Privacy policy
How Kronovi Corporation handles information when you use Burrow & Brew and this website.
1. Who we are
Kronovi Corporation (“Kronovi,” “we,” “us”) publishes and provides Burrow & Brew, its news curation service, and this website. This policy describes the information processed to operate those services.
2. Information we collect
- Account information: your Sign in with Apple identifier, our internal account ID, and the name and email address Apple supplies. Names may include given and family names. An Apple private relay address may be used instead of your personal email. We preserve the Apple-supplied email separately from an optional contact email, which can be changed independently. Apple’s verification and private-relay metadata apply to the Apple-supplied address. We record the version of the terms and processing disclosure you accept. Account creation records initial acceptance; later acceptance has its own timestamp. We retain authentication/session information and, when supplied, an Apple refresh token needed to revoke access on account deletion.
- Your content and preferences: RSS source selections and their publisher names and URLs, focus instructions, global filters, article rejection feedback, Quiet Hours and time zone, and sharing preferences.
- Reading and service state: articles delivered to your inbox, read/unread state, source selections and activation, and actions that update or remove server-side articles.
- Notification information: an Apple push notification token, notification environment, and registration timestamps, associated with your account when you enable notifications.
- Subscription information: App Store transaction identifiers, product, subscription and renewal status, expiration dates, and related entitlement information. Apple processes payments; we do not receive your card or bank details.
- Technical information: service requests, IP addresses, request timestamps, response status and timing, and error information processed by our server and hosting infrastructure for operation, troubleshooting, and security.
- Support communications: information you choose to provide when contacting us through an available support channel.
Account-associated information is linked to your account. Public RSS article content is fetched to provide the feed; it is not, by itself, information you personally supplied.
3. How we use information
We use information to authenticate you, maintain your account and subscription, curate your feeds, synchronize reading state, send requested notifications, honor your settings, operate and protect the service, resolve errors, and respond to requests. Your sources, instructions, filters, and feedback personalize the articles you receive.
When enabled, the sharing preference adds a promotional message to article shares. You can turn it off in Settings. Sharing is initiated by you through your device’s share sheet; this feature does not send the recipient’s identity to our backend.
4. AI processing and OpenAI
Our server uses the OpenAI API to evaluate news relevance, write notification summaries, and refine focus instructions from your feedback. Requests may contain article titles and summaries, source names, your focus instructions, global filters, and reasons you provide for rejecting an article. We do not include your Apple sign-in name, email address, Apple account identifier, or push token in these AI requests. Article identifiers may accompany news content so results can be matched to articles.
Please avoid including confidential or sensitive personal information in focus instructions, filters, or feedback. Your text is user content even when it describes news interests.
Under OpenAI’s published API policies, API inputs and outputs are not used to train models by default unless the API customer opts in. OpenAI may retain API content in abuse-monitoring logs for up to 30 days by default, or longer where legally required; retention can differ with applicable account controls. See OpenAI’s API data controls. Removing data from our service does not necessarily remove separately retained provider logs immediately.
5. Who receives information
Information is processed by service providers as needed to deliver the service, including hosting/infrastructure providers, OpenAI for the AI processing described above, and Apple for sign-in, purchases, and push notifications. RSS publishers receive server requests for their feeds. Websites you open and services you choose in the share sheet handle information under their own policies.
We may disclose information when required by applicable law, to address fraud or security threats, to protect legal rights, or in a corporate transaction subject to appropriate protections and applicable law.
We do not sell personal information or use it for cross-app targeted advertising or advertising measurement. The site does not include advertising or analytics SDKs.
6. Retention and deletion
Account information, settings, subscription records, and service state are retained while needed to provide the service. Feed content is subject to server retention and inbox capacity limits; articles referenced by an inbox may be retained longer. Authentication records and operational logs have separate operational lifecycles.
You can delete your account in Settings → Account → Delete Account. This removes the account and its associated records from our active application database. Deletion may not immediately remove information from backups or independently retained provider logs; information may also be retained where needed to meet legal obligations or resolve disputes. Deleting the account does not cancel an Apple subscription.
7. Your choices and rights
You can change sources and filters, update Quiet Hours, disable notifications, remove inbox articles, turn promotional sharing off, and delete your account in the app. See Privacy choices for instructions. Depending on your location, applicable law may provide rights to access, correct, delete, or obtain a copy of personal information, restrict or object to processing, or complain to a supervisory authority. We may need to verify your identity before fulfilling a request.
8. Website storage and external services
This website has no account forms, advertising cookies, analytics scripts, or tracking pixels. Requests still reach the hosting infrastructure, which may process technical information described above. The app caches service data locally and stores session credentials in the device Keychain. External websites may use their own cookies and tracking technologies.
9. Security and international processing
We use safeguards such as encrypted network connections in production, access controls, and device Keychain storage for session credentials. No system can guarantee absolute security. Providers may process information outside your country, subject to applicable legal requirements.
10. Children
Burrow & Brew is a general-audience news service, not a service directed to children. If you believe a child has supplied personal information in violation of applicable law, please use the support contact when available so we can investigate and address it.
11. Changes and contact
We may update this policy as the service changes. The effective date appears on this page, and material changes will be communicated as required by law.
In-app privacy controls and account deletion are available now. A public contact channel for Kronovi Corporation has not yet been published on this website.