개인정보 처리방침
비보리랩 개인정보 처리방침 · Privacy Policy
시행일 2026-09-21 · 적용 범위: 비보리랩 계정(auth.vivory.app)과 이 사이트(vivory.app). 각 서비스의 처리방침이 우선합니다.
이 페이지는 한국어와 영어 전문을 함께 싣습니다. English version
Privacy Policy (English)
1. What this policy covers
Vivory Lab (비보리랩, "we") runs a single sign-on account (auth.vivory.app) that lets one Google account sign in to several Vivory Lab services. This policy explains how the shared account and this site (vivory.app) handle personal data. Each service has its own policy, which takes precedence where they differ.
2. What we collect
- Shared account (Google sign-in): of the information Google provides, we store only your email address, name (display name) and whether the email is verified. Your profile picture and Google account id are read during sign-in but not stored. We store no passwords (Google sign-in only).
- This site (vivory.app): browsing collects nothing. Google Analytics collects cookie-based, anonymous usage statistics.
- Inquiries (vivory.app/contact): leaving an inquiry requires signing in with a Vivory Lab account, and we store your account identifiers (email and name) and the inquiry itself (service, type, subject, body, and any reference number or URL you choose to type). Used only to answer you.
- Saegim (saegim.vivory.app): files you upload for proof are stored byte for byte together with their SHA-256 hash, file name, size, type, category, your note and the receipt time. We do not read, analyse or index file contents. What leaves our servers is only a hash batch root (to public OpenTimestamps calendars and, through them, the Bitcoin blockchain) and the file hash (to the FreeTSA time-stamp service); neither can be traced back to the file or to you. Details, including share links and the 30-day deletion grace, are in the Saegim privacy policy.
- Automatically: IP address, browser type and request time are kept briefly in server logs for security and incident response (normally deleted within 30 days).
3. Google user data (Sign in with Google)
The Vivory Lab account supports Sign in with Google only. When you sign in with Google we handle your data as follows.
- Scopes we request: basic profile (
userinfo.profile) and email address (userinfo.email) only. We do not request access to Gmail, Drive, Calendar, Contacts or any other Google data. - What we store: email address, name and email-verified flag. The email address is the key that identifies your account; the name is shown on screen.
- How we use it: signing you in, linking the same person's account across Vivory Lab services, and showing your name. Never for advertising, profiling or marketing.
- Where it is stored and protected: on Oracle Cloud servers in the Seoul region, Korea, transmitted over TLS end to end.
- Sharing: we do not sell or disclose data received from Google to third parties. Only the processors in section 6 (hosting, CDN) handle it on our behalf.
- Human access: no person reads data received from Google unless you ask us to, we are investigating a security incident, or the law requires it.
- Google API Services User Data Policy: Vivory Lab's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
- Revoking access: you can withdraw Vivory Lab's access at any time on your Google Account "Third-party apps" page. After revoking, Google asks for consent again at your next sign-in. Data already stored (email, name) is removed by requesting account deletion (section 8).
4. Why we use it
- Signing you in and keeping one session across services (domain cookie on .vivory.app)
- Identifying your account and showing your display name
- Receiving and answering inquiries
- Security, incident response and usage statistics
- Purposes stated in an individual service's own policy (for example Naran payment receipts) follow that policy
5. Retention and deletion
- Shared account data (email, name, verified flag) is kept until you delete your account. When you request deletion we delete it without delay and within 10 days at the latest.
- Records a service must keep by law (for example payment and refund records for five years under Korean e-commerce law) follow that service's policy.
- Inquiries and their replies are stored against your account and are deleted together with it.
- Saegim originals are deleted 30 days after you delete them (reversible until then); the ledger row (hash, receipt time, block number) stays until you delete your account, when it is deleted with the files.
- Server logs are normally deleted within 30 days. Database backups rotate on a schedule, so deleted data also leaves the backups.
6. Sharing and processors
We do not sell personal data or share it for advertising. The following processors help run the services:
- Google LLC (USA): Sign in with Google (OAuth), Google Analytics (usage statistics)
- Oracle Cloud (Oracle Corporation): hosting and file storage (Seoul region, Korea)
- Cloudflare, Inc. (USA): CDN, DNS and security (traffic passes through)
Google Analytics and Cloudflare may process data outside Korea, including in the United States. Account data itself is stored in the Seoul region.
Saegim also uses public services that are not processors: OpenTimestamps calendars and the Bitcoin network receive only a 32-byte batch root, and FreeTSA receives only a file hash. No personal data goes to them.
7. Cookies and browser storage
auth_token,vivory_token(both HttpOnly): sign-in session (shared on .vivory.app, only when signed in). Removed on sign-out or expiry.vivory-theme: light/dark theme choicevivory-lang(localStorage): language choice- Google Analytics cookies (
_gaetc.): anonymous usage statistics
You can refuse cookies in your browser; this site remains fully readable without them.
