Keichapp Lab (hereinafter referred to as “we”, “us”, or “our”) develops and provides the app (hereinafter referred to as “the App”) and the services provided by the App (hereinafter referred to as “the Service”), which is an ad-supported application.
This page (hereinafter referred to as “this Page”) is used to inform visitors regarding our policies with the collection, use, and disclosure of Personal Information if anyone decided to use our Service.
If a user chooses to use our Service, then the user agrees to the collection and use of information in relation to this policy. The Personal Information that we collect is used for providing and improving the Service. We will not use or share the user’s information with anyone except as described in this Privacy Policy (hereinafter referred to as “this Policy”).
The terms used in this Policy have the same meanings as in our Terms and Conditions, which is accessible at the App unless otherwise defined in this Policy.
Please note that the original text of this policy is written in Japanese. In the event of any discrepancy in meaning or nuance in translations into other languages, the original Japanese text shall prevail.
Information Collection and Use
We collect information for the purposes of application and marketing analysis and improvement, backing up and syncing your data, sharing within groups, and subscription management. Also, the App uses third-party services that may collect information used to identify the user.
Link to the privacy policy of third-party service providers used by the App:
- Google AdMob
- Google Analytics for Firebase
- Google Gemini API
- Firebase App Check
- Firebase Authentication
- Firebase Cloud Functions
- Firebase Cloud Storage
- Firebase Crashlytics
- Firebase Firestore
- Sign in with Apple
- RevenueCat
When using the AI-powered sorting feature, the information you enter is sent to and processed by Google’s Gemini API. This data is used solely for the purpose of providing this feature and is not stored as personally identifiable information.
Google AdMob
To serve ads to users, we primarily collect the following information. The information collected differs depending on the type of ads displayed (personalized or non-personalized). On iOS, personalized ads are displayed only if the user permits tracking.
- Information collected for personalized ads:
- Advertising ID: A user-resettable, unique ID assigned to the device for advertising purposes (IDFA for iOS, AAID for Android).
- App usage history: Such as in-app activity history used to infer user interests.
- Ad interactions: History such as ad impressions and clicks.
- Approximate location: Regional information estimated from the IP address.
- Device information: Such as device model, OS, and language settings.
- Information collected for non-personalized ads:
- Contextual information: Information used to serve ads based on the app’s content rather than user behavior.
- Approximate location: Regional information estimated from the IP address.
- Technical information: IP addresses and other data may be used for frequency capping and fraud prevention, but Advertising IDs are not used.
Google Analytics for Firebase
To analyze app usage and help improve our services and user experience, we primarily collect the following information:
- Usage Information
- App launches, session duration, and screen views: Which screens were viewed and how often.
- Button taps and UI interaction history: Such as which buttons were pressed or which settings were changed.
- Information on events: such as the number of times items and lists are created, edited, or deleted.
- Details of errors that occurred: Errors that do not result in a crash.
- Device Information
- Device language settings and country.
- Device model and OS version.
- User Information
- App mode: Information such as release version or development version.
- App version.
- A unique ID generated for each app installation.
- Device language.
- Subscription status.
Google Gemini API
When using the AI-powered sorting feature, the entered information is sent to and processed by Google’s Gemini API. This data is used solely for the purpose of providing this feature and is not stored as personally identifiable information (PII).
Firebase App Check
We collect the following information to prevent unauthorized calls and maintain the secure operation of our APIs.
- Information Collected
- Device integrity data (technical information used to verify that the device is authentic and that the app has not been tampered with, etc.)
- Purpose of Use
- To prevent unauthorized API access and resource abuse by third parties.
Firebase Authentication
We collect and use the following information to identify users, manage accounts, and manage feature usage limits.
- Information Collected
- User ID (UID)
- If you sign in: the authentication method used (Google account / Apple account), your email address, and the account creation and last sign-in timestamps.
- Purpose of Use
- To identify individual users and accurately apply usage limits (quotas) for AI features.
- To store the data of signed-in users in the cloud and sync it across multiple devices.
- To identify members in group sharing.
If you use the App without signing in, anonymous authentication is used, and no personally identifiable information such as an email address is collected.
Signing In with a Google or Apple Account
The sign-in feature uses authentication with a Google account or an Apple account.
- Information Collected
- Google account: email address, name or display name, and profile image URL.
- Apple account: email address (if you choose “Hide My Email,” the relay address generated by Apple), and name (if you provide one).
- Purpose of Use
- To verify your identity and to create or restore your account.
We never obtain the password you use for these services.
Firebase Cloud Storage
We store and use the following information to keep images registered while you are signed in.
- Information Stored
- Images attached to notes.
- Images attached to feedback submissions.
- Purpose of Use
- To store data including images in the cloud and display it across your devices and among group members.
If you are not signed in, note images are stored only on your device and are never sent to the cloud.
Firebase Cloud Functions
We use Cloud Functions for server-side processing, such as creating and joining groups, deleting accounts, running AI features, and submitting feedback.
- Information Collected
- The request content necessary to run the operation, and logs of the results.
- Purpose of Use
- To provide features, prevent abuse, and investigate the cause of incidents.
