BriSense는 다음 목적으로 개인정보를 처리합니다.
| 항목 | 제공자 | 수집 시점 |
|---|---|---|
| 이메일 주소 | Google, Apple | 로그인 시 |
| 이름(닉네임) | Google, Apple | 로그인 시 |
| 프로필 사진 URL | 로그인 시 (선택) | |
| 고유 사용자 ID | Google, Apple | 로그인 시 |
| 항목 | 목적 | 저장 위치 |
|---|---|---|
| 기기 광고 식별자 (Android: GAID) ※ iOS에서는 앱 추적 권한을 요청하지 않으므로 광고 식별자(IDFA)를 수집하지 않습니다 | AdMob 광고 노출 | 구글 광고 서버 |
| IP 주소 | 무료 번역 레이트 리밋 (어뷰징 방지) | Cloudflare KV (24시간 TTL) |
| 번역 이용 횟수 (일일 카운터) | 일일 한도 관리 | 기기 로컬 + Cloudflare KV |
| 회원 식별정보 — 고유 사용자 ID, 로그인 제공자(Google/Apple 구분), 최초 로그인 일시, 최근 로그인 일시 | 회원 식별, 중복 가입 방지, 포인트 잔액 귀속 | Cloudflare D1 (회원 탈퇴 시 삭제) |
| 포인트 잔액 및 적립·사용 이력 (적립 시각, 수량, 사유) | 포인트 지급·차감의 정확성 보장, 부정 사용 방지 | Cloudflare D1 (회원 탈퇴 시 삭제) |
| 포인트 차감 감사 로그 (이용 날짜·차감량·UID 또는 IP) | 포인트 조작 탐지 및 향후 서버 잔액 관리 | Cloudflare KV (7일 TTL) |
| 서비스 이용 통계 — 번역 이용 횟수(가입/비가입 그룹별 합계), 번역 언어쌍별 이용 횟수(전체 합계), 시스템 안정성 지표(토큰 사용량·외부 API 대체 호출 횟수 합계) | 서비스 개선 및 안정성 관리 | Cloudflare KV (일별 집계) |
위 서비스 이용 통계는 개인을 식별할 수 없는 집계(합계) 형태로만 수집·보관하며, 개별 이용자 ID·IP 주소와 연결하지 않습니다. 번역 내용(원문·번역문)은 저장하지 않습니다.
위 항목은 이용자의 기기 내 저장소(LocalStorage·암호화 저장소)에만 저장되며 BriSense 서버로 별도 전송·보관되지 않습니다.
※ 포인트는 로그인 여부에 따라 저장 위치가 다릅니다. 로그인 상태에서는 계정에 귀속되어 서버(Cloudflare D1)에 보관되며, 기기를 바꾸거나 앱을 다시 설치해도 같은 계정으로 로그인하면 이어서 사용할 수 있습니다. 비로그인(게스트) 상태에서는 이 기기에만 저장되며, 앱을 삭제하면 함께 사라집니다.
| 기능 | 권한 | 처리 방식 |
|---|---|---|
| 이미지 텍스트 번역 (OCR) | 카메라 사진(갤러리) |
카메라로 촬영하거나 기기 앨범에서 선택한 이미지에서 텍스트를 추출합니다. 텍스트 추출은 전부 기기 내(온디바이스)에서 이루어지며(Android: Google ML Kit / iOS: 내장 OCR), 이미지 자체는 서버로 전송·저장되지 않습니다. 추출된 텍스트를 번역할 때에만 해당 텍스트가 번역 경로로 전송됩니다. |
| 음성 입력 (STT) | 마이크 음성 인식(iOS) |
기기 운영체제의 음성 인식 기능을 사용하며, 인식을 위해 음성 데이터가 운영체제 제공사로 전송될 수 있습니다. · Android: Google 음성 인식 서비스 · iOS: Apple 음성 인식 서비스(Speech) BriSense는 음성 데이터를 자체 서버로 수집·저장하지 않습니다. |
카메라·사진·마이크는 해당 기능을 이용자가 직접 사용할 때만 접근하며, 상시 수집하지 않습니다. 권한은 기기 설정에서 언제든 철회할 수 있습니다.
| 항목 | 보유 기간 |
|---|---|
| 소셜 로그인 정보 및 회원 식별정보 (이메일·이름·UID·로그인 제공자·로그인 일시) | 회원 탈퇴 즉시 삭제 |
| 포인트 잔액 및 적립·사용 이력 | 회원 탈퇴 즉시 삭제 |
| IP 기반 레이트 리밋 카운터 | KST 자정 (최대 24시간) |
| 포인트 차감 감사 로그 | 7일 (Cloudflare KV 자동 삭제) |
| 서비스 이용 통계 (개인 미식별 집계) | 최대 400일 (연간 통계 산출 후 자동 삭제) |
| 광고 식별자 | 구글 정책에 따름 |
BriSense는 이용자의 동의 없이 개인정보를 제3자에게 제공하지 않습니다. 단, 다음의 경우 예외입니다.
