Privacy Policy / プライバシーポリシー
最終更新: 2026-07-13
日本語
本プライバシーポリシーは、「つづきみ」(以下「本アプリ」といいます)におけるユーザー情報の取扱いを説明するものです。
本アプリは、ローカルファーストで動作します。ユーザーが登録した作品名、配信サービス名、配信予定、視聴済み履歴、MY評価、通知設定、着せ替え設定、アプリアイコン設定、Humationアバターseed、ニックネーム、メール入力値などは、原則としてユーザーの端末内またはブラウザの保存領域に保存されます。ユーザーが任意でアカウントにサインインし、同期を有効にした場合のみ、複数端末で閲覧・編集できるようにするため、同期対象データがSupabaseへ送信・保存されます。
本アプリは、これらの情報を、視聴予定の管理、通知候補の作成、視聴履歴の表示、アチーブメント判定、着せ替えやアプリアイコン報酬の解放、設定の保存、画面表示の最適化、問い合わせ対応、エラー調査のために利用します。
アカウント同期を利用する場合、本アプリはメールアドレス、ユーザーID、作品情報、視聴済み状態、MY評価、お気に入り、表示設定、着せ替え、アプリアイコン設定、Humationアバターseedなど、複数端末で共有するために必要な情報をSupabaseに保存します。通知予約ID、通知権限状態、端末内画像URIなど、端末ごとの値は同期しません。ユーザー追加サービスの画像は、現時点では端末内保存を基本とし、クラウド同期対象にはしません。
通知機能を利用する場合、本アプリはOSまたはブラウザの通知機能に、通知タイトル、本文、通知時刻、通知音、振動設定などを渡す場合があります。通知権限は、端末またはブラウザの設定から変更できます。通知の表示可否や正確性は、端末設定、OS仕様、省電力設定、ブラウザ仕様などの影響を受ける場合があります。
作品名補完を利用する場合、ユーザーが入力した検索語句と選択中ジャンルに応じて、AniList、TVmaze、TMDB、Wikidata、Wikipediaなどの公開APIへ検索語句が送信される場合があります。検索結果には、作品名、話数、公開日、放送予定、その他公開情報が含まれる場合があります。
クラッシュまたは処理済みエラーの診断情報は、開発者がSentryのDSNを設定したビルドでのみ送信されます。送信対象には、エラー内容、スタックトレース、端末やOSの基本情報、アプリバージョン、発生時刻などの診断情報が含まれる場合があります。本アプリでは、Sentryの初期化時に標準の個人情報送信を無効にし、パフォーマンストレースは送信しない設定にしています。
本アプリは、広告を表示するためGoogle Mobile Ads SDK(AdMob)を使用します。初回チュートリアル中を除き、アプリを開いた際に閉じられる広告カード、対応画面では下部ナビゲーションの直上にバナー広告を表示する場合があります。広告の配信、表示回数の管理、不正防止、測定のため、Googleまたはその広告パートナーがIPアドレス、端末識別子、広告の表示・操作情報、アプリの診断・パフォーマンス情報を処理する場合があります。実際に処理される情報と利用目的は、配信される広告、地域、同意設定により異なります。
法令上同意またはオプトアウトの選択肢が必要な地域では、GoogleのUser Messaging Platformを通じて選択画面を表示します。選択の見直しが必要な場合は、設定の「広告のプライバシー設定」から開けます。iOSでは、本アプリ自身はApp Tracking Transparencyの許可要求を行いません。広告SDKに関するストア上のデータ開示は、SDK提供者の最新資料と実際の設定に合わせて行います。
本アプリが外部へ送信する可能性のある情報は、主に作品名補完利用時の検索語句、OSまたはブラウザ通知に渡される通知内容、アカウント同期利用時にSupabaseへ保存される同期対象データ、Google Mobile Ads SDKを通じて広告配信に必要となる広告・端末・操作・診断情報、Sentry有効ビルドでのエラー診断情報です。
端末内に保存されたデータは、ユーザーがアカウント画面の「この端末のデータを削除」、作品削除、設定変更、端末側のアプリ削除またはブラウザデータ削除を行うことで削除できます。「この端末のデータを削除」は、その端末のローカルデータとアプリが管理する通知を対象とし、同期アカウントやクラウド上の同期データは削除しません。
同期アカウントを利用しているユーザーは、アカウント画面の「同期アカウントを削除」から、当該アカウントとクラウド上の同期データの削除を依頼できます。本アプリは、クラウド側の削除完了を確認してから、その端末のローカルデータを削除します。通信エラーなどで削除完了を確認できない場合、端末のローカルデータは削除されず、再試行できます。OSのバックアップ機能により、端末内データがiCloud、Googleバックアップ、ブラウザ同期などの対象になる場合があります。これらの管理は各OS、ブラウザ、アカウント設定に従います。
本アプリは、送信するデータを必要最小限に抑え、外部通信には原則としてHTTPSを利用します。ただし、端末自体の管理、OSアカウント、ブラウザ、外部サービスのセキュリティについては、各提供者の設定と利用条件に従います。
ユーザーは、保存データの削除、プライバシーに関する質問、将来アカウント機能が追加された場合のアカウント削除やクラウド側データ削除について、アプリ内の公式リンクまたは公開サポートページから連絡できます。
開発者は、機能変更、外部サービス仕様変更、法令またはストア要件への対応のため、本ポリシーを変更することがあります。重要な変更がある場合は、アプリ内、公式サイト、配布ページ、またはその他適切な方法で告知します。
English
This Privacy Policy explains how Tsudukimi handles user information.
