Readerbox プライバシーポリシー
対象: Chrome 拡張機能「Readerbox」
株式会社Blue(以下「当社」)は、当社が提供する Chrome 拡張機能「Readerbox」(以下「本拡張」)における利用者の情報を、以下のとおり取り扱います。本ポリシーは本拡張および本拡張の課金機能のみを対象とし、当社の他のサービスには適用されません。
1. 当社が取得しない情報
本拡張は、以下を含む情報を当社サーバーへ送信せず、当社は取得しません。
- Amazon / Kindle のアカウント情報、認証情報、Cookie
- 書籍の本文、画像、キャプチャした画面
- 作成された PDF ファイル
- 閲覧履歴、読書履歴
- 利用統計、アクセス解析、トラッキング情報
- 氏名、住所、電話番号、メールアドレスそのもの
課金機能を利用する場合も、書籍の本文、画像、キャプチャした画面、作成された PDF ファイル、Amazon / Kindle の認証情報、Cookie は当社サーバーへ送信されません。
2. 利用者の端末内に保存される情報
本拡張は、機能の提供のために次の情報を利用者の端末内(ブラウザのストレージ)に保存します。書籍の本文、画像、キャプチャした画面、PDF、Amazon / Kindle の認証情報、Cookie が当社へ送信されることはありません。
- 撮影した画面の画像(PDF を作成するための中間データ。書籍 1 冊あたり数十 MB になります)
- 処理の記録(ページ番号・位置・進捗・エラー等。中断からの再開に使用します)
- 撮影設定(ウィンドウサイズ、表示倍率などの設定値)
- 対象の書名と ASIN(中断からの再開と、保存するファイル名の決定に使用します)
- 文字認識(OCR)の結果(PDF の検索用テキスト。作業データとして端末内に保持されます)
- 初回インストール日時とバージョンの目印、install_id、PDF を保存した本の ASIN と日時の一覧(Chrome の同期を有効にしている場合は、利用者自身の Google アカウントを通じて利用者の他の端末にも同期されます。開発者には送信されません)
- 課金機能のための install_id(本拡張が生成するランダムな UUID)、購入状態、プラン、残りクレジット、ライセンスキー、ライセンストークン
3. 課金サーバーに送信される情報
本拡張は、課金状態の確認、購入手続き、サブスクリプション管理、ライセンスの復元、冊数クレジットの消費を行うため、readerbox.loveblue.net(当社サーバー)と通信します。
初回インストール時または初回の課金状態確認時には、install_id(本拡張が生成するランダムな UUID)と本拡張のバージョンを送信します。これは、同じインストールを識別し、課金状態を復元するために使用します。
課金状態を確認する verify では、install_id と本拡張のバージョンを送信します。当社サーバーは、購入状態、サブスクリプション状態、プラン、残りクレジットを確認し、署名付きのライセンストークンを返します。
購入手続きへ進む checkout では、install_id、選択されたプランまたは冊数クレジットの種類、表示言語を送信します。これは Stripe Checkout の決済ページを作成するために使用します。
サブスクリプション管理を開く portal では、install_id を送信します。これは、当社サーバーに保存された Stripe 顧客 ID を使って Stripe Customer Portal を開くために使用します。
有料の冊数クレジットまたはサブスクリプションで新しい本を利用可能にする unlock では、install_id、ライセンストークン、asin_hash を送信します。asin_hash はインストールごとに異なるソルトを使った一方向ハッシュで、ASIN そのものではなく、当社が本のタイトルへ戻すことはできません。
当社サーバーは、install_id、asin_hash、購入・サブスクリプション状態、プラン、クレジット台帳、ライセンスキー、ハッシュ化されたメールアドレス、Stripe の顧客 ID、Stripe のサブスクリプション ID、Stripe のイベント ID、発行済みライセンストークンのメタデータを保存します。
これらの情報は、課金機能の提供、購入状態の確認、ライセンスの復元、二重処理の防止、不正利用の防止、問い合わせ対応、法令上必要な記録の保存のために使用します。
4. 保存した情報の削除と保存期間
- 撮影画像は、既定では PDF 保存後に作業用データとして自動削除されます。画面のチェックを外して残した場合も、本拡張の画面から「削除」を明示的に操作することでまとめて削除できます。
- Chrome の拡張機能管理画面から本拡張を削除すると、端末内に保存された情報は削除されます。Chrome 同期で利用者自身の Google アカウントに保存された install_id、初回インストール日時、PDF を保存した本の ASIN と日時の一覧は、Chrome の同期データを削除すると消えます。
- 作成された PDF は、利用者が保存した場所から利用者自身で削除できます。
当社サーバーに保存される購入・課金記録は、日本の会計記録の保存期間に合わせ、最後の取引から 7 年間保存します。
購入がない install_id も含め、削除のご依頼があれば、下記の連絡先で受け付けます。
