Nook requests the openid, email and profile scopes and nothing more. It does not request access to your Gmail, Drive, Contacts, Calendar, Photos or any other Google service, and it cannot read them.

Nook does not receive or store your Google password. Authentication happens inside Google's own sign-in screen.

What backing up uploads

This is the honest part. If you sign in and press Back up, a copy of your library is sent to Nook's server so it survives a lost or replaced phone. That copy includes:

It does not include the extracted article text Nook keeps for offline reading. That is re-fetchable from the original page, so uploading it would multiply the size of your backup for nothing.

Your library is stored against your Google account identifier in a Postgres database, is not readable by other users, is transmitted over TLS, and is encrypted at rest by the hosting provider. One backup is kept per account: backing up again replaces the previous copy rather than adding to a history.

Nook does not sell this data, does not share it with advertisers or data brokers, and does not use it to build a profile of you. It exists on the server for one reason: to hand it back to you on another device.

Backing up is still something you trigger. Signing in creates your account and lets Nook back up; it does not upload your library on its own. Until you press Back up, what you have saved stays on the device.

The daily reminder

The daily nudge is generated entirely on your phone, by Android's own scheduler, from your own database. Nothing about it involves a server or a network request. Nook does not use push notifications at all, and stores no delivery token, no reminder time and no timezone anywhere but on your device.

Network access

Apart from backup, Nook makes network requests for exactly one purpose: fetching the public preview information — title, description, image — for links you chose to save. Those requests go directly from your phone to the website in question, the same request your browser would make if you opened the link.

Nook sends no identifier, no account and no information about you with them. It identifies itself honestly as NookBot/1.0 rather than impersonating a browser.

You can turn this off in Settings → Privacy → "Fetch link previews". With it off, Nook fetches nothing from the sites you save.

What Nook does not do

Permissions

PermissionWhy
INTERNETFetching page previews for links you saved. Can be disabled in Settings.
ACCESS_NETWORK_STATEWaiting for a connection before attempting a preview fetch.
POST_NOTIFICATIONSThe optional daily reminder, which is composed on your device. Declining is fine — the rest of the app is unaffected.
WAKE_LOCK, FOREGROUND_SERVICE, RECEIVE_BOOT_COMPLETEDAdded automatically by Android's WorkManager library, which Nook uses to fetch previews in the background and schedule the reminder. None of these prompt you, and none grant access to any of your information.

Nook does not request permission to draw over other apps, or to read your contacts, location, files, camera or microphone.

Your data, on your terms

Export

Settings → Your data → Export. JSON, CSV, or browser-compatible HTML. The JSON export is lossless and imports straight back into Nook. There is no export wall and no notice period.

Delete individual saves

Delete any save from its detail screen. To erase everything on the device at once, use Android's Settings → Apps → Nook → Storage → Clear data, or simply uninstall.

Delete your account and synced data

In the app

You can delete your account and everything backed up to it from Settings → Account → Delete account and backup inside the app. This removes your synced library and your account record from the server. Saves already on your phone stay there until you remove them; deleting the account does not wipe your device.

You can also request deletion by email at privacy@installnook.app from the address you signed in with. Requests are actioned within 30 days.

Separately, you can revoke Nook's access to your Google account at any time from your Google account permissions page.

Retention

Your backup is retained while your account exists, and is deleted when you delete the account. There is no archival copy kept afterwards beyond routine encrypted backups, which age out within 30 days.

Android backups

If you have Android's automatic backup enabled, your Nook database may be included in your Google account backup. That backup is governed by Google's privacy policy rather than this one. You can exclude Nook from Android Settings → Google → Backup.

Children

Nook is not directed at children under 13 and is not designed for them. We do not knowingly collect information from anyone under 13. If you believe a child has signed in, write to privacy@installnook.app and the account and its data will be deleted.

Changes to this policy

If this policy changes, the updated version is published at this URL with a new date at the top. Material changes — anything that widens what leaves your phone — will also be shown in the app before they take effect, not buried here.

Contact

Questions about this policy, or about what Nook holds: privacy@installnook.app.