박현우(이하 "운영자")는 모바일 애플리케이션 Daybreak(이하 "서비스")를 운영하며, 이용자의 개인정보를 중요하게 생각합니다. 본 방침은 서비스가 어떤 정보를 어떤 목적으로 처리하고 어떻게 보호하는지를 설명합니다.
먼저 알아두실 것 — 기기를 떠나지 않는 정보
서비스의 가장 민감한 데이터는 이용자의 기기 안에만 저장되며 서버로 전송되지 않습니다.
이 정보는 앱을 삭제하거나 서비스 내에서 해당 기록을 삭제하면 함께 사라집니다.
| 항목 | 목적 | 저장 위치 | 보유기간 |
|---|---|---|---|
| 이메일 주소, 비밀번호(암호화) | 회원 식별, 로그인, 데이터 동기화 | Firebase Authentication | 회원 탈퇴 시까지 |
| Apple 로그인 식별자 | Apple 계정으로 로그인 | Firebase Authentication | 회원 탈퇴 시까지 |
| 알람 설정, 미션 설정, 기상 기록, 수면 기록 요약, 일지 | 서비스 기능 제공, 기기 간 동기화 | 기기 + Cloud Firestore | 회원 탈퇴 시까지 |
| 수면 중 소리 크기(dB) 측정값 | 수면 요약 생성 | 기기 내부만 | 이용자가 삭제할 때까지 |
| 코골이 오디오 클립 | 수면 요약에서 이용자 본인이 확인 | 기기 내부만 | 이용자가 삭제할 때까지 |
| 기상 사진 미션의 사진 | 기상 인증(온디바이스 비교) | 기기 내부만 | 이용자가 삭제할 때까지 |
| 선택한 도시 이름 (예: Seoul) | 아침 날씨 브리핑 표시. 위치 권한을 사용하지 않으며 GPS 좌표를 수집하지 않습니다. 이용자가 도시를 고르지 않으면 기기의 지역 설정에서 국가를 추정해 그 나라의 수도를 씁니다 | 기기 내부만 | 이용자가 변경·삭제할 때까지 |
| 건강 데이터(수면 시간) — Apple 건강 / Health Connect | 수면 기록 연동. 이용자가 명시적으로 연동을 허용한 경우에만 | 기기 + 서비스 내 수면 기록 | 연동 해제 또는 탈퇴 시까지 |
| 기기 사용 기록 (Android 전용) — 화면을 켜고 끈 시각 등 사용 여부 | 기기를 사용하지 않은 구간으로 잠든 시각·깬 시각을 추정. 마이크를 켜지 않고도 수면 기록을 만들기 위한 대체 수단. 이용자가 시스템 설정에서 '사용 정보 접근'을 직접 허용한 경우에만 | 기기 내부만 (추정된 수면 구간만 수면 기록에 저장) | 이용자가 삭제할 때까지 |
| 광고 식별자(IDFA / 광고ID) | 광고 게재 및 성과 측정 | Google AdMob | AdMob 정책에 따름 |
| 기기 정보, OS 버전, 앱 버전, 오류 로그, 익명 이용자 식별자 | 오류 진단 및 앱 안정성 개선 | Sentry | 90일 |
| 익명 설치 식별자 + 기능 사용 이벤트(예: 온보딩 완료, 알림 권한 허용 여부, 알람 해제, 수면 세션 종료) | 어디에서 문제가 생기고 어디에서 이탈하는지 파악해 서비스를 개선하기 위함. 회원가입 여부와 관계없이 기록되며, 가입하지 않은 이용자에게는 이름·이메일 없이 임의의 식별자만 부여됩니다. 이벤트에는 일지 내용·사진·녹음·닉네임 등 개인을 알아볼 수 있는 정보가 포함되지 않습니다 | Cloud Firestore — 계정 데이터와 분리된 별도 영역 | 90일 후 자동 삭제 |
| 구매·구독 내역 | 유료 서비스 권한 확인, 결제 관련 문의 대응 | RevenueCat, 앱 마켓 | 관련 법령상 보존기간(전자상거래법 5년) |
운영자는 위 목적 외의 용도로 개인정보를 이용하지 않으며, 목적이 변경되는 경우 사전에 동의를 받습니다.
