Privacy.
Last updated 25 July 2026
Galley typesets your book entirely in your browser. Your manuscript is never uploaded, never saved on our side, and never used to train anything. There is no account to create and no book database to be in.
This page lists the few things that can reach us — each one only when you choose to send it — and exactly what happens to each. Galley is run by Publikable. Any question about your data: studio@publikable.com.
Your book stays on your device
The editor, the typesetting, and every export (print PDF, EPUB, DOCX — including the print colour conversion) run locally in your browser. Your work is saved to your browser’s own storage on your device. That means clearing your browser data erases your book: export a copy to keep a backup. It also means we cannot see, recover, or delete your manuscript — we never had it.
If you request a studio quote
The quote form sends us your email address, and whatever name, book title, message, and work-so-far file you choose to attach. The request is relayed straight to the studio inbox by email (via Resend, EU region) and is not written to any database. A larger attachment is staged in EU storage just long enough to hand over: it is automatically and permanently deleted after 14 days, and the private download link in the email expires on the same clock. We use what you send only to prepare and discuss your quote.
If you join the waitlist
We store the email address you give us (EU database) and use it only to write to you about Galley. Every email includes an unsubscribe link; unsubscribing deletes the address. Any address still on the list is deleted no later than 60 days after Galley’s public launch.
If you connect Canva for your cover
Connecting Canva is optional. You sign in on Canva’s own site; we never see your Canva password. The short-lived access token Canva issues is held in a secure, httpOnly cookie in your browser and expires by itself within four hours — we do not store your Canva tokens on our servers. Through the connection, Galley creates the cover design at your book’s exact print dimensions, uploads the wrap guide image, and downloads your finished cover for print conversion on your device. Only cover artwork transits Canva — never your manuscript. You can revoke Galley’s access at any time in your Canva account’s connected-apps settings. Canva is an Australian service and processes your cover under its own privacy policy.
Anonymous counters
To know whether Galley is useful we count events — “an export happened today” — as daily totals. The counters carry no name, no email, no IP address, and set no cookie. There is no analytics provider, no advertising tracker, and no third-party script on the site.
Cookies
The site sets no cookies for visitors. The only cookies Galley ever sets are the ones the optional Canva connection needs (the sign-in handshake and the short-lived token above) — all httpOnly, all expiring on their own, none used to track you.
Where things run
The site is served by Vercel (London region). The database and staged quote storage are Supabase (London, eu-west-2). Email is sent by Resend (EU region). Everything server-side stays in the UK/EU; the one exception is Canva (Australia), and only if you connect it, and only for cover artwork. Server logs contain request timings and outcomes — never names, addresses, file names, or file contents.
Your rights
Under UK GDPR you can ask for a copy of the personal data we hold about you, ask us to correct it, or ask us to delete it. In most cases the honest answer is that we hold nothing — your book never reached us — but where we do (a waitlist address, a quote thread), write to studio@publikable.com and we will act on it promptly. You also have the right to complain to the UK Information Commissioner’s Office (ico.org.uk).
Changes
If how Galley handles data changes, this page changes first, and the date at the top moves. We will not quietly weaken any promise made here.