CINXE.COM
privacy [Zotero Documentation]
<!DOCTYPE html> <html lang="en"> <head> <meta charset="utf-8"/> <meta http-equiv="X-UA-Compatible" content="IE=edge"> <meta name="viewport" content="width=device-width, initial-scale=1"> <meta name="description" content="Zotero is a free, easy-to-use tool to help you collect, organize, cite, and share research."/> <link rel="shortcut icon" type="image/ico" href="/favicon.ico" /> <!-- auto discovery links --> <link rel="alternate" type="application/rss+xml" title="Zotero Blog" href="http://feeds.feedburner.com/zotero/" /> <title> privacy [Zotero Documentation] </title> <meta name="generator" content="DokuWiki"/> <meta name="robots" content="index,follow"/> <meta name="keywords" content="privacy"/> <link rel="search" type="application/opensearchdescription+xml" href="/support/lib/exe/opensearch.php" title="Zotero Documentation"/> <link rel="start" href="/support/"/> <link rel="contents" href="/support/privacy?do=index" title="Sitemap"/> <link rel="manifest" href="/support/lib/exe/manifest.php"/> <link rel="alternate" type="application/rss+xml" title="Recent Changes" href="/support/feed.php"/> <link rel="alternate" type="application/rss+xml" title="Current namespace" href="/support/feed.php?mode=list&ns="/> <link rel="alternate" type="text/html" title="Plain HTML" href="/support/_export/xhtml/privacy"/> <link rel="alternate" type="text/plain" title="Wiki Markup" href="/support/_export/raw/privacy"/> <link rel="canonical" href="https://www.zotero.org/support/privacy"/> <link rel="stylesheet" href="/support/lib/exe/css.php?t=zotero-theme&tseed=f6bf024cc054b05aac86c255b32785ba"/> <!--[if gte IE 9]><!--> <script >/*<![CDATA[*/var NS='';var JSINFO = {"toc":{"initial_state":1},"id":"privacy","namespace":"","ACT":"show","useHeadingNavigation":0,"useHeadingContent":0}; /*!]]>*/</script> <script src="/support/lib/exe/jquery.php?tseed=f0349b609f9b91a485af8fd8ecd4aea4" defer="defer">/*<![CDATA[*/ /*!]]>*/</script> <script src="/support/lib/exe/js.php?t=zotero-theme&tseed=f6bf024cc054b05aac86c255b32785ba" defer="defer">/*<![CDATA[*/ /*!]]>*/</script> <!--<![endif]--> <!-- css --> <link rel="stylesheet" href="/static/css/style.1698016953.css" type="text/css" media="screen" charset="utf-8"/> <script type="text/javascript" charset="utf-8"> if(typeof zoteroData == 'undefined'){ var zoteroData = {}; } var baseURL = ""; var staticPath = "/static"; var baseDomain = "https://www.zotero.org"; var nonZendPage = true; let zoterojsSearchContext = "documentation"; let initializeSearch = function() { let searchForm = document.getElementById('simple-search'); searchForm.addEventListener('submit', function(evt) { evt.preventDefault(); let searchBox = document.getElementById('header-search-query'); let query = searchBox.value; let q = encodeURIComponent(query + " site:www.zotero.org/support"); let url = "https://duckduckgo.com/?q=" + q; window.location = url; }) }; if(document.readyState === 'interactive' || document.readyState === 'complete'){ initializeSearch(); } else { document.onreadystatechange = () => { if (document.readyState === 'interactive' || document.readyState === 'complete') { initializeSearch(); } }; } </script> </head> <body class="dokuwiki"> <!-- Header --> <header role="banner" class="container"> <div class="center container"> <h1 id="logohead"> <a href="/"><img src="/static/images/theme/zotero-logo.1519224037.svg" alt="Zotero"></a> </h1> <div id="login-links"> <a href="/user/login/">Log In</a> <a href="/user/register">Register</a> </div> <a href="/storage" class="button" id="purchase-storage-link"><img src="/static/images/theme/archive.png" /> Upgrade Storage</a> <div id="navbar" class="container"> <nav id="sitenav"> <ul> <li><a href="/">Home</a></li> <li><a href="/groups/">Groups</a></li> <li class='selected'><a href="/support/">Documentation</a></li> <li ><a href="https://forums.zotero.org/categories/">Forums</a></li> <li><a href="/getinvolved/">Get Involved</a></li> </ul> </nav> <form action="https://www.zotero.org/search/" id="simple-search"> <div> <input type="text" name="q" size="20" id="header-search-query"/> <input type="submit" class="button" value="Search" /> </div> </form> </div> </div> </header> <div id="content"> <div class="center container"> <div class="dokuwiki container"> <div id="breadcrumbs"> <span class="bchead">You are here: </span><span class="home"><bdi><a href="/support/start" class="wikilink1" title="start" data-wiki-id="start">start</a></bdi></span> > <bdi><a href="/support/privacy" class="wikilink1" title="privacy" data-wiki-id="privacy">privacy</a></bdi> </div> <div class="stylehead"> <div class="header"> <div class="pagename"> </div> </div> </div> <div class="page major-col"> <!