Privacy Policy
Effective Date: April 2026
Override ("we", "us", "the app") is committed to protecting your privacy. This privacy policy explains how we collect, use, and safeguard your information.
Key Principle: Override is designed with a privacy-first architecture. Your sensitive data stays on your device, encrypted and under your control. We do not sell your data. We do not use it for advertising.
1. Information We Collect
1.1 Data Stored Locally on Your Device
The following data is stored only on your device using local encrypted storage. It is never transmitted to our servers:
- Streak and recovery progress data
- Onboarding quiz answers (dependency history, triggers, goals)
- Pledge person name and relationship
- Journal entries
- Notification preferences
- Badge and achievement data
Sensitive data (triggers, pledge person information, dependency history) is encrypted with AES-256 encryption before storage. Encryption keys are stored in the iOS Keychain or Android Keystore, managed by your device's operating system.
1.2 Data Processed by Third Parties
- Subscription status: Managed by RevenueCat. RevenueCat processes your purchase through Apple App Store or Google Play. We receive only your subscription status (active/inactive) and anonymous user ID. See RevenueCat's Privacy Policy.
- AI Coach conversations: When you use the AI Coach feature, your messages are sent to our server (Firebase Cloud Functions), which forwards them to Anthropic's Claude API to generate responses. Anthropic processes these messages to provide coaching responses only; they do not use your data for model training. Conversation history is stored locally on your device and is not retained on our servers. See Anthropic's Privacy Policy.
- Anonymous analytics: In future versions, we may use Firebase Analytics to understand app usage patterns. All analytics data is anonymized and cannot be linked to your identity.
1.3 Data We Do NOT Collect
- Browsing history
- Photos or camera data (camera is used only in real-time for the self-confrontation exercise; no images are saved or transmitted)
- Location data
- Contacts
- Personal identification information (name, email, phone number)
- Content blocker activity logs
2. How We Use Your Information
- To provide recovery tracking features within the app
- To verify your subscription status
- To send local notifications based on your preferences
- To improve the app experience through anonymized analytics (future)
3. Data Sharing
We do not sell, rent, or share your personal data with third parties for advertising or marketing purposes. Data is shared only with:
- RevenueCat: For subscription management (anonymous transaction data only)
- Apple / Google: For processing in-app purchases through their respective app stores
4. Data Security
- Sensitive data is encrypted with AES-256-CBC before local storage
- Encryption keys are stored in the OS-level secure enclave (iOS Keychain / Android Keystore)
- AI Coach messages are transmitted over HTTPS to our secure server; no API keys are stored on your device
- The Content Blocker extension runs entirely on-device using Safari's built-in content blocking framework
5. Data Deletion
You can delete all your data at any time from Settings > Delete All Data within the app. This will:
- Erase all local data from your device
- Delete encryption keys from secure storage
- Reset the app to its initial state
To cancel your subscription, use the standard Apple App Store or Google Play subscription management.
6. Children's Privacy
Override is intended for users aged 18 and older. We do not knowingly collect data from users under 18. The app includes an age verification step during onboarding that prevents minors from using the app.
7. GDPR and APPI Compliance
Under the EU General Data Protection Regulation (GDPR) and the Japanese Act on Protection of Personal Information (APPI), you have the right to:
- Access your data (all data is viewable within the app)
- Delete your data (via Settings > Delete All Data)
- Data portability (data is stored locally on your device)
8. Changes to This Policy
We may update this privacy policy from time to time. We will notify you of any material changes through an in-app notification. Continued use of the app after changes constitutes acceptance of the updated policy.
