멜로우(Mellow) 개인정보처리방침 / Privacy Policy

본 개인정보처리방침은 한국어를 정본(governing)으로 하고, 영문은 참고용 번역입니다. 해석상 충돌이 있으면 한국어본이 우선합니다. (Korean is the governing version; the English text is a reference translation.)

본 문서에서 정의되지 않은 용어(멜로우, 조약돌, 플랫폼, 다듬기, 내 사람들, 인앱결제 등)는 멜로우 이용약관 에서 정의된 의미를 따릅니다.


Part 1 — 한국어 (정본)

안드로이드휴먼(이하 "회사")은 「개인정보 보호법」 등 관련 법령을 준수하며, 이용자의 개인정보를 보호하고 관련한 고충을 신속하고 원활하게 처리하기 위하여 본 개인정보처리방침을 수립·공개합니다. 본 방침은 회사가 제공하는 메시지 말투 다듬기 서비스 "멜로우"(이하 "서비스")에 적용됩니다.

제1조 (수집하는 개인정보 항목)

회사는 서비스 제공을 위해 아래의 개인정보를 수집합니다. 회사는 주민등록번호 등 고유식별정보와 사상·신념, 건강 등 민감정보는 수집하지 않습니다.

1. 이용자가 직접 입력·제공하는 정보

구분 항목
계정·식별정보 플랫폼이 제공하는 이용자 식별자에서 파생된 계정 식별자(uid). 앱인토스의 경우 익명 키(getAnonymousKey)의 해시값 및 토스 로그인 시 토스 사용자키(userKey). Google Play / App Store 등 네이티브 클라이언트의 경우 이메일 주소 및 Google/Apple 계정 식별자.
서비스 이용정보 다듬기를 위해 입력한 원문 메시지 및 다듬어진 결과 메시지, 받는 사람 유형·정중함(intensity) 설정, 평가(👍/👎), 변환 기록
'내 사람들' 정보 이용자가 등록한 사람의 라벨(이름/호칭), 말투·성향에 대한 자유 서술(personaSummary), 기본 정중함 설정, 아바타. 이 서술에는 이용자가 입력한 제3자에 관한 정보가 포함될 수 있습니다(제7조 참조).
설정정보 언어/지역(locale), 알림 수신 및 마케팅 수신 동의 여부, 자동 삭제 등 서비스 설정
고객지원 정보 문의·신고 시 제공하는 내용 및 연락처

2. 자동으로 생성·수집되는 정보

구분 항목
접속·기기정보 IP 주소, 접속 일시 및 로그, 기기 종류·모델, 운영체제(OS) 및 버전, 앱 버전
결제·경제정보 조약돌 잔액 및 거래내역(원장), 광고 보상 획득내역, 인앱결제 주문 식별자(orderId)·상품 코드(sku)·구매/환불 내역. 신용카드번호 등 결제수단 정보는 회사가 수집하지 않으며, 결제는 플랫폼이 처리합니다.
광고·분석정보 광고식별자(Android ADID / iOS IDFA), 서비스 이용 기록(화면 조회·클릭 등 분석 이벤트 — 메시지 내용은 포함하지 않음), 오류·진단 정보

제2조 (개인정보의 수집·이용 목적)

회사는 수집한 개인정보를 다음 목적으로만 이용합니다.

  1. 서비스 제공(1차적 목적): 회원 식별 및 로그인·인증, 메시지 다듬기 기능 제공, '내 사람들' 기능 제공, 변환 기록 제공.
  2. 경제·결제 운영: 조약돌 무료 지급·차감, 광고 보상 지급, 인앱결제의 처리·검증·복원, 거래내역 관리, 환불·미지급 문제 처리.
  3. 부정 이용 방지(중요): 무료 지급·광고 보상·결제의 부정 취득 방지, 다수 계정·자동화·환불 악용 등의 탐지·차단, 이용약관 위반에 대한 대응(IP 기반 요청 제한, 이상 징후 모니터링 등).
  4. 고객지원: 문의·불만 처리, 공지사항 전달.
  5. 서비스 개선: 통계·분석을 통한 기능 개선, 다듬기 품질 향상(평가 등 메타데이터 기반).
  6. 광고: 서비스 내 광고 제공(§제6조).
  7. 법령상 의무 이행 및 마케팅(선택): 관련 법령 준수, 이용자가 별도 동의한 경우에 한한 혜택·이벤트 안내.