-- wikipage start --> <h1 class="sectionedit1" id="zotero_privacy_policy">Zotero Privacy Policy</h1> <div class="level1"> </div> <h2 class="sectionedit2" id="overview">Overview</h2> <div class="level2"> <p> Zotero is an open-source project committed to providing the best tool for managing your research. Our philosophy is that what you put into Zotero is yours, and one of our founding principles is to make sure you remain in control of your data and can share it how you like — or choose not to share it at all. </p> <p> <strong>We are an independent, nonprofit organization and have no financial interest in your private information.</strong> We fund further development by offering additional online storage space to people who find the software useful, not by selling data. </p> </div> <h2 class="sectionedit3" id="data_we_collect">Data We Collect</h2> <div class="level2"> <p> Zotero is designed as a local program that saves data to your own computer by default, and it doesn’t require sharing any data with us to be usable. However, some of Zotero’s advanced features require you to supply us with information. </p> <ul> <li class="level1"><div class="li"> We collect the information you voluntarily provide (e.g., your name and email address) if you create a Zotero account and use optional Zotero services. Zotero can be used without creating an account.</div> </li> <li class="level1"><div class="li"> We collect the library data you upload if you choose to synchronize your library with the Zotero servers. Syncing is entirely optional and is disabled by default.</div> </li> <li class="level1"><div class="li"> We collect the attachment files you upload if you choose to use Zotero file syncing. File syncing is optional, and you can choose to sync files in your personal library using a WebDAV server instead.</div> </li> <li class="level1"><div class="li"> We keep a record of the most recent IP addresses used to access your synchronized library in order to let you verify the security of your account and allow you to <a href="/settings/keys" class="wikilink1" title="/settings/keys">revoke access</a> in your Zotero settings.</div> </li> <li class="level1"><div class="li"> We log visits to our website, including IP address and browser, in order to prevent abuse and to diagnose technical issues. We retain these access logs for 90 days.</div> </li> <li class="level1"><div class="li"> We log requests made to our servers by Zotero or third-party software, including IP address and client information, in order to prevent abuse, diagnose technical issues, and assess usage. We retain these logs for up to 90 days. You can <a href="#disabling_automatic_requests" title="privacy ↵" class="wikilink1">opt out</a> of all requests to our servers.</div> </li> <li class="level1"><div class="li"> We collect error reports that you submit. See <a href="#support_interactions" title="privacy ↵" class="wikilink1">Support Interactions</a>.</div> </li> <li class="level1"><div class="li"> If you attempt to save something to Zotero and the save fails, we collect information about the failure, including the <abbr title="Uniform Resource Locator">URL</abbr>, browser, and version information, so that we can more quickly fix site compatibility issues. We store this information for up to one week. No additional personally identifying information (e.g., username or IP address) is stored, and reports are generally only viewed in aggregate. This error reporting can be disabled in the Zotero and Zotero Connector preferences.