Privacy Policy

Effective date: September 11, 2026

This policy reflects the current BudsLog MVP. We will update it when product features or third-party services materially change.

1. Information we process

  • Account data: Supabase Auth user ID, sign-in provider (Kakao or Apple), and minimum authentication information provided by that provider
  • Profile data: display name set by the user
  • Trip data: title, destination, dates, trip type, transportation, party size, visibility, days, and itinerary items
  • Itinerary and place data: selected places, addresses and coordinates, itinerary notes, private notes, and reference links
  • Private saved data: saved trips, place collections, place notes, and trip checklists
  • Activity data: place feedback, trip-copy history, companion invitation and membership data, representative YouTube video URLs, and reports
  • For web deletion/privacy requests: contact email, sign-in method, minimum account-identification hint, and the message submitted

2. Why we use it

  • Authentication and account management
  • Trip creation, collaboration, publishing, and copying
  • Place search, saving, routing, and post-trip feedback
  • Error handling, service security, and account/data deletion requests

3. Public information

When a user makes a trip public, the trip's public information and itinerary may be visible to others. Private itinerary notes, reference links, personal place collections and notes, private checklists, and each user's individual place-feedback value are not shown on public trip pages.

4. Third-party services

  • Supabase: authentication, database, and Edge Functions
  • Kakao: Kakao sign-in, Korean place search, maps, and route-related features
  • Apple: Sign in with Apple on iOS
  • YouTube: public metadata lookup and opening representative videos

These providers may process technical logs or authentication data under their own policies.

5. Location

The BudsLog MVP does not collect a user's live GPS location. Coordinates attached to itinerary items are the locations of places the user chooses.

6. Retention and deletion

We retain information needed to provide the service while an account remains active. When a user deletes an account from MY → Delete account, associated personal data is handled according to the database deletion rules. If the app cannot be accessed, a web deletion request can be submitted. Information that must be retained by law may be kept for the required period.

Account and data deletion request

7. Your choices

  • Change your profile name
  • Set trips to public or private
  • Delete saved data and notes
  • Request deletion of your account and associated data

8. Privacy requests

Privacy questions and account deletion requests for users who cannot access the app can be submitted through the account and data request page.

9. Changes

If our data processing or service structure changes, we will update this page and its effective date.