본 방침은 nine20(이하 "개발자")이 제공하는 모바일 애플리케이션 여행문서함(이하 "앱")의 정보 처리 방식을 설명합니다. 앱은 사용자 계정을 만들지 않으며, 사용자의 개인 여행과 문서는 기본적으로 기기에 저장됩니다. 다만 공개 여행 준비팩을 제공하고 신고를 접수하기 위해 Google Firebase 서비스를 사용하며, 안정성 분석을 위해 Firebase Analytics와 Crashlytics를 사용합니다.
다음 데이터는 앱의 로컬 저장 영역에 저장됩니다.
이미지 문서 정보 인식은 Android의 앱 번들 모델 또는 iOS Vision으로 기기에서 처리됩니다. 인식 원문은 저장하거나 전송하지 않으며, 사용자가 선택해 적용한 문서 제목·분류·만료일만 위 로컬 문서 메타데이터에 저장됩니다.
사용자가 선택한 HTML 문서는 스크립트, 외부 이미지 및 외부 스타일 리소스를 제거한 뒤 기기에서 PDF로 변환됩니다. 변환 과정에서 HTML 내용을 외부 서버로 보내지 않습니다. 변환 후 앱 임시 영역의 HTML 복사본을 삭제하고, 앱 문서 저장 영역에는 생성된 PDF만 저장합니다.
입국심사 정보는 일반 여행 데이터베이스와 분리하여 Android에서는 Keystore로 보호되는 암호화 저장소, iOS에서는 Keychain에 저장합니다. 해당 화면을 열거나 앱으로 돌아올 때마다 운영체제의 기기 인증을 요구하고, 앱이 백그라운드로 이동하면 화면의 값을 즉시 제거합니다. 이 정보는 문서팩 내보내기, 커뮤니티, 분석 또는 오류 진단 데이터에 포함되지 않습니다.
개발자는 위 개인 여행 데이터나 문서 내용에 접근하지 않으며, 커뮤니티·분석·오류 진단 기능을 통해 이를 전송하지 않습니다. 사용자가 직접 문서팩을 내보내거나 운영체제 공유 기능을 선택한 경우에는 사용자가 선택한 대상에게 파일이 전달될 수 있습니다. 일정 또는 문서 상세에서 사용자가 Google 지도 열기를 선택한 경우에는 아래와 같이 저장된 Google 지도 링크 또는 해당 장소 문자열이 Google 지도에 전달됩니다.
커뮤니티 탭은 TripDocument FastAPI에서 사전 검토된 공개 여행 준비 템플릿을 조회합니다. 모바일 앱에서 공개 콘텐츠를 작성하거나 개인 문서를 업로드하는 기능은 제공하지 않습니다.
| 동작 | 외부에서 처리·저장되는 값 | 목적 |
|---|---|---|
| Google 지도에서 장소 열기 | 저장된 Google 지도 링크 또는 링크가 없을 때 일정·문서의 장소 문자열 | Google 지도 앱 또는 웹에서 저장된 장소를 열거나 검색 |
| 카탈로그·상세 조회 | 앱 언어와 공개 카탈로그·준비팩 문서 ID | 해당 언어의 승인된 공개 준비팩 제공 |
| 기준환율 조회 | 기준 통화와 환산 통화의 ISO 통화 코드 | Frankfurter 공개 API에서 최신 기준환율 조회 |
| 콘텐츠 신고 | 계약 버전, 공개 준비팩 ID, 공개 작성자 ID, 선택한 신고 사유. 신고 ID와 접수 시각은 서버에서 생성 | 개인정보·유해 콘텐츠·저작권·오해 유발 콘텐츠 처리 |
Google 지도 열기는 사용자가 버튼을 누른 경우에만 실행됩니다. 여행 이름, 일정·문서 제목, 메모, 연결 문서, 문서 파일은 전달하지 않으며, 이후 처리는 Google 개인정보처리방침의 적용을 받습니다.
기준환율 조회 시 api.frankfurter.dev에는 통화 코드만
전송됩니다. 지출 금액, 예산, 사용 내역, 메모, 연결 문서와 파일은
전송하지 않으며 환산 계산은 기기에서 수행합니다. 공개 API의 Cloudflare
인프라는 표준 네트워크 처리 과정에서 IP 주소와 기본 접속 정보를 처리할
수 있습니다.
신고는 정해진 사유만 선택하며 자유 입력란이 없습니다. 이름, 이메일, 계정 ID, 기기 ID, 개인 여행 정보, 문서 파일·경로·내용은 신고 문서에 저장하지 않습니다. 표준 HTTPS 연결 과정에서 API 인프라는 IP 주소와 기본 요청 정보를 처리할 수 있습니다.