</div> </li> </ul> </div> <h2 class="sectionedit4" id="library_statistics">Library Statistics</h2> <div class="level2"> <p> Zotero anonymizes and aggregates synchronized user and group library data to generate statistics on readership. This anonymized and aggregated data only includes publicly available metadata (e.g., publication title and author). This data is never sold or made available in any forms other than ones offered publicly. We may also use this anonymized and aggregated user information for auditing, research, and analysis to operate and improve Zotero services. </p> </div> <h2 class="sectionedit5" id="security_of_stored_data">Security of Stored Data</h2> <div class="level2"> <p> See <a href="/support/security" class="wikilink1" title="security" data-wiki-id="security">Security of Zotero Data</a>. </p> </div> <h2 class="sectionedit6" id="disabling_automatic_requests">Disabling Automatic Requests</h2> <div class="level2"> <p> You can disable all automatic communication with Zotero servers from the Zotero and Zotero Connector preferences: </p> <ul> <li class="level1"><div class="li"> <strong>Syncing:</strong> Sync preferences → leave unconfigured or disable automatic syncing</div> </li> <li class="level1 node"><div class="li"> <strong>Automatic PDF metadata retrieval:</strong> General preferences → disable “Automatically retrieve metadata for PDFs”</div> <ul> <li class="level2"><div class="li"> We do not log any information about the contents of PDF metadata requests.</div> </li> </ul> </li> <li class="level1 node"><div class="li"> <strong>Open-access PDF retrieval:</strong> General preferences → disable “Automatically attach associated PDFs and other files when saving items”</div> <ul> <li class="level2"><div class="li"> If a PDF can't be saved for an item with a DOI, Zotero will send the DOI to Zotero servers to check for open-access versions. We do not log the contents of these requests. Disabling this preference will disable all automatic attachment saving.</div> </li> </ul> </li> <li class="level1"><div class="li"> <strong>Broken site translator reporting:</strong> disable “Report broken site translators” in the Advanced pane of Zotero and the Zotero Connector</div> </li> <li class="level1"><div class="li"> <strong>Translator/style update checking:</strong> Advanced preferences → disable “Automatically check for updated translators and styles”</div> </li> <li class="level1 node"><div class="li"> <strong>Zotero update checking:</strong> Advanced preferences → Config Editor → set <code>app.update.auto</code> to false</div> <ul> <li class="level2"><div class="li"> Automatic update checking is strongly recommended for security and stability reasons.</div> </li> </ul> </li> <li class="level1 node"><div class="li"> <strong>Retracted item checking:</strong> Advanced preferences → Config Editor → set <code>retractions.enabled</code> to false</div> <ul> <li class="level2"><div class="li"> Retraction checks are performed <a href="/blog/retracted-item-notifications/#designed-for-privacy" class="wikilink1" title="/blog/retracted-item-notifications/#designed-for-privacy">without sharing</a> the items you have in your database.</div> </li> </ul> </li> <li class="level1 node"><div class="li"> <strong>Proxy authentication checking:</strong> Advanced → Config Editor → set <code>extensions.zotero.triggerProxyAuthentication</code> to false.</div> <ul> <li class="level2"><div class="li"> At Zotero startup, HEAD requests are made to a test file on Amazon S3 and selected publisher websites (controlled by <code>extensions.zotero.proxyAuthenticationURLs</code>) to trigger a proxy authentication prompt if and only if Zotero detects that a proxy is required to connect to the internet. If you disable this option and require an authenticated proxy, Zotero network connections will fail.</div> </li> </ul> </li> </ul> <p> If automatic syncing or automatic translator/style updates are enabled, Zotero will maintain a persistent connection to Zotero servers when it is open in order to provide immediate updates. You can disable this connection by disabling both of those options or by setting <code>extensions.zotero.streaming.enabled</code> to false in the Config Editor. </p> <p> If you use the Zotero Connector without having Zotero open, the Connector will make a daily request to Zotero servers for information on available site translators. It will then download translators for the sites you visit. For example, if you load a <i>New York Times</i> article, the Connector will download Zotero’s <i>New York Times</i> translator and cache