Privacy Policy
Effective: July 22, 2026
This Privacy Policy explains how POLENEST ("we", "us", "our") collects, uses, and protects information when you use our services, including websites at polenest.com and our mobile applications (collectively, the "Service"). Polenest is designed as a local-first planner: schedules, memos, tasks, workspace items, settings, attachments, and generated share images are stored on your device by default unless you choose to use an account, group collaboration, Google Drive cloud backup, Google Calendar sync, purchase verification, or a support feature that requires network processing.
1. Information We Collect
- Account information: email address, display name, authentication user ID (UID), and sign-in provider identifiers when you sign in (e.g., Google, Apple).
- Local app content: schedules, memos, tasks, workspace pack records, preferences, attachments, and exported/shared images you create in the mobile app. This content remains on your device by default and is not uploaded to our servers unless you explicitly use a connected feature.
- Group data: when you use group features, we process the group name and description, owner and member identifiers, roles, invitation codes and expiry, shared schedules and handovers, moderation metadata, and group notification tokens so members can create, join, manage, and receive updates from groups.
- Optional calendar integration data: if you connect a system calendar or Google Calendar, the app may read, create, update, or delete calendar events according to the sync options you enable. When two-way sync is enabled, deleting a linked event in Polenest may delete the corresponding event from the connected calendar, and a provider-reported deletion may be reflected in Polenest. Google Calendar connection data is handled through Google Sign-In and the Google Calendar API.
- Optional Google Drive cloud backup data: if you choose Google Drive backup, the app reads or writes the backup file and app-created backup metadata such as file ID, name, modified time, size, and checksum through the Google Drive API. These files are stored in your personal Google Drive and remain under your control.
- Purchase and entitlement data: product ID, platform, purchase status and purchase history, entitlement type, expiry date, cancellation or refund status, transaction and original transaction identifiers, hashed purchase or receipt token, and related entitlement records. We do not receive or store full card numbers or payment account credentials.
- Historical Android points data: current iOS and Android releases do not serve third-party ads or grant points for watching ads. Earlier Android releases supported rewarded ads and points, so account UID, point balances, point transaction history, and related verification records may be retained for account deletion, dispute resolution, refunds, security, or legal compliance.
- Invite-only family device registration: if you use a private family installation link for an iPhone Ad Hoc build, the registration profile sends the device UDID, device name, product/model, operating system version, and serial number to Polenest. These identifiers are stored in a restricted device registry solely to prepare and support the requested family build. This does not occur in the public App Store or Google Play version.
- Website usage and app diagnostic data: aggregated website page interactions and traffic, plus mobile app crash logs, device type, operating system version, IP address, and diagnostic data used to maintain the Service. The mobile apps do not collect feature-usage analytics and we do not use this data for cross-app tracking.
- Device permissions (mobile app): the app requests permissions only when needed for specific features. None of this data leaves your device unless you explicitly initiate the related feature.
- Camera: used solely to scan group invitation QR codes. Images are processed on-device and are not uploaded or stored.
- Calendar (read/write): optional. Used only to read, create, update, or delete linked events under the sync options you enable.
- Notifications: to deliver reminders and alarms you set and updates from groups you joined. When group notifications are enabled, a Firebase Cloud Messaging token is associated with your signed-in account and removed during account deletion.
- Biometric (fingerprint/face): optional, used locally for app lock; biometric data never leaves the device.
- Exact alarm / boot completed / wake lock: to deliver scheduled reminders reliably across reboots.
2. How We Use Information
- To provide, maintain, and improve the Service.
- To authenticate you and protect your account.
- To operate optional group collaboration, Google Calendar sync, Google Drive cloud backup, purchase verification, local and group notifications, and support features that you choose to use.
- To verify purchases, restore access, and reflect refunds, cancellations, or entitlement changes.
- To retain and delete historical Android point and reward-verification records where needed for account administration, dispute resolution, refunds, security, or legal compliance.
- To register an invited family device and prepare or support the requested private iPhone build.
- To respond to support inquiries.
- To comply with legal obligations.
