Privacy Policy
Kohei Matsushima (hereinafter "we," "us," or "our") establishes the following Privacy Policy (hereinafter this "Policy") regarding the handling of users' personal information in the service we provide, "megurii" (hereinafter the "Service").
1. Information We Collect
The Service collects the following information.
1.1 Information You Provide
- Account information: email address, password (stored in hashed form), username, profile image, and self-introduction
- Authentication information: linkage information when you use Apple Sign-In or Google Sign-In
- Post information: photos, EXIF information attached to photos (time of capture, GPS coordinates, camera model, etc.), facility names, comments, purchased items, budget, hashtags, categories, and visibility settings
- Contents of reports and inquiries
1.2 Information Collected Automatically
- Device information: OS version, device model, and browser information
- Usage logs: access date and time, IP address, operation history, and posts viewed
- Identifiers collected through Cookies and similar technologies
- Advertising IDs of the app (IDFA / AAID)
1.3 Payment-Related Information
- Payment history of subscription members (collected through the payment processing provider)
- We do not store the card number itself
2. Purposes of Use
We use the collected information for the following purposes.
- Providing, operating, and improving the Service
- User authentication and identity verification
- Publishing, distributing, and recommending posts
- Detecting and responding to misuse and violations
- Responding to inquiries and reports
- Sending important notices
- Providing subscriptions and processing payments
- Delivering and optimizing advertisements (including targeting)
- Analyzing usage and creating statistical information
- Compliance with laws and regulations, and handling of disputes
3. Provision to Third Parties and Outsourcing
3.1 Outsourcing
We provide information to the following service providers to the extent necessary.
| Provider | Purpose | Country |
|---|---|---|
| Supabase, Inc. | Database, authentication, and storage infrastructure | USA |
| Google LLC (Geocoding API) | Conversion from latitude/longitude to facility names and addresses | USA |
| Google LLC (AdMob) | Ad delivery | USA |
| Google LLC (Google Analytics) | Access analysis | USA |
| Stripe, Inc. | Payment processing | USA |
| Vercel Inc. | Web hosting | USA |
| PostHog Inc. | Product analytics | USA |
| Functional Software, Inc. (Sentry) | Error monitoring | USA |
| Apple Inc. / Google LLC | Store distribution and sign-in | USA |
3.2 Provision to Third Parties Located Overseas
Among the above, provision to providers located in the United States constitutes provision to a third party located in a foreign country under the Act on the Protection of Personal Information. Users shall consent to this at the time of registration.
3.3 Disclosure Based on Laws and Regulations
We may provide information without the consent of a third party in response to disclosure requests based on laws and regulations, or where necessary to protect life, body, or property.
4. Security Management Measures
- Communications are encrypted with HTTPS (TLS)
- Passwords are stored in hashed form
- Minimization and management of access privileges
- Establishment of a reporting and notification flow in the event of a leak
5. User Rights
Users may make the following requests to us regarding their retained personal data.
- Request for disclosure
- Request for correction, addition, or deletion
- Request for suspension of use
- Request for suspension of provision to third parties
How to make a request: through the inquiry form within the Service, or at support@megurii.com.
5.1 Withdrawal and Data Deletion
Users may delete their account at any time using the withdrawal function within the Service. Information after deletion is handled as follows.
- Posts, photos, and profile: deleted
- Email address and authentication information: deleted
Information Retained After Withdrawal and Retention Periods
For compliance with laws and regulations, fraud prevention, and dispute handling, we retain the following information for a certain period even after withdrawal.
| Type | Retention Period | Basis |
|---|---|---|
| Billing and payment history | 7 years | Corporation Tax Act / Income Tax Act |
| Fraud prevention logs (IP / device ID) | 1 to 2 years | Prevention of recurrence of misuse |
| Reports and violation records | 3 years | Prevention of recurrence / dispute handling |
| Information related to legal disputes | Until the dispute is concluded | Proof and response |
6. Cookies and Advertising Identifiers
- The Service uses Cookies, similar technologies, and advertising IDs
- For targeted advertising, this information is provided to third parties such as AdMob
- For residents of the EU/UK, we obtain individual consent through a consent management screen upon first access
- Residents of California, USA may exercise the right to opt out of the sale of personal information
7. Use by Those Under 13
The Service is intended for those aged 13 and over. Those under 13 may not use the Service.
8. Rights of Overseas Residents
If you wish to exercise rights under overseas laws and regulations such as the EU GDPR, the California CCPA, or China's PIPL, please contact us at support@megurii.com.
9. Changes to This Policy
This Policy may be changed without prior notice. In the event of significant changes, we will notify you within the Service or by email.
10. Contact
Kohei Matsushima
請求があり次第、遅滞なく開示します