HARU:LOG Privacy Policy
1. Categories of Personal Information Collected and Methods of Collection
The Company collects the following personal information to ensure smooth service delivery and synchronization.
[Required Information]
- Email Registration: Email address, password, name
- Social Login (Google, Kakao, Apple): Provided identifier, email address, name (or nickname)
[Information Collected Automatically During Service Use]
- Device information (OS version, device model name)
- Service usage records (synchronization timestamps, etc.), log data, IP address
- App usage statistics (access frequency, feature usage patterns, etc.) — used solely for service improvement purposes.
2. Purpose of Collection and Use of Personal Information
- Member Management: Identity verification, prevention of fraudulent use by rogue members, confirmation of intent to register or withdraw.
- Service Provision: Seamless cross-device synchronization of diary data, verification of Premium subscription tier, and storage capacity management.
- Service Improvement: Analyzing app access frequency, developing new features, and optimizing the service.
- Personalized Service Provision (Cloud Data): Providing AI-based personalized features such as emotion analysis, retrospective summaries, and custom statistics using the Member's cloud record data. The use of data for this purpose is strictly limited to cases where the Member explicitly consents to the related features and will be suspended immediately upon withdrawal of consent.
- Personalized Service Provision (Local Data): AI and analytical features processed within the device using strictly local data are provided without requiring separate consent. However, if such data or processing results are transmitted to the server, the Member's prior consent will be obtained.
3. Processing and Delegation of Personal Information
The Company entrusts the management of its infrastructure to external professional entities to ensure stable service provision (data synchronization and media storage), as follows:
- Entrusted Entity: Amazon Web Services (AWS)
- Delegated Tasks: Provision of cloud server infrastructure and encrypted data storage (S3)
- Retention and Use Period: Until membership termination or the expiration of the entrustment contract
4. Cross-Border Transfer of Personal Information
The Company may transfer personal information overseas for the purpose of providing the service, as detailed below:
- Recipient: Amazon Web Services, Inc.
- Destination Country: United States (May vary depending on AWS data center locations)
- Purpose of Transfer: Data synchronization and encrypted storage via cloud server infrastructure
- Transferred Items: Encrypted diary text data (Basic and Premium Members), media files (photos, videos), and attachments (Premium Members only)
- Retention and Use Period: Until membership termination or service closure
5. Retention and Use Period of Personal Information
In principle, a Member's personal information is destroyed without delay once the purpose of collection and use is achieved (upon membership withdrawal).
However, for Members who have made paid purchases (Premium tier), records related to payment and supply may be retained for up to 5 years in accordance with the 'Act on the Consumer Protection in Electronic Commerce, etc.'
6. Procedures and Methods for Destroying Personal Information
If a Member requests 'Account Deletion' via the in-app 'Settings' menu, the Company shall irrecoverably destroy the Member's cloud backup data, personal information, and login authentication details (e.g., social login tokens) immediately and without delay.
※ Note: Data stored locally on the device is exempt from the destruction process, and the Member must manually delete the app from their device.
7. Protection of Personal Information of Children Under 14
- Children under the age of 14 who provide personal information through registration must obtain consent from their legal representative (e.g., parent or guardian). The Company does not separately verify this, and the responsibility regarding consent rests with the Member and their legal representative.
- Guest mode does not collect personal information and is thus freely available without age restrictions.
8. User's Rights and Methods of Exercise
Members can view or edit their personal information at any time via the in-app 'Settings' menu. Furthermore, Members may request the deletion and suspension of the processing of their personal information by utilizing the 'Account Deletion' feature.
9. Changes to the Privacy Policy
- This Privacy Policy may be updated to reflect changes in laws, regulations, or service features.
- In the event of changes, the Company will specify the modifications and the effective date, and notify Members via in-app announcements or email at least 7 days prior to the effective date. For significant changes, a 30-day prior notice will be provided.
10. Data Protection Officer
- Name: Jinhyo Jeong
- Affiliation: HaruArchive
- Email: contact@haruarchive.com
Please contact the information provided above for any inquiries, complaint resolutions, or damage relief related to personal information.