← Back to matchmaker
Privacy Policy
Daydream Made LLC ("we", "us") operates the Daydream Matchmaker at matchmaker.daydreammade.com. We take your privacy seriously. Here's what we collect, why, where it goes, and what stays behind if you ask us to delete it.
The matchmaker has two modes: anonymous (just take the quiz, get a recommendation) and signed in with a Daydream Made account (keep your Daydream Library, add the books you've read by entering the code inside them, earn a book on us). What we collect depends on which mode you're in.
In Short
- We use what you tell us, and the books in your library, to find your matches. Other readers can't see your library, and we never sell it.
- A few services help us run the matchmaker, and some of them receive parts of your information. "Third-Party Services" below lists each one and what it gets.
- We keep your quiz answers, including anything you type, with no set end date.
- You can delete your library any time: tap Help, then "Delete my account" at the bottom. After You Delete Your Library lists what that removes and what stays.
If You Use the Matchmaker Without an Account
- Quiz answers. Your answers to the matchmaker's questions (moods, genres, preferences), including anything you type into a free-text box such as "Anything else we should know?" We use them to find your match, and we keep them so we can check why a match happened and make the matchmaker better (see "Data Retention"). Name as many authors and titles as you like, but please leave out anything you wouldn't want us to keep, like your phone number, your address or a friend's name.
- Session data. A random session ID, timestamps, the matches we showed you, what you tapped or rated, and, if a link brought you here, the campaign it came from, the site that sent you and, if it was a Google ad, Google's click identifier for that ad (see "Ad-click attribution" below). It isn't tied to your name or email unless you sign in and save your matches, which links that session to your account.
- Email address (only if you ask us to email your matches). Your address goes to Resend, our email service, to deliver that one email. We don't save it. To stop the button being used to flood someone's inbox, we keep a scrambled fingerprint of the address for one hour, only to count how many emails it has been sent.
- Book Revealer lookups. When you look a book up in the Book Revealer, we note the number you looked up, when, the kind of device, and a scrambled version of your internet address that changes every day. That lets us count lookups without knowing who you are.
If You Have a Daydream Made Account
Signing in is via Shopify Customer Accounts. Shopify is the identity provider, and we don't manage your password. When you sign in, we store a small profile keyed to your Shopify customer ID:
- Identity. Your Shopify customer ID, email address, and display name (whatever Shopify provides).
- Reading history. When you enter the code from inside one of our books, we record that the book is in your library. This is the heart of the matchmaker for account holders: it lets us learn your taste from books you've actually read, recognize books you bought in person or at events, and skip recommending things you already own.
- Ratings and preferences. How you rated the books in your library (Loved it, It was fine, Not for me), your pace, adventure and spice settings, and anything you've asked us to avoid. We use them to improve your matches, and some of them earn badges (see "Labels on Your Shopify Customer Record").
- Quiz history. The quizzes you take while signed in, or save after signing in, with your answers and matches, so you can come back to them.
- Credits and free books. The codes you've entered, your credits toward a free book, the free-book codes you've earned, and whether each one has been used in our Shopify store.
- Sign-ins. For each device you sign in on, the browser type and internet address it used, so a sign-in can be checked and ended. These are cleared about a month after that sign-in ends.
- Consent record. A record of which version of this privacy policy you've acknowledged.
Other customers can't see your reading history, and we never sell it. It exists so the matchmaker can do its job better for you. A few services we rely on to run things do hold parts of it, and each is described below: the labels on your Shopify customer record, the records we keep in Airtable (where our book catalog also lives), what Anthropic receives when it writes about your matches (the kinds of books you've enjoyed), the codes and stock numbers Google receives, and the sites your browser loads your books' covers from. Google never receives a book's title or author from us.
Labels on Your Shopify Customer Record
Your account is tied to your customer record at our Shopify store, and we add a few labels to it (Shopify calls them tags):
- that you use the matchmaker;
- your library level, such as First Chapter or The Regular;
- where your books came from: online, an event, a shop, or a gift;
- the badges you've earned. Some badges come from your reading: the kinds of books you've added (your first romance, say, or your first mystery), how you tend to rate books (for example, more "not for me" than "loved it"), and whether you've asked us to avoid anything, though never what.