When a user ID is recorded in the logs, it is hashed so that it cannot directly identify an individual.
Firebase Crashlytics
When the app crashes (force closes), we primarily collect the following information to identify the cause and improve app stability:
- Device state at the time of the crash:
- OS version and device model.
- Free RAM and disk space.
- Whether the app was in the background, screen orientation, etc.
- Crash Information
- The section of code that caused the crash (stack trace).
- A unique ID to understand the number of users affected by the crash.
Firebase Firestore
We collect and use the following information to identify users, manage usage limits for specific features, and store the data of signed-in users.
- Collected Information
- Date and time of feature use, usage count, and user settings.
- If you sign in: your user name, information about the groups you belong to (group name, member list, owner), and the content of the checklists, items, notes, and AI sorting rules you create in the App.
- Device information (device model, OS version, app version, language setting) and the date of last use.
- Purpose of Use
- To record usage status and to store and manage user data.
- To sync data across multiple devices and among group members.
RevenueCat
For the purpose of managing subscriptions, we primarily collect the following information:
- Purchase-related Information
- The user’s purchase history (such as purchased items, date and time of purchase, expiration date, etc.)
- Anonymous ID
- A random, non-personally identifiable identifier automatically generated by RevenueCat.
User-Created Content and Group Sharing
Checklists, items, and notes (text and images) that you create in the App are stored only on your device if you are not signed in. If you sign in, this data is stored in the cloud (Firebase Firestore and Firebase Cloud Storage) and synced to every device signed in with the same account.
If you belong to a group, the checklists, items, notes, images, and sorting rules belonging to that group can be viewed, edited, and deleted by every member of the group. The member list also shows each member’s user name and the date they joined. Please take care not to store information you do not want other members to see in data that is shared with a group.
We do not use user-created content for any purpose other than providing the Service (storage, syncing, sharing, and incident response), and we do not provide it to third parties.
Group Invitations
Group invitations use a 6-digit invitation code. Invitation codes expire 24 hours after they are issued. An invitation code contains information identifying the group it was issued for and its expiration time.
Feedback
When you send feedback from “Feedback” in the App, we collect the following information.
- Information Collected
- The message you enter.
- An attached image (optional).
- Your user ID (UID).
- Your device model, OS version, app version, and app language setting.
- Purpose of Use
- To review the content of your feedback, investigate bugs, and improve the Service.
There is no need to include personal information such as your name, address, or phone number in your message. Any information you choose to enter is used only for the purposes described above.
Log Data
We want to inform users that whenever they use our Service, in a case of an error in the App we collect data and information (through third-party products) on their phone called Log Data. This Log Data may include information such as the user’s device Internet Protocol (“IP”) address, device name, operating system version, the configuration of the App when utilizing our Service, the time and date of the use of the Service, and other statistics.
Cookies
Cookies are files with a small amount of data that are commonly used as anonymous unique identifiers. These are sent to the user’s browser from the websites that the user visits and are stored on their device’s internal memory.
This Service does not use these “cookies” explicitly. However, the App may use third-party code and libraries that use “cookies” to collect information and improve their services. The user has the option to either accept or refuse these cookies and know when a cookie is being sent to their device. If the user chooses to refuse our cookies, they may not be able to use some portions of this Service.
Service Providers
We may employ third-party companies and individuals due to the following reasons:
- To facilitate our Service;
- To provide the Service on our behalf;
- To perform Service-related services; or
- To assist us in analyzing how our Service is used.
We want to inform users of this Service that these third parties have access to their Personal Information. The reason is to perform the tasks assigned to them on our behalf. However, they are obligated not to disclose or use the information for any other purpose.
Transfer of Information in a Business Succession
If we transfer the business related to the Service to a third party (whether by business transfer, corporate split, merger, or any other cause), we may transfer your information to the successor as part of that transfer. In such a case, we will require the successor to handle the information at a standard equivalent to this Policy.
Security
We value the user’s trust in providing us with their Personal Information, thus we are striving to use commercially acceptable means of protecting it. But remember that no method of transmission over the internet, or method of electronic storage is 100% secure and reliable, and we cannot guarantee its absolute security.
Links to Other Websites
This Service may contain links to other sites. If a user clicks on a third-party link, they will be directed to that site. Note that these external sites are not operated by us. Therefore, we strongly advise users to review the Privacy Policy of these websites. We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party sites or services.
Data Retention
We retain your personal information for the period necessary to provide and improve our services and to comply with our legal obligations. The specific retention period varies depending on the type of information and the purpose of its use, but the information will be promptly deleted or anonymized once the purpose of use has been fulfilled.
- Event data collected by Firebase Analytics: automatically deleted 14 months after collection.
- Account information and user-created content: retained until you delete your account. When you delete your account, your account information, the content you created, and the images you stored are deleted.
- Invitation codes: expire 24 hours after they are issued.
- Feedback content and attached images: retained for the period necessary to respond and to prevent the recurrence of similar problems. When you delete your account, the images attached to your feedback are deleted as well.