it. If Zotero doesn’t have a translator for a specific site, no request will be made. No information on the specific pages you visit is transmitted, and subsequent requests won’t be made for the same translator until you restart your browser or the translator is updated. You can avoid these requests by keeping Zotero open while you browse the web. </p> </div> <h2 class="sectionedit7" id="permissions_warnings">Permissions Warnings</h2> <div class="level2"> <p> When using third-party platforms, we request the most restrictive permissions available that still allow Zotero to perform its advertised functions. In some cases, the necessary permissions can sound a bit scary, so we want to explain why they’re necessary. </p> </div> <h3 class="sectionedit8" id="zotero_connector">Zotero Connector</h3> <div class="level3"> <p> When installing the Zotero Connector, your browser will warn you that the extension can “Read your browsing history”, “Access your data for all websites”, or similar. These different wordings all mean the same thing: that Zotero can interact with each page as you browse the web. This is the standard permission that browser extensions that run on all pages require. Zotero uses it to determine what content it can save on a given page and update the save button accordingly, as well as to provide advanced features such as automatic proxy redirection and automatic RIS/BibTeX import. Zotero in no way reads your previous browsing history, and no data about your browsing activity is stored except when you choose to save a page to either your local or online Zotero library. </p> </div> <h3 class="sectionedit9" id="google_docs_integration">Google Docs Integration</h3> <div class="level3"> <p> When you first use Google Docs integration, Google will ask you to grant Zotero Google Docs Integration permission to “See, edit, create, and delete all your Google Docs documents”. The plugin requires this permission to insert citations into your documents. The plugin doesn’t do anything else with your document content and doesn’t access documents other than the ones on which it’s triggered. The integration works entirely locally on your computer, so even when you trigger the plugin on a given document, nothing is sent to Zotero servers. </p> </div> <h2 class="sectionedit10" id="storage_purchases">Storage Purchases</h2> <div class="level2"> <p> We send two pieces of personal data to our payment processor at the time of purchase: </p> <ul> <li class="level1"><div class="li"> your Zotero username, in order to associate your payment with your Zotero account</div> </li> <li class="level1"><div class="li"> your email address, so that the payment processor can send you a payment receipt</div> </li> </ul> <p> Zotero does not collect or store your credit card, banking, or other payment information. When you enter your full name, billing address, and account numbers to complete a Zotero purchase, this information passes directly to our payment processor, and it never touches Zotero servers. </p> </div> <h2 class="sectionedit11" id="support_interactions">Support Interactions</h2> <div class="level2"> <p> Most Zotero support occurs in the public Zotero Forums. If you would like to remove forum posts you have made, you may clear them yourself at any time, though we encourage you to leave your posts up for the benefit of others. If you’d prefer your forum posts to appear under a different name, you can change your forums username from your account settings. </p> <p> You may be asked to submit an error report or debug output to help us troubleshoot problems. These reports contain technical information about your computer, such as your operating system and installed browser extensions, and may include incidental personal information such as URLs of sites you visited before or while generating the report. You can review the output of these reports before submitting them. We don’t store any personal information (username, IP address) that links the report to you, and we generally don’t look at reports unless they are referenced by a Report ID or Debug ID in the Zotero Forums. Reports are stored for up to one year. </p> <p> If you email us, we collect your email address and any other information you provide, and we may store your messages indefinitely to provide context for any future support requests you make. </p> </div> <h2 class="sectionedit12" id="third-party_services_used">Third-Party Services Used</h2> <div class="level2"> <ul> <li class="level1"><div class="li"> All Zotero server data is stored in the United States in Amazon Web Services. See <a href="/support/security" class="wikilink1" title="security" data-wiki-id="security">Security of Zotero Data</a> for more information.