Garam
Privacy policy

social-2026-10-07-v2 · 2026-10-07

This updated service

This policy covers the rebuilt Garam service, operated by Paran. Questions, peer choices and lived experiences within your adult age group. Accounts and access are separate from the other apps. Previous-service accounts and conversations are not imported.

What you choose to share

We store your chosen display name, adult age group, interests, optional biography, accepted policy version and account timestamps. We do not request an exact birthday, GPS location, address book, Apple email or real name. Text, photos and plan places can contain information you choose to include; avoid private contact details and sensitive information.

Sign in with Apple

Apple verifies sign-in. We use the app-specific account identifier, verification challenges, hashed session credentials and encrypted authorization grants to maintain access and revoke authorization on account deletion. A session expires after 30 days. Unfinished registrations expire after 15 minutes and expired authentication records are cleaned during later authentication processing or periodic maintenance. We never request your Apple password. Apple processes authentication under its own privacy policy.

Messages, choices and photos

We store the questions, answers, poll choices, messages, selected photos and participation records you send to Garam, with account references and timestamps. These records provide the age-peer community features you use. Messages and photos are not end-to-end encrypted; the service operator can access server content for support and safety work.

Only the photo you select

The app uses the system photo picker and uploads only the image you choose to send. It redraws that image as a smaller JPEG before upload, removing the original embedded photo metadata from the image it creates. Visible information in the image is still shared. The server checks image format and size; it does not promise that every possible upload from another client has had metadata removed.

Who can see it

Garam questions and answers are shown under its age-group access rules; answers include the chosen author name. Shared-space messages are visible to eligible participants. Others may keep screenshots or copies of what you share.

Your vote and group results

Garam stores each account’s vote so it can be changed or withdrawn. Other users receive group totals, not a list of who voted for each choice. The total response count can appear before choice counts are shown. Choice counts appear only when at least 10 people in that age group have responded and every nonzero choice has at least 3 responses.

Device records stay separate

Unsent text/photo drafts and account-specific restoration caches are stored in the app’s device storage. Signing out keeps account restoration data. Session credentials use the system Keychain. Device backup and copies you export are governed by your device settings and chosen storage; deleting a service account does not delete those external copies.

Safety and service operation

We store reports, blocking relationships and limited abuse-prevention records to process safety issues. Authentication rate limits use hashed network-address references and time-bucket counts. The traffic ledger stores app-level byte/request totals without account IDs, IPs or message contents. The API does not log request bodies, tokens or profiles. Network and hosting providers still process connection metadata needed to deliver the service. This version has no advertising, tracking SDK, third-party analytics or AI content processing.

Providers and storage region

Online account and content records are stored in Cloud Firestore, and private photos in Google Cloud Storage, in the United States (us-west1). Cloud Functions for Firebase processes API requests in that region. Apple provides authentication. Firebase Hosting delivers the API and policy pages; its delivery network can process connection information outside your country. Providers process information needed for their roles under their contracts and policies. We do not sell app data or provide it for advertising. Do not share information that must not be stored abroad; contact support first.

Control and deletion

You can edit your profile, withdraw a vote or supported participation, block people, and export available records from the relevant screens. Request account deletion in You. Account deletion first completes Apple authorization revocation; if it fails, the account is kept and you can retry. After successful deletion, active account/content records are removed and this upgrade clears the account’s device records and unreferenced photo drafts. Drafts referenced by another signed-out account are preserved. If device storage cannot be safely checked or cleared, the app reports the failure and keeps unverified files. Export does not download every uploaded photo file. Previous-service accounts remain untouched.

Records that may remain

Active account/content records remain until deleted through the supported actions. Safety reports can remain after account deletion: the deleted reporter’s report text and some account/message references are removed, but another reporter’s text may still contain personal information. Reports currently have no automatic expiry. A hashed deletion-retry receipt lasts 24 hours; a hashed Apple subject reference used to reject stale authorization currently has no automatic expiry. Ask support to review retained personal information. Data already copied by another person, exported by you or kept in a device backup is outside service-account deletion.

Recovery copies

The database is configured for daily backups with seven-day retention. Deleted cloud photos can remain in provider recovery storage for up to seven days. Separate encrypted migration snapshots and original backend disks are retained for migration verification and recovery; these copies currently have no automatic expiry. Recovery copies are kept private and are not served as active accounts. Contact support about information that remains in recovery copies. A restore must preserve deletion and access restrictions before the service is reopened.

