Privacy Policy
2026-08-21
신우철 ("the operator") takes your privacy seriously. This policy explains what the service collects, why, who processes it, and what you can ask us to do.
1. What we collect
At sign-up: email address, password (stored only as a hash — never in plain text), name (optional).
While using the service: notes, folders, tags and other content you create; attachments; usage records (sign-in times, AI usage).
Automatically: technical information for error diagnosis (browser and device type, where the error occurred).
Note: what you write may itself be sensitive. We do not use note content for advertising or profiling.
2. Why we use it
To authenticate you and provide the service (storing, searching and syncing notes).
To provide AI features — your notes are analysed to generate connections, insights and summaries. This sends note content to our AI processor (see §4).
To keep the service reliable (error diagnosis, abuse prevention).
3. Retention
We keep your data while your account exists, and delete it without undue delay when you delete your account.
Deleted notes can be restored from trash; permanent deletion destroys them immediately.
Records we are legally required to retain are kept for the required period.
4. Processors and international transfers
We use the processors below to run the service. All are located outside Korea (in the United States). Your note content is sent to OpenAI when AI features are used.
OpenAI — AI features (note content and titles are sent for analysis and generation) (USA)
Vercel — Hosting and deployment (USA)
Neon — Database (notes and accounts) (USA)
Cloudinary — Attachment and file storage (USA)
Resend — Verification and password reset emails (USA)
Sentry — Error monitoring (USA)
Ably — Realtime sync (USA)
Liveblocks — Character-level realtime collaboration (USA)
What, when, how: only the data needed for the purposes above, at the time you use the service, over encrypted connections.
5. Deletion
Deleting your account deletes your notes, folders, AI outputs and attachments. This cannot be undone.
Export your data first from Settings → Data (Markdown ZIP or JSON).
6. Your rights
You may request access, correction, deletion, or suspension of processing at any time.
Access and correction: directly in the app. Export: Settings → Data. Deletion: Settings → Account → Delete account.
For anything else, contact support@byeori.ai.
7. Security measures
Passwords are stored only as one-way hashes (bcrypt); the operator cannot read them.
All traffic is encrypted with HTTPS.
Sign-in attempts are rate limited to prevent brute force.
Changing or resetting your password invalidates every previously issued session.
8. Privacy contact
신우철 · support@byeori.ai
Please direct privacy questions, complaints or remedy requests to the address above.
9. Changes
We will announce changes in the service. Significant changes will be announced before they take effect.