</div> </li> <li class="level1"><div class="li"> Certain operations you perform in Zotero may trigger requests to public third-party services such as Crossref or the Library of Congress for metadata retrieval. These third parties may log your IP address and search terms (e.g., DOI or ISBN) according to their privacy policies, but no other identifying information is provided.</div> </li> <li class="level1"><div class="li"> When you save items to or update items in Zotero, Zotero may, depending on your settings, connect to the associated sites to download metadata or save PDFs or snapshots. This is equivalent to loading those sites in your browser, and similar privacy implications apply. See <a href="/support/kb/zotero_and_firewalls" class="wikilink1" title="kb:zotero_and_firewalls" data-wiki-id="kb:zotero_and_firewalls">Zotero and Firewalls</a> for access requirements.</div> </li> <li class="level1"><div class="li"> Some fonts on Zotero’s websites are licensed from myfonts.com. In order to verify Zotero’s compliance with this license, myfonts.com collects your IP address and the <abbr title="Uniform Resource Locator">URL</abbr> of the accessed Zotero webpage.</div> </li> <li class="level1"><div class="li"> When an account is registered, we use Google reCAPTCHA to verify that it is not an automated registration attempt.</div> </li> <li class="level1"><div class="li"> Payment processing is provided by <a href="https://stripe.com" class="urlextern" title="https://stripe.com" rel="ugc nofollow">Stripe</a>.</div> </li> <li class="level1"><div class="li"> When buyers are unable to use Stripe, we process payments with <a href="https://www.paypal.com" class="urlextern" title="https://www.paypal.com" rel="ugc nofollow">PayPal</a>.</div> </li> <li class="level1"><div class="li"> Additional accounting services use <a href="https://www.anrok.com/" class="urlextern" title="https://www.anrok.com/" rel="ugc nofollow">Anrok</a>.</div> </li> </ul> </div> <h2 class="sectionedit13" id="deleting_your_data">Deleting Your Data</h2> <div class="level2"> <p> You may delete your Zotero account to remove information you voluntarily provided when you registered to use Zotero services and to remove the library data you provided if you chose to synchronize your library with Zotero servers. To delete your account, visit your <a href="/settings/security#delete" class="wikilink1" title="/settings/security#delete">Zotero settings</a> and click “Permanently Delete Account”. </p> </div> <h2 class="sectionedit14" id="backed-up_data">Backed-up Data</h2> <div class="level2"> <p> We make regular automated backups of data on our servers to protect against accidental loss of user data. These backups are intended for disaster recovery and would be accessed only in the event of significant data loss. Backups may be retained for up to 6 months. </p> </div> <h2 class="sectionedit15" id="legally_compelled_disclosure">Legally Compelled Disclosure</h2> <div class="level2"> <p> We may be legally required to comply with requests for data from law enforcement or government agencies. </p> </div> <h2 class="sectionedit16" id="changes">Changes</h2> <div class="level2"> <p> We may update our privacy policies over time. Up-to-date information, including details of new features, will always be available from this page. </p> </div> <h2 class="sectionedit17" id="questions">Questions</h2> <div class="level2"> <p> If you have any questions or concerns regarding Zotero’s privacy policies, please ask us in the <a href="https://forums.zotero.org" class="urlextern" title="https://forums.zotero.org" rel="ugc nofollow">Zotero Forums</a> or email <a href="mailto:mailto:privacy@zotero.org" class="mail" title="mailto:privacy@zotero.org">privacy@zotero.org</a>. </p> </div> <!-- wikipage stop --> </div> <div class="stylefoot minor-col"> <div class="meta"> <div class="nav"> <!