Strofi

Privacy Policy

Last Updated
September 22, 2026
Effective Date
September 22, 2026
Privacy Policy Version
1.1
Data Controller and Operator
Jisung Kim
Privacy Contact
hello@strofi.app

Introduction

Strofi is a local-first macOS application that helps you remember, revisit, and connect the files, web pages, and app-based items you use while working.

This Privacy Policy applies to the Strofi macOS app and the services used to distribute and update the app (collectively, the Services). "Personal Data" and "personal information" mean information that identifies, relates to, or can reasonably be linked to an identified or identifiable individual. "Activity Data" means the locally processed activity metadata described in Section 1.A. Activity Data is separate from the Product Analytics described in Section 1.B.

Strofi does not require an account, and the operator does not maintain a Strofi account database or backend store for Activity Data. Strofi stores Activity Data on your Mac, not on Strofi's servers. If you enable Local MCP, software running on your Mac can request the activity information allowed by your sharing settings.

If Share Analytics is enabled, Strofi sends limited product-usage and technical analytics to Google Analytics for Firebase. These analytics are kept separate from your Activity Data and do not include document titles, app or service names from your activity, URLs, file paths, document contents, or your activity history.

The limited Product Analytics and Download and Update Request Data described in this policy may be processed through the third-party services identified below.

Before Activity Data collection begins on first launch, Strofi asks you to agree to the Terms of Use and acknowledge that you have reviewed this Privacy Policy. If you do not complete this step, collection does not begin and you cannot use Strofi. Share Analytics is controlled separately as described in Section 5.

1. Information Strofi Processes

Strofi obtains information in two ways: locally through macOS system APIs and permissions when you use supported items, and automatically through enabled analytics or the infrastructure that serves app downloads and updates. Activity Data obtained through macOS is processed locally and is not sent to Strofi.

A. Activity Data

To create your activity timeline, reopen previously used items, and recommend related items, Strofi may process the following information locally on your Mac:

  • App names and bundle identifiers
  • File, window, tab, and item titles
  • Item types, such as files, web pages, and app-based items
  • File paths, file URLs, full web URLs, deep links, and app-specific identifiers used to reopen an item
  • Known website or service classifications
  • Reopening availability and permission status
  • Start time, end time, and duration of an activity
  • The item used immediately before another item
  • Locally generated identifiers used to distinguish items
  • Relationships and recommendations derived from how items are used together

Strofi does not scan or index every file on your Mac. It records only supported items that you actually open or use in the foreground.

Strofi processes only the metadata described above. In particular, it does not access document bodies, screen contents, keyboard input, clipboard contents, or audio.

B. Product Analytics

Share Analytics is enabled by default. You can turn it off at any time in Strofi Settings.

When Share Analytics is enabled, Strofi may send the following information to Google Analytics for Firebase:

  • Strofi version, build number, and bundle identifier
  • Operating system, device type, language, and region
  • Firebase SDK-managed installation and session identifiers
  • Automatically collected Google Analytics events
  • Approved product-usage events
  • Coarse feature states, product-experiment assignments and results, and performance ranges
  • Technical network and SDK metadata required to operate the analytics service

Strofi does not include the following information in analytics events, parameters, or user properties:

  • Document, file, window, or tab titles
  • App names or third-party bundle identifiers
  • Website or service names
  • URLs, domains, file paths, or reopening information
  • Document contents
  • Search queries or assistant responses
  • Strofi resource identifiers or their hashes
  • Exact activity times, relationship scores, or recommendation evidence
  • Authentication credentials, tokens, or encryption keys

Strofi does not use advertising identifiers and does not connect Firebase Analytics to Google Ads or AdMob.

Strofi does not sell your information or use it for advertising or cross-context behavioral profiling.

C. Download and Update Request Data

Strofi distributes app downloads and updates through Cloudflare R2 at updates.strofi.app. When you request a download or update, Cloudflare may process basic request information, such as:

  • IP address
  • Browser or user-agent information
  • Requested file or path
  • Request date and time
  • Response status, traffic-routing, security, and error information

Strofi has not enabled the optional Cloudflare R2 Data Access Logs feature for the download bucket. Cloudflare R2 provides service metrics for up to 31 days. Depending on the query, these metrics may include operation type and status, bucket or object name, response status code, and request time, but do not expose the requester's IP address or user agent through the R2 metrics dataset.

D. Local Preference and Policy Records

Strofi stores app preferences and a local onboarding record showing that you accepted the Terms of Use and acknowledged the Privacy Policy. This record includes an onboarding record version and the completion time, but not separate versions of the two documents. Strofi does not ask for or store your age, date of birth, or identity document.

E. Local MCP

Local MCP is off by default. Once you turn it on, compatible software on the same Mac, including supported AI apps and other apps you configure, can request the activity information allowed by your settings. Strofi does not verify every receiving app, and that app may send the information to its AI provider.

2. How We Use Information

Strofi uses locally processed Activity Data to:

  • Build your activity timeline
  • Help you return to previously used items
  • Identify items that are commonly used together
  • Recommend items related to your current work
  • Maintain the reliability and security of local app features

When Share Analytics is enabled, Product Analytics is used to:

  • Understand whether Strofi features are being used
  • Identify broad reliability and performance issues
  • Improve navigation and product usability
  • Evaluate overall product quality
  • Support product planning and development through product experiments

Automated Processing and Recommendations

Strofi automatically analyzes the timing and sequence of Activity Data on your Mac to identify items used together and recommend items related to your current work. This processing occurs locally. These recommendations are assistive only and do not make decisions that produce legal or similarly significant effects concerning you.

