Privacy Policy
Last updated 17 July 2026
Recollect is a personal media-memory library. This policy explains what information we collect and how we use it. It is written for a small product launch and may be updated as the service grows.
What we collect
- Account data. Email address and authentication credentials (passwords are handled by our auth provider, Supabase — we do not store plaintext passwords).
- Library data. Items you save, like and watched flags, folders, and related metadata needed to show your collection.
- Auth emails. We send transactional email such as password-reset messages when you request them.
- Technical data. Session tokens stored in your browser so you stay signed in, plus standard server logs (for example IP and request metadata) used to operate and secure the service.
How we use it
We use this information to run Recollect: sign you in, save your library, send account-related email, prevent abuse, and improve reliability. We do not sell your personal data.
Third parties
- Supabase — authentication and database hosting for your account and library.
- Email delivery — password-reset and similar messages via Supabase’s mailer or another configured provider (for example Resend).
- Catalogue sources — search and detail lookups against TMDB, Open Library, and Last.fm. Your queries go to those services so we can show results; they are not a dump of your private library.
Cookies and local storage
We use browser storage for your signed-in session. We do not use third-party advertising trackers.
Retention and deletion
We keep account and library data while your account exists. You can remove individual items and folders from the library. A full self-serve account deletion flow is planned; until then, contact us (see below) to request deletion of your account and associated data.
Contact
For privacy questions or deletion requests, email us from the address on your Recollect account. We will add a dedicated public support address here when one is published.
See also our Terms of Use.