Welcome to the "That Day" App ("the App", "we", "us"). We value and protect your personal information and privacy. This Privacy Policy explains how we collect, use, store, share, and protect your information, as well as the rights you may exercise. By using the App, you indicate that you have read and agreed to this policy.
This App is provided and managed by independent developer Zhao Yang, who is responsible for personal information processing.
This App is intended for recording and reflection and does not constitute medical advice, diagnosis, or treatment services.
1. Scope
This policy applies to the personal information processing activities that occur when you use the "That Day" iOS client. If you access third-party websites or services (e.g., Apple, cloud service provider pages), their processing behavior is subject to their own privacy policies.
2. Information We Process
We only process information to the extent necessary to provide the features:
1) Information you actively provide
- Diary content and text input (e.g., content you enter in the App)
- Media content (photos, videos, voice recordings, etc., and related metadata)
- Content data such as tags, moods, keywords, and notes
- Text you actively submit for analysis in AI features
2) Device and Usage Information
- Device model, system version, App version, crash and performance information
- Feature usage events (e.g., page visits, feature clicks, session statistics, etc.)
- This data may be processed through Firebase Analytics / Firebase Performance
3) Subscription and Payment Information
- We provide subscription capabilities through Apple In-App Purchase
- We do not directly collect your full payment information such as credit card numbers
- We may process necessary information returned by Apple such as subscription status, order/receipt validation results, etc.
4) System Permission Related Data (only when authorized and used by you)
- Camera, Photos (for importing, capturing, and saving media)
- Microphone, Speech Recognition (for voice recording and transcription)
- Location Information (during use, for location recording and related experiences)
- Health Data (HealthKit, requires your explicit authorization in the system, used for mood recording, etc.)
- Notification Permission (for reminder features)
- Biometrics (Face ID/Touch ID) for local unlocking
3. How We Use Your Information
We use information for the following purposes:
- Providing core features (recording, reviewing, searching, reminders, importing/exporting, etc.)
- Providing AI-related capabilities (summarization, insights, keywords, etc.)
- Providing subscription and entitlement verification
- Product improvement, troubleshooting, performance optimization, and security protection
- Fulfilling legal obligations, handling disputes, and preventing risks
4. AI Features and Data Description (Important)
When you use AI features, we will provide clear notice within the product and seek your consent when necessary. After you initiate an AI analysis:
- The text content you select for analysis will be sent to third-party AI services or our AI gateway for processing
- The processing purpose is limited to generating results such as summaries, insights, and keywords
- We will not use this data for advertising, marketing, or sale
- For the current AI analysis input, we will not store it long-term in its original input form for purposes other than that analysis (if there are log or compliance retention needs, it will be minimized and time-limited)
- You can refuse AI-related data processing and continue to use non-AI features
- If you have configured a custom AI provider in the App (e.g., by filling in your own API Key), the relevant requests will be sent directly to that provider according to your configuration, and you should also comply with their privacy policy and terms of service
5. Legal Basis (Applicable to GDPR and other regions)
If you are located in the EU/UK, our legal basis for processing information includes:
- Performance of a contract: Providing you with core App features
- Your consent: For example, health data, notifications, specific AI processing, etc.
- Legitimate interests: Improving product stability and security (provided it does not override your rights and interests)
- Legal obligations: Fulfilling regulatory, auditing, tax, and other requirements
You can withdraw consent-based processing at any time (without affecting the lawfulness of processing before withdrawal).
6. How We Share Information
We do not sell your personal information. We only share necessary data in the following scenarios:
- Apple: For subscription payments, system services (e.g., iCloud/CloudKit, notifications, etc.)
- Google Firebase: For analysis, performance monitoring, and stability improvement
- AI service providers: For completing AI analysis requests triggered by you
- Legal disclosure: Under laws, regulations, regulatory or judicial requirements
- Corporate transactions: In the event of a merger, reorganization, etc., your rights will be protected according to law
We require service providers to process data only to the extent necessary and to take reasonable security measures.
7. Cross-border Transfer
Given the technical architecture and distribution of service providers, your data may be processed outside your country/region. We will take corresponding safeguard measures (such as standard contractual clauses, vendor compliance commitments, etc.) under applicable law requirements.
8. Data Retention Period
We only retain data for the period necessary to achieve the purpose:
- Your content data in the App: Generally retained until you delete or cancel (if applicable)
- Subscription/transaction-related records: Retained according to tax, financial, auditing, or legal requirements
- Analysis and performance data: Retained according to service provider configuration and the principle of minimum necessity
- Backup data (e.g., iCloud): Follows Apple platform mechanisms and your account settings
After the necessary period, we will delete or anonymize the relevant data.
9. Your Rights
Under applicable law, you may enjoy the following rights:
- Access, correct, and delete your personal information
- Restrict or object to specific processing
- Data portability
- Withdraw consent
- Lodge a complaint with a regulatory authority
You can submit requests through the contact information at the end of this policy. We will respond within the timeframe required by law.
10. US California User Supplemental Notice (CCPA/CPRA)
If you are a California resident, you may enjoy:
- Right to know, right to access, right to correct, right to delete
- Right to limit the use of sensitive personal information (if applicable)
- Right to opt-out of "sale/sharing" (if applicable)
We do not sell your personal information. If it constitutes "sharing" under the legal definition, we will provide corresponding selection mechanisms and respect your choice.
11. Security Measures
We take reasonable administrative, technical, and physical measures to protect information security, including but not limited to access control, transmission protection, the principle of least privilege, and security auditing. However, please understand that no network transmission or storage can guarantee absolute security.
12. Third-party Services and Links
This service may contain links to third-party websites or services (e.g., privacy policy pages, payment management pages, etc.). Third parties have their independent privacy policies, and we recommend you review their terms; we are not directly responsible for third-party actions.
13. Policy Updates
We may update this policy according to product iterations or legal requirements. After updates, prompts will be provided through the official website or within the App in an appropriate manner, and the "Last Updated" date will be updated. Significant changes will be additionally notified or consent will be sought according to law.
14. Contact Us
To exercise your privacy rights, submit data access/correction/deletion requests, or inquire about privacy-related issues, please contact:
norasun@gmail.com
15. Other Information
- Permissions are triggered by scenario, and no pre-collection unrelated to functions is made
- AI features provide advance notice and opt-out options
- Subscription features are implemented through Apple IAP and provide restore purchase and subscription management entries
- Privacy Policy and Terms of Service are accessible within the App
Regional Supplements
EU/EEA/UK
You may exercise rights of access, correction, deletion, restriction, objection, portability, etc., according to law, and may lodge a complaint with your local data protection regulator.
United States (including California)
We do not sell personal information. You may request information, deletion, and correction according to law; where applicable, you can request to limit the use of sensitive information.
Mainland China
We follow the principles of lawfulness, legitimacy, and necessity in processing personal information. For sensitive information (e.g., location, health, biometrics), we take separate authorization and protection measures. You can request to view, copy, correct, delete, and withdraw consent according to law.
Brazil
You can request confirmation of processing, access, correction, deletion, anonymization, and portability according to law.