3. Storage, Security, and Retention

Activity Data

Activity Data is stored locally on your Mac.

Sensitive metadata, including titles, file paths, full URLs, and app-specific reopening information, is encrypted using AES-GCM. Strofi uses keyed HMAC-SHA256 identifiers when calculating relationships so that the original values do not need to be used directly.

Activity Data remains on your Mac until you select Delete Activity History or Uninstall Strofi. Delete Activity History permanently deletes the locally stored activity events, work sessions, and resource metadata. Relationships and recommendations derived from those deleted records are no longer available. It does not delete app settings, the local record of your Terms of Use agreement and Privacy Policy acknowledgement, the favicon cache, metadata encryption keys, or Product Analytics previously sent to Google.

Uninstall Strofi first verifies that the app is an official Strofi installation in an allowed Applications folder and moves the app to the Trash. If the app cannot be moved to the Trash, Strofi does not begin local data cleanup. After a successful move, Strofi stops its local services and attempts to delete the Activity Data and its local database files, the favicon cache, login item, metadata encryption keys, Firebase Analytics data stored locally on the Mac, app settings, and local policy records. If any required cleanup step fails, Strofi reports that some local data could not be removed. Deleted local data cannot be recovered.

Neither action deletes Product Analytics previously sent to Google, Download and Update Request Data processed by the applicable provider, or activity information already provided through Local MCP. The receiving software and, if applicable, its AI provider determine how they use and retain that information.

Local Preference and Policy Records

These records remain locally on your Mac for as long as needed to apply your choices and retain your onboarding acknowledgement record. They are deleted when you select Uninstall Strofi.

Product Analytics

Strofi's Google Analytics property is configured to retain event-level analytics data for up to 14 months. The retention period for user-level identifier data resets with each new activity and expires 14 months after the user's most recent activity.

Strofi may also export approved analytics events to Google BigQuery in the Seoul region. Raw exported event tables are configured to expire after 14 months.

Google notes that its Analytics retention setting applies to user-level and event-level data and may not apply in the same way to standard aggregated reports. See Google Analytics data retention.

Download and Update Logs

Cloudflare R2 service metrics are retained for up to 31 days. Strofi has not enabled optional R2 Data Access Logs. Cloudflare may retain other request, network, and security information for as long as necessary to provide its services, comply with legal obligations, and fulfill the other purposes described in its privacy policy and data processing terms.

4. Third-Party Services

Strofi uses the following third-party services:

ProviderPurposeInformation involved
Google Analytics for FirebaseLimited product analytics when Share Analytics is enabledApp, device, session, technical, and approved product-usage data
Google BigQueryRestricted analysis of approved analytics eventsExported Google Analytics event data
Cloudflare R2App download and update delivery, caching, performance, and securityBasic request, requested file, network, routing, security, and error information

Software receiving activity information through Local MCP is separate from the analytics and app-distribution providers listed above.

Google describes its Firebase data practices in Privacy and Security in Firebase. Google's handling of personal information is also governed by the Google Privacy Policy, applicable Google Ads Data Processing Terms, and Firebase Data Processing and Security Terms.

Cloudflare's processing of download and update request information is governed by the Cloudflare Privacy Policy and the applicable Cloudflare Data Processing Addendum.

Strofi uses macOS permissions and system APIs to detect supported foreground activity. This local use does not create a Strofi cloud account or send your Activity Data to Apple.

Strofi does not maintain server-side user profiles or a backend store of Activity Data. Each third-party service processes only the categories described in this policy for its stated purpose.

5. Your Choices and Controls

During initial onboarding, you must agree to the Terms of Use and acknowledge that you have reviewed this Privacy Policy before Strofi begins collecting Activity Data. If you do not complete this step, collection does not begin and Strofi cannot be used. Strofi records your acceptance and acknowledgement, the onboarding record version, and the completion time only on your Mac.

You may:

  • Turn off Share Analytics at any time in Strofi Settings
  • Turn Local MCP on or off and change its sharing settings in Connections
  • Quit Strofi to stop future Activity Data collection
  • Revoke Strofi's macOS permissions in System Settings
  • Permanently delete locally stored Activity Data by selecting Delete Activity History
  • Move the app to the Trash and initiate deletion of the local Strofi data described in Section 3 by selecting Uninstall Strofi

Turning off Share Analytics immediately stops future Product Analytics collection and participation in active product experiments. It remains off when Strofi is reopened. It does not affect Strofi's local timeline, relationship, recommendation, or reopening features.

Your agreement to the Terms of Use and acknowledgement of the Privacy Policy do not override your separate Share Analytics choice.

Because Strofi does not require an account and does not receive your Activity Data, the operator generally cannot access, view, or remotely delete the activity history stored on your Mac.