제3조 (개인정보의 보유 및 이용 기간)

  1. 회사는 원칙적으로 회원 탈퇴(계정 삭제) 시 또는 수집·이용 목적 달성 시 지체 없이 개인정보를 파기합니다. 다만 아래 제4항의 법령상 보관 의무가 있는 정보는 예외로 합니다. 서비스 내 '설정 > 개인정보'에서 계정을 삭제하면 지갑·거래내역·'내 사람들'·변환 기록 등이 삭제되고 플랫폼 로그인 연동이 해제됩니다.
  2. 변환 기록(다듬기 입력·결과)은 이용자가 직접 삭제할 수 있으며, 자동 삭제 옵션을 제공하고, 이용자별 최대 보관 건수를 초과하는 오래된 기록은 순차적으로 삭제될 수 있습니다.
  3. 삭제 처리 및 삭제 대기. 회사는 삭제·탈퇴 요청의 처리 사실과 일시를 부정 재가입 방지 및 처리 증빙을 위하여 최소한의 범위에서 기록·보관할 수 있습니다. 삭제 요청 후 처리 완료까지 일정 기간이 소요될 수 있으며, 그 기간 동안 관련 데이터는 삭제 대기(pending) 상태로 분리 보관될 수 있습니다.
  4. 법령상 보관 의무가 있는 정보의 처리. 아래 법령에 따라 보관이 요구되는 정보는 계정 삭제 시에도 즉시 완전 삭제하지 않고, 다른 개인정보와 분리하여 해당 기간 동안 보관합니다. 이때 보관 목적 달성에 필요하지 않은 개인정보는 **가명·익명 처리 또는 마스킹(redaction)**하여 식별 가능성을 최소화하며, 기간 경과 후 지체 없이 파기합니다. 이렇게 분리·비식별 보관되는 기록은 특정 이용자와 다시 연결되지 않으므로, 계정 삭제 후에는 이용자가 인앱결제 내역 등 해당 결제·거래 기록을 서비스 내에서 조회하거나 복구할 수 없습니다. 근거 법령과 기간은 다음과 같습니다.
근거 법령 보관 항목 기간
전자상거래 등에서의 소비자보호에 관한 법률 계약 또는 청약철회 등에 관한 기록 5년
전자상거래 등에서의 소비자보호에 관한 법률 대금결제 및 재화 등의 공급에 관한 기록 5년
전자상거래 등에서의 소비자보호에 관한 법률 소비자 불만 또는 분쟁처리에 관한 기록 3년
전자상거래 등에서의 소비자보호에 관한 법률 표시·광고에 관한 기록 6개월
통신비밀보호법 서비스 이용 관련 접속기록(로그) 3개월

제4조 (개인정보 처리의 위탁 및 제3자 서비스)

1. 개인정보 처리의 위탁 (수탁자)

회사는 원활한 서비스 제공을 위해 아래와 같이 개인정보 처리를 외부에 위탁하고 있으며, 위탁계약 시 개인정보가 안전하게 관리되도록 관련 법령에 따라 필요한 사항을 규정합니다. 수탁자는 회사의 지시에 따라 회사의 목적 범위 내에서만 개인정보를 처리합니다. 수탁자와 업무 내용이 변경되는 경우 본 방침을 통해 공개합니다.