Questions and privacy requests

The service is for adults 18 and older and does not verify an exact age or legal identity. For access, correction, deletion or privacy questions, contact [email protected] and name the app. Do not send Apple passwords, authorization codes or unnecessary identity documents. We may need to verify account control to avoid disclosing someone else’s data. Changes to this policy will be identified with a new version.

Garam
개인정보 정책

social-2026-10-07-v2 · 2026-10-07

새 서비스의 범위

이 정책은 Paran이 운영하는 새 Garam 서비스에 적용됩니다. 성인 연령대별 질문, 또래의 선택과 실제 경험을 나누는 공간. 다른 앱의 계정과 접근 권한은 구분하며 예전 서비스의 계정과 대화는 가져오지 않습니다.

직접 선택하는 정보

직접 정한 이름, 성인 연령대, 관심사, 선택한 소개글, 동의한 정책 버전과 가입 시각을 저장합니다. 정확한 생일, GPS 위치, 주소록, Apple 이메일이나 실명은 요청하지 않습니다. 글·사진·일정 장소에는 직접 입력한 정보가 담길 수 있으므로 연락처나 민감한 정보를 넣지 마세요.

Apple 로그인

Apple에서 로그인을 확인합니다. 앱별 계정 식별자, 인증 요청 기록, 해시로 저장한 세션과 암호화한 인증 연결 정보를 사용하여 로그인을 유지하고 계정 삭제 시 연결을 해제합니다. 세션은 30일 후 만료됩니다. 미완료 가입은 15분 후 만료되며 만료된 인증 기록은 이후 인증 처리 또는 정기 점검에서 정리합니다. Apple 비밀번호는 요청하지 않습니다. Apple의 인증 처리에는 Apple 개인정보 정책이 적용됩니다.

글·선택·사진

Garam에 보낸 질문, 답글, 투표 선택, 메시지, 선택한 사진과 참여 정보를 계정 참조 및 작성 시각과 함께 저장합니다. 이 정보는 또래 커뮤니티 기능을 제공하는 데 사용됩니다. 글과 사진은 종단 간 암호화되지 않으며 운영자가 지원과 안전 처리를 위해 서버 내용을 확인할 수 있습니다.

선택한 사진만

시스템 사진 선택기로 고른 사진 중 직접 보내는 사진만 업로드합니다. 앱은 업로드 전에 작은 JPEG로 다시 그려 새 이미지에서 원본의 내장 메타데이터를 제거합니다. 사진에 눈으로 보이는 정보는 그대로 공유됩니다. 서버는 이미지 형식과 크기를 검사하며 다른 클라이언트의 모든 업로드에서 메타데이터가 제거된다고 보장하지 않습니다.

누가 볼 수 있나요?

Garam의 질문과 답글은 연령대별 접근 규칙에 따라 보이며 답글에는 작성자가 정한 이름이 표시됩니다. 함께하는 공간의 글은 접근 가능한 참여자에게 보입니다. 상대방은 공유한 내용의 화면이나 사본을 보관할 수 있습니다.

나의 선택과 집계

Garam은 선택을 변경하거나 철회할 수 있도록 계정별 투표를 저장합니다. 다른 사용자에게는 집계 결과를 제공하며 선택별 투표자 명단은 제공하지 않습니다. 전체 응답 수는 선택별 수가 공개되기 전에도 표시될 수 있습니다. 같은 연령대의 응답이 10개 이상이며 응답이 있는 각 선택이 3개 이상일 때 선택별 수를 보여줍니다.

기기 기록은 따로 보관해요

보내지 않은 글·사진과 계정별 복원 캐시는 앱의 기기 저장소에 보관합니다. 로그아웃해도 계정별 복원 자료는 남습니다. 로그인 정보는 시스템 키체인을 사용합니다. 기기 백업과 직접 내보낸 사본은 기기 설정 및 선택한 저장 공간의 영향을 받으며 서비스 계정 삭제로 외부 사본이 지워지지는 않습니다.

