Werewolf Together
개인정보 처리 안내 / Privacy Notice
게시자·개인정보처리자 / Publisher and data controller: Bengis Apps
개인정보 문의 / Privacy contact:
kohana.manage@gmail.com
한국어
어떤 데이터를 왜 처리하나요?
- 계정을 만들지 않습니다. 이메일, 전화번호, 연락처, 위치, 마이크 또는 대화 내용은 게임 플레이에 필요하지 않으며 게임 기능에서 요청하지 않습니다.
- 한 폰 모드의 게임 상태와 환경설정은 기기에 저장됩니다. 사용자는 설정에서 기기 데이터를 삭제할 수 있습니다.
- 각자 폰 모드에서는 방을 운영하기 위해 닉네임, 선택한 아바타, 자리, 게임 진행 상태와 방 세션을 Cloudflare 기반 서버가 처리합니다. 방은 마지막 의미 있는 사용자 행동 후 24시간 유휴 시, 늦어도 생성 후 72시간에 만료되도록 구현되어 있습니다. 카메라 권한은 QR 코드를 읽는 데만 사용하며 사진을 저장하거나 업로드하지 않습니다.
- 미리보기 및 프로덕션 출시 빌드에서는 앱 안정성 개선을 위해 정제된 JavaScript 오류 유형, 일반화된 오류 메시지, 스택 위치와 symbolication 메타데이터를 Sentry가 처리할 수 있습니다. Sentry 오류 이벤트는 최대 30일간 보관됩니다.
Sentry로 보내지 않는 정보
Sentry 오류 이벤트에는 방 코드, 닉네임, 플레이어·등록 ID, 역할, 투표·대상, 계정 ID, IP 주소, 요청 본문, 인증·세션·attestation 정보, 구매 증명, 사용자 범위, breadcrumb, replay, 화면 캡처, view hierarchy, 음성, 사진, native crash, SDK 로그, profiling 또는 tracing을 첨부하지 않습니다. 앱과 Sentry 프로젝트의 scrubber가 이 경계를 방어하며, 이 항목을 추가하려면 새 개인정보 검토가 필요합니다.
Cloudflare와 Sentry를 포함한 네트워크 제공업체는 요청을 전달하는 동안 출발지 IP를 필연적으로 처리할 수 있습니다. Sentry는 그 IP를 오류 이벤트에 저장하지 않도록 설정했습니다.
보존, 열람 및 삭제
- Sentry JavaScript 오류 이벤트는 최대 30일 후 자동으로 조회 범위에서 사라지는 조회 기간을 사용합니다. 이는 제공업체의 모든 백업이 정확한 시각에 물리적으로 삭제됐다는 검증을 뜻하지 않습니다. 이 30일 상한은 Sentry 채널에만 적용되며, Cloudflare 요청 메타데이터 등 다른 운영 로그는 별도의 최대 7일 보존 기준을 따릅니다.
- 설정의 “이 기기 데이터 삭제”는 로컬 게임, 설정과 저장된 방 세션을 삭제합니다. 오프라인이면 원격 방 데이터는 방이 만료될 때까지 남을 수 있습니다.
- Sentry에는 앱 계정이나 사용자 ID가 없으므로 특정 오류를 개인과 연결하지 못할 수 있습니다. 열람·삭제를 요청할 때는 아래 연락처로 대략적인 발생 시각, 앱 버전, 운영체제와 미리보기/프로덕션 환경만 알려 주세요. 방 코드, 닉네임, 역할·선택, 세션 비밀값, 토큰이나 구매 증명을 보내지 마세요. 민감정보를 새로 수집하지 않고 이벤트를 찾을 수 있다면 삭제하고 결과를 안내합니다. 찾을 수 없어도 최대 30일 자동 만료는 적용됩니다.
- source map과 release 메타데이터는 플레이어 원격측정이 아닌 개발 산출물로 별도 수명주기를 따릅니다. 비밀값을 포함해서는 안 됩니다.
- 개인정보 문의를 이메일로 보내면 회신과 권리 요청 처리를 위해 발신 주소, 문의 내용과 처리 기록을 사용합니다. 문의 처리가 종결된 날부터 30일 이내 삭제합니다. 단, 법률상 더 오래 보관해야 하는 경우에는 해당 의무 기간 동안 보관합니다.
처리업체와 문의
각자 폰 모드의 방 운영에는 Cloudflare를, 선택적으로 활성화되는 JavaScript 오류 진단에는 Sentry를 사용합니다. 광고·결제 모드는 현재 출시 환경에서 비활성화 상태이며, 이를 활성화하기 전 별도 고지와 동의·스토어 검토가 필요합니다.
개인정보 관련 열람·삭제 및 기타 문의: kohana.manage@gmail.com
English
What data is processed and why?
- The app does not create accounts. Email, phone number, contacts, location, microphone access and conversations are not required for play and are not requested by gameplay features.
- One Phone game state and preferences are stored on the device. A player can delete device data from Settings.
- In Everyone's Phone mode, a Cloudflare-based server processes nickname, selected avatar, seat, game progress and room session data. A room is designed to expire after 24 hours without a meaningful user action and no later than 72 hours after creation. Camera permission is used only to read a QR code; the app does not save or upload a photo.
- In preview and production release builds, Sentry may process a sanitized JavaScript error type, generalized message, stack location and symbolication metadata to improve reliability. Sentry error events are kept for up to 30 days.
Data not sent to Sentry
Sentry error events do not attach room codes, nicknames, player or enrollment IDs, roles, votes or targets, account IDs, IP addresses, request bodies, authorization/session/attestation material, purchase proof, user scope, breadcrumbs, replay, screenshots, view hierarchy, audio, photos, native crashes, SDK logs, profiling or tracing. App and Sentry project scrubbers defend this boundary. Adding any of these categories requires a new privacy review.
Cloudflare, Sentry and other network providers necessarily may process a source IP while routing a request. Sentry is configured not to store that address on the error event.
Retention, access and deletion
- Sentry JavaScript error events automatically leave the available lookback within a maximum of 30 days. This does not claim verified physical erasure of every provider backup at an exact timestamp. The limit applies only to the Sentry channel; Cloudflare request metadata and other operational logs follow a separate maximum seven-day retention requirement.
- “Delete data on this device” removes local games, preferences and stored room sessions. If the device is offline, remote room data may remain until the room expires.
- Sentry receives no app account or user ID, so an individual event may not be linkable to a person. For an access or deletion request, contact the address below with only the approximate event time, app version, operating system and preview/production environment. Do not send a room code, nickname, role or choice, session secret, token or purchase proof. If an event can be located without collecting new sensitive data, it will be deleted and the outcome reported. The 30-day automatic expiry still applies if it cannot be identified.
- Source maps and release metadata are developer artifacts rather than player telemetry and follow a separate lifecycle. They must not contain secrets.
- If a privacy inquiry is sent by email, the sender address, message and handling record are used to reply and process the rights request. They are deleted within 30 days after the inquiry is resolved, unless a longer period is required by law.
Processors and contact
The app uses Cloudflare to operate rooms in Everyone's Phone mode and Sentry for optionally enabled JavaScript error diagnostics. Advertising and payment modes are currently disabled in the release environments; separate notice, consent and store review are required before they are enabled.
Privacy access, deletion or other inquiry: kohana.manage@gmail.com