수탁자 위탁 업무 처리·수집 정보(예시)
Google LLC (Firebase / Google Cloud) 인증, 데이터베이스, 서버(클라우드 함수), 원격 구성 등 백엔드 인프라 계정 식별자(uid)·인증정보, IP 주소, 기기·설치 식별자(FID), 저장되는 서비스 이용정보
Google LLC (Gemini API) 메시지 다듬기 등을 위한 AI 처리 다듬기 입력 메시지 및 '내 사람들' 서술(처리 목적 범위 내, §제7조)
앱인토스 / 토스(주식회사 비바리퍼블리카) 플랫폼 로그인·식별, 인앱결제 처리, 광고 중개, 이용 분석, 알림 발송 플랫폼 이용자 식별자, 결제 주문정보, 이용 분석 이벤트

2. 독립적으로 개인정보를 처리하는 제3자

아래 사업자는 회사의 수탁자가 아니라, 서비스에 연동된 SDK를 통해 각자 자신의 목적과 개인정보처리방침에 따라 개인정보를 직접 수집·처리하는 독립적 개인정보처리자입니다. 따라서 해당 정보의 처리에 대해서는 각 사업자가 독립적으로 책임을 지며, 자세한 내용은 각 사업자의 개인정보처리방침에서 확인할 수 있습니다. 맞춤형 광고 등 별도 동의가 필요한 처리에 대해서는 관련 법령에 따라 이용자의 동의를 받습니다.

사업자 적용 플랫폼 처리 목적 수집·처리 정보(예시)
Google LLC (Google AdMob) 전체 광고 제공·측정, 부정클릭 방지 광고식별자(ADID/IDFA), IP 주소, 광고 상호작용·진단 정보, 기기·계정 식별자(§제6조)
Google LLC (Firebase Crashlytics) 네이티브 Android / iOS (향후 출시 시) 앱 크래시·안정성 모니터링 오류 스택트레이스, 크래시 시점의 기기 정보, 설치 식별자(UUID), IP 주소 (메시지 내용은 전송하지 않음)

위 목록은 대표적인 예시로서, 회사는 서비스 제공·개선에 필요한 제3자 서비스를 추가·변경할 수 있으며, 변경 시 본 방침을 갱신하여 공개합니다. 어떠한 경우에도 메시지 내용 및 '내 사람들' 서술은 위 제3자에게 전송하지 않습니다.

제5조 (개인정보의 국외 이전)

  1. 현재 현황. 회사가 직접 운영하는 서버 인프라(Firebase / Google Cloud)는 **대한민국(서울 리전, asia-northeast3)**에 위치합니다. 다만 광고(AdMob), (향후) 크래시 모니터링(Crashlytics), AI 처리 등 일부 제3자 서비스는 개인정보를 국외에서 수집·처리할 수 있습니다.
  2. 향후 이전 가능성. 회사는 서비스 운영·확장에 따라 향후 개인정보 처리·보관 위치를 대한민국 외의 국가로 이전할 수 있습니다.
  3. 관련 법령(「개인정보 보호법」 제28조의8)에 따라 국외 이전에 해당하는 경우, 회사는 아래 사항을 사전에 고지하며, 별도 동의가 필요한 경우 이전 전에 이용자의 동의를 받습니다. (본 방침에의 공개 등 법령이 정한 예외에 해당하는 위탁·보관은 그에 따릅니다. §제4조 제2항의 독립적 제3자는 각자의 개인정보처리방침에 따라 국외에서 직접 수집·처리합니다.)
이전받는 자 이전 국가 이전 항목 이전 일시 및 방법 이용 목적 및 보유 기간
Google LLC 미국 등 Google 데이터센터 소재 국가 광고·AI·인프라 및 (향후) 크래시 모니터링 처리에 수반되는 위 각 항목 서비스 이용 시점에 정보통신망을 통해 전송 각 처리 목적 달성 시까지(§제2조·제4조)

이용자는 국외 이전에 대한 동의를 거부할 수 있습니다. 다만 광고·오류 모니터링 등 서비스의 원활한 제공에 필요한 처리를 거부하는 경우 일부 기능 이용이 제한될 수 있습니다.