- Account deletion audit records: we may retain records such as the date and time a deletion was performed, in a form that does not directly identify an individual, in order to respond to unauthorized deletions and other issues.
Please note that data shared with a group remains as the data of the remaining members after you leave the group or delete your account, as long as other members remain in that group.
Your Privacy Rights Under the California Consumer Privacy Act (CCPA/CPRA)
This section applies to users who are residents of California, based on the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA).
Users who are residents of California are granted the following rights regarding their personal information.
- Right to Know: The right to request disclosure of the categories of personal information we have collected about you, the sources from which the personal information is collected, the purpose for collecting, selling, or sharing personal information, and the categories of third parties to whom we disclose, sell, or share personal information.
- Right to Delete: The right to request the deletion of your personal information that we have collected, subject to certain exceptions.
- Right to Correct: The right to request the correction of inaccurate personal information that we maintain about you.
- Right to Opt-Out of Sale or Sharing: We do not sell your personal information for monetary consideration. However, advertising services such as Google AdMob used in this app may collect and use online identifiers like Advertising IDs for the purpose of displaying cross-context behavioral advertising (targeted advertising based on your interests). This may be considered a “sale” or “sharing” of information under the CPRA.
- Right to Limit Use and Disclosure of Sensitive Personal Information: We do not intentionally collect or use sensitive personal information as defined by the CPRA (such as precise geolocation, race, religion, genetic data, etc.).
- Right to Non-Discrimination: The right not to receive discriminatory treatment for exercising your rights under the CPRA.
Handling of Sensitive Personal Information
We do not intentionally collect sensitive personal information as defined by the CPRA (such as racial or ethnic origin, religious beliefs, genetic data, precise geolocation, etc.).
How to Exercise Your Rights
Right to Know, Delete, and Correct
You can exercise most of these rights at any time from within the App.
- Obtaining your data (data portability): Go to “Settings” → “About this app” → “Export data” to export the data stored in the App as a ZIP file.
- Deleting your data: While signed in, go to “Settings” → “Users & Groups” → “Delete account” to delete your account and all data associated with it. If you are not signed in, go to “Settings” → “About this app” → “Delete all data” to delete the data on your device.
- Correcting your data: Your user name and the content stored in the App can be edited at any time within the App.
If you wish to exercise these rights by other means, please contact us through our Contact Form . We may ask for additional information to verify your identity.
Right to Opt-Out of Sale or Sharing
If you wish to stop the “sale” or “sharing” of your personal information for personalized advertising, please use one of the following methods. This will enable Google’s Restricted Data Processing (RDP) and stop the delivery of personalized ads.
- In-App Settings
- You can change your opt-out settings at any time from “Settings” → “About this app” → “Advertising Consent Settings.” The same form can also be opened from “Do Not Sell or Share My Personal Information” at the bottom of the “Settings” screen.
- These entries are shown only in regions where a consent form is required, including California.
- Device Settings
- iOS: Go to “Settings” > “Privacy & Security” > “Tracking” and turn off “Allow Apps to Request to Track.”
- Android: Go to “Settings” > “Privacy” > “Ads” and select “Delete advertising ID.” (The path may vary depending on the OS version.)
Your Rights in the European Economic Area (EEA) and the United Kingdom (GDPR)
This section applies to users residing in the European Economic Area (EEA), the United Kingdom, and Switzerland.
Legal Bases for Processing
- Performance of a contract: to provide the features you have requested, such as account management, cloud storage and syncing of your data, and group sharing.
- Legitimate interests: to prevent abuse, operate the Service securely, investigate incidents, and improve the Service.
- Consent: for delivering personalized ads and sending usage data and crash reports. You can withdraw your consent at any time from the settings in the App.
- Compliance with legal obligations: where the retention or disclosure of information is required by law.
Your Rights
You have the right to request access, rectification, erasure, restriction of processing, and data portability, to object to processing, and to withdraw your consent. Access and data portability can be exercised at any time via “Export data” in the App, and erasure via “Delete account” or “Delete all data.” For other rights, please contact us through our Contact Form .
You also have the right to lodge a complaint with the data protection supervisory authority in your country.
International Transfers
Because the Service uses third-party services including Google (Firebase), your information may be stored and processed on servers in countries other than your country of residence, including Japan. For such transfers, we rely on appropriate safeguards established by each service provider, such as Standard Contractual Clauses (SCCs).
Children’s Privacy
These Services do not address anyone under the age of 16. We do not knowingly collect personally identifiable information from children under 16. When you first launch the App, we ask you to confirm that you are 16 years of age or older in certain regions (all regions except Japan and South Korea). In the case we discover that a child under 16 has provided us with personal information, we immediately delete this from our servers. If you are a parent or guardian and you are aware that your child has provided us with personal information, please contact us so that we will be able to do the necessary actions.
Changes to This Privacy Policy
We may update our Privacy Policy from time to time. Thus, users are advised to review this page periodically for any changes. We will notify users of any changes by posting the new Privacy Policy on this page.
Contact Us
If you have any questions or suggestions about our Privacy Policy, do not hesitate to contact us through our contact form .
Last updated: August 14, 2026