当社サーバーに保存された install_id または課金関連記録の削除を希望する場合は、[email protected] へご連絡ください。法令上または決済処理上ただちに削除できない情報がある場合は、その理由と保存期間を回答します。
5. 本拡張が行わないこと
- ログイン処理の自動化、認証情報の入力・保存を行いません。
- 商品の購入、注文、アカウント設定の変更を行いません。
- DRM(技術的保護手段)の回避や、書籍ファイルそのものの取得・復号を行いません。本拡張は、利用者のブラウザに表示されている画面を撮影し、端末内で画像処理を行うだけです。
- 撮影した内容や作成した PDF を、当社または第三者へ送信・公開・共有しません。
6. 第三者提供・外部サービス
本拡張は、書籍の本文、画像、PDF、Amazon / Kindle の認証情報、Cookie を第三者に提供・販売・共有しません。文字認識(OCR)と PDF 生成は、拡張機能に同梱されたプログラムにより利用者の端末内で実行され、外部の処理サービスを利用しません。
決済は Stripe が処理します。当社はカード番号、セキュリティコード等のカード情報を取得または保存しません。当社は課金状態の確認に必要な Stripe の顧客 ID、サブスクリプション ID、イベント ID 等を保存します。Stripe による情報の取り扱いについては、Stripe のプライバシーポリシーをご確認ください。
7. 権限の利用目的
- activeTab: 利用者が本拡張を起動したタブの表示内容を撮影するため。
- scripting: 対象タブでページ送りと表示領域の測定を行うため。
- storage: 撮影設定と処理状態を端末内に保存するため。
- downloads: 作成した PDF を利用者の端末に保存するため。
- offscreen: 端末内で OCR を実行するため。
- read.amazon.co.jp / www.amazon.co.jp / read.amazon.com へのアクセス: 本棚から本の一覧を読み取り、Reader が表示しているページを撮影するため。日本の Amazon(.co.jp)では本棚が www.amazon.co.jp にあり、アメリカの Amazon(.com)では read.amazon.com にあるため、両方を対象にしています。この 3 つのドメイン以外にはアクセスしません。www.amazon.com(買い物側)へのアクセス権は要求していません — 注文履歴や支払い方法を読むことはありません。
いずれの権限も、上記の目的以外には使用しません。
8. 利用にあたっての前提
本拡張は、利用者が自ら正当に取得した書籍を、利用者自身の端末で読むために利用されることを前提としています。取得した PDF の再配布・共有・販売は想定していません。
9. 子どものプライバシー
本拡張は、子どもから個人情報を意図的に収集しません。
10. 改定
本ポリシーは必要に応じて改定されることがあります。重要な変更がある場合は、本ページおよび Chrome ウェブストアの掲載情報でお知らせします。
11. お問い合わせ
本ポリシーおよび本拡張に関するお問い合わせは、下記までご連絡ください。
改定日:2026年9月28日
お問い合わせ:[email protected]
Readerbox Privacy Policy
Applies to the Chrome extension "Readerbox" only.
1. Information we do not collect
The extension does not send the following information to our server, and Blue Inc. does not collect it:
- Amazon / Kindle account information, authentication data, or cookies
- Book text, book images, or captured screenshots
- Generated PDF files
- Browsing history or reading history
- Analytics, usage statistics, or tracking information
- Your name, address, phone number, or raw email address
Even when billing features are used, book text, book images, captured screenshots, generated PDF files, Amazon / Kindle authentication data, and cookies are not sent to our server.
2. Information stored on your device
The extension stores the following in your browser's storage. Book text, book images, captured screenshots, generated PDFs, Amazon / Kindle authentication data, and cookies are not sent to Blue Inc.