These labels let us group customers inside our store, for example when choosing who gets a store email. They never name a book. They stay on your Shopify record after you delete your library (see "After You Delete Your Library").
What We Don't Do (Either Mode)
- We do not use third-party cross-site advertising pixels, such as the Meta (Facebook) Pixel.
- We do not sell or rent your personal data.
- We do not use the books you've read, your ratings, or your preferences to choose who sees our ads. (We do measure how our Google ads perform, as described under "Advertising & Measurement" below.)
- Our analytics and ad measurement never receive the title or author of any blind date book from us.
- We do not pass your email address to Google. Google's tag can be set to find email addresses typed into a page, scramble them, and send them along to match you to an ad. We have that switched off, including for the box where you can have your matches emailed to you.
Analytics
To understand how the matchmaker is used, we use Google Analytics 4. It is set up so it never receives the title or author of any blind date book from us.
- Google Analytics 4. Measures how the matchmaker is used: which screens are visited, which quiz you chose, how many matches you got, which kind of match you tapped (Best Match, Wildcard and so on), and the milestones described below. Page views send the screen name and page address, never a book. GA4 sets first-party cookies (
_ga, _ga_*) to recognize returning browsers. Google's privacy policy applies; you can opt out with Google's opt-out browser add-on.
Advertising & Measurement
We run ads on Google. To see which ads actually bring readers to the matchmaker, so we're not spending blindly, we use Google's conversion measurement. As with analytics, it never receives the title or author of any blind date book from us. It does receive some numbers that point to a particular copy, as the first three items below explain:
- Conversions. We count milestone moments (finishing the quiz, creating an account, adding a book to your library) as conversions in Google Ads. When you add a book, the code from your library card goes along with it, so Google doesn't count the same book twice if a page reloads. The code doesn't spell out a title, but its number is the book's catalog number, which can be matched to the book through our public Book Revealer.
- Purchases. When an order is paid in our Shopify store, our server tells Google the order's ID, the total, and the stock number, quantity and price of each item. If you have a matchmaker account, we connect that report to the Google Analytics ID we saved from your browser when you signed in, so a purchase can be matched to the visit (and any ad) that led to it. A stock number works like the card code above: it isn't a title, but the Book Revealer can look it up. This report comes from our server, so it goes out for every paid order, wherever you are.
- Buy links. The links on your matches, and in matches you have emailed to you, tell our store the visit came from the matchmaker and carry that copy's stock number. Our store's own Google Analytics can record the address of the page you land on, number included.
- Ad-click attribution. If you arrive from a Google ad, Google adds a click identifier (
gclid, or its variants gbraid and wbraid) to the link. We keep it with every quiz you start in that browser tab, whether or not you have an account, so we can tell which ad led to a quiz. It stays with those quiz records in our own database (see "Data Retention"). We also keep it in a first-party cookie and, if you create an account, attach it to your account so we can tell which ad click led to a sign-up. It's an opaque Google identifier, not anything you typed.
- Consent Mode. Outside the EEA and UK, analytics and ad measurement in your browser run by default. For visitors in the EEA and UK we default them off, so your browser sends Google only cookieless signals, without the cookies that recognize a returning browser. This covers what your browser sends, not the purchase report above.
- Audiences. We may use broad groups, such as "took the quiz" or "has an account", to measure campaigns and reach similar readers through Google. We don't build them from the books you've read, your ratings, or your preferences.
Error Reports and Server Logs
Our servers run on Railway, which keeps our server logs for a limited time under its own policy. For each quiz, the log notes your account number if you're signed in, the kinds of books the quiz looked for, and the matches we showed you.
When something breaks, in your browser or on our server, a report goes to Sentry, a service that helps us find and fix bugs. A small share of ordinary visits also sends a timing report, so we can see what's slow. A report can include the page address involved, your browser and device type, and technical details of what went wrong. A report from our server can also include its last few log lines, such as the quiz notes above. Before a report leaves, we strip out cookies, sign-in details and passwords in web addresses, and the contents of anything you submitted. Sentry's privacy policy applies.
Cookies
Essential cookies: first-party, HTTP-only, and secure.
- A site-password cookie if the environment requires one (24-hour lifetime).
- A login session cookie if you log in with your Daydream Made account (30-day sliding lifetime — re-issued on each visit).