제6조 (광고 및 자동 수집 장치)

  1. 회사는 서비스 내에서 토스 애즈, Google AdMob 등의 광고 네트워크를 통해 광고를 제공합니다.
  2. 광고 네트워크는 광고 제공·측정·부정클릭 방지 등을 위해 광고식별자(Android ADID / iOS IDFA), IP 주소, 기기·설치 식별자, 광고 상호작용 및 진단 정보 등을 수집·이용할 수 있습니다. 해당 정보의 처리는 각 광고 사업자의 개인정보처리방침을 따릅니다.
    • Google 광고 데이터 처리: https://policies.google.com/technologies/partner-sites
  3. 이용자는 기기 설정을 통해 광고식별자를 재설정하거나 맞춤형 광고를 제한할 수 있습니다(예: Android "광고 개인 최적화 삭제", iOS "앱 추적 투명성(ATT)" 및 "추적 요청 허용" 해제).
  4. 보상형 광고 시청 시의 보상 지급 조건 등 광고 관련 사항은 이용약관 제7조를 따릅니다.

제7조 (메시지 내용 및 '내 사람들' 정보의 처리 — 특칙)

  1. 다듬기를 위해 입력된 원문 메시지와 '내 사람들' 서술은 결과 생성을 위해 처리됩니다. 회사는 원문 메시지 내용을 별도의 로그로 남기거나, 분석·광고 목적으로 저장·이용하지 않습니다.
  2. 변환 기록(입력·결과)은 이용자 본인만 조회·삭제할 수 있으며, 자동 삭제 옵션을 제공합니다.
  3. AI 처리는 회사가 이용하는 유료 등급의 AI 사업자를 통해 이루어지며, 해당 등급에서는 제출된 콘텐츠가 사업자의 모델 학습에 사용되지 않습니다.
  4. '내 사람들'에 입력하는 말투 서술에는 이용자가 자주 연락하는 제3자에 관한 정보가 포함될 수 있습니다. 이용자는 타인의 권리를 침해하지 않는 범위에서 정보를 입력해야 하며, 회사는 해당 정보를 관계-민감정보로 취급하여 분석 대상에서 제외하고 이용자가 삭제할 수 있도록 합니다.
  5. 회사는 메시지 내용 및 '내 사람들' 서술을 이용 분석 도구나 오류 모니터링 도구로 전송하지 않습니다.

제8조 (정보주체의 권리·의무 및 행사 방법)

  1. 이용자는 언제든지 자신의 개인정보에 대한 열람, 정정, 삭제, 처리정지, 동의 철회를 요청할 수 있습니다.
  2. 권리 행사는 서비스 내 '설정' 메뉴(계정 삭제, 기록 삭제, 설정 변경, 마케팅 수신 동의 철회 등) 또는 아래 개인정보 보호책임자에게 서면·이메일 등으로 요청할 수 있으며, 회사는 지체 없이 조치합니다.
  3. 이용자가 개인정보의 오류에 대한 정정을 요청한 경우, 정정을 완료하기 전까지 해당 개인정보를 이용·제공하지 않습니다.
  4. 만 14세 미만 아동의 법정대리인은 아동의 개인정보에 대한 권리를 대리 행사할 수 있습니다.

제9조 (개인정보의 파기)

  1. 회사는 보유 기간의 경과, 처리 목적 달성 등 개인정보가 불필요하게 되었을 때 지체 없이 파기합니다.
  2. 전자적 파일 형태의 정보는 복구·재생이 불가능한 방법으로 삭제하며, 종이 문서는 분쇄 또는 소각합니다.
  3. 법령에 따라 보관하는 정보(§제3조)는 해당 기간 동안 다른 정보와 분리하여 보관 후 파기합니다.

제10조 (개인정보의 안전성 확보 조치)

회사는 개인정보의 안전성 확보를 위해 다음의 조치를 취합니다.

  1. 접근통제 및 권한 관리: 개인정보 처리 시스템에 대한 접근 권한의 최소화, 관리자 인증(SSO·2단계 인증) 및 접근 기록(감사 로그) 관리.
  2. 전송·저장 시 암호화: 전송구간 TLS 암호화, 서버 측에서만 처리·기록되는 잔액·거래정보의 무결성 관리.
  3. 내부 관리계획 및 최소 수집: 서비스에 필요한 최소한의 정보만 수집하고, 메시지 내용을 분석·광고 도구로 전송하지 않는 등 처리 원칙을 준수.
  4. 민감정보 접근 로깅: 지원 목적으로 메시지·'내 사람들' 서술 등 민감한 내용에 접근하는 경우 접근 기록을 남깁니다.