동의에 기반한 처리는 이용자가 언제든지 기기의 설정에서 해당 권한을 철회할 수 있습니다. 권한을 철회하면 해당 기능만 동작하지 않으며, 알람 등 다른 기능의 이용은 제한되지 않습니다.
| 권한 | 사용 목적 | 거부 시 |
|---|---|---|
| 알림 | 정해진 시간에 알람 발송 | 알람이 울리지 않음 (필수) |
| 정확한 알람 예약 / 화면 켜기 / 화면 위 표시 | 기기가 잠긴 상태에서도 알람 화면 표시 | 알람이 지연되거나 화면이 뜨지 않을 수 있음 |
| 마이크 · 오디오 녹음 | 수면 중 소리 크기 분석, 코골이 구간 기록 | 수면 소리 분석 기능만 미사용 |
| 카메라 | 사진 미션(등록한 장소 촬영으로 기상 인증) | 사진 미션만 미사용 |
| 건강 데이터 읽기 (수면) | Apple 건강 / Health Connect 의 수면 기록 연동 | 연동 기능만 미사용 |
사용 정보 접근 (Android · PACKAGE_USAGE_STATS) | 기기 미사용 구간으로 수면 시각 추정 (마이크 대신 쓰는 수면 측정 방식) | 해당 방식의 수면 측정만 미사용. 마이크 방식이나 건강 앱 연동으로 대체 가능 |
| 부팅 완료 수신 | 기기 재시작 후 예약된 알람 복원 | 재부팅 후 알람이 사라질 수 있음 |
Apple 건강(HealthKit) 또는 Android Health Connect 를 통해 읽어온 수면 데이터에 대해 운영자는 다음을 준수합니다.
운영자는 개인정보를 제3자에게 판매하지 않습니다. 서비스 운영에 필요한 범위에서 아래 사업자에게 처리를 위탁하고 있습니다.
| 수탁자 | 위탁 업무 | 전송 정보 | 처리 국가 |
|---|---|---|---|
| Google (Firebase) | 인증, 데이터베이스, 서버리스 함수 | 계정 정보, 알람·수면 기록, 이용 이벤트 | 미국 등 |
| Google (AdMob) | 광고 게재 | 광고 식별자, 기기 정보, 대략적 위치 | 미국 등 |
| Functional Software, Inc. (Sentry) | 오류 수집 및 진단 | 오류 로그, 기기 정보, 익명 식별자 | 미국 |
| RevenueCat, Inc. | 구독 상태 관리 | 앱 마켓 구매 식별자, 구독 상태 | 미국 |
| WeatherAPI.com | 날씨 정보 조회 | 도시 이름만(예: Seoul). 운영자 서버가 도시 단위로 조회·캐시하므로 이용자 개인을 식별할 수 있는 정보는 전송되지 않습니다. | 영국 등 |
| Apple Inc. / Google LLC | 앱 배포, 결제 처리 | 결제 정보(운영자는 카드번호 등을 보유하지 않음) | 미국 등 |
위 수탁자의 서버가 국외에 위치하므로 개인정보가 국외로 이전됩니다. 이전되는 항목·국가·수탁자·목적은 제5조 표와 같으며, 보유기간은 제1조 표와 같습니다. 이용자는 국외 이전을 거부할 수 있으나, 이 경우 계정 기반 기능(동기화, 결제 등)을 이용할 수 없습니다.
이용자는 언제든지 다음 권리를 행사할 수 있습니다.
이용자는 법정대리인 또는 위임을 받은 자를 통해서도 권리를 행사할 수 있습니다.
서비스는 만 14세 이상을 대상으로 하며, 만 14세 미만 아동의 개인정보를 의도적으로 수집하지 않습니다. 만 14세 미만 아동의 정보가 수집된 사실을 알게 된 경우 즉시 삭제합니다. 자녀의 정보가 수집되었다고 판단되는 보호자는 위 이메일로 연락하여 주시기 바랍니다.
개인정보 침해에 대한 신고나 상담이 필요한 경우 아래 기관에 문의하실 수 있습니다.
본 방침이 변경되는 경우 변경 내용과 시행일을 시행 7일 전부터 본 페이지와 서비스 내 공지에 게시합니다. 이용자에게 불리한 변경이거나 중요한 변경의 경우 30일 전부터 고지하고 필요한 경우 별도로 동의를 받습니다.
본 방침은 한국어를 원본으로 작성됩니다. 다른 언어로 제공되는 번역본은 이해를 돕기 위한 것이며, 내용이 상충하는 경우 한국어 원본이 우선합니다.
서비스 인터페이스가 지원하는 언어의 수는 본 방침의 효력과 무관합니다.
Hyunwoo Park (the "Operator") operates the mobile application Daybreak (the "Service") and takes user privacy seriously. This Policy explains what information the Service processes, for what purposes, and how it is protected.
First, what never leaves your device
The Service's most sensitive data is stored only on your device and is never transmitted to any server.