6. Legal Bases for Processing

Depending on your location, Strofi may process information on the following legal bases:

  • To provide the app and features you request
  • With your consent when Strofi specifically asks for it
  • For legitimate interests in maintaining, securing, and improving Strofi, where permitted by law
  • To comply with applicable legal obligations
  • To establish, exercise, or defend legal claims

Where permitted by applicable law, Strofi relies on legitimate interests to process limited Product Analytics for understanding feature usage, improving reliability and usability, and planning product development. Share Analytics is enabled by default and is not presented through a separate opt-in step. You can turn it off at any time in Strofi Settings.

7. Your Privacy Rights

Depending on where you live, you may have rights to:

  • Request access to personal information associated with you
  • Request correction
  • Request deletion where applicable
  • Restrict or object to processing
  • Request data portability
  • Withdraw consent
  • File a complaint with a data protection authority

These rights may be limited where Strofi cannot identify the information as belonging to you or where the information exists only on your Mac and is not accessible to us.

For Activity Data stored on your Mac, you can use Delete Activity History or Uninstall Strofi as described in Sections 3 and 5. Because Strofi does not use accounts or an operator-assigned user identifier, the operator may be unable to associate previously transmitted analytics with a particular requester. The operator will nevertheless evaluate verified requests and provide assistance to the extent required by applicable law and technically possible.

The operator will respond to properly submitted and verified requests within the period required by applicable law. You may also file a complaint with the data protection authority or other supervisory authority in the place where you live, work, or believe a violation occurred.

8. California Privacy Notice

Strofi does not sell personal information and does not share personal information for cross-context behavioral advertising.

Depending on how you use Strofi, the categories of personal information processed during the preceding 12 months may include:

  • Technical identifiers, such as Firebase-managed installation or session identifiers
  • Device and application information
  • Internet or electronic activity information relating to Strofi feature usage

Strofi does not discriminate against users for exercising applicable privacy rights.

9. International Processing and Transfers

Activity Data is stored on your Mac. If you enable Local MCP, software receiving permitted activity information may send it to an AI provider in another country.

Strofi is distributed globally. Third-party services may process information in countries other than the country where you live.

Google Analytics for Firebase

When Share Analytics is enabled, Product Analytics is processed by Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, and its affiliates and subprocessors. This information may be processed in the United States and other countries where Google or its subprocessors maintain facilities.

Google BigQuery

Strofi uses Google BigQuery under an agreement associated with a South Korean billing address. The listed Google Cloud contracting entity for South Korea is Google Cloud Korea LLC, Gangnam Finance Center, 20th Floor, 152 Teheran-ro, Gangnam-gu, Seoul, Republic of Korea. Google affiliates and subprocessors may also process information as necessary to provide the service.

The BigQuery analytics dataset is configured in the Seoul region, and raw exported event tables expire after 14 months. The dataset location does not prevent some Google service operations from occurring in other countries.

For information about Google's processing and international transfer safeguards, see the Google Ads Data Processing Terms and Firebase Data Processing and Security Terms. For Google Cloud contracting-entity and processing terms, see Google Contracting Entity and the Google Cloud Data Processing Addendum.

App Downloads and Updates

Strofi distributes app downloads and updates through Cloudflare R2, operated by Cloudflare, Inc., 101 Townsend Street, San Francisco, CA 94107, USA. The R2 bucket uses Cloudflare's Asia-Pacific location setting. Cloudflare describes this setting as a best-effort location hint rather than a jurisdictional data-residency guarantee. Download and update requests may pass through Cloudflare's global network and be processed in the United States and other countries where Cloudflare or its subprocessors operate.

When you request a download or update, the request information described in Section 1.C is transmitted to Cloudflare over HTTPS for file delivery, caching, performance, security, and abuse prevention. Cloudflare R2 metrics are retained for up to 31 days, and Strofi has not enabled optional R2 Data Access Logs. Other information processed by Cloudflare is retained according to the criteria in Cloudflare's privacy policy and data processing terms.

For more information, see the Cloudflare Privacy Policy and Cloudflare Data Processing Addendum.

Turning off Share Analytics prevents future transfers of Product Analytics and experiment participation information to Google. It does not affect Strofi's local features. If you do not want the app download or update provider to process the request information needed to provide those services, do not request a download or update.

10. Children's Privacy

Strofi is intended for users who are at least 16 years old and is not directed to children under 16. Strofi does not require an account and does not ask for or store a user's age or date of birth. As a result, the operator generally cannot determine a user's age unless the user, a legal guardian, or another person provides that information.

Because Strofi has no account system or backend, it cannot identify or block an individual user based on age. A user under 16 should not use Strofi. The user or legal guardian can stop local collection by quitting Strofi or revoking its macOS permissions, use Delete Activity History to remove locally stored Activity Data, or select Uninstall Strofi to move the app to the Trash and initiate deletion of the local Strofi data described in Section 3. If Strofi is offered to younger users in the future, the operator will implement the parental notice, consent, and verification measures required by applicable law before collecting their Personal Data.

11. Security

Strofi uses technical and organizational measures intended to protect the information it processes. These measures include local processing, encryption of sensitive activity metadata, restricted analytics fields, access controls, and limited retention periods.

No storage or transmission system can be guaranteed to be completely secure.

12. Links and External Services

Strofi may open files, websites, or third-party applications at your request. Once you interact with another application or service, its own privacy policy and terms apply.

13. Changes to This Policy

The operator may update this Privacy Policy when Strofi's features, data practices, service providers, or legal obligations change.