제11조 (만 14세 미만 아동의 개인정보)

서비스는 만 14세 미만 아동을 주 대상으로 하지 않으며, 회사는 법정대리인의 동의 없이 만 14세 미만 아동의 개인정보를 수집하지 않습니다. 미성년자의 결제에 관한 사항은 이용약관을 따릅니다.

제12조 (개인정보 보호책임자 및 문의처)

개인정보 처리에 관한 문의, 불만 처리, 피해 구제 등은 아래로 연락해 주시기 바랍니다.

기타 개인정보 침해에 대한 신고·상담이 필요한 경우 다음 기관에 문의할 수 있습니다.

제13조 (개인정보처리방침의 변경)

본 방침은 법령·서비스의 변경에 따라 개정될 수 있으며, 개정 시 적용일자 및 변경 사유를 명시하여 시행 최소 7일 전(이용자 권리에 중대한 영향을 미치는 변경은 30일 전)부터 서비스 화면 등을 통해 공지합니다.

부칙


Part 2 — English (reference translation)

This English text is a reference translation. The Korean version in Part 1 governs and prevails in case of any conflict. Terms not defined here follow the meanings given in the Mellow Terms of Service.

Androidhuman (the "Company") complies with the Personal Information Protection Act (PIPA) and other applicable law and establishes this Privacy Policy to protect users' personal data and handle related concerns. This Policy applies to the message tone-polishing service "Mellow" (the "Service").

1. Personal Data We Collect

The Company collects the following personal data to provide the Service. The Company does not collect unique identifiers such as resident registration numbers, nor sensitive data such as beliefs or health information.

1. Data provided directly by the user

Category Items
Account / identifier An account identifier (uid) derived from the identifier provided by the Platform. For Apps-in-Toss, the hash of the anonymous key (getAnonymousKey) and, upon Toss Login, the Toss user key (userKey). For native clients such as Google Play / App Store, the email address and Google/Apple account identifier.
Service usage The original message and the polished result entered for conversion, recipient type and politeness (intensity) settings, ratings (👍/👎), conversion history
"People" data The label (name/title) of a saved person, a free-text description of their tone/traits (personaSummary), default politeness, and avatar. This description may include information about third parties entered by the user (see Article 7).
Settings Language/locale, notification and marketing-consent status, auto-delete and other service settings
Support Content and contact details provided in inquiries/reports

2. Data collected automatically

Category Items
Access / device IP address, access date/time and logs, device type/model, operating system (OS) and version, app version
Payment / economy Pebble balance and transaction ledger, ad-reward history, in-app purchase order identifier (orderId), product code (sku), and purchase/refund records. The Company does not collect payment-method data such as card numbers; payment is processed by the Platform.
Advertising / analytics Advertising identifier (Android ADID / iOS IDFA), service usage records (screen views, clicks, and other analytics events — excluding message content), error/diagnostic information

2. Purposes of Collection and Use

The Company uses collected data only for the following purposes:

  1. Providing the Service (primary purpose): user identification, login/authentication, tone conversion, the "People" feature, and conversion history.
  2. Economy/payment operations: granting/debiting Pebbles, paying ad rewards, processing/ verifying/restoring in-app purchases, managing transaction records, and handling refunds/ non-delivery issues.
  3. Fraud prevention (important): preventing fraudulent acquisition of grants/ad rewards/ payments, detecting and blocking multiple accounts, automation, and refund abuse, and responding to Terms violations (IP-based request limiting, anomaly monitoring, etc.).
  4. Customer support: handling inquiries/complaints and delivering notices.
  5. Service improvement: improving features via statistics/analytics and improving conversion quality (based on metadata such as ratings).
  6. Advertising: delivering in-service ads (Article 6).
  7. Legal compliance and marketing (optional): complying with law and, only with separate consent, informing users of benefits/events.

