SpellPath privacy policy

What SpellPath collects, why, and what you can do about it.

Effective September 30, 2026

This policy covers SpellPath (Friends), the invite-only build of the SpellPath Chrome extension, and its API (api.spellpath.app), operated by Angela Taylor LLC ("we"). SpellPath creates interactive learning stories. Contact: hello@angelataylorllc.com.

What we collect

Google sign-in

When you sign in with Google, we receive your email address, name, and profile photo. We check your email against the invite list to give you access. Your name and photo are shown in the extension and aren't stored on our servers.

Topics, answers, and stories

We do not keep your stories on our servers after they are generated. To create each scene, the extension sends your topic, your answers, and enough story context to generate the next part; our API generates it and then discards that request.

Completed stories are saved in your browser (the extension's local storage, up to your last 50) so you can export or print them. They stay there until you remove the extension or clear its data.

Your AI API key

In the current invite-only build, you provide your own API key for the AI provider you choose. The key is stored in your browser and sent over HTTPS only to our API, which uses it to call that provider for your request. Our API uses your key only for that request and does not store it. We do not write API keys to our application database or application logs, and we never use your key for other users.

Technical data

We don't use third-party analytics or crash-reporting services. Our application logs timestamps, error messages, and usage counts for troubleshooting, not story text. Our hosting web server may record IP address, time, and requested URL in standard access logs.

If you ask SpellPath to write in the style of an author it doesn't already know, we save a short style guide for that author's name so it can be reused. It isn't linked to your account.

AI providers

To write your story, your topic, answers, and story context are sent to the AI provider you selected, using your own API key. That provider handles the data under its own API terms and privacy policy, which apply to your account with them. We don't send your name or email to the AI provider.

How we use data

We don't sell your data, and we don't use it for advertising or credit decisions. We share it only with the services needed to run SpellPath (Google for sign-in, the AI provider you choose, and our hosting provider) or when required by law. All data is transmitted over HTTPS.

Google user data

SpellPath's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Retention and deletion

For the invite-only build, the only account information we keep is your email address on the invite list. Our web server's access logs may also include your IP address and the URLs requested, as described above. To have it removed, email hello@angelataylorllc.com from the address you sign in with. We'll remove you from the list and confirm within 30 days. Removing the extension deletes your saved stories, your API key, and anything else stored in your browser.

Children

SpellPath accounts are for people 13 and older, who sign in with their own Google account. The age range you choose in the extension sets the reading level of the story, including stories written for younger listeners. We don't offer accounts to children under 13, and we don't knowingly collect personal information from them. If you use SpellPath with a child, you, as the parent, teacher, or tutor, are the account holder. If you believe a child under 13 has given us personal information, contact us and we'll delete it.

Changes

If SpellPath changes in a way that affects what data we collect or how we use it, we'll update this policy before the change takes effect and notify users by email or in the extension.