If a change materially affects how personal information is processed, the operator will provide notice through the app or another appropriate method before the change takes effect where required.

Where required, Strofi may ask you to acknowledge that you have reviewed a materially updated policy before Activity Data collection resumes.

The "Last Updated" date at the top of this policy indicates when it was most recently revised. The "Effective Date" indicates when the current version takes effect.

14. Contact

For privacy questions or requests, contact:

Data Controller and Operator: Jisung Kim
Email: hello@strofi.app

한국어본

Strofi 개인정보처리방침

최종 수정일
2026년 9월 22일
시행일
2026년 9월 22일
개인정보처리방침 버전
1.1
개인정보처리자 및 운영자
Jisung Kim
개인정보 문의
hello@strofi.app

소개

Strofi는 사용자가 업무 중 이용한 파일, 웹페이지 및 앱 기반 항목을 기억하고, 다시 찾아가고, 서로 연결할 수 있도록 돕는 로컬 우선 macOS 애플리케이션입니다.

본 개인정보처리방침은 Strofi macOS 앱과 앱을 배포하고 업데이트하는 데 사용되는 서비스(이하 통칭하여 서비스)에 적용됩니다. "개인정보"란 식별되었거나 식별 가능한 개인과 관련되거나 그 개인에게 합리적으로 연결될 수 있는 정보를 의미합니다. "활동 데이터"란 제1.A항에서 설명하는 로컬에서 처리되는 활동 메타데이터를 의미합니다. 활동 데이터는 제1.B항에서 설명하는 제품 분석 정보와 구분됩니다.

Strofi는 계정을 요구하지 않으며 운영자는 Strofi 계정 데이터베이스나 활동 데이터용 백엔드 저장소를 운영하지 않습니다. Strofi는 활동 데이터를 Strofi 서버가 아닌 사용자의 Mac에 저장합니다. Local MCP를 켜면 같은 Mac에서 실행되는 소프트웨어가 공유 설정에서 허용한 활동 정보를 요청할 수 있습니다.

Share Analytics가 활성화되어 있으면 Strofi는 제한된 제품 사용 및 기술 분석 정보를 Google Analytics for Firebase로 전송합니다. 이 분석 정보는 활동 데이터와 분리되며 문서 제목, 활동에서 기록된 앱 또는 서비스 이름, URL, 파일 경로, 문서 내용이나 사용자의 활동 기록을 포함하지 않습니다.

본 방침에서 설명하는 제한적인 제품 분석 정보와 다운로드 및 업데이트 요청 정보는 아래에 명시된 제3자 서비스를 통해 처리될 수 있습니다.

Strofi는 최초 실행 시 활동 데이터 수집을 시작하기 전에 사용자에게 이용약관에 동의하고 본 개인정보처리방침을 확인했음을 인정하도록 요청합니다. 이 절차를 완료하지 않으면 정보 수집은 시작되지 않으며 Strofi를 사용할 수 없습니다. Share Analytics는 제5절의 설명과 같이 별도로 관리됩니다.

1. Strofi가 처리하는 정보

Strofi는 두 가지 경로로 정보를 처리합니다. 지원 항목을 사용할 때 macOS 시스템 API와 권한을 통해 로컬에서 처리하거나, 활성화된 분석 기능 또는 앱 다운로드·업데이트 제공 인프라를 통해 자동으로 처리합니다. macOS를 통해 얻은 활동 데이터는 로컬에서만 처리되며 Strofi로 전송되지 않습니다.

A. 활동 데이터

Strofi는 사용자의 활동 타임라인을 만들고, 이전에 이용한 항목을 다시 열며, 연관 항목을 추천하기 위해 다음 정보를 사용자의 Mac에서 로컬로 처리할 수 있습니다.

  • 앱 이름과 번들 식별자
  • 파일, 창, 탭 및 항목의 제목
  • 파일, 웹페이지, 앱 기반 항목 등의 항목 유형
  • 파일 경로, 파일 URL, 전체 웹 URL, 딥 링크 및 항목을 다시 여는 데 사용하는 앱별 식별자
  • 알려진 웹사이트 또는 서비스 분류 정보
  • 다시 열기 가능 여부와 권한 상태
  • 활동 시작 시각, 종료 시각 및 이용 시간
  • 다른 항목을 사용하기 직전에 이용한 항목
  • 항목을 구분하기 위해 로컬에서 생성한 식별자
  • 항목이 함께 사용되는 방식에서 도출한 관계 및 추천 정보

Strofi는 사용자의 Mac에 있는 모든 파일을 스캔하거나 미리 인덱싱하지 않습니다. 사용자가 실제로 열거나 전면에서 사용한 지원 대상 항목만 기록합니다.

Strofi는 위에서 설명한 메타데이터만 처리합니다. 특히 문서 본문, 화면 내용, 키보드 입력, 클립보드 내용 또는 오디오에는 접근하지 않습니다.

B. 제품 분석 정보

Share Analytics는 기본적으로 활성화되어 있습니다. 사용자는 Strofi Settings에서 언제든지 이를 끌 수 있습니다.

Share Analytics가 활성화되어 있으면 Strofi는 다음 정보를 Google Analytics for Firebase로 전송할 수 있습니다.

