EN KO JA

Privacy Policy

Effective: July 22, 2026

This Privacy Policy explains how POLENEST ("we", "us", "our") collects, uses, and protects information when you use our services, including websites at polenest.com and our mobile applications (collectively, the "Service"). Polenest is designed as a local-first planner: schedules, memos, tasks, workspace items, settings, attachments, and generated share images are stored on your device by default unless you choose to use an account, group collaboration, Google Drive cloud backup, Google Calendar sync, purchase verification, or a support feature that requires network processing.

1. Information We Collect

2. How We Use Information

2A. Google API Services User Data

Polenest uses Google Calendar data only to provide calendar sync that you initiate and Google Drive data only to provide backup and restore that you initiate. We do not use Google user data for advertising, profiling, or training generalized AI or machine-learning models, and we do not sell it. Polenest's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

3. Data Retention

Local app content remains on your device until you delete it, uninstall the app, or remove the local app data from your device. Backup files that you save on your device or in your personal Google Drive are user-controlled files; Polenest does not delete them when you delete your Polenest account. Account, purchase, Android point, support, family-device registration, and diagnostic records stored on our servers or by our service providers are retained while needed to provide the selected feature, resolve disputes, comply with law, or protect the Service. Group data is retained while the group exists and as needed to provide collaboration; invite codes remain only until they expire or are disabled, and membership data remains until you leave, are removed, or delete your account. You may request deletion at any time (Section 7).

4. Sharing

We do not sell your personal information. We may share information with:

5. Data Processors

6. International Transfers

Our service providers may store and process data outside of your country, including in the United States. We rely on appropriate safeguards (e.g., standard contractual clauses) where required.

7. Your Rights — Account & Data Deletion

Depending on your jurisdiction, you may have the right to access, correct, delete, or port your personal information, or object to certain processing.

How to delete your account:

  1. By email: Send a message to [email protected] from the email address linked to your account, with subject "Account deletion request". We process the request within 7 business days.
  2. In-app (if available in your app version): Settings → Account → Delete account → Confirm.

Partial data deletion (without deleting your account): individual schedules, plans, and memos can be deleted directly within the app. For other scopes, email [email protected].

Data that will be deleted: account information (email, display name, the active authentication record, and raw provider identifiers); server-side user profile, Android point records, purchase entitlement, account-linked diagnostic records where applicable, and private block or report relations authored by or directed at the deleted account.

Group data: account deletion automatically deletes groups owned by that account, including their shared schedules and related group data, and removes the account's membership and related operation metadata from groups owned by others. Shared group content owned by another account may remain until that owner or the service removes it.

Data that may be retained: service-managed recovery copies, if any, are removed within 90 days of the deletion request. Backup files saved on your device or in your personal Google Drive remain until you delete them and are not removed by account deletion. Invite-only family device registration records are retained only while needed to prepare or support the requested family build and can be deleted after a verified request. A minimal server-only deletion and security marker may retain the former authentication UID and one-way hashes of recovery identifiers, without email, display name, or user content, only to reject stale credentials, prevent recreation of deleted data, and prevent duplicate or fraudulent entitlements. Purchase-verification or transaction-history records may be retained only as needed to process restoration or refunds, prevent duplicate or fraudulent entitlements, or meet legal obligations. Other records required by applicable law (e.g., communication records) are retained for the legally mandated period. Anonymized analytics data with no personally identifiable information may be retained indefinitely in non-identifying form.

8. Children

The Service is not directed to children under 13 (or under 14 where applicable in Korea). We do not knowingly collect personal information from children.

9. Cookies and Similar Technologies

Our website uses essential technologies for site functionality and Google Analytics to understand aggregated website traffic. Google Analytics is not included in the Polenest mobile apps. We do not use advertising cookies on polenest.com. Current iOS and Android releases do not serve third-party ads, do not grant points for watching ads, and do not use App Tracking Transparency tracking. Historical Android point records from earlier releases are handled as described above.

10. Security

We use commercially reasonable measures to protect your information, but no method of transmission or storage is 100% secure.

11. Changes to This Policy

We may update this policy from time to time. The "Effective" date above will be updated when changes are made.

12. Contact

Note: This policy is written for the current Polenest mobile app pages, support pages, and browser game pages. Product-specific privacy pages may provide narrower details for each app. Korean-language version available at /ko/privacy.