Vantage Run 개인정보처리방침 / Privacy Policy
시행일 / Effective date: 2026-__-__ (출시일에 확정) 최종 개정 / Last updated: 2026-08-04
한국어
Vantage Run("앱")은 "수집하지 않은 데이터는 유출될 수 없다"는 원칙으로 설계되었습니다. 아래 처리방침은 실제 구현과 일치하며, 구현이 바뀌면 이 문서도 함께 갱신됩니다.
0. 운영자 및 개인정보 보호책임자
본 서비스는 싱가포르에 등록된 개인사업자가 운영합니다.
| 구분 | 내용 |
|---|---|
| 서비스명 | Vantage Run |
| 운영자 | TEMFARMING (싱가포르 개인사업자 / Sole Proprietorship) |
| 사업자등록번호 (UEN) | 53508432C |
| 등록 주소 | 121 Jalan Jurong Kechil, #2-21, Terrene at Bukit Timah, Singapore 598679 |
| 대표자 | JUNGWON YOU |
| 개인정보 보호책임자 겸 DPO | JUNGWON YOU (대표) |
| 연락처 | gardenyou94@gmail.com |
개인정보 관련 문의·열람·정정·삭제 요청은 위 연락처로 접수하며, 접수 후 10일 이내 처리 결과를 안내합니다.
1. 수집하는 정보
| 항목 | 대상 | 목적 | 보유기간 |
|---|---|---|---|
| 익명 사용자 식별자(로그인 제공자 ID의 해시) | 모든 사용자 | 계정 식별 | 탈퇴 시까지 |
| 이메일 주소 | 이메일 로그인 사용자만 | 로그인·비밀번호 재설정 | 탈퇴 시까지(암호화 저장) |
| 랜덤 닉네임·아바타(이모지·색상) | 모든 사용자 | 익명 커뮤니티 표시 | 탈퇴 시까지 |
| 러닝 기록 수치(거리·페이스·날짜·출처 앱 이름·기록 등급) | 기록 업로드 시 | 가상 트랙·팀 목표·랭킹 | 탈퇴 시까지 |
| 준비 대회·활동 지역(시·군·구 단위, 직접 선택) | 방 참여 시 | 대회 매칭·지역 랭킹 | 탈퇴 시까지 |
| 캡처 이미지의 지각 해시(pHash) | 사진 기록 업로드 시 | 동일 캡처 재사용 탐지 | 탈퇴 시까지 |
| 구독 상태(활성/체험/만료, 만료 시각, 상품 ID) | 랭킹 패스 구매·체험 시 | 랭킹 참가 자격 판정 | 탈퇴 시까지 |
| 접속 로그·오류 로그 | 모든 사용자 | 장애 대응·부정 이용 방지 | 최대 90일 |
2. 수집하지 않는 정보
- 실명, 전화번호, 생년월일, 연락처, 주소 — 수집하지 않습니다.
- GPS 이동 경로·좌표 — 수집하지 않습니다. 앱의 트랙은 가상 공간이며 러닝 중 위치를 읽지 않습니다.
- 현재 버전에서는 위치 권한을 사용하지 않습니다.
- 향후 선택 기능인 "현재 위치로 지역 인증"을 제공할 경우, 사용자가 직접 실행한 그 순간에만 대략적 위치를 1회 읽어 가장 가까운 지역 하나를 판정한 뒤 좌표를 즉시 폐기합니다. 좌표는 서버로 전송·저장되지 않으며, 저장되는 것은 지역명과 인증 시각뿐입니다. 백그라운드 위치 접근과 위치 추적은 사용하지 않습니다.
- Apple/Google 로그인 사용자의 이메일 — 수집하지 않습니다.
- 러닝앱 캡처 이미지 원본 — 서버 격리 영역에서 수치만 추출한 뒤 즉시 파기하며 저장하지 않습니다. 재사용 탐지용 지문(해시)만 보관합니다.
- 결제 수단 정보(카드번호 등) — 결제는 Apple App Store가 처리하며, 앱과 당사는 결제 수단 정보를 수집·보관하지 않습니다.
- 광고 식별자·추적 — 사용하지 않습니다.