8. Your rights and account deletion
You may request access, correction, deletion or suspension of processing at any time. To delete your account, email [email protected] from the Google address you signed in with and ask for account deletion. After confirming it is you, we delete the shared account and your data in each service and reply when it is done. You can revoke Google-side access yourself via the link in section 3.
9. Children
Vivory Lab services are not directed at children under 14, and we do not knowingly collect personal data from them. If we learn that we have, we delete it without delay.
10. Security
- HTTPS (TLS) everywhere
- Session tokens are signed (JWT) and verified against tampering; the server-side auth cookie is HttpOnly
- Sensitive items in individual services (for example Naran letters) are encrypted at rest (AES-256-GCM)
- Least-privilege access with access logging
11. Changes
Changes are posted on this page with a new effective date. Material changes are announced on the sign-in screen.
12. Contact
Data protection officer: 조제이 (대표), Vivory Lab, [email protected], 070-8095-9243. In Korea you may also contact the Personal Information Infringement Report Center (privacy.kisa.or.kr, dial 118).
개인정보 처리방침 (한국어)
1. 이 방침이 다루는 것
비보리랩(이하 "운영자")은 하나의 Google 계정으로 여러 비보리랩 서비스에 로그인하는 통합 계정(auth.vivory.app)을 운영합니다. 이 방침은 통합 계정과 이 소개 사이트(vivory.app)의 개인정보 처리를 설명합니다. 각 서비스는 자체 처리방침을 두며, 내용이 다를 때는 서비스의 방침이 우선합니다.
2. 수집하는 항목
- 통합 계정(Google 로그인): Google 이 전달하는 정보 중 이메일 주소, 이름(표시 이름), 이메일 인증 여부만 저장합니다. 프로필 사진과 Google 계정 ID 는 로그인 처리 중 읽기만 하고 저장하지 않습니다. 비밀번호는 저장하지 않습니다(Google 단일 로그인).
- 이 사이트(vivory.app): 읽기만 할 때는 개인정보를 수집하지 않습니다. 방문 통계를 위해 Google Analytics 가 쿠키 기반의 익명 이용 데이터를 수집합니다.
- 문의하기(vivory.app/contact): 문의를 남기려면 비보리랩 계정으로 로그인해야 하며, 계정 식별 정보(이메일·이름)와 문의 내용(서비스·종류·제목·본문, 직접 적은 참고 번호나 URL)을 저장합니다. 답변 목적으로만 씁니다.
- 새김(saegim.vivory.app): 증명을 위해 올린 파일을 바이트 그대로 저장하며, SHA-256 해시·파일명·크기·형식·분류·메모·접수 시각을 함께 둡니다. 파일 내용은 열람·분석·색인하지 않습니다. 서버 밖으로 나가는 것은 해시 묶음의 루트(OpenTimestamps 공개 캘린더를 거쳐 비트코인 블록체인)와 파일 해시(FreeTSA 시각 도장)뿐이고, 어느 쪽으로도 파일이나 이용자를 되짚을 수 없습니다. 공유 링크·삭제 30일 유예를 포함한 전문은 새김 개인정보 처리방침에 있습니다.
- 자동 수집: 접속 IP, 브라우저 종류, 요청 시각이 서버 로그에 짧게 남습니다(보안·장애 대응 목적, 통상 30일 이내 삭제).
3. Google 사용자 데이터 (Google 로그인)
비보리랩 계정은 Google 로그인(Sign in with Google)만 지원합니다. Google 로그인 시 다음과 같이 처리합니다.
- 요청하는 권한(스코프): 기본 프로필(
userinfo.profile)과 이메일 주소(userinfo.email)뿐입니다. Gmail, 드라이브, 캘린더, 연락처 등 다른 Google 데이터에는 접근을 요청하지 않습니다. - 저장하는 것: 이메일 주소, 이름, 이메일 인증 여부. 이메일 주소는 계정을 식별하는 키이며, 이름은 화면에 표시되는 이름으로 쓰입니다.
- 이용 목적: 로그인, 같은 사람의 계정을 서비스 간에 하나로 잇기, 화면에 이름 표시. 광고, 프로파일링, 마케팅에는 쓰지 않습니다.
- 저장 위치와 보호: 대한민국 서울 리전의 Oracle Cloud 서버에 저장하며 전 구간 TLS 로 전송합니다.
- 공유: Google 에서 받은 데이터를 제3자에게 판매하거나 제공하지 않습니다. 아래 6항의 처리 위탁 사업자(호스팅·CDN)만 운영 목적으로 경유합니다.
- 사람의 열람: 운영자는 이용자가 요청했거나, 보안 사고를 조사하거나, 법령이 요구하는 경우가 아니면 Google 에서 받은 데이터를 사람이 직접 열람하지 않습니다.
- Google API 서비스 사용자 데이터 정책 준수: 비보리랩이 Google API 로부터 받은 정보의 이용과 다른 앱으로의 이전은 Google API Services User Data Policy(제한적 사용 요건 포함)를 따릅니다.