BriSense는 원활한 서비스 제공을 위해 다음 업체에 개인정보 처리를 위탁합니다. 아래 표는 현재 시점의 수탁 현황이며, 수탁사가 추가·변경되는 경우 본 처리방침을 통해 사전 고지합니다.
| 수탁사 | 위탁 내용 | 보유 기간 |
|---|---|---|
| Google LLC (AdMob) | 모바일 광고 게재·관리 | 계약 종료 시까지 |
| Google LLC (Sign In) | 소셜 로그인 인증 (Android·iOS 공통) | 계약 종료 시까지 |
| Apple Inc. (Sign In with Apple) | 소셜 로그인 인증 (iOS 전용 — Android에서는 제공하지 않음) | 계약 종료 시까지 |
| Google LLC (Gemini · Translate) | AI 번역·기계번역 처리 | 계약 종료 시까지 |
| Cloudflare, Inc. | API 프록시, 레이트 리밋 저장, 회원 식별정보 및 포인트 잔액·거래 이력 보관 | 계약 종료 시까지 |
| Fly.io, Inc. | 번역 API 중계 서버 | 계약 종료 시까지 |
| OpenRouter, Inc. └ 실제 추론 처리: Microsoft Corporation (Azure) 또는 OpenAI, L.L.C. |
AI 번역 처리 (예비 경로 — 주 경로 장애 시에만 사용) OpenRouter는 요청을 여러 추론 사업자로 중계하는 서비스로, BriSense는 처리 사업자를 위 두 곳으로 제한하고 있으며, 번역 데이터를 AI 학습에 이용하지 않도록 거부 설정하여 요청합니다. |
계약 종료 시까지 |
| Anthropic PBC (Claude) | AI 번역 처리 (예비 경로 — 위 경로가 모두 불가할 때만 사용) | 계약 종료 시까지 |
※ AI 번역은 서비스 안정성을 위해 여러 경로를 순차적으로 사용합니다. 평상시에는 주 경로(Google Gemini)로만 처리되며, 예비 경로는 주 경로 장애 시에만 동작합니다.
BriSense는 서비스 제공을 위해 다음과 같이 개인정보를 국외로 이전합니다. 이용자는 국외 이전을 거부할 수 있으며, 거부 방법은 아래에 안내합니다.
| 이전받는 자 | 이전 국가 | 이전 항목 | 이전 일시 및 방법 | 이용 목적 · 보유 기간 |
|---|---|---|---|---|
| Google LLC | 미국 | 번역 입력 텍스트, 광고 식별자, 소셜 로그인 정보(이메일·이름·고유 ID) | 서비스 이용 시점에 네트워크를 통해 암호화(HTTPS) 전송 | AI·기계 번역 처리, 광고 게재, 로그인 인증 / 계약 종료 시까지 |
| Apple Inc. | 미국 | 소셜 로그인 정보(이메일·이름·고유 ID), 음성 인식 요청 음성 | 해당 기능 이용 시점에 네트워크를 통해 암호화(HTTPS) 전송 | 로그인 인증(iOS), 음성 인식 / 계약 종료 시까지 |
| Cloudflare, Inc. | 미국 | 번역 입력 텍스트, IP 주소, 회원 식별정보(고유 사용자 ID·로그인 제공자·로그인 일시), 포인트 잔액 및 적립·사용 이력, 포인트 차감 감사 로그(UID 또는 IP) | 서비스 이용 시점에 네트워크를 통해 암호화(HTTPS) 전송 | API 프록시, 이용 한도 관리, 회원 식별정보 및 포인트 잔액·거래 이력 보관 / 계약 종료 시까지 |
| Fly.io, Inc. | 미국 | 번역 입력 텍스트 | 서비스 이용 시점에 네트워크를 통해 암호화(HTTPS) 전송 | 번역 API 중계 / 계약 종료 시까지 |
| OpenRouter, Inc. └ Microsoft Corporation (Azure) / OpenAI, L.L.C. |
미국 | 번역 입력 텍스트 | 주 경로 장애 시에만 네트워크를 통해 암호화(HTTPS) 전송 | AI 번역 처리(예비) / 계약 종료 시까지 |
| Anthropic PBC | 미국 | 번역 입력 텍스트 | 주 경로·예비 경로가 모두 불가할 때에만 네트워크를 통해 암호화(HTTPS) 전송 | AI 번역 처리(예비) / 계약 종료 시까지 |
국외 이전 거부 방법: 국외 이전에 동의하지 않으시는 경우 앱 이용을 중단하시면 이전이 이루어지지 않습니다. 번역 기능은 위 국외 사업자의 AI·기계 번역 처리를 통해서만 제공되므로, 국외 이전을 거부하시면 번역 서비스 이용이 제한됩니다. 이미 이전된 정보에 대해서는 내 계정 → 회원탈퇴 또는 이메일(brisense@daum.net)로 삭제를 요청하실 수 있습니다.