안전과 서비스 운영

안전 문제를 처리하기 위해 신고, 차단 관계와 제한된 오남용 방지 기록을 저장합니다. 인증 요청 제한에는 해시로 만든 네트워크 주소 참조와 시간대별 횟수를 사용합니다. 전송량 기록에는 계정 ID·IP·메시지 내용 없이 앱별 바이트와 요청 수만 저장합니다. API는 요청 본문·토큰·프로필을 로그에 기록하지 않습니다. 네트워크·호스팅 제공자는 서비스 전달에 필요한 연결 정보를 처리할 수 있습니다. 이 버전에는 광고, 추적 SDK, 외부 분석 도구나 AI 콘텐츠 처리가 없습니다.

제공자와 저장 지역

온라인 계정과 콘텐츠는 Cloud Firestore, 비공개 사진은 Google Cloud Storage의 미국 지역(us-west1)에 저장합니다. 같은 지역의 Cloud Functions for Firebase가 API 요청을 처리합니다. 인증은 Apple을 사용합니다. Firebase Hosting은 API와 정책 페이지를 전달하며 전송망에서 이용자의 국가 밖으로 연결 정보가 처리될 수 있습니다. 제공자는 각 역할에 필요한 정보를 관련 계약과 정책에 따라 처리합니다. 앱 데이터를 판매하거나 광고 목적으로 제공하지 않습니다. 해외에 보관하면 안 되는 정보는 공유하지 말고 먼저 문의해 주세요.

내 정보의 관리와 삭제

각 기능의 화면에서 프로필 수정, 투표·지원되는 참여 철회, 차단과 사용 가능한 기록 내보내기를 할 수 있습니다. 계정 삭제는 나 화면에서 요청합니다. 계정 삭제는 먼저 Apple 인증 연결 해제를 완료하며 실패하면 계정을 보관하고 다시 시도할 수 있습니다. 서버 삭제가 완료되면 활성 계정·콘텐츠를 제거하고 이 새 버전에서 해당 계정의 기기 기록과 참조되지 않는 임시 사진을 정리합니다. 로그아웃한 다른 계정이 참조하는 초안은 보존합니다. 기기 저장소를 안전하게 확인하거나 지울 수 없으면 실패를 알리고 확인하지 못한 파일은 보존합니다. 내보내기는 업로드한 모든 사진 파일을 내려받는 기능은 아닙니다. 예전 서비스의 계정은 변경하지 않습니다.

남을 수 있는 기록

활성 계정과 콘텐츠는 지원되는 삭제 동작으로 지울 때까지 보관합니다. 계정 삭제 후에도 안전 신고는 남을 수 있습니다. 삭제한 신고자의 신고 문구와 일부 계정·메시지 참조를 제거하지만 다른 신고자가 쓴 문구에는 개인정보가 남을 수 있습니다. 신고에는 현재 자동 만료가 없습니다. 삭제 재시도용 해시 영수증은 24시간 동안 유효하며 오래된 인증을 차단하는 Apple 식별자 해시에는 현재 자동 만료가 없습니다. 남아 있는 개인정보의 검토는 지원팀에 요청할 수 있습니다. 상대방의 사본, 직접 내보낸 자료와 기기 백업은 서비스 계정 삭제의 범위 밖입니다.

복구용 사본

데이터베이스의 일일 백업을 설정했으며 보관 기간은 7일입니다. 삭제한 클라우드 사진은 제공자의 복구 저장소에 최대 7일 남을 수 있습니다. 별도의 암호화한 이전 스냅샷과 원래 백엔드 디스크는 이전 검증·복구를 위해 보존하며 현재 자동 만료가 없습니다. 복구 사본은 비공개로 보관하고 활성 계정으로 제공하지 않습니다. 복구 사본에 남은 정보는 지원팀에 문의할 수 있습니다. 복원 후에는 삭제와 접근 제한을 유지한 뒤 서비스를 다시 열어야 합니다.

문의와 개인정보 요청

만 18세 이상을 위한 서비스이며 정확한 나이나 법적 신원을 인증하지 않습니다. 정보 확인·수정·삭제 및 개인정보 문의는 앱 이름과 함께 [email protected]으로 보내주세요. Apple 비밀번호, 인증 코드나 불필요한 신분증을 보내지 마세요. 다른 사람의 데이터를 노출하지 않도록 계정 소유 여부를 확인할 수 있습니다. 정책 변경은 새 버전으로 구분합니다.