  • Strofi 버전, 빌드 번호 및 번들 식별자
  • 운영체제, 기기 유형, 언어 및 지역
  • Firebase SDK가 관리하는 설치 및 세션 식별자
  • Google Analytics가 자동으로 수집하는 이벤트
  • 승인된 제품 사용 이벤트
  • 개략적인 기능 상태, 제품 실험 배정·결과 및 성능 구간
  • 분석 서비스 운영에 필요한 기술적 네트워크 및 SDK 메타데이터

Strofi는 다음 정보를 분석 이벤트, 매개변수 또는 사용자 속성에 포함하지 않습니다.

  • 문서, 파일, 창 또는 탭의 제목
  • 앱 이름 또는 제3자 번들 식별자
  • 웹사이트 또는 서비스 이름
  • URL, 도메인, 파일 경로 또는 다시 열기 정보
  • 문서 내용
  • 검색 질의 또는 어시스턴트 응답
  • Strofi 내부 자료 식별자 또는 그 해시
  • 정확한 활동 시각, 관계 점수 또는 추천 근거
  • 인증 정보, 토큰 또는 암호화 키

Strofi는 광고 식별자를 사용하지 않으며 Google Analytics for Firebase를 Google Ads 또는 AdMob과 연결하지 않습니다.

Strofi는 사용자의 정보를 판매하지 않으며 광고 또는 여러 서비스에 걸친 행동 프로파일링에 사용하지 않습니다.

C. 다운로드 및 업데이트 요청 정보

Strofi는 updates.strofi.app의 Cloudflare R2를 통해 앱 다운로드와 업데이트를 제공합니다. 사용자가 다운로드 또는 업데이트를 요청하면 Cloudflare는 다음과 같은 기본 요청 정보를 처리할 수 있습니다.

  • IP 주소
  • 브라우저 또는 사용자 에이전트 정보
  • 요청한 파일 또는 경로
  • 요청 날짜와 시각
  • 응답 상태, 트래픽 라우팅, 보안 및 오류 정보

Strofi는 다운로드 버킷에 선택 기능인 Cloudflare R2 Data Access Logs를 활성화하지 않았습니다. Cloudflare R2는 서비스 지표를 최대 31일 동안 제공합니다. 조회 방법에 따라 이 지표에는 작업 유형과 상태, 버킷 또는 객체 이름, 응답 상태 코드 및 요청 시각이 포함될 수 있지만 R2 지표 데이터세트를 통해 요청자의 IP 주소나 사용자 에이전트가 제공되지는 않습니다.

D. 로컬 설정 및 정책 기록

Strofi는 앱 설정과 사용자가 이용약관에 동의하고 개인정보처리방침을 확인했음을 나타내는 온보딩 기록을 사용자의 Mac에 로컬로 저장합니다. 이 기록에는 온보딩 기록 버전과 절차 완료 시각이 포함되지만, 두 문서의 버전은 각각 저장하지 않습니다. Strofi는 사용자의 연령, 생년월일 또는 신분증 정보를 묻거나 저장하지 않습니다.

E. Local MCP

Local MCP는 기본적으로 꺼져 있습니다. 사용자가 켜면 지원 AI 앱과 직접 설정한 기타 앱을 포함해 같은 Mac에서 실행되는 호환 소프트웨어가 설정에서 허용한 활동 정보를 요청할 수 있습니다. Strofi는 정보를 받는 모든 앱을 검증하지 않으며, 해당 앱은 정보를 자체 AI 제공자에게 전송할 수 있습니다.

2. 정보 이용 목적

Strofi는 로컬에서 처리되는 활동 데이터를 다음 목적으로 사용합니다.

  • 사용자의 활동 타임라인 구성
  • 이전에 이용한 항목으로 다시 돌아갈 수 있도록 지원
  • 함께 자주 사용되는 항목 식별
  • 현재 업무와 연관된 항목 추천
  • 로컬 앱 기능의 안정성과 보안 유지

Share Analytics가 활성화되어 있으면 제품 분석 정보를 다음 목적으로 사용합니다.

  • Strofi 기능의 이용 여부 파악
  • 전반적인 안정성 및 성능 문제 파악
  • 탐색 경험과 제품 사용성 개선
  • 제품의 전반적인 품질 평가
  • 제품 실험을 통한 제품 계획 및 개발 지원

자동 처리 및 추천

Strofi는 사용자의 Mac에서 활동 데이터의 시점과 순서를 자동으로 분석하여 함께 사용된 항목을 식별하고 현재 업무와 관련된 항목을 추천합니다. 이 처리는 로컬에서 이루어집니다. 추천은 사용자를 돕기 위한 기능일 뿐이며, 사용자에게 법적 효과 또는 이와 유사하게 중대한 영향을 미치는 결정을 내리지 않습니다.

3. 저장, 보안 및 보유기간

활동 데이터

활동 데이터는 사용자의 Mac에 로컬로 저장됩니다.

제목, 파일 경로, 전체 URL 및 앱별 다시 열기 정보와 같은 민감한 메타데이터는 AES-GCM 방식으로 암호화됩니다. Strofi는 관계를 계산할 때 키 기반 HMAC-SHA256 식별자를 사용하므로 원본 값을 관계 계산에 직접 사용할 필요가 없습니다.