※ 위 사업자는 모두 미국에 소재합니다. BriSense는 번역 데이터가 중국 등 그 밖의 국가로 이전되지 않도록 처리 사업자를 제한하여 운영합니다.
이용자는 언제든지 다음 권리를 행사할 수 있습니다.
권리 행사는 앱 내 내 계정 → 회원탈퇴 기능 또는 이메일(brisense@daum.net)을 통해 하실 수 있습니다. 요청 접수 후 영업일 기준 10일 이내 처리합니다.
Android에서 Google AdMob은 맞춤형 광고 제공을 위해 기기의 광고 식별자(GAID)를 수집합니다. 이를 거부하려면 다음과 같이 설정하세요.
이용자가 입력한 번역 텍스트는 번역 수행을 위해 BriSense 서버를 경유하여 제3자 AI 번역 및 기계번역 서비스(포함하되 이에 국한되지 않음)로 전달됩니다. 현재 이용 중인 사업자는 위 5·5-1항의 표에 명시되어 있으며, 사업자가 추가·변경되는 경우 본 처리방침을 통해 사전 고지합니다.
BriSense는 병원·관공서·가족 간 대화 등 실생활 상황에서 사용되며, 그 과정에서 건강 상태나 개인적인 사정이 번역 내용에 포함될 수 있습니다. BriSense는 이러한 이용을 정상적인 사용으로 보며, 다음과 같이 보호합니다.
BriSense가 하는 보호 조치
※ 다만 AI 사업자는 오남용·정책 위반 탐지 목적으로 입력·출력을 일정 기간(최대 55일) 보관할 수 있습니다. 이는 학습 목적이 아니며 기간 경과 후 삭제됩니다.
이용자께 알려드리는 점
BriSense는 만 14세 미만 아동을 대상으로 하지 않으며, 만 14세 미만 이용자의 개인정보를 의도적으로 수집하지 않습니다. 만 14세 미만 아동의 정보가 수집된 사실을 인지한 경우 즉시 삭제합니다.
상호브리센스(BriSense)
대표자민승우
사업자등록번호646-07-03379
통신판매업 신고번호제 2026-인천검단-0173 호
사업장 주소인천광역시 검단구 이음4로 93, 2304동 2602호
전화번호010-9605-4444
책임자민승우 (개인정보 보호 담당)
이메일brisense@daum.net
호스팅 제공자Netlify(웹) · Cloudflare, Fly.io(API)
개인정보 침해 신고는 개인정보보호위원회(privacy.go.kr, 182)나 한국인터넷진흥원(118)에도 하실 수 있습니다.
본 처리방침은 법령·서비스 변경에 따라 개정될 수 있습니다. 중요한 변경이 있을 경우 앱 내 공지 또는 이메일로 사전 고지합니다. 개정 방침은 공지 후 7일이 경과한 날부터 효력이 발생합니다.