3. 건강 데이터 (Apple 건강 / Health Connect)
사용자가 연동을 허용한 경우에만 러닝 워크아웃의 거리·페이스·일시를 읽어 "인증 기록"으로 저장합니다. 목적은 러닝 기록 인증이며, 다른 용도로 사용하거나 제3자에게 제공·판매하지 않습니다. 건강 데이터는 광고·마케팅에 일절 사용하지 않습니다. 연동은 기기 설정에서 언제든 해제할 수 있습니다.
4. 처리 위탁 (수탁자)
서비스 제공을 위해 아래 사업자에게 처리를 위탁하고 있습니다. 위탁 계약을 통해 목적 외 이용을 금지하고 있습니다.
| 수탁자 | 위탁 업무 | 보관 위치 |
|---|---|---|
| Google LLC (Firebase) | 인증, 데이터베이스, 서버리스 함수, 이미지 텍스트 추출 | 싱가포르 |
| RevenueCat, Inc. | 구독 상태 관리·영수증 검증 | 미국 |
| Apple Inc. | 결제 처리(App Store), Apple 로그인 | 미국 등 |
5. 제3자 제공·광고
- 개인정보를 제3자에게 판매하거나 광고 목적으로 제공하지 않습니다.
- 광고 SDK·추적 SDK를 탑재하지 않습니다.
- 법령에 따른 수사기관의 적법한 요청이 있는 경우에 한해 관련 법령이 정한 절차에 따라 제공될 수 있습니다.
6. 국외 이전
| 이전받는 자 | 국가 | 이전 항목 | 이전 목적 | 보유기간 |
|---|---|---|---|---|
| Google LLC (Firebase) | 싱가포르 | 1항의 수집 항목 전체 | 서비스 운영(인증·저장·연산) | 탈퇴 시까지 |
| RevenueCat, Inc. | 미국 | 익명 사용자 식별자, 구독 상태 | 구독 자격 관리 | 탈퇴 시까지 |
7. 보관 및 파기
- 계정 삭제 시 모든 데이터가 즉시 삭제 처리되며, 서버에서 30일 이내 완전히 파기됩니다.
- 방 활동 이력은 "탈퇴한 러너"로 익명화되어 다른 참여자의 기록 맥락만 유지됩니다.
- 법령상 보존 의무가 있는 거래 기록은 해당 법령이 정한 기간 동안 보관됩니다(전자상거래법상 대금결제 기록 5년 등). 단, 결제 기록의 원본은 Apple이 보관하며 당사는 익명 식별자 기준의 구독 상태만 보관합니다.
8. 이용자 권리
- 앱 내 [프로필 → 계정 삭제]로 언제든 전체 데이터 삭제를 요청할 수 있습니다.
- 개별 러닝 기록은 앱에서 직접 삭제할 수 있습니다.
- 열람·정정·처리정지 요청은 위 연락처로 접수합니다.
- 만 14세 미만 아동의 가입을 제한하며, 만 14세 미만임이 확인되면 지체 없이 해당 계정과 데이터를 삭제합니다.
- 개인정보 침해에 대한 상담·분쟁조정은 아래 기관에 문의할 수 있습니다.
- 개인정보분쟁조정위원회 (kopico.go.kr, 1833-6972)
- 개인정보침해신고센터 (privacy.kisa.or.kr, 118)
- 대검찰청 사이버수사과 (1301) · 경찰청 사이버수사국 (182)
9. 안전성 확보 조치
- 전송 구간 암호화(TLS 1.2 이상) 및 저장 시 암호화
- 접근 권한 최소화: 데이터베이스 보안 규칙로 본인 데이터·소속 방 데이터만 접근 가능하도록 강제
- 랭킹 점수·구독 자격 등 조작 유인이 있는 값은 서버에서만 기록하며 클라이언트 쓰기를 차단
- 러닝앱 캡처 원본 미저장(추출 즉시 파기)
- 운영자 권한 계정 최소 운영 및 접근 기록 관리
10. 자동 수집 장치
앱은 광고·분석용 쿠키나 추적 식별자를 사용하지 않습니다. 장애 진단을 위한 최소한의 오류 로그만 기록합니다.
11. 처리방침 변경
내용이 변경되는 경우 시행일과 변경 사유를 명시하여 시행 7일 전(이용자에게 불리한 변경은 30일 전) 앱 내 공지 또는 공개 URL을 통해 알립니다.