- 접근 철회: Google 계정의 "제3자 앱 액세스" 페이지에서 언제든 비보리랩의 접근 권한을 철회할 수 있습니다. 철회하면 다음 로그인부터 Google 이 다시 동의를 묻습니다. 이미 저장된 이메일·이름은 계정 삭제 요청(8항)으로 지웁니다.
4. 이용 목적
- 로그인 및 서비스 간 단일 세션 유지(도메인 쿠키, .vivory.app)
- 계정 식별과 화면 표시 이름
- 문의 접수와 답변
- 보안 사고·장애 대응, 이용 통계 파악
- 각 서비스가 자체 방침에 명시한 목적(예: 나란 결제 영수증)은 그 서비스의 방침에 따름
5. 보유 기간과 삭제
- 통합 계정 정보(이메일·이름·인증 여부)는 계정을 삭제할 때까지 보관합니다. 계정 삭제를 요청하면 지체 없이, 늦어도 10일 안에 삭제합니다.
- 각 서비스가 법령에 따라 보존해야 하는 기록(예: 전자상거래법상 결제·환불 기록 5년)은 그 서비스의 방침에 따릅니다.
- 문의와 답변은 계정에 매여 보관하며, 계정을 삭제하면 함께 삭제됩니다.
- 새김의 원본은 이용자가 삭제한 뒤 30일 유예(그 사이 되돌리기 가능)가 지나면 지웁니다. 원장 행(해시·접수 시각·블록 번호)은 계정을 삭제할 때까지 남고, 계정 삭제 시 원본과 함께 지웁니다.
- 서버 로그는 통상 30일 이내 자동 삭제됩니다. 데이터베이스 백업본은 정기적으로 순환되어 삭제된 데이터가 백업에서도 사라집니다.
6. 제3자 제공 및 처리 위탁
개인정보를 제3자에게 판매하거나 광고 목적으로 제공하지 않습니다. 서비스 운영을 위해 다음 사업자에게 처리를 위탁합니다.
- Google LLC(미국): Google 로그인(OAuth), Google Analytics(이용 통계)
- Oracle Cloud(Oracle Corporation): 서버 호스팅 및 파일 저장(대한민국 서울 리전)
- Cloudflare, Inc.(미국): CDN·DNS·보안(트래픽 경유)
Google Analytics 와 Cloudflare 는 미국 등 국외에서 처리될 수 있습니다. 계정 정보 자체는 대한민국 서울 리전에 저장합니다.
새김은 처리 위탁이 아닌 공개 서비스도 씁니다. OpenTimestamps 캘린더와 비트코인 네트워크에는 32바이트 묶음 루트만, FreeTSA 에는 파일 해시만 갑니다. 개인정보는 가지 않습니다.
7. 쿠키와 브라우저 저장소
auth_token,vivory_token(모두 HttpOnly): 로그인 세션(.vivory.app 공유, 로그인한 경우에만). 로그아웃하거나 만료되면 사라집니다.vivory-theme: 화면 테마(라이트/다크) 선택값vivory-lang(localStorage): 언어 선택값- Google Analytics 쿠키(
_ga등): 익명 이용 통계
브라우저 설정에서 쿠키 저장을 거부할 수 있으며, 이 경우에도 이 사이트의 열람에는 제한이 없습니다.
8. 이용자의 권리와 계정 삭제
이용자는 언제든 자신의 개인정보에 대한 열람·정정·삭제·처리정지를 요구할 수 있습니다. 계정 삭제는 로그인한 Google 계정의 이메일로 [email protected] 에 "계정 삭제"를 요청하면 됩니다. 본인 확인 후 통합 계정과 각 서비스의 데이터를 함께 삭제하고 완료를 회신합니다. Google 쪽 접근 권한은 3항의 링크에서 직접 철회할 수 있습니다.
9. 아동의 개인정보
비보리랩 서비스는 만 14세 미만 아동을 대상으로 하지 않으며, 만 14세 미만의 개인정보를 알면서 수집하지 않습니다. 아동의 정보가 수집된 사실을 알게 되면 지체 없이 삭제합니다.
10. 안전성 확보 조치
- 전 구간 HTTPS(TLS) 전송 암호화
- 세션 토큰은 서명된 토큰(JWT)으로 위·변조를 검증하며, 서버 인증용 쿠키는 HttpOnly
- 서비스별 민감 항목(예: 나란 편지)은 서버 측 암호화(AES-256-GCM) 저장
- 접근 권한 최소화와 접근 기록 보관
11. 방침의 변경
이 방침을 변경할 때는 이 페이지에 시행일과 함께 게시합니다. 중요한 변경은 로그인 화면에 공지합니다.
12. 문의
개인정보 보호책임자: 조제이 대표(비보리랩), [email protected], 070-8095-9243. 개인정보 침해 관련 상담은 개인정보침해신고센터(privacy.kisa.or.kr, 국번 없이 118)에서도 받을 수 있습니다.