The app is local-first. Titles, service names, release schedules, watch history, MY ratings, notification settings, theme settings, app icon settings, Humation avatar seeds, nicknames, email input values, and related data are generally stored on the user's device or in the browser storage area. Only when the user chooses to sign in and enable sync, data needed for viewing and editing across devices is sent to and stored in Supabase.
The app uses this information to manage watch schedules, create notification candidates, show watch history, evaluate achievements, unlock themes and app icon rewards, save settings, optimize screen display, respond to inquiries, and investigate errors.
When account sync is used, the app stores information necessary for multi-device use in Supabase, such as email address, user ID, titles, watched status, MY ratings, favorites, display settings, themes, app icon settings, and Humation avatar seeds. Device-specific values such as scheduled notification IDs, notification permission state, and local image URIs are not synced. User-added service images are currently treated as local device data and are not synced to the cloud.
When notifications are enabled, notification titles, bodies, times, sounds, and vibration settings may be passed to the operating system or browser notification feature. Notification permission can be changed in system or browser settings. Delivery and timing may be affected by device settings, OS behavior, power saving settings, and browser behavior.
When title assist is used, the search query and selected genre may be sent to public APIs such as AniList, TVmaze, TMDB, Wikidata, or Wikipedia. Search results may include public information such as titles, episode counts, release dates, airing schedules, and related metadata.
Crash and handled-error diagnostics are sent only in builds where the developer configures a Sentry DSN. They may include error details, stack traces, basic device and OS information, app version, and event time. The app disables Sentry's default PII sending and does not send performance traces.
The app uses the Google Mobile Ads SDK (AdMob) to display advertising. Except during the first-run tutorial, it may show a dismissible ad card when the app opens and a banner advertisement directly above the bottom navigation on supported screens. To serve ads, manage impressions, prevent fraud, and measure performance, Google or its advertising partners may process information such as IP address, device identifiers, ad display and interaction data, and app diagnostic or performance data. The information processed and its purpose vary by the ads served, region, and consent settings.
Where consent or an opt-out choice is required by law, the app presents the appropriate choice through Google's User Messaging Platform. When available, users can revisit that choice through Ad privacy settings in Settings. The app itself does not request App Tracking Transparency permission on iOS. Store privacy disclosures for the advertising SDK are maintained against the provider's current documentation and the actual configuration.
Information that may be sent externally is mainly search queries for title assist, notification content passed to the operating system or browser, sync data stored in Supabase when account sync is used, advertising, device, interaction, and diagnostic information required for ad delivery through the Google Mobile Ads SDK, and error diagnostics in Sentry-enabled builds.
Saved device data can be deleted by using Delete data on this device on the Account page, deleting items, changing settings, uninstalling the app, or clearing browser data. Delete data on this device removes local data and app-managed notifications on that device only; it does not delete a sync account or cloud-synced data.
Users with an active sync account can request deletion of that account and its cloud-synced data from Delete sync account on the Account page. The app confirms cloud deletion before removing the device's local data. If a network error prevents confirmation, local data remains available and the user can retry. Device data may also be included in iCloud, Google backup, or browser sync depending on OS, browser, and account settings.
The app minimizes transmitted data and generally uses HTTPS for external communication. Device security, OS accounts, browsers, and external services are governed by each provider's settings and terms.
Users can contact the developer about saved data deletion, privacy questions, and future account or cloud data deletion through the official links or public support page.
The developer may update this policy for feature changes, external service changes, legal requirements, or store requirements. Important changes will be announced in the app, official site, distribution page, or another appropriate method.