Privacy Policy
Effective 2026-09-07 · Version 1.0
Facet (the "app") is made and operated by EchoKindness (따뜻함의발견, represented by Chansoo Kim; "we"). This document says what stays where while you use the app, and what doesn't. In short:
- There is no account. We don't ask for your name, email, or phone number.
- The answers you write, and the questions made from them, are not stored on our servers. They live on your device.
- What our servers keep is limited to a device identifier, a device attestation key, a subscription identifier, usage counts, and the text of questions you yourself report.
1. What we don't collect
The app has no sign-up and no login. We don't ask for or collect your name, email, phone number, date of birth, location, contacts, or photos. We don't use the advertising identifier (IDFA), and the app contains no analytics or advertising SDKs.
2. Your answers and questions stay on your device
Your onboarding answers, your answers to daily questions, the keywords drawn from them, your map, reports, and weekly recaps are all stored on your device. We don't store them on our servers. There is no iCloud sync yet. Like any other app's data, they may be included in your iOS device backups (iCloud Backup or computer backups), which are governed by Apple's policies.
The backup file you create with "Export records" in Settings is yours. Where you keep it and who you share it with is up to you. We never receive that file.
3. What is sent to AI services when questions are made
When the app makes questions, keywords, reports, or recaps, it sends a request through our server to a third-party AI service. The request contains only what's needed to make the question: your onboarding answers, recent answers, keywords, and any guidance you wrote in Settings.
- Our server only relays. It doesn't store the request or the response, and holds none of it once the request has passed.
- The AI service we currently use is OpenAI. For quality or cost reasons we may switch to or add Anthropic or others; if that changes, we'll update this document.
- AI services may retain requests for a short period for abuse monitoring under their own policies. We use only API paths that are not used for training. See each service's privacy policy: OpenAI · Anthropic
4. What stays on our servers, and what doesn't
The answers you write and the questions made from them are not stored on our servers. They are passed to the AI service only at the moment a question is made, and once it's made, the server holds none of that content.
What the server does keep comes down to four things.
- Device identifier — a random string the app creates when it first runs. It contains nothing like a name or phone number. It survives reinstalling the app, and we use it to tell whether we've seen this device before.
- Device attestation key — a public key (Apple App Attest) used to verify that a request really came from this app. It is tied to the device identifier and a request counter.
- Subscription identifier — a transaction number issued by Apple. Your payment method and Apple ID never reach us.
- Usage — a count of how many times questions were made. It contains nothing about what was asked or answered.
| Item | Purpose | Retention |
|---|---|---|
| Device identifier | Managing the free onboarding allowance; key for subscription lookup | Until you ask us to delete it |
| Device attestation key (public key, device identifier, request counter) | Verifying request origin; blocking forged or replayed requests | Until you ask us to delete it |
| Subscription lookup result (entitlement status, expiry, subscription identifier) | Checking whether a subscription or trial is active | Up to 1 hour (cache) |
| Usage counts (daily and monthly calls per subscription identifier) | Limiting abnormal use | Daily count 2 days; monthly count 40 days |
| Reported question text and type (section 5) | Improving question quality | Deleted after review, at most 1 year |
| Server logs (first 8 characters of device and subscription identifiers, request type, outcome, token counts) | Diagnosing failures | Short period (hosting provider default) |
5. Questions you report
When you tap "Give me another question" on a question, the text and type of that question are sent to our server. We use it to reduce bad questions. Your answers are never sent with it. Reported questions are kept only as long as needed for quality work and deleted once reviewed; in any case they are deleted automatically after one year. Because a personalized question can reflect your situation, you may simply not tap it for questions you'd rather not report.
6. Services we work with
| Service | Role | What it receives | Location |
|---|---|---|---|
| Apple (App Store) | Payments, subscriptions, refunds | Payment details are handled only by Apple; we never receive them | US and others |
| RevenueCat | Subscription status | Device identifier, Apple subscription information | US |
| Cloudflare | Servers, storage, this website | The items in section 4, server logs | Global edge |
| OpenAI / Anthropic | Question generation | The request contents in section 3 (relayed, not stored) | US |
All of these services are located outside Korea. Data is transmitted over the internet at the moment the app makes a request and is handled under each service's policy. RevenueCat · Cloudflare · Apple
7. If you want things deleted
- Records on your device: deleting the app deletes them. You can create a backup file in Settings first.
- Data on our servers: email support@echo-kindness.org. We'll tell you how to find your device identifier and delete the data once confirmed. Deleting it does not restore the free onboarding allowance.
- Subscription: cancel in iOS Settings › Apple Account › Subscriptions. You keep access for the remainder of the paid period.
8. Children
The app is intended for people aged 14 and over. We don't knowingly collect information from children under 14.
9. Notifications
Daily reminders and the weekly recap notification are scheduled on your device. Our server doesn't know whether you answered or when you open the app. You can turn notifications off in Settings.
10. Contact
Privacy officer: Chansoo Kim · support@echo-kindness.org
Send questions, access or deletion requests, and complaints by email. We reply as soon as we can. Residents of Korea may also contact the Personal Information Infringement Report Center (privacy.kisa.or.kr, 118) or the Personal Information Dispute Mediation Committee (kopico.go.kr, 1833-6972).
11. Changes to this document
When the contents change, we post the new version on this page and update the effective date. Significant changes, such as keeping additional data, are announced on this page and in the app at least 7 days before they take effect.
Revision history
| Version | Effective | Change |
|---|---|---|
| 1.0 | 2026-09-07 | First publication |