활동 데이터는 사용자가 Delete Activity History(활동 기록 삭제) 또는 Uninstall Strofi(Strofi 제거)를 선택할 때까지 Mac에 남습니다. Delete Activity History를 실행하면 로컬에 저장된 활동 이벤트, 작업 세션 및 자료 메타데이터가 영구적으로 삭제됩니다. 삭제된 기록에서 파생된 관계와 추천은 더 이상 사용할 수 없습니다. 앱 설정, 로컬에 저장된 이용약관 동의 및 개인정보처리방침 확인 기록, 파비콘 캐시, 메타데이터 암호화 키 또는 이전에 Google로 전송된 제품 분석 정보는 삭제하지 않습니다.

Uninstall Strofi는 먼저 허용된 Applications 폴더에 설치된 공식 Strofi 앱인지 확인하고 앱을 휴지통으로 이동합니다. 앱을 휴지통으로 이동하지 못하면 로컬 데이터 정리를 시작하지 않습니다. 휴지통 이동에 성공하면 Strofi의 로컬 서비스를 중단하고 활동 데이터와 로컬 데이터베이스 파일, 파비콘 캐시, 로그인 항목, 메타데이터 암호화 키, Mac에 로컬로 저장된 Firebase Analytics 데이터, 앱 설정 및 로컬 정책 기록의 삭제를 시도합니다. 필수 정리 단계 중 하나라도 실패하면 일부 로컬 데이터를 제거하지 못했다는 안내를 표시합니다. 삭제한 로컬 데이터는 복구할 수 없습니다.

두 기능 모두 이전에 Google로 전송된 제품 분석 정보, 해당 제공업체가 처리한 다운로드 및 업데이트 요청 정보, 또는 Local MCP를 통해 이미 제공된 활동 정보를 삭제하지 않습니다. 이후 해당 정보의 이용과 보관은 정보를 받은 소프트웨어와, 해당하는 경우 AI 제공자가 결정합니다.

로컬 설정 및 정책 기록

이 기록은 사용자의 선택을 적용하고 온보딩 확인 기록을 유지하는 데 필요한 기간 동안 사용자의 Mac에 로컬로 남습니다. 사용자가 Uninstall Strofi(Strofi 제거)를 선택하면 삭제됩니다.

제품 분석 정보

Strofi의 Google Analytics 속성은 이벤트 수준의 분석 정보를 최대 14개월 동안 보관하도록 설정되어 있습니다. 사용자 수준 식별 정보의 보유기간은 새 활동이 발생할 때마다 재설정되며 사용자의 마지막 활동 이후 14개월이 지나면 만료됩니다.

Strofi는 승인된 분석 이벤트를 서울 리전의 Google BigQuery로 내보낼 수 있습니다. 내보낸 원시 이벤트 테이블은 14개월 후 만료되도록 설정됩니다.

Google은 Analytics 보유기간 설정이 사용자 및 이벤트 수준의 데이터에 적용되며, 표준 집계 보고서에는 동일한 방식으로 적용되지 않을 수 있다고 안내합니다. 자세한 내용은 Google Analytics 데이터 보유기간을 참고할 수 있습니다.

다운로드 및 업데이트 로그

Cloudflare R2 서비스 지표는 최대 31일 동안 보관됩니다. Strofi는 선택 기능인 R2 Data Access Logs를 활성화하지 않았습니다. Cloudflare는 그 밖의 요청, 네트워크 및 보안 정보를 서비스 제공, 법적 의무 준수 및 Cloudflare의 개인정보처리방침과 데이터 처리 약관에 명시된 목적을 위해 필요한 기간 동안 보관할 수 있습니다.

4. 제3자 서비스

Strofi는 다음 제3자 서비스를 사용합니다.

제공업체목적관련 정보
Google Analytics for FirebaseShare Analytics가 활성화된 경우 제한적인 제품 분석앱, 기기, 세션, 기술 정보 및 승인된 제품 사용 정보
Google BigQuery승인된 분석 이벤트의 제한적인 분석Google Analytics에서 내보낸 이벤트 데이터
Cloudflare R2앱 다운로드 및 업데이트 제공, 캐싱, 성능 및 보안기본 요청, 요청 파일, 네트워크, 라우팅, 보안 및 오류 정보

Local MCP를 통해 활동 정보를 받는 소프트웨어는 위 표에 기재된 Strofi의 분석 및 앱 배포 서비스 제공업체와 별개입니다.

Google은 Firebase 개인정보 보호 및 보안에서 Firebase의 데이터 처리 방식을 설명합니다. Google의 개인정보 처리는 Google 개인정보처리방침, 해당되는 Google Ads 데이터 처리 약관 및 Firebase 데이터 처리 및 보안 약관의 적용을 받습니다.

Cloudflare의 다운로드 및 업데이트 요청 정보 처리는 Cloudflare 개인정보처리방침과 해당되는 Cloudflare 데이터 처리 부속합의서에 따릅니다.

Strofi는 지원되는 전면 활동을 탐지하기 위해 macOS 권한과 시스템 API를 사용합니다. 이러한 로컬 사용으로 Strofi 클라우드 계정이 생성되거나 활동 데이터가 Apple로 전송되지는 않습니다.

Strofi는 서버 측 사용자 프로필이나 활동 데이터용 백엔드 저장소를 운영하지 않습니다. 각 제3자 서비스는 본 방침에 설명된 정보 범위만 명시된 목적으로 처리합니다.

