Skip to main content

AI Transparency & Data Handling

Publica.la integrates AI capabilities into the reader experience through a suite of tools that help readers comprehend, interact with, and get more value from digital content. This page documents what AI features exist, how data flows through them, what providers are involved, and what controls publishers have.

For the public-facing policy summary, see AI Transparency & Policy.

AI Feature Overview

All AI features are reader-facing, activated on-demand by the end user during a reading session. No AI processing occurs in the background or without explicit user action.

We make every effort to keep this list current, but it may not reflect the very latest additions at all times. Regardless, the commitments on this page regarding how content is processed, stored, and handled will not change without prior notice to publishers.

Standard Reader Tools

These are standard digital reading tools present in most modern reading platforms. They are always available to readers.

FeatureDescriptionData Sent
DictionaryDefines words and terms with part of speechSelected word(s)
TranslateTranslates selected text to reader's languageSelected text, target language
Text-to-SpeechConverts text to spoken audioText content for the current page/section

AI Comprehension Tools

These tools work on selected text (and in some cases, page ranges) to help readers understand and interact with content. They are enabled by default and can be disabled per publisher.

FeatureDescriptionData Sent
ExplainExplains selected text in simpler termsSelected text, book title, language
ExpandProvides additional context on selected textSelected text, book title, language
SummarizeGenerates summaries of selected text or page rangesSelected text or page content, book title, language

Vito AI Assistant

Vito is a conversational AI assistant embedded in the reader. It is available on request and can be activated per publisher.

Vito generates summaries of whole or multiple pages, creates assessment questions from content, and answers reader questions based on the publication text.

Data Flow

What gets sent to AI providers

When a reader triggers an AI feature, only the following data is transmitted:

  • Text excerpt: The selected passage or page content relevant to the request
  • Metadata: Book title and language (used for context in prompts)
  • Reader question: For Q&A features only, the question the reader typed

The following is never sent:

  • Reader identifiers or personally identifiable information (PII)
  • Authentication tokens or session data
  • Full book content (only the relevant excerpt)
  • Purchase history, reading habits, or behavioral data

Encryption

  • All data is encrypted in transit over TLS 1.2+ connections
  • API keys are stored server-side; they are never exposed to the client

Response handling

  • AI responses are delivered to the reader's session
  • Standard Reader Tools and AI Comprehension Tools operate statelessly; each request is independent
  • Vito AI Assistant maintains session context during a reading session to enable follow-up questions and continuity

Data Retention

Our AI providers contractually commit to not retaining API inputs for model training:

  • OpenAI: Zero-retention API option enabled. Inputs are not used for training or improving models.
  • Anthropic: Zero-retention API. Inputs are not used for training or improving models.
  • AWS Polly: Audio is synthesized in real time. No input retention.

AI Providers

ProviderCompliance
OpenAISOC 2 Type II, GDPR compliant. DPA in place.
AnthropicSOC 2 Type II, GDPR compliant. DPA in place.
Amazon Web Services (Polly)SOC 2, ISO 27001, HIPAA eligible, GDPR compliant.

All providers contractually commit to not using API inputs for training or improving models.

Tenant Controls

  • Standard Reader Tools (Dictionary, Translate, Text-to-Speech) are always available as part of the reading experience.
  • AI Comprehension Tools (Explain, Expand, Summarize) are enabled by default and can be disabled per publisher.
  • Vito AI Assistant is available on request and can be activated per publisher.

To adjust AI settings for your catalog, contact your account manager or email support@publica.la.

Security

AI feature requests are protected by the same security infrastructure as the rest of the platform:

  • JWT authentication: All API requests require a valid JSON Web Token
  • Reader-token validation: AI features are only available to authenticated readers with valid access to the content
  • Per-request authorization: Each AI request is authorized individually; there is no batch processing or background analysis
  • Audit logging: AI feature usage metadata is tracked for billing and analytics (feature used, timestamp, tenant)

What Is Not AI

For clarity, the following platform features do not currently use AI, machine learning, or any form of computational intelligence:

FeatureTechnology
SearchTraditional full-text database search on indexed metadata fields
RecommendationsRule-based matching on BISAC (Book Industry Standards and Communications) category taxonomy
Content intakeONIX XML parsing and PDF processing (Ghostscript); purely mechanical

Frequently Asked Questions

Does Publica.la use publisher content to train AI models?

No. Publisher content is not used for training, fine-tuning, or improving any AI model. Our AI providers contractually commit to not using API inputs for model training.

Which AI features can publishers control?

AI Comprehension Tools (Explain, Expand, Summarize) can be disabled per publisher. Vito AI Assistant is only active when explicitly enabled. Standard Reader Tools (Dictionary, Translate, Text-to-Speech) are part of the core reading experience. Contact support@publica.la to adjust settings.

What happens if an AI provider changes their data policies?

We continuously monitor our providers' data handling policies. If a provider changes their terms in a way that conflicts with our commitments, we will either negotiate acceptable terms or migrate to an alternative provider. Publishers will be notified of any material changes.

Does AI processing comply with GDPR?

Yes. No personal data is sent to AI providers. Our providers maintain GDPR-compliant data processing agreements. For details on our broader privacy practices, see our Privacy Policy.

Are AI-generated outputs considered derivative works?

AI outputs (explanations, translations, summaries) are delivered to the individual reader who requested them and are not redistributed. They function as reading aids, similar to a dictionary or thesaurus lookup.

Can we get a written statement about AI usage for our agreements?

Yes. Contact support@publica.la and we will provide documentation suitable for inclusion in your distribution or licensing agreements.

X

Graph View