| 버전 | 시행일 | 주요 변경 내용 |
|---|---|---|
| v1.0 | 2026.07.01 | 최초 제정 |
| v1.1 | 2026.07.02 | 카메라(OCR)·마이크(음성입력) 처리 방식 명시, 로그인 세션 토큰(기기 암호화 저장) 항목 추가 |
| v1.2 | 2026.07.03 | 인앱 결제 수탁사(RevenueCat)를 "향후 도입 예정(현재 미제공)"으로 표기 |
| v1.3 | 2026.07.07 | 서비스 이용 통계 항목 구체화 (그룹별·언어쌍별 집계, 시스템 안정성 지표 — 개인 미식별·번역 내용 미저장 명시) 및 보유 기간 추가 |
| v2.0 | 2026.07.16 |
국외 이전 조항 신설(5-1) — 이전받는 자·국가·항목·시점·방법·목적·거부 방법 명시. 번역 처리 수탁사 현황 구체화 — Google(Gemini·Translate), OpenRouter(실제 추론 처리: Microsoft Azure/OpenAI), Anthropic 추가. 번역 데이터 처리 사업자를 미국 소재로 제한하고, AI 학습 이용을 거부하도록 설정함을 명시. 번역 데이터 처리(8) 표현 개편 — 특정 제품명 대신 "제3자 AI 번역 및 기계번역 서비스" 범주로 기술하고, 실제 사업자는 표로 관리. 정확성 보완 — 이미지 번역의 사진(갤러리) 접근 명시, iOS 음성 인식(Apple 전송 가능) 명시, iOS 광고 식별자(IDFA) 미수집 명시, Apple 로그인의 iOS 전용 여부 명시. 민감한 정보 입력 안내(8-1) 신설 — 번역 내용이 제3자 AI로 전송됨을 명시하고, 보호 조치(서버 미저장·전송 암호화·처리 국가 제한·예비 경로 학습 이용 거부·번역 내용 미열람)와 고유식별정보·금융정보 입력 자제 권고, 타인 정보 입력 시 동의 확인 안내를 추가. |
| v2.1 | 2026.07.18 |
iOS 앱 추적 권한(ATT) 도입 반영 — 앱 최초 실행 시 ATT 팝업을 표시하며, 동의 시에만 광고 식별자(IDFA)를 수집·이용함을 명시 (기존 "IDFA 미수집" 기술 대체). 미제공 유료 서비스 흔적 정리 — 인앱 결제 수탁사(RevenueCat, 향후 도입 예정) 행 삭제(도입 시 사전 고지 후 재기재), 충전 포인트·결제 내역 표기 정리. |
| v2.2 | 2026.07.18 | iOS 광고 식별자(IDFA) 미수집으로 원복 — ATT(앱 추적 권한)를 사용하지 않고 iOS에서는 추적 없는 비개인화 광고만 게재하는 방식으로 전환. v2.1의 "ATT 동의 시 IDFA 수집" 기술을 v2.0의 "IDFA 미수집" 기술로 되돌림(제2항 자동 수집 표·제7항 광고 식별자). 유료 서비스 관련 정리(v2.1)는 그대로 유지. |
| v2.3 | 2026.08.01 | 회원 식별정보의 서버 보관 명시 — 고유 사용자 ID·로그인 제공자·최초/최근 로그인 일시를 회원 식별 및 포인트 잔액 귀속을 위해 Cloudflare D1에 보관함을 제2항 자동 수집 표에 추가하고, 제3항 보유 기간(회원 탈퇴 시 삭제)·제5항 처리 위탁(Cloudflare 위탁 내용)·제5-1항 국외 이전(이전 항목·이용 목적)에 반영. 제5-1항에는 종전부터 보관하던 포인트 차감 감사 로그(UID 또는 IP)의 이전 사실도 함께 명시. 수집 항목이 새로 늘어난 것이 아니라 기존 처리 내용을 명확히 한 개정이며, 보유 기간은 종전과 같이 회원 탈퇴 시 삭제입니다. |
| v2.4 | 2026.08.04 | 포인트의 서버 보관 명시 — 로그인 상태에서는 포인트가 계정에 귀속되어 서버에 보관되고 비로그인 상태에서는 기기에만 저장된다는 차이를 제2항에 반영. 제3항 보유 기간을 실제 처리(회원 탈퇴 시 삭제)에 맞게 정정하고, 근거 없이 길게 적혀 있던 "최대 5년" 표기를 정리. 제5·5-1항의 위탁 내용과 국외 이전 항목에 포인트 잔액·거래 이력을 추가. 수집 항목이 새로 늘어난 것이 아니라 기존 처리 내용을 정확히 기술한 개정입니다. |
| v2.4 (보완) | 2026.08.06 | 제10항 사업자 정보에 통신판매업 신고번호·사업장 주소·전화번호·호스팅 제공자 추가. 개인정보 처리 내용(수집 항목·목적·보유 기간·위탁·국외 이전)은 변경되지 않았습니다. |
| Item | Source | When |
|---|---|---|
| Email address | Google, Apple | On login |
| Display name | Google, Apple | On login |
| Profile photo URL | On login (optional) | |
| Unique user ID | Google, Apple | On login |
| Item | Purpose | Storage |
|---|---|---|
| Google Advertising ID (GAID) — Android only; iOS does not collect the IDFA | AdMob ad delivery | Google ad servers |
| IP address | Rate limiting (abuse prevention) | Cloudflare KV (24 hr TTL) |
| Daily translation counter | Daily quota management | Device local + Cloudflare KV |
| Member identification data — unique user ID, login provider (Google/Apple), first login time, most recent login time | Member identification, duplicate-signup prevention, attribution of point balances | Cloudflare D1 (deleted upon account deletion) |
| Point balance and earn/spend history (timestamp, amount, reason) | Accurate crediting and deduction of points; abuse prevention | Cloudflare D1 (deleted upon account deletion) |
| Point deduction audit log (date, amount, UID or IP) | Abuse detection & future server-side balance management | Cloudflare KV (7-day TTL) |
| Service usage statistics — translation counts (aggregate totals by member/guest group), translation counts per language pair (overall totals), system-stability metrics (aggregate token usage and external-API fallback counts) | Service improvement and reliability | Cloudflare KV (daily aggregates) |