9. Contact
If you have questions about this privacy policy, contact us at: dorelist00@gmail.com
プライバシーポリシー
施行日: 2026年4月
Override(以下「本アプリ」「当社」)は、お客様のプライバシー保護に努めています。本プライバシーポリシーは、当社がお客様の情報をどのように収集・利用・保護するかを説明するものです。
基本方針: Override はプライバシーファーストの設計思想で構築されています。お客様の機密データは端末上に暗号化して保存され、お客様自身の管理下に置かれます。当社がお客様のデータを販売したり、広告目的で使用することは一切ありません。
1. 収集する情報
1.1 端末にローカル保存されるデータ
以下のデータは、ローカルの暗号化ストレージを使用してお客様の端末にのみ保存されます。当社のサーバーに送信されることはありません:
- ストリーク(連続記録)および回復進捗データ
- オンボーディングの回答(依存歴、トリガー、目標)
- 誓約の相手の名前と関係
- ジャーナル(日記)エントリ
- 通知設定
- バッジおよび実績データ
機密データ(トリガー、誓約の相手の情報、依存歴)は保存前に AES-256 暗号化が適用されます。暗号化キーは iOS Keychain または Android Keystore に保存され、端末のオペレーティングシステムが管理します。
1.2 第三者が処理するデータ
- サブスクリプション状態: RevenueCat が管理します。RevenueCat は Apple App Store または Google Play を通じて購入を処理します。当社が受け取るのは、サブスクリプションの状態(有効/無効)と匿名ユーザー ID のみです。RevenueCat のプライバシーポリシーをご参照ください。
- AI コーチの会話: AI コーチ機能をご利用の際、お客様のメッセージは当社のサーバー(Firebase Cloud Functions)に送信され、Anthropic の Claude API に転送されて応答が生成されます。Anthropic はコーチング応答の生成のみを目的としてメッセージを処理し、モデルの学習にお客様のデータを使用することはありません。会話履歴はお客様の端末にローカル保存され、当社のサーバーには保持されません。Anthropic のプライバシーポリシーをご参照ください。
- 匿名分析: 将来のバージョンでは、Firebase Analytics を使用してアプリの利用パターンを把握する場合があります。すべての分析データは匿名化されており、お客様の身元と結び付けることはできません。
1.3 収集しないデータ
- 閲覧履歴
- 写真やカメラデータ(カメラはセルフコンフロンテーションのリアルタイム表示のみに使用され、画像は保存・送信されません)
- 位置情報
- 連絡先
- 個人を特定する情報(氏名、メールアドレス、電話番号)
- コンテンツブロッカーのアクティビティログ
2. 情報の利用目的
- アプリ内の回復トラッキング機能の提供
- サブスクリプション状態の確認
- お客様の設定に基づくローカル通知の送信
- 匿名分析によるアプリ体験の改善(将来)
3. データの共有
当社は、広告やマーケティング目的で第三者にお客様の個人データを販売、貸与、共有することは一切ありません。データは以下の場合にのみ共有されます:
- RevenueCat: サブスクリプション管理のため(匿名の取引データのみ)
- Apple / Google: 各アプリストアを通じたアプリ内課金の処理のため
4. データセキュリティ
- 機密データはローカル保存前に AES-256-CBC で暗号化されます
- 暗号化キーは OS レベルのセキュアエンクレーブ(iOS Keychain / Android Keystore)に保存されます
- AI コーチのメッセージは HTTPS で安全なサーバーに送信されます。API キーが端末に保存されることはありません
- コンテンツブロッカー拡張機能は Safari の組み込みコンテンツブロッキングフレームワークを使用し、完全に端末上で動作します
5. データの削除
アプリ内の設定 > すべてのデータを削除から、いつでもすべてのデータを削除できます。これにより:
- 端末上のすべてのローカルデータが消去されます
- セキュアストレージから暗号化キーが削除されます
- アプリが初期状態にリセットされます
サブスクリプションのキャンセルは、Apple App Store または Google Play の標準的なサブスクリプション管理機能をご利用ください。
6. 児童のプライバシー
Override は18歳以上のユーザーを対象としています。当社は18歳未満のユーザーからデータを故意に収集することはありません。アプリにはオンボーディング時の年齢確認ステップが含まれており、未成年者の利用を防止しています。
7. GDPR および個人情報保護法への準拠
EU 一般データ保護規則(GDPR)および日本の個人情報保護法(APPI)に基づき、お客様には以下の権利があります:
- データへのアクセス(すべてのデータはアプリ内で閲覧可能)
- データの削除(設定 > すべてのデータを削除から実行可能)
- データポータビリティ(データはお客様の端末にローカル保存されています)
8. 本ポリシーの変更
当社は本プライバシーポリシーを随時更新する場合があります。重要な変更がある場合は、アプリ内通知でお知らせします。変更後もアプリを継続してご利用いただくことで、更新されたポリシーに同意したものとみなされます。
9. お問い合わせ
本プライバシーポリシーに関するご質問は、dorelist00@gmail.com までご連絡ください。