moeun

개인정보처리방침

시행일: 2026년 7월 19일 · 최종 개정일: 2026년 8월 11일 · 서비스: 모은(moeun.app)

1. 수집하는 정보

모은은 서비스 제공에 필요한 최소한의 정보만 수집합니다: ① 계정 정보(이메일 주소, 로그인 제공자), ② 사용자가 연결한 Google 캘린더의 일정 데이터(제목, 시간, 장소), ③ 캘린더 접근을 위한 인증 토큰(암호화되어 별도 보관소에 저장), ④ 사용자가 설정한 서비스 설정(공개 수준, 공개 주소 등).

2. 이용 목적

수집한 정보는 오직 다음 목적에만 사용합니다: 여러 캘린더를 하나의 화면으로 통합해 보여주기, 사용자가 만든 일정을 원본 캘린더에 기록하기, 사용자가 직접 설정한 공개 수준에 따라 공개 페이지를 제공하기. 모은은 사용자 데이터를 광고 목적으로 사용하지 않으며, 제3자에게 판매하거나 제공하지 않습니다.

3. Google 사용자 데이터

모은의 Google API로부터 받은 정보의 사용은 Google API 서비스 사용자 데이터 정책의 제한적 사용(Limited Use) 요구사항을 포함하여 해당 정책을 준수합니다. 캘린더 데이터는 통합 일정 표시와 동기화에만 사용되며, 사람이 열람하지 않고, AI/ML 모델 학습에 사용하지 않습니다.

4. 민감 데이터 보호 조치

모은은 캘린더 일정 등 민감할 수 있는 사용자 데이터를 다음과 같은 기술적·관리적 조치로 보호합니다.

5. 보관과 삭제

일정 데이터는 표시 성능을 위해 서버에 캐시됩니다. 캘린더 표시를 끄면 해당 캘린더의 캐시가 즉시 삭제되고, 계정 연결을 해제하면 인증 토큰이 파기되며 Google에 부여했던 접근 권한 회수를 요청합니다. 계정 삭제는 앱과 웹의 설정 화면에서 직접 할 수 있으며, 삭제 즉시 계정과 서버에 저장된 모든 데이터(연결 정보, 일정 캐시, 할 일, 예약)가 파기됩니다. 원본 Google 캘린더의 일정은 영향을 받지 않습니다.

6. 처리 위탁

서비스 운영을 위해 데이터베이스·인증은 Supabase, 웹 호스팅은 Vercel의 인프라를 이용합니다. 두 업체 모두 데이터 보호 규정을 준수하는 클라우드 사업자입니다.

7. 공개 페이지

공개 페이지(moeun.app/사용자주소)에는 사용자가 캘린더별로 직접 선택한 공개 수준(비공개·바쁨만· 제목까지·전체)에 해당하는 정보만 표시됩니다. 기본값은 시간대만 표시하는 "바쁨"입니다.

8. 문의

개인정보 관련 문의: high.neoul@gmail.com


Privacy & Data Protection (English)

moeun (moeun.app) collects only the data required to provide the service: account email, Google Calendar events the user connects (title, time, location), encrypted OAuth tokens, and user settings. Data is used solely to render a unified calendar, write events the user creates back to their own calendar, and serve the public page at the visibility level the user chooses. We never sell user data, share it with third parties, or use it for advertising.

Protection of sensitive data. All traffic between the user, our servers, and Google APIs is encrypted in transit via TLS (HTTPS). All stored data is encrypted at rest. Google OAuth tokens are kept in a separate encrypted secrets vault and can only be decrypted server-side. Database Row Level Security restricts every user to their own rows; service credentials exist only in server-side environment variables and are never exposed to clients. Calendar data is processed by automated functionality only — no human reads it, and it is never used to train AI/ML models. We request the minimum Google API scopes required (calendar read and event write). In the event of a data breach, affected users will be notified without undue delay.

Retention & deletion. Cached events for a calendar are deleted when the user hides that calendar; disconnecting an account destroys its tokens and requests revocation of the granted access. Users can delete their account directly in the app or web settings, which immediately erases the account and all server-side data. Original Google Calendar data is not affected.

moeun's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Contact: high.neoul@gmail.com

개인정보처리방침 — 모은