- Captured page images, used as intermediate data for PDF creation; this can be tens of megabytes per book
- A processing log, including page positions, progress, and errors, used to resume after an interruption
- Capture settings, such as window size and display scale
- The target book title and ASIN, used to resume work and choose the saved file name
- OCR results, used as the searchable text layer in the PDF and kept as working data on your device
- A first-install date and version marker, install_id, and a list of ASINs and dates for books whose PDFs have been saved. If Chrome Sync is enabled, these may sync through your own Google account to your other devices. They are not sent to the developer through Chrome Sync.
- Billing data such as install_id, purchase status, plan, remaining credits, license key, and license token
3. Information sent to the billing server
The extension communicates with readerbox.loveblue.net, our server, to check billing status, start purchases, manage subscriptions, restore licenses, and consume book credits.
At install time or the first billing verification, the extension sends install_id, a random UUID generated by the extension, and the extension version. This is used to identify the same installation and restore billing status.
During verify, the extension sends install_id and the extension version. Our server checks purchase status, subscription status, plan, and remaining credits, then returns a signed license token.
During checkout, the extension sends install_id, the selected plan or book-credit type, and display locale. This is used to create a Stripe Checkout page.
During portal, the extension sends install_id. This is used to open Stripe Customer Portal through the Stripe customer ID stored on our server.
During unlock, the extension sends install_id, a license token, and asin_hash. asin_hash is a one-way hash salted per install. It is not the ASIN itself, and Blue Inc. cannot reverse it back to the book title.
Our server stores install_id, asin_hash, purchase and subscription status, plan, credit ledger, license key, hashed email, Stripe customer ID, Stripe subscription ID, Stripe event IDs, and issued-token metadata.
We use this information to provide billing features, verify purchases, restore licenses, prevent duplicate processing, prevent abuse, answer support requests, and retain records required by law.
4. Deleting stored data and retention
Captured images are deleted automatically as working data after PDF export by default. If you turn off that checkbox and keep them, they can still be deleted in bulk from the extension's own screen. Removing the extension from Chrome deletes the data it stored on that device. Data saved to your own Google account through Chrome Sync, including install_id, first-install date, and the ASIN/date list for saved books, can be removed by deleting Chrome sync data. Generated PDFs can be deleted by you from wherever you saved them.
Purchase and billing records stored on our server are retained for 7 years after the last transaction, in line with Japanese accounting-record retention.
Deletion requests, including for install_id records with no purchase, are accepted at the contact address below.
To request deletion of install_id or billing-related records stored on our server, contact [email protected]. If some information cannot be deleted immediately for legal or payment-processing reasons, we will explain the reason and retention period.
5. What the extension does not do
It does not automate sign-in or handle credentials; it does not purchase, order, or change account settings; it does not circumvent DRM or obtain or decrypt book files — it captures what is displayed in your browser and processes the images on your device; and it does not transmit, publish, or share captured content or generated PDFs.
6. Third parties
We do not sell, share, or provide book text, book images, PDFs, Amazon / Kindle authentication data, or cookies to third parties. OCR and PDF generation run on your device using code bundled with the extension; no external processing service is used.
Payments are processed by Stripe. We do not collect or store card numbers, security codes, or similar card details. We store Stripe customer IDs, subscription IDs, event IDs, and related records needed to verify billing status. For Stripe's handling of information, see Stripe's Privacy Policy.
7. Why each permission is needed
activeTab: to capture the tab you explicitly started the extension on. scripting: to turn pages and measure the rendering area in that tab. storage: to keep settings and progress on your device. downloads: to save the finished PDF to your device. offscreen: to run OCR locally. Permissions are not used for any other purpose.
Site access: read.amazon.co.jp, www.amazon.co.jp and read.amazon.com — to read the list of books on your shelf and to capture the page the Reader is showing. The two marketplaces keep the shelf in different places: on the Japanese store it lives on www.amazon.co.jp, on the US store on read.amazon.com. The extension does not request access to www.amazon.com, the shopping site, so it cannot read your order history or payment methods, and it reaches no other domain.
8. Intended use
The extension is intended for processing books you have legitimately obtained, for your own reading on your own device. Redistribution, sharing, or sale of the output is not an intended use.
9. Children's privacy
The extension does not knowingly collect personal information from children.
10. Changes
This policy may be updated. Material changes will be announced on this page and in the Chrome Web Store listing.
11. Contact
Blue Inc. — [email protected]
Effective date: 2026-09-13 · Revised: 2026-09-28