bookmylibrary

Privacy policy

Version 2026-09-27 · effective from 2026-09-27

This policy explains what personal data [COMPANY LEGAL NAME] (“BookMyLibrary”, “we”) collects, why, and the choices you have. It is written for the Digital Personal Data Protection Act, 2023 and the Information Technology Act, 2000.

1. What we collect

  • Account: name, email and/or mobile number, date of birth, password (stored only as a secure hash), and your Google account ID if you sign in with Google.
  • Under-18 accounts: your parent or guardian’s name, mobile number and relation, and when they approved your account.
  • Activity: seats you book, enquiries you send (name, mobile, shift, message), reviews and review photos.
  • Consent records: which version of these documents you accepted and when. We do not store your IP address with your consent.
  • Library members: if a library adds you as a monthly member, the owner enters your name, mobile, seat, shift, fees and payments (and optionally address, father’s name, last 4 digits of Aadhaar and a photo). The library decides this; we store it for them and show you your own membership once you verify that mobile number.
  • Owners: name, business name, mobile, email, and library details and photos.

2. Why we use it

  • To create your account, sign you in (including texting one-time codes) and keep it secure.
  • To make and show bookings, pass your enquiry to the library, and show your memberships.
  • To apply age rules (guardian consent for under-18s).
  • To moderate reviews and listings and prevent misuse.
  • To meet legal obligations and handle complaints.

We do not sell your data and we don’t use it for third-party advertising. Ads on BookMyLibrary are placed by us and don’t track you.

3. Who we share it with

  • The library you book or enquire with sees your name, mobile and booking or enquiry details.
  • Service providers that run parts of the service for us: our hosting provider [HOSTING PROVIDER], SMS provider [SMS PROVIDER] for one-time codes, and Google if you choose Google sign-in.
  • Authorities, when the law requires it.

4. Storage and security

Your data is stored on servers in [DATA LOCATION, e.g. India]. Passwords are hashed, one-time codes are stored only as hashes, member photos are private to the library, and access is limited to people who need it. Your sign-in is kept in your browser’s local storage; we don’t use tracking cookies.

5. How long we keep it

We keep your account data while your account is open. When you delete your account we remove your name, email, mobile, date of birth, password and guardian details straight away. Booking and payment records stay, without your personal details, because libraries need them for their accounts. Your email is kept only to stop it being used to sign up again.

6. Your rights

  • See and correct your details on your Account page (date of birth can be corrected through support).
  • Delete your account from your Account page.
  • Withdraw consent: deleting your account withdraws it for the future.
  • Ask what data we hold, or complain, through our Grievance officer. You may also approach the Data Protection Board of India.

7. Children

Users under 18 need verifiable consent from a parent or guardian, given by a code sent to the guardian’s mobile, before they can book, review or send enquiries. We don’t track children or show them targeted ads.

8. Changes

If we change this policy we update the version date above and, for important changes, ask you to accept it again. Contact: [SUPPORT EMAIL].