-- TOC START --> <div id="dw__toc" class="dw__toc"> <h3 class="toggle">Table of Contents</h3> <div> <ul class="toc"> <li class="level1"><div class="li"><a href="#zotero_privacy_policy">Zotero Privacy Policy</a></div> <ul class="toc"> <li class="level2"><div class="li"><a href="#overview">Overview</a></div></li> <li class="level2"><div class="li"><a href="#data_we_collect">Data We Collect</a></div></li> <li class="level2"><div class="li"><a href="#library_statistics">Library Statistics</a></div></li> <li class="level2"><div class="li"><a href="#security_of_stored_data">Security of Stored Data</a></div></li> <li class="level2"><div class="li"><a href="#disabling_automatic_requests">Disabling Automatic Requests</a></div></li> <li class="level2"><div class="li"><a href="#permissions_warnings">Permissions Warnings</a></div> <ul class="toc"> <li class="level3"><div class="li"><a href="#zotero_connector">Zotero Connector</a></div></li> <li class="level3"><div class="li"><a href="#google_docs_integration">Google Docs Integration</a></div></li> </ul> </li> <li class="level2"><div class="li"><a href="#storage_purchases">Storage Purchases</a></div></li> <li class="level2"><div class="li"><a href="#support_interactions">Support Interactions</a></div></li> <li class="level2"><div class="li"><a href="#third-party_services_used">Third-Party Services Used</a></div></li> <li class="level2"><div class="li"><a href="#deleting_your_data">Deleting Your Data</a></div></li> <li class="level2"><div class="li"><a href="#backed-up_data">Backed-up Data</a></div></li> <li class="level2"><div class="li"><a href="#legally_compelled_disclosure">Legally Compelled Disclosure</a></div></li> <li class="level2"><div class="li"><a href="#changes">Changes</a></div></li> <li class="level2"><div class="li"><a href="#questions">Questions</a></div></li> </ul></li> </ul> </div> </div> <!-- TOC END --> </div> <div class="user-info"> </div> <div class="page-info"> <bdi>privacy.txt</bdi> · Last modified: 2024/09/10 14:11 by <bdi>fcheslack</bdi> </div> </div> <div class="bar" id="bar__bottom"> <div class="bar-left" id="bar__bottomleft"> <ul class="page-menu"><li><a href="/support/privacy?do=revisions" title="Old revisions [o]" rel="nofollow" accesskey="o" class="zmenuitem revs">Old revisions</a></li></ul> <ul class="wiki-menu"></ul><ul class="user-menu"></ul> </div> </div> </div> </div> <div class="footerinc"> <!-- <rdf:RDF xmlns="http://web.resource.org/cc/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <Work rdf:about=""> <dc:type rdf:resource="http://purl.org/dc/dcmitype/Text" /> <license rdf:resource="http://creativecommons.org/licenses/by-nc-sa/2.0/" /> </Work> <License rdf:about="http://creativecommons.org/licenses/by-nc-sa/2.0/"> <permits rdf:resource="http://web.resource.org/cc/Reproduction" /> <permits rdf:resource="http://web.resource.org/cc/Distribution" /> <requires rdf:resource="http://web.resource.org/cc/Notice" /> <requires rdf:resource="http://web.resource.org/cc/Attribution" /> <prohibits rdf:resource="http://web.resource.org/cc/CommercialUse" /> <permits rdf:resource="http://web.resource.org/cc/DerivativeWorks" /> <requires rdf:resource="http://web.resource.org/cc/ShareAlike" /> </License> </rdf:RDF> --> </div> <div class="no"><img src="/support/lib/exe/taskrunner.php?id=privacy&1732687807" width="2" height="1" alt="" /></div> </div> </div> <footer> <div class="center container"> <nav role="secondary"> <ul> <li><a href="/blog/">Blog</a></li> <li><a href="https://forums.zotero.org/categories/">Forums</a></li> <li><a href="/support/dev/start">Developers</a></li> <li><a href="/support/">Support</a></li> <li><a href="/support/privacy">Privacy</a></li> <li><a href="/getinvolved/">Get Involved</a></li> <li><a href="/jobs">Jobs</a></li> <li class="last"><a href="/about/">About</a></li> </ul> </nav> <p class="about">Zotero is a project of the <a href="http://digitalscholar.org/">Corporation for Digital Scholarship</a>, a nonprofit organization dedicated to the development of software and services for researchers and cultural heritage institutions, and is developed by a <a href="/support/credits_and_acknowledgments">global community</a>.</p> </div><!-- End footer --> </footer> </body> </html>