개발자는 개인정보를 판매하거나 광고 추적에 사용하지 않습니다. Google Firebase는 분석과 오류 진단을 위한 서비스 제공자로 사용됩니다. 커뮤니티 API 인프라와 Firebase 처리 과정에서 데이터가 사용자의 국가 밖에서 처리될 수 있으며 각 제공자의 약관과 개인정보 보호정책이 적용됩니다.
입국심사 정보는 플랫폼 보안 저장소와 화면별 기기 인증으로 보호합니다. 네트워크 전송은 HTTPS를 사용하고, 커뮤니티 API는 앱에 공개 준비팩 조회와 제한된 신고 생성만 허용합니다. 요청 제한, 입력 크기와 필드 제한, 캐시 검증, 운영자 접근 제한을 함께 사용합니다. 어떠한 전송·저장 방식도 절대적인 안전을 보장할 수는 없습니다.
앱은 만 14세 미만 아동을 주요 대상으로 하지 않으며, 아동의 개인정보를 고의로 수집하도록 설계되지 않았습니다. 공개 준비팩에 아동의 정보가 포함된 경우 즉시 신고하거나 연락해 주세요.
법령, 스토어 정책 또는 서비스 기능이 변경되면 본 방침을 개정하고 이 페이지의 최종 업데이트 날짜를 변경합니다.
개인정보, 신고, 삭제 및 저작권 문의:
me@nine20.net
요청 방법: 지원 및 삭제 요청 안내
This Privacy Policy explains how nine20 (the "Developer") handles information in the mobile application Trip Document (the "App"). The App does not create user accounts, and private trips and documents are stored on the device by default. The App uses Google Firebase to deliver public community preparation packs and receive reports, and uses Firebase Analytics and Crashlytics for usage and stability diagnostics.
The following data is stored in the App's local storage:
Image document recognition runs on the device using an Android model bundled with the App or Apple Vision on iOS. Recognized raw text is not stored or transmitted. Only document titles, categories, and expiry dates that you select and apply are stored with the local document metadata described above.
HTML files you select are converted to PDF on the device after the App removes scripts, external images, and external style resources. The App does not send HTML content to an external server. After conversion, it deletes the temporary HTML copy in the App cache and stores only the generated PDF in its document storage.
Entry information is kept separately from the ordinary trip database. It uses Android Keystore-backed encrypted storage on Android and Keychain on iOS. Operating-system device authentication is required whenever you open the screen or return to the App, and the values are removed from the screen as soon as the App moves to the background. This information is not included in document-pack exports, community data, analytics, or crash diagnostics.
The Developer does not access private trip data or document contents, and the community, analytics, and crash features do not transmit them. If you explicitly export a document pack or use the operating system's share feature, the selected file may be sent to the destination you choose. If you choose to open an event or document location in Google Maps, its saved Google Maps link or place text is sent as described below.
The Community tab reads pre-reviewed public travel preparation templates from the TripDocument FastAPI service. The mobile App does not let users publish community content or upload private documents.
| Action | Values processed or stored off-device | Purpose |
|---|---|---|
| Open a place in Google Maps | The saved Google Maps link, or the event or document place text when no link is saved | Open or search for the place in Google Maps |
| Catalog and pack reads | App language and public catalog or pack document IDs | Deliver approved public packs in the selected language |
| Reference-rate lookup | The base and quote ISO currency codes | Read the latest reference rate from the Frankfurter public API |
| Content report | Contract version, public pack ID, public creator ID, and selected reason. The server creates the report ID and acceptance time | Address personal data, harmful content, copyright, and misleading content |
Google Maps opens only after you tap the button. The App does not send the trip name, event or document title, notes, linked document metadata, or document files. Google's Privacy Policy applies to subsequent processing.
A reference-rate lookup sends only currency codes to
api.frankfurter.dev. Expense amounts, budgets, titles,
notes, linked documents, and files are not sent, and conversion runs
on the device. The public API's Cloudflare infrastructure may process
an IP address and basic request information during ordinary network
operations.
Reports use a fixed reason list and have no free-text field. Report documents do not store a name, email, account ID, device ID, private trip value, document file, path, or content. During ordinary network operations, the API infrastructure may process service metadata such as IP address and basic request information.
The Developer does not sell personal information or use it for ad tracking. Google Firebase acts as a service provider for analytics and crash diagnostics. The Community API infrastructure and Firebase may process data outside your country under each provider's terms and privacy policy.
Entry information is protected by platform secure storage and per-screen device authentication. Network traffic uses HTTPS. The Community API exposes only public pack reads and bounded report creation to the App. Rate limits, strict fields and size limits, cache validation, and restricted operator access provide additional safeguards. No transmission or storage method can be guaranteed completely secure.
The App is not directed to children under 14 and is not designed to knowingly collect their personal information. Please report or contact us immediately if public content contains a child's data.
We may update this Policy to reflect legal, store policy, or service changes. The last-updated date on this page will be revised when we do.
Privacy, reports, deletion, and copyright requests:
me@nine20.net
Request instructions:
Support and Deletion Requests