- A short-lived authentication state cookie during the Shopify login redirect (10 minutes).
Cookies set by Google — only when analytics and ad measurement are enabled for the environment, and subject to Consent Mode (see above):
- Google Analytics sets first-party
_ga and _ga_* cookies to recognize returning browsers. Because the analytics script reads them, these are not HTTP-only. If you sign in, we save the ID from this cookie to your account (see "Purchases" above).
- Google's conversion measurement may set first-party
_gcl_* cookies to attribute an ad click to a later action.
One advertising cookie we set ourselves, which works differently:
ddm_gclid (90 days). If you arrive from a Google ad, our own script stores Google's click identifier so that a later sign-up can be tied to that ad. Unlike the Google cookies above, this one is not governed by Consent Mode — our script writes it whenever an ad link brings you here, wherever you are. It holds only an opaque Google click id, never anything you typed, and it is never sent to Google: we read it once, ourselves, if you create an account. The same click id, read from the link itself, is also kept with your quizzes, as "Ad-click attribution" above describes. Because our script sets it, it is not HTTP-only.
We do not use third-party cross-site advertising cookies, such as the Meta Pixel.
Local Storage
We use your browser's local storage to save your session ID (so you can resume a quiz if you refresh the page), a visit counter (for returning-visitor features), and a one-time flag so we don't double-count a sign-up in analytics. During the login flow, account holders may also see a code from their library card held briefly in session storage, so you don't have to re-type it after signing in. Session storage also holds, for that tab, where the link that brought you here came from: its campaign tags, the site that sent you, and any Google ad click identifier. That goes to us with each quiz you start. These stay in your browser, and some come back to us when the matchmaker needs them: your session ID with each step of your quiz, for example, or a held code when you add your book.
Data Retention
- Quiz records: Each quiz (your answers, including anything you typed, and the matches we showed you) is kept in our own database and in Airtable, with no set end date, so we can check why a match happened and improve matching. These records keep what you told us in the quiz, not the preferences saved to your account. The database copy isn't stored alongside your name or email, but it shares a quiz number with the Airtable copy, which is linked to your Shopify customer ID if you were signed in or saved your matches.
- Match links: Each set of matches gets its own link, so you can come back to it or share it. Links are kept with no set end date.
- Book Revealer lookups: Kept with no set end date. They never include your internet address itself, only the daily scrambled version.
- Account data: Retained as long as you have a Daydream Made account. You can delete it anytime; see "After You Delete Your Library" and "Your Rights" below.
- Sign-ins: Cleared about a month after each sign-in ends.
- Free-book codes: Records of the codes you've earned, used or not, are kept for our accounts. If you delete your library, they're no longer linked to you.
- Email addresses (one-time send): Not saved. The scrambled fingerprint used to count sends is cleared after one hour.
After You Delete Your Library
Deleting your library from the Help screen removes these right away (if you email us instead, we do it within 30 days):
- your account with us: your email, name and Shopify customer ID;
- the books in your library and your ratings;
- your preferences: what you asked us to avoid, and your pace, adventure and spice settings;
- your saved quizzes and matches, and the links to them, which stop working;
- your credits, your badges and your library level;
- your sign-ins;
- any free-book codes you haven't used, which are switched off and taken out of our store.
Some records stay, and we'd rather you know which:
- A deletion record. Our internal log keeps a note that the account was deleted, with the email address and Shopify customer ID it had, so we can show the request was carried out. It has no set end date. Earlier notes in that log about your account (a code we sent you, for example) stay too, no longer linked to it.
- Your quiz records in our own database, as described under "Data Retention". They keep what you told us in each quiz, not the preferences saved to your account. They aren't stored alongside your name, but each shares a quiz number with its Airtable record below.
- Links to matches you didn't save. A link from a quiz you took while signed out, and never saved to your library, isn't tied to your account, so it keeps working.
- Our Airtable records. Your customer entry there is keyed by your Shopify customer ID. It's marked as deleted but kept, along with what's linked to it: your quizzes (with your answers), the matches we showed you and which you tapped, your orders, and a log of your activity, such as sign-ins and the stock number of each book you added. The books you added stay marked as added, so their codes can't be used again.
- Free-book code records, used or switched off, kept for our accounts and no longer linked to you.