5. 사용자의 선택권과 관리 기능

사용자는 최초 온보딩 과정에서 Strofi가 활동 데이터 수집을 시작하기 전에 이용약관에 동의하고 본 개인정보처리방침을 확인했음을 인정해야 합니다. 이 절차를 완료하지 않으면 정보 수집은 시작되지 않으며 Strofi를 사용할 수 없습니다. Strofi는 이용약관 동의 및 개인정보처리방침 확인 여부, 온보딩 기록 버전과 절차 완료 시각을 사용자의 Mac에만 기록합니다.

사용자는 다음과 같은 선택을 할 수 있습니다.

  • Strofi Settings에서 언제든지 Share Analytics 끄기
  • Connections에서 Local MCP를 켜거나 끄고 공유 설정 변경
  • Strofi를 종료하여 이후 활동 데이터 수집 중단
  • macOS 시스템 설정에서 Strofi에 부여한 권한 철회
  • Delete Activity History(활동 기록 삭제)를 선택하여 로컬에 저장된 활동 데이터를 영구적으로 삭제
  • Uninstall Strofi(Strofi 제거)를 선택하여 앱을 휴지통으로 이동하고 제3절에 설명된 Strofi 로컬 데이터 삭제를 시작

Share Analytics를 끄면 향후 제품 분석 정보 수집과 활성 제품 실험 참여가 즉시 중단됩니다. Strofi를 다시 실행해도 꺼진 상태가 유지됩니다. 이 설정은 Strofi의 로컬 타임라인, 관계, 추천 또는 다시 열기 기능에 영향을 주지 않습니다.

이용약관에 대한 동의와 개인정보처리방침 확인은 별도로 제공되는 Share Analytics 선택을 대체하지 않습니다.

Strofi는 계정을 요구하지 않고 활동 데이터를 전송받지 않으므로, 운영자는 일반적으로 사용자의 Mac에 저장된 활동 기록에 접근하거나 이를 확인 또는 원격 삭제할 수 없습니다.

6. 정보 처리의 법적 근거

사용자의 지역에 따라 Strofi는 다음 법적 근거에 따라 정보를 처리할 수 있습니다.

  • 사용자가 요청한 앱과 기능을 제공하기 위해 필요한 처리
  • Strofi가 별도로 동의를 요청한 경우 사용자의 동의
  • 법률이 허용하는 범위에서 Strofi를 유지·보호·개선하기 위한 정당한 이익
  • 적용되는 법적 의무의 준수
  • 법적 청구권의 성립, 행사 또는 방어

적용 법률이 허용하는 경우 Strofi는 기능 이용 현황 파악, 안정성과 사용성 개선 및 제품 개발 계획을 위한 제한적인 제품 분석 정보 처리에 정당한 이익을 근거로 합니다. Share Analytics는 기본적으로 활성화되며 별도의 사전 Opt-in 단계를 제공하지 않습니다. 사용자는 Strofi Settings에서 언제든지 이를 끌 수 있습니다.

7. 개인정보에 관한 권리

사용자의 거주 지역에 따라 다음 권리를 가질 수 있습니다.

  • 자신과 관련된 개인정보에 대한 접근 요청
  • 정정 요청
  • 적용되는 경우 삭제 요청
  • 처리 제한 또는 처리에 대한 이의 제기
  • 데이터 이동 요청
  • 동의 철회
  • 개인정보 보호 감독기관에 민원 제기

Strofi가 해당 정보가 특정 사용자에게 속한다는 사실을 식별할 수 없거나, 정보가 사용자의 Mac에만 존재하여 운영자가 접근할 수 없는 경우 이러한 권리가 제한될 수 있습니다.

사용자의 Mac에 저장된 활동 데이터는 제3절과 제5절에 설명된 Delete Activity History(활동 기록 삭제) 또는 Uninstall Strofi(Strofi 제거)를 사용하여 삭제할 수 있습니다. Strofi는 계정이나 운영자가 부여한 사용자 식별자를 사용하지 않으므로, 운영자는 이전에 전송된 분석 정보를 특정 요청자와 연결하지 못할 수 있습니다. 그럼에도 적법하게 본인 확인된 요청은 적용 법률이 요구하고 기술적으로 가능한 범위에서 검토하고 지원합니다.

운영자는 적법하게 제출되고 확인된 요청에 적용 법률이 정한 기간 내에 답변합니다. 사용자는 거주지, 근무지 또는 침해가 발생했다고 판단되는 지역의 개인정보 보호 감독기관이나 그 밖의 관할 기관에 민원을 제기할 수도 있습니다.

8. 캘리포니아주 개인정보 보호 고지

Strofi는 개인정보를 판매하지 않으며 여러 서비스에 걸친 행동 광고를 위해 개인정보를 공유하지 않습니다.

사용자의 Strofi 이용 방식에 따라 최근 12개월 동안 처리된 개인정보의 범주에는 다음이 포함될 수 있습니다.

  • Firebase가 관리하는 설치 또는 세션 식별자 등의 기술적 식별자
  • 기기 및 애플리케이션 정보
  • Strofi 기능 사용과 관련된 인터넷 또는 전자적 활동 정보

Strofi는 사용자가 적용되는 개인정보 보호 권리를 행사했다는 이유로 차별하지 않습니다.