This data is removed when you delete the app or delete the corresponding records within the Service.
| Data | Purpose | Stored in | Retention |
|---|---|---|---|
| Email address, password (hashed) | Account identification, sign-in, sync | Firebase Authentication | Until account deletion |
| Apple Sign In identifier | Sign in with Apple | Firebase Authentication | Until account deletion |
| Alarm settings, mission settings, wake records, sleep summaries, journal entries | Providing features, cross-device sync | Device + Cloud Firestore | Until account deletion |
| Sound level (dB) measurements during sleep | Generating sleep summaries | Device only | Until you delete it |
| Snoring audio clips | So you can review them yourself in the sleep summary | Device only | Until you delete it |
| Photo mission photographs | Wake verification (on-device comparison) | Device only | Until you delete it |
| Selected city name (e.g. Seoul) | Displaying the morning weather briefing. No location permission is used and no GPS coordinates are collected. If you do not choose a city, the country is inferred from your device's region setting and that country's capital is used | Device only | Until you change or delete it |
| Health data (sleep duration) — Apple Health / Health Connect | Importing sleep records, only where you have explicitly granted access | Device + in-app sleep records | Until access is revoked or account deleted |
| Device usage records (Android only) — whether and when the device was in use | Estimating when you fell asleep and woke up from periods of non-use, as an alternative to using the microphone. Only where you have granted "Usage access" in system settings | Device only (only the inferred sleep interval is saved to your sleep records) | Until you delete it |
| Advertising identifier (IDFA / AAID) | Serving and measuring advertisements | Google AdMob | Per AdMob policy |
| Device model, OS version, app version, error logs, anonymous user identifier | Diagnosing errors and improving stability | Sentry | 90 days |
| Anonymous installation identifier + feature usage events (e.g. onboarding completed, notification permission granted, alarm dismissed, sleep session ended) | Understanding where problems and drop-offs occur so we can improve the Service. Recorded whether or not you create an account; users without an account are assigned a random identifier only, with no name or email. Events never contain personally identifying content such as journal text, photos, recordings, or nicknames | Cloud Firestore — a separate area from account data | Automatically deleted after 90 days |
| Purchase and subscription records | Verifying entitlements, handling billing enquiries | RevenueCat, app marketplaces | As required by law (5 years under Korean e-commerce law) |
The Operator does not use personal information for purposes other than those stated above, and will obtain consent before any change of purpose.
Where processing is based on consent, you may withdraw the relevant permission at any time in your device settings. Withdrawing a permission disables only the corresponding feature; other features such as alarms remain available.
| Permission | Purpose | If denied |
|---|---|---|
| Notifications | Delivering alarms at the scheduled time | Alarms will not sound (required) |
| Exact alarm scheduling / turn screen on / display over other apps | Showing the alarm screen even while the device is locked | Alarms may be delayed or the screen may not appear |
| Microphone / audio recording | Analysing sound levels during sleep, recording snoring segments | Only sleep sound analysis is unavailable |
| Camera | Photo mission (photographing a registered location to verify waking) | Only the photo mission is unavailable |
| Health data read (sleep) | Importing sleep records from Apple Health / Health Connect | Only the integration is unavailable |
Usage access (Android · PACKAGE_USAGE_STATS) | Inferring sleep times from periods of device non-use (an alternative to microphone-based sleep tracking) | Only that sleep-tracking method is unavailable; microphone or health-app integration can be used instead |
| Boot completed | Restoring scheduled alarms after a device restart | Alarms may be lost after a reboot |
For sleep data read via Apple HealthKit or Android Health Connect, the Operator:
The Operator does not sell personal information. The following processors are engaged as necessary to operate the Service.
| Processor | Service | Data transferred | Location |
|---|---|---|---|
| Google (Firebase) | Authentication, database, serverless functions | Account information, alarm and sleep records, usage events | United States and others |
| Google (AdMob) | Advertising | Advertising identifier, device information, approximate location | United States and others |
| Functional Software, Inc. (Sentry) | Error collection and diagnosis | Error logs, device information, anonymous identifier | United States |
| RevenueCat, Inc. | Subscription state management | Marketplace purchase identifiers, subscription status | United States |
| WeatherAPI.com | Weather lookup | City name only (e.g. Seoul). Lookups are made and cached per city by our server, so no information identifying an individual user is transmitted. | United Kingdom and others |
| Apple Inc. / Google LLC | App distribution, payment processing | Payment information (the Operator never holds card numbers) | United States and others |
Because the processors above operate servers outside the Republic of Korea, personal information is transferred internationally. The data, recipients, countries, and purposes are as set out in Section 5; retention periods are as set out in Section 1. You may refuse international transfer, but account-based features (sync, payments) will then be unavailable.
You may also exercise these rights through a legal guardian or authorised representative.
The Service is intended for users aged 14 and older and does not knowingly collect personal information from children under 14. If we learn that such information has been collected, we delete it immediately. Guardians who believe their child's information has been collected should contact the email address above.
Users in the Republic of Korea may also contact the Personal Information Dispute Mediation Committee (kopico.go.kr, 1833-6972) or the Privacy Infringement Report Centre (privacy.kisa.or.kr, 118).
If this Policy changes, the changes and their effective date will be posted on this page and announced within the Service at least 7 days in advance. For changes that are disadvantageous to users or otherwise material, notice will be given at least 30 days in advance and separate consent obtained where required.
This Policy is drafted with Korean as the original language. Translations are provided for convenience only; in the event of any conflict, the Korean original prevails.
The number of languages supported by the Service's user interface has no bearing on the effect of this Policy.