3. Retention and Use Period

  1. In principle, the Company destroys personal data without delay upon account deletion or once the purpose is achieved, except for data subject to a statutory retention obligation under paragraph 4 below. Deleting your account under 'Settings > Privacy' removes your wallet, transaction ledger, "People," and conversion history, and unlinks Platform login.
  2. Conversion history (conversion inputs/results) can be deleted by the user directly, an auto-delete option is provided, and old records exceeding the per-user retention cap may be deleted sequentially.
  3. Deletion processing and pending state. The Company may retain, to a minimal extent, the fact and time of a deletion/withdrawal request for preventing fraudulent re-registration and proving processing. Completing a deletion request may take some time, during which the related data may be held separately in a pending-deletion state.
  4. Handling of data under a statutory retention obligation. Data required to be retained under the laws below is not immediately and fully deleted upon account deletion; instead it is separated from other personal data and retained for the applicable period. Personal data not necessary to achieve the retention purpose is pseudonymized/anonymized or masked (redacted) to minimize identifiability, and is destroyed without delay once the period elapses. Because these separated, de-identified records cannot be re-linked to a specific user, after account deletion the user can no longer view or restore such payment/transaction records — including in-app purchase history — within the Service. The legal bases and periods are as follows:
Legal basis Retained item Period
Act on Consumer Protection in Electronic Commerce Records on contracts or withdrawal of subscription 5 years
Act on Consumer Protection in Electronic Commerce Records on payment and supply of goods 5 years
Act on Consumer Protection in Electronic Commerce Records on consumer complaints or dispute handling 3 years
Act on Consumer Protection in Electronic Commerce Records on labeling/advertising 6 months
Protection of Communications Secrets Act Service access logs 3 months

4. Consignment and Third-Party Services

1. Consignment (processing on our behalf)

For smooth operation, the Company entrusts personal-data processing to the parties below and, in the consignment contracts, stipulates the matters required by law to keep data safe. Processors handle personal data only within the Company's purposes and on the Company's instructions. If the processor or scope of work changes, the Company will disclose it through this Policy.

Processor Entrusted work Data processed/collected (examples)
Google LLC (Firebase / Google Cloud) Authentication, database, server (Cloud Functions), remote config, and other backend infrastructure Account identifier (uid)/auth data, IP address, device/installation identifiers (FID), stored service-usage data
Google LLC (Gemini API) AI processing for tone conversion, etc. Conversion input messages and "People" descriptions (within the processing purpose, Article 7)
Apps-in-Toss / Toss (Viva Republica Inc.) Platform login/identification, in-app purchase processing, ad mediation, usage analytics, notifications Platform user identifier, payment order information, usage-analytics events

2. Independent third-party controllers

The providers below are not our processors; through SDKs integrated into the Service, they collect and process personal data directly as independent controllers, for their own purposes and under their own privacy policies. Each such provider is independently responsible for its processing, the details of which appear in its own privacy policy. For processing that requires separate consent (e.g., personalized advertising), the Company obtains the user's consent as required by law.

Provider Applicable platform Purpose Data collected/processed (examples)
Google LLC (Google AdMob) All Delivering/measuring ads, preventing fraudulent clicks Advertising identifier (ADID/IDFA), IP address, ad-interaction/diagnostic information, device/account identifiers (Article 6)
Google LLC (Firebase Crashlytics) Native Android / iOS (upon future release) App crash/stability monitoring Crash stack traces, device information at crash time, installation identifier (UUID), IP address (message content is not transmitted)

The list above is representative. The Company may add or change third-party services as needed to provide or improve the Service and will update this Policy accordingly. In no case are message content or "People" descriptions transmitted to the third parties above.

5. Overseas Transfer of Personal Data

  1. Current status. The server infrastructure the Company operates directly (Firebase / Google Cloud) is located in the Republic of Korea (Seoul region, asia-northeast3). However, certain third-party services — advertising (AdMob), (future) crash monitoring (Crashlytics), and AI processing — may collect and process personal data outside Korea.
  2. Possible future transfer. As the Service operates and expands, the Company may in the future move the location where personal data is processed/stored to a country outside Korea.
  3. Where an overseas transfer applies under PIPA (Article 28-8), the Company will disclose the following in advance and, where separate consent is required, obtain the user's consent before the transfer. (Consignment/storage falling under a statutory exception, such as disclosure in this Policy, follows that basis. The independent third parties in Article 4(2) collect and process directly overseas under their own privacy policies.)
Transferee Country Items transferred Timing and method Purpose and retention
Google LLC The U.S. and other countries where Google data centers are located The above items incidental to advertising/AI/infrastructure and (future) crash-monitoring processing Transmitted over the network at the time of use Until each processing purpose is achieved (Articles 2, 4)

Users may refuse consent to overseas transfer. However, refusing processing necessary for smooth provision of the Service (such as advertising and error monitoring) may limit the use of some features.