These usage statistics are collected and retained only as non-identifying aggregate totals — they are never linked to individual user IDs or IP addresses. Translation content (source or translated text) is never stored.
The items above are stored only on your device (LocalStorage / encrypted storage) and are not separately transmitted to or retained by BriSense servers.
※ Where your points are stored depends on whether you are signed in. When signed in, points belong to your account and are stored on our server (Cloudflare D1); they remain available after changing devices or reinstalling, as long as you sign in with the same account. When not signed in (guest), points are stored only on this device and are lost if the app is deleted.
| Feature | Permission | Processing |
|---|---|---|
| Image text translation (OCR) | Camera Photos (library) |
Text is extracted from a photo you capture or select from your device library. Extraction happens entirely on-device (Android: Google ML Kit / iOS: built-in OCR). The image itself is never sent to or stored on servers. Only the extracted text is sent to the translation route, and only when you translate it. |
| Voice input (STT) | Microphone Speech Recognition (iOS) |
Uses the device operating system's speech recognition. Audio may be sent to the OS vendor for transcription: · Android: Google speech recognition service · iOS: Apple speech recognition (Speech framework) BriSense does not collect or store audio on its own servers. |
The camera, photo library and microphone are accessed only when you actively use these features and are never collected continuously. You may revoke these permissions anytime in device settings.
| Item | Retention Period |
|---|---|
| Social login info and member identification data (email, name, UID, login provider, login timestamps) | Deleted upon account deletion |
| Point balance and earn/spend history | Deleted upon account deletion |
| IP rate-limit counter | KST midnight (max 24 hours) |
| Point deduction audit log | 7 days (auto-deleted by Cloudflare KV) |
| Service usage statistics (non-identifying aggregates) | Up to 400 days (auto-deleted after annual reporting) |
| Advertising identifiers | Per Google policy |
The table below reflects our current processors. If a processor is added or changed, we will give advance notice through this policy.
| Provider | Purpose | Country |
|---|---|---|
| Google LLC (AdMob) | Mobile advertising | USA |
| Google LLC (Sign In) | Social login authentication (Android & iOS) | USA |
| Apple Inc. (Sign In with Apple) | Social login (iOS only — not offered on Android) | USA |
| Google LLC (Gemini · Translate) | AI / machine translation | USA |
| Cloudflare, Inc. | API proxy, rate-limit storage, member identification and point balance/history storage | USA |
| Fly.io, Inc. | Translation API relay server | USA |
| OpenRouter, Inc. └ actual inference by: Microsoft Corporation (Azure) or OpenAI, L.L.C. |
AI translation (backup route — used only if the primary route fails). OpenRouter relays requests to inference providers; BriSense restricts processing to the two providers above and requests that translation data not be used for AI training. |
USA |
| Anthropic PBC (Claude) | AI translation (backup route — used only if all routes above are unavailable) | USA |
※ All processors are located in the United States. Because BriSense users are primarily in Korea, this constitutes a cross-border transfer of personal data; see the Korean section 5-1 for the statutory cross-border transfer disclosure. You may refuse the transfer by discontinuing use of the app; translation features cannot be provided without it.
