Who we are
StoryKeeper Ltd (“StoryKeeper”, “we”, “us” or “our”) provides the StoryKeeper website and story-creation platform, together referred to as the “Services”.
How StoryKeeper collects, uses and protects your personal information.
Last updated: 28 July 2026
What this notice covers
This notice explains how we collect, use, disclose, retain and safeguard personal data when you use the Services.
For UK and EU users, we are the data controller under the UK and EU GDPR. We also follow applicable privacy laws in Australia, Canada and the United States, including the Australian Privacy Principles, PIPEDA and US state privacy laws such as the CCPA/CPRA.
We do not sell or rent personal data, share it with data brokers or use your stories to train general-purpose AI models.
Questions can be sent to [email protected].
StoryKeeper Ltd (“StoryKeeper”, “we”, “us” or “our”) provides the StoryKeeper website and story-creation platform, together referred to as the “Services”.
Visitors, customers, storytellers, project members, collaborators and anyone who contacts us or receives our marketing.
We collect information from you, other project members, payment processors and your use of the Services.
This includes contact details; billing, delivery and payment-token information; uploaded audio, video, photographs and text; support messages; survey responses; marketing preferences; and technical information such as IP addresses, device details, cookie identifiers and interaction logs.
Stories may contain sensitive information that you or another project member chooses to reveal.
We process account, purchase and story information to fulfil our contract with you. We process tax records to meet legal obligations, support and service-improvement data under our legitimate interests, and optional marketing, non-essential cookies and sensitive information with consent where required. Comparable legal concepts apply outside the UK and EU.
We use cookies and similar technologies to keep the Services working, remember your preferences, understand how the site is used and, where you agree, measure and improve our marketing.
You can manage non-essential cookies through our cookie settings or your browser. Blocking some cookies may affect features that need them to work correctly.
We do not use cookies to sell personal information or to make decisions that produce legal or similarly significant effects about you.
We share personal data only with trusted service providers who help us run the Services, process payments, print and deliver books, provide support, prevent fraud and meet legal obligations.
Project members can see information and content shared within the project. You control who you invite and should only add content you have the right to share.
Some providers process data outside your country. When information leaves the UK, EEA or another protected region, we use appropriate safeguards such as adequacy regulations, approved contractual clauses or equivalent protections.
We use administrative, technical and physical safeguards designed to protect your information. These include access controls, encryption in transit, monitoring and procedures for managing incidents.
No online service can be completely secure, so please keep your account credentials private and tell us promptly if you suspect unauthorized access.
We retain personal data only for as long as needed for the purposes described in this notice, including to provide the Services, meet legal obligations, resolve disputes and enforce our agreements.
Rights depend on your location. We may verify your identity—or an authorized agent—before completing a request.
UK and EU users may request access, correction, erasure, restriction, objection or portability, and may withdraw consent. Complaints can be made to the ICO or another applicable supervisory authority.
Australian users may request access or correction under APP 12 and 13 and may complain to the OAIC after contacting StoryKeeper.
Canadian users may request access, correction or withdrawal of consent and may complain to the federal or relevant provincial privacy commissioner.
Where US state law applies, users may request access, deletion or correction and opt out of “sale” or “sharing”. We do not discriminate against people for exercising these rights.
The Services are not directed to children under 13 or the minimum local age. If we discover that a child’s data was collected without verifiable parental consent, we will delete it promptly.
We may update this notice. Major changes will be emailed to account holders or clearly displayed on our website. Continued use after the effective date constitutes acceptance of the updated notice.
Our team is happy to help. Reach out to our Data Protection & Privacy Office and we will respond within two working days.
[email protected]Thank you. We'll call you as soon as we can.