6. Advertising and Automatic Collection Tools

  1. The Company delivers ads within the Service through ad networks such as Toss Ads and Google AdMob.
  2. Ad networks may collect/use the advertising identifier (Android ADID / iOS IDFA), IP address, device/installation identifiers, and ad-interaction/diagnostic information to deliver/measure ads and prevent fraudulent clicks. Such processing follows each ad provider's own privacy policy.
    • Google advertising data handling: https://policies.google.com/technologies/partner-sites
  3. Users can reset the advertising identifier or limit personalized ads through device settings (e.g., Android "Delete advertising ID," or iOS App Tracking Transparency (ATT) / turning off "Allow Tracking").
  4. Conditions for reward payment when viewing rewarded ads and other ad matters follow Article 7 of the Terms of Service.

7. Handling of Message Content and "People" Data (Special Provision)

  1. The original message and "People" description entered for conversion are processed to generate results. The Company does not keep separate logs of original message content or store/use it for analytics or advertising.
  2. Conversion history (inputs/results) is viewable and deletable by the user only, with an auto-delete option.
  3. AI processing is performed via a paid-tier AI provider used by the Company; on that tier, submitted content is not used to train the provider's models.
  4. Tone descriptions entered under "People" may include information about third parties the user frequently contacts. Users must enter information without infringing others' rights; the Company treats such information as relationship-sensitive, excludes it from analytics, and lets the user delete it.
  5. The Company does not transmit message content or "People" descriptions to usage-analytics or error-monitoring tools.

8. Rights of the Data Subject and How to Exercise Them

  1. Users may at any time request access to, correction, deletion, suspension of processing of, or withdrawal of consent regarding their personal data.
  2. Rights may be exercised through the in-service 'Settings' menu (account deletion, history deletion, changing settings, withdrawing marketing consent, etc.) or by request in writing/email to the privacy officer below; the Company will act without delay.
  3. If a user requests correction of an error in personal data, the Company will not use or provide that data until the correction is complete.
  4. The legal guardian of a child under 14 may exercise the child's rights on their behalf.

9. Destruction of Personal Data

  1. The Company destroys personal data without delay when it becomes unnecessary due to expiry of the retention period, achievement of the purpose, etc.
  2. Data in electronic files is deleted by a method that prevents recovery/reproduction; paper documents are shredded or incinerated.
  3. Data retained under law (Article 3) is stored separately from other data during the applicable period and then destroyed.

10. Security Measures

The Company takes the following measures to secure personal data:

  1. Access control and privilege management: minimizing access privileges to processing systems, administrator authentication (SSO / two-factor), and management of access records (audit logs).
  2. Encryption in transit/at rest: TLS encryption for transmission and integrity management of balance/transaction data processed and recorded only on the server side.
  3. Internal management plan and data minimization: collecting only the minimum data needed and not transmitting message content to analytics/advertising tools.
  4. PII-access logging: logging access when sensitive content such as messages or "People" descriptions is viewed for support purposes.

11. Personal Data of Children Under 14

The Service is not primarily intended for children under 14, and the Company does not collect the personal data of children under 14 without the consent of a legal guardian. Matters regarding minors' payments follow the Terms of Service.

12. Privacy Officer and Contact

For inquiries, complaints, or remedies regarding personal-data processing, please contact:

For reporting or consultation on privacy infringement, you may also contact:

13. Changes to This Privacy Policy

This Policy may be amended in line with changes to law or the Service. Amendments will be announced via the Service at least 7 days before the effective date (30 days for changes materially affecting users' rights), specifying the effective date and the reason for the change.

Addendum