English
Vantage Run (the "App") is built on the principle that data we never collect can never leak.
0. Operator & Data Protection Officer (PDPA)
Vantage Run is operated by a sole proprietorship registered in Singapore.
| Item | Detail |
|---|---|
| Service | Vantage Run |
| Operator | TEMFARMING (Sole Proprietorship, Singapore) |
| UEN | 53508432C |
| Registered address | 121 Jalan Jurong Kechil, #2-21, Terrene at Bukit Timah, Singapore 598679 |
| Owner | JUNGWON YOU |
| Data Protection Officer | JUNGWON YOU (Owner) |
| Contact | gardenyou94@gmail.com |
Singapore's Personal Data Protection Act (PDPA) requires a designated Data Protection Officer; the owner serves that role. We respond to access, correction, and deletion requests within 10 business days. Where we process personal data of users in the Republic of Korea, the Korean Personal Information Protection Act (PIPA) also applies extraterritorially, and this policy is written to satisfy both regimes.
1. What we collect
Anonymous user identifier (hash of your sign-in provider ID); email address only for email sign-in users (encrypted, for login and password reset); random nickname and avatar; run metrics you upload (distance, pace, date, source app name, record grade); your target race and self-selected district-level area; a perceptual hash of uploaded screenshots (for reuse detection); subscription status (active/trial/expired, expiry, product ID); and minimal access/error logs (kept up to 90 days).
2. What we do NOT collect
No real names, phone numbers, dates of birth, contacts, or addresses. No GPS routes or coordinates — the track is a virtual space and the App never reads your location while you run; the current version does not use location permission at all. If the optional "verify with current location" feature is enabled in future, the App reads your approximate location once at the moment you tap it, matches it to the nearest service area, and discards the coordinates immediately — they are never transmitted or stored; only the area name and verification time are saved. No background location, no tracking. No email for Apple/Google sign-in users. No screenshot originals — captures are destroyed immediately after metric extraction; only a reuse-detection fingerprint is kept. No payment card data — Apple processes payments; we never receive card details. No advertising identifiers, no tracking SDKs.
3. Health data (Apple Health / Health Connect)
Only with your explicit permission, we read running workouts (distance, pace, time) to store them as verified records. Used solely to verify running records; never shared, sold, or used for advertising or marketing. You can revoke access anytime in device settings.
4. Processors
| Processor | Purpose | Location |
|---|---|---|
| Google LLC (Firebase) | Authentication, database, serverless functions, text extraction | Singapore |
| RevenueCat, Inc. | Subscription state & receipt validation | United States |
| Apple Inc. | Payment processing (App Store), Sign in with Apple | United States and others |
5. Third parties & ads
We never sell personal data or share it for advertising. No ad or tracking SDKs. Disclosure only where required by law and following lawful process.
6. Data location & cross-border transfer
Our database and servers are located in the Singapore region (asia-southeast1). Data from users in other countries, including Korea, is processed and stored in this region. Subscription state is additionally processed by RevenueCat in the United States. These transfers are essential to providing the service; if you object, the service cannot be provided.
7. Retention & deletion
Deleting your account removes all data immediately and purges it from our servers within 30 days. Room activity is anonymized as "a runner who left". Where law requires retention of transaction records, those are retained for the statutory period; the payment record of origin is held by Apple.
8. Your rights
Delete everything anytime via Profile → Delete account; delete individual records directly in the App. For access, correction, or restriction requests, contact us above. Users under 14 are not permitted; accounts found to belong to under-14 users are deleted without delay. Singapore users may also contact the PDPC (pdpc.gov.sg) regarding personal data concerns.
9. Security measures
TLS 1.2+ in transit and encryption at rest; database security rules restrict access to your own data and rooms you belong to; values with manipulation incentive (ranking scores, subscription entitlement) are written only by the server, with client writes blocked; screenshot originals are never stored; administrator access is minimized and logged.
10. Automatic collection
No advertising or analytics cookies, no tracking identifiers. Only minimal error logs for diagnostics.
11. Changes
We announce changes with an effective date and reason at least 7 days in advance (30 days for changes adverse to users), in-app or at the public policy URL.