- Your Shopify customer record, with the labels described above, and your past orders. Shopify holds those; contact Shopify if you want your orders removed.
- Our do-not-email list. If you unsubscribed from our emails, your address stays on it, so we don't email you again.
- What other services already have. Google, Sentry, Resend, Anthropic and Railway keep what they've already received under their own policies. Deleting your library doesn't reach them.
If you'd like any of the records above removed as well, email contact@daydreammade.com from the address on your account.
Third-Party Services
- Anthropic (Claude AI): Your quiz answers, including anything you type into a free-text box, are sent to Anthropic's API to interpret your reading preferences and to write about your matches. If you're signed in and the quiz isn't for a gift, it also receives the preferences saved to your account (including what you've asked us to avoid) and the kinds of books you've enjoyed, worked out from your library and your ratings. Match From My Library sends only those, with no quiz answers. We don't send the name or email on your account. Anthropic's privacy policy applies to this processing.
- Airtable: Our book catalog and our working records live on Airtable. It holds each quiz session (your answers, including anything typed into a free-text box, and the matches we showed), which matches were tapped, orders for our books (and whether a match led to them), and each Book Revealer lookup, recorded as described above. For account holders it also holds a customer entry keyed by your Shopify customer ID, linking your quizzes, orders and activity (sign-ups, sign-ins, books added). When you add a book, that book's record notes when it was added and by which account, so staff can confirm a code has been used.
- Shopify: Shopify is our identity provider (you sign in via your Shopify account) and our store (you check out there). We add the labels described under "Labels on Your Shopify Customer Record" to your customer record. Shopify's privacy policy governs the data they hold on you, which is separate from what we hold here.
- Resend: Our email service. It delivers matches you ask us to email and, for account holders, emails about your free books (when you've earned one, and reminders before a code runs out) and occasional notes from us, which you can unsubscribe from. Resend receives your address and the email itself, and keeps its own delivery records under its privacy policy.
- Google (Analytics & Ads): Usage analytics and ad-conversion measurement, as described under "Analytics" and "Advertising & Measurement" above. Google never receives a book's title or author from us; it does receive the card codes and stock numbers described there. Google's privacy policy applies.
- Sentry: Error and timing reports, as described under "Error Reports and Server Logs" above.
- Railway: Our servers run on Railway, which also keeps our server logs for a limited time, as described under "Error Reports and Server Logs" above.
- Bookshop.org: When you reveal a book in the Book Revealer, we may show "read next" recommendations that link to Bookshop.org. These are affiliate links (see the affiliate note in our Terms) — if you follow one and buy, we may earn a small commission at no extra cost to you. Clicking takes you to Bookshop.org under their own policies; we don't share your personal data with them.
- Book cover images: When the matchmaker shows the real cover of a book that's yours (in your library, on a book you've just added, or on a match in your history once it's in your library), your browser loads the picture straight from the site that hosts it: Open Library, ISBNdb, or the site of the cover image we have on file for that book, such as Amazon. Like any picture a web page loads, the request tells that site your internet address, the picture's address, which can include the book's ISBN, and that it came from the matchmaker. Each site's own privacy policy applies.
- Book Marks (Literary Hub): The Book Revealer notes whether a revealed book has critic-review coverage. We fetch Book Marks' public coverage list on our server; no personal data about you is sent to them.
Your Rights
Anonymous users: We don't ask anonymous visitors who they are, so your quiz isn't tied to your name. If you typed something personal into a quiz box and want it gone, or want your session data deleted, email contact@daydreammade.com with roughly when you took the quiz and what you typed.
Account holders: You can delete your Daydream Library at any time from the Help screen (tap Help, then "Delete my account" at the bottom), or by emailing contact@daydreammade.com from the email associated with your account. Deleting it from the Help screen takes effect right away, and we complete emailed requests within 30 days. "After You Delete Your Library" above lists what that removes and what stays. (Past Shopify orders are held by Shopify and aren't affected by deletion on our side; contact Shopify separately if you want those removed.)
Children's Privacy
Our service is not directed at children under 13. We do not knowingly collect data from children.
Changes
We may update this policy. If we make material changes affecting account holders, you'll be asked to re-acknowledge the updated policy the next time you log in. Past versions can be requested by email.
Last updated: September 25, 2026