2A. Google API Services User Data
Polenest uses Google Calendar data only to provide calendar sync that you initiate and Google Drive data only to provide backup and restore that you initiate. We do not use Google user data for advertising, profiling, or training generalized AI or machine-learning models, and we do not sell it. Polenest's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
3. Data Retention
Local app content remains on your device until you delete it, uninstall the app, or remove the local app data from your device. Backup files that you save on your device or in your personal Google Drive are user-controlled files; Polenest does not delete them when you delete your Polenest account. Account, purchase, Android point, support, family-device registration, and diagnostic records stored on our servers or by our service providers are retained while needed to provide the selected feature, resolve disputes, comply with law, or protect the Service. Group data is retained while the group exists and as needed to provide collaboration; invite codes remain only until they expire or are disabled, and membership data remains until you leave, are removed, or delete your account. You may request deletion at any time (Section 7).
4. Sharing
We do not sell your personal information. We may share information with:
- Service providers who process data on our behalf, such as authentication, database, hosting, analytics, crash reporting, push notification, calendar sync, cloud backup, purchase verification, and entitlement infrastructure providers.
- App stores and payment processors when needed to process in-app purchases, subscriptions, refunds, cancellations, and purchase restoration.
- Other group members when you create, update, or share information inside a group or shared group workspace.
- Legal authorities when required by law or to protect rights and safety.
5. Data Processors
- Google LLC / Firebase (Authentication, Cloud Firestore, Cloud Functions, Cloud Messaging, Hosting, Crashlytics)
- Google LLC / Google Analytics (aggregated website traffic only; not included in the mobile apps)
- Google LLC / Google Play, Google Sign-In, Google Calendar API, and Google Drive API
- Apple Inc. (Sign in with Apple, App Store in-app purchases, and device calendar services where used)
- Cloudflare, Inc. (purchase entitlement verification, invite-only family device registration, and related server infrastructure where used)
6. International Transfers
Our service providers may store and process data outside of your country, including in the United States. We rely on appropriate safeguards (e.g., standard contractual clauses) where required.
7. Your Rights — Account & Data Deletion
Depending on your jurisdiction, you may have the right to access, correct, delete, or port your personal information, or object to certain processing.
How to delete your account:
- By email: Send a message to [email protected] from the email address linked to your account, with subject "Account deletion request". We process the request within 7 business days.
- In-app (if available in your app version): Settings → Account → Delete account → Confirm.
Partial data deletion (without deleting your account): individual schedules, plans, and memos can be deleted directly within the app. For other scopes, email [email protected].
Data that will be deleted: account information (email, display name, the active authentication record, and raw provider identifiers); server-side user profile, Android point records, purchase entitlement, account-linked diagnostic records where applicable, and private block or report relations authored by or directed at the deleted account.
Group data: account deletion automatically deletes groups owned by that account, including their shared schedules and related group data, and removes the account's membership and related operation metadata from groups owned by others. Shared group content owned by another account may remain until that owner or the service removes it.
Data that may be retained: service-managed recovery copies, if any, are removed within 90 days of the deletion request. Backup files saved on your device or in your personal Google Drive remain until you delete them and are not removed by account deletion. Invite-only family device registration records are retained only while needed to prepare or support the requested family build and can be deleted after a verified request. A minimal server-only deletion and security marker may retain the former authentication UID and one-way hashes of recovery identifiers, without email, display name, or user content, only to reject stale credentials, prevent recreation of deleted data, and prevent duplicate or fraudulent entitlements. Purchase-verification or transaction-history records may be retained only as needed to process restoration or refunds, prevent duplicate or fraudulent entitlements, or meet legal obligations. Other records required by applicable law (e.g., communication records) are retained for the legally mandated period. Anonymized analytics data with no personally identifiable information may be retained indefinitely in non-identifying form.
8. Children
The Service is not directed to children under 13 (or under 14 where applicable in Korea). We do not knowingly collect personal information from children.
9. Cookies and Similar Technologies
Our website uses essential technologies for site functionality and Google Analytics to understand aggregated website traffic. Google Analytics is not included in the Polenest mobile apps. We do not use advertising cookies on polenest.com. Current iOS and Android releases do not serve third-party ads, do not grant points for watching ads, and do not use App Tracking Transparency tracking. Historical Android point records from earlier releases are handled as described above.
10. Security
We use commercially reasonable measures to protect your information, but no method of transmission or storage is 100% secure.
11. Changes to This Policy
We may update this policy from time to time. The "Effective" date above will be updated when changes are made.
12. Contact
Note: This policy is written for the current Polenest mobile app pages, support pages, and browser game pages. Product-specific privacy pages may provide narrower details for each app. Korean-language version available at /ko/privacy.