Text you enter for translation is transmitted through BriSense's servers to third-party AI and machine translation services (including but not limited to those listed above) solely for the purpose of providing translations. Current providers are listed in section 4; if they change, we will give advance notice through this policy.
BriSense is used in everyday situations — hospitals, government offices, family conversations — and health details or personal circumstances may naturally appear in what you translate. We treat this as normal use, and protect it as follows.
What we do to protect it
What you should know
You may request access to, correction of, deletion of, or restriction on processing of your personal data at any time via Account → Withdraw in the app or by emailing brisense@daum.net. We will respond within 10 business days.
BriSense is not directed at children under 14. We do not knowingly collect personal information from children under 14. If we become aware that we have collected such information, we will delete it promptly.
Business NameBriSense (브리센스)
RepresentativeSeung-Woo Min
Business Reg. No.646-07-03379
E-Commerce Permit제 2026-인천검단-0173 호 (Incheon Geomdan-gu)
Address#2602, Bldg. 2304, 93 Ieum 4-ro, Geomdan-gu, Incheon, Republic of Korea
Phone+82-10-9605-4444
Privacy OfficerSeung-Woo Min
Emailbrisense@daum.net
HostingNetlify (web) · Cloudflare, Fly.io (API)
We may update this policy from time to time. We will notify you of significant changes via in-app notice or email at least 7 days before the changes take effect.
| Version | Effective Date | Summary |
|---|---|---|
| v1.0 | 2026.07.01 | Initial policy |
| v1.1 | 2026.07.02 | Clarified camera (OCR) & microphone (voice input) processing; added login session token (device encrypted storage) item |
| v1.2 | 2026.07.03 | Marked in-app purchase processor (RevenueCat) as "planned (not yet available)" |
| v1.3 | 2026.07.07 | Specified service usage statistics (group / language-pair aggregates, system-stability metrics — non-identifying, no translation content stored) and added retention period |
| v2.0 | 2026.07.16 | Added statutory cross-border transfer disclosure (Korean section 5-1) covering recipients, countries, items, timing/method, purpose and opt-out. Updated translation processors: Google (Gemini · Translate), OpenRouter (actual inference: Microsoft Azure / OpenAI), Anthropic. Translation providers now described as a category rather than hard-coded product names, with no-training and US-only processing stated. Added guidance on entering sensitive information; clarified photo library access, iOS speech recognition, and that no iOS advertising identifier (IDFA) is collected. |
| v2.1 | 2026.07.18 | Reflected adoption of iOS App Tracking Transparency — the ATT prompt is shown on first launch and the IDFA is collected/used only with consent (replaces the previous "no IDFA" statement). Removed traces of unoffered paid services — deleted the planned in-app purchase processor (RevenueCat) row (to be re-added with prior notice if introduced) and cleaned up charged-point / purchase wording. |
| v2.2 | 2026.07.18 | Reverted iOS advertising identifier handling to "IDFA not collected." BriSense no longer uses App Tracking Transparency; on iOS only non-personalized (non-tracking) ads are served. The v2.1 "IDFA collected with ATT consent" wording was reverted to the v2.0 "no IDFA" statement (Section 1 auto-collected table and Section 8 ad opt-out). The paid-service cleanup from v2.1 is retained. |
| v2.3 | 2026.08.01 | Disclosed server-side storage of member identification data — the unique user ID, login provider, and first/most-recent login times are stored in Cloudflare D1 for member identification and attribution of point balances. Added to the Section 1 auto-collected table and reflected in Section 3 (retention — deleted upon account deletion) and Section 4 (processors: Cloudflare). Also states the previously existing point deduction audit log (UID or IP). No new categories of data are collected; this revision clarifies existing processing, and retention is unchanged (deleted upon account deletion). |
| v2.4 | 2026.08.04 | Disclosed server-side storage of points — when signed in, points belong to your account and are stored on our server; when not signed in, they are stored only on the device. Reflected in Section 1, and Section 3 retention was corrected to match actual processing (deleted upon account deletion), removing the previously overstated "up to 5 years". Point balance and earn/spend history were added to the Section 4 processor description. No new categories of data are collected; this revision states existing processing accurately. |
| v2.4 (suppl.) | 2026.08.06 | Added e-commerce permit number, business address, phone number and hosting providers to the business information section. No change to how personal data is collected, used, retained, entrusted or transferred. |