9. 국외 처리 및 이전

활동 데이터는 사용자의 Mac에 저장됩니다. Local MCP를 켜면 허용된 활동 정보를 받은 소프트웨어가 이를 다른 국가의 AI 제공자에게 전송할 수 있습니다.

Strofi는 전 세계에 배포됩니다. 제3자 서비스는 사용자가 거주하는 국가가 아닌 다른 국가에서 정보를 처리할 수 있습니다.

한국의 개인정보 보호법에 따른 국외 이전 세부사항은 다음과 같습니다.

Google Analytics for Firebase

구분내용
이전되는 개인정보 항목Strofi 버전·빌드 번호·번들 식별자, 운영체제·기기 유형·언어·지역, Firebase가 관리하는 설치·세션 식별자, 자동 수집 이벤트, 승인된 제품 사용 이벤트와 실험 참여 정보, 개략적인 기능 상태·결과 범주·성능 구간, 분석 서비스 운영에 필요한 네트워크·SDK 정보
이전 국가미국 및 Google 또는 하위 처리업체가 시설을 운영하는 국가
이전 시기 및 방법Share Analytics가 활성화된 상태에서 분석 이벤트가 발생할 때 암호화된 네트워크 통신으로 자동 전송
이전받는 자Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (Google 개인정보 문의)
이용 목적기능 이용 현황 파악, 제품 실험 평가, 안정성·성능 문제 파악, 사용성 및 제품 품질 개선, 제품 개발 계획
보유·이용 기간이벤트 수준 정보는 최대 14개월. 사용자 수준 식별 정보는 새 활동 시 보유기간이 재설정되며 마지막 활동 후 최대 14개월. 표준 집계 보고서에는 동일한 방식으로 적용되지 않을 수 있음
이전 거부 방법 및 효과Strofi Settings에서 Share Analytics를 끄면 향후 제품 분석 및 실험 참여 정보가 Google로 이전되지 않습니다. 로컬 타임라인, 관계, 추천 및 다시 열기 기능에는 영향을 주지 않습니다. 이전 전에 Google로 전송된 정보는 소급하여 삭제되지 않습니다.
국외 이전 근거서비스 제공 및 개선을 위한 처리위탁·보관과 본 방침 공개(개인정보 보호법 제28조의8 제1항 제3호 가목)

Google BigQuery

구분내용
이전되는 개인정보 항목Google Analytics for Firebase로 전송된 승인된 제품 분석 및 실험 참여 정보
이전 국가데이터세트의 주 저장 위치는 대한민국 서울 리전이며, 일부 서비스 운영은 Google 또는 하위 처리업체가 시설을 운영하는 다른 국가에서 이루어질 수 있음
이전 시기 및 방법Google Analytics에 수신된 승인된 이벤트가 일 단위로 암호화된 네트워크를 통해 자동 내보내기
이전받는 자Google Cloud Korea LLC, Gangnam Finance Center 20층, 서울특별시 강남구 테헤란로 152 및 서비스 제공에 관여하는 Google 계열사·하위 처리업체 (Google Cloud 계약 법인)
이용 목적승인된 제품 분석 및 실험 참여 정보의 제한적인 분석, 안정성·사용성 개선 및 제품 개발 계획
보유·이용 기간내보낸 원시 이벤트 테이블은 최대 14개월
이전 거부 방법 및 효과Strofi Settings에서 Share Analytics를 끄면 향후 제품 분석 및 실험 참여 정보를 Google로 전송하거나 BigQuery로 내보내지 않습니다. 로컬 기능에는 영향을 주지 않으며 이미 내보낸 정보는 소급하여 삭제되지 않습니다.
국외 이전 근거서비스 제공 및 개선을 위한 처리위탁·보관과 본 방침 공개(개인정보 보호법 제28조의8 제1항 제3호 가목)

Google의 정보 처리와 국외 이전 보호조치에 관한 자세한 내용은 Google Ads 데이터 처리 약관, Firebase 데이터 처리 및 보안 약관 및 Google Cloud 데이터 처리 부속합의서를 참고할 수 있습니다.

Cloudflare R2를 통한 앱 다운로드 및 업데이트

구분내용
이전되는 개인정보 항목IP 주소, 브라우저·사용자 에이전트 정보, 요청한 파일·경로, 요청 날짜·시각, 응답 상태, 트래픽 라우팅·보안·오류 정보
이전 국가R2 버킷은 Cloudflare의 아시아·태평양 위치 설정을 사용하지만, 이는 관할 구역 내 데이터 저장을 보장하는 설정이 아님. 미국 및 Cloudflare 또는 하위 처리업체가 글로벌 네트워크와 시설을 운영하는 국가에서 요청이 처리될 수 있음
이전 시기 및 방법사용자가 앱 다운로드 또는 업데이트를 요청할 때 HTTPS를 통해 전송
이전받는 자Cloudflare, Inc., 101 Townsend Street, San Francisco, CA 94107, USA, Data Protection Officer: dpo@cloudflare.com
이용 목적앱 및 업데이트 파일 전송, 캐싱, 성능 측정, 보안과 부정 이용 방지
보유·이용 기간Strofi가 조회할 수 있는 R2 서비스 지표는 최대 31일. 선택 기능인 R2 Data Access Logs는 비활성화되어 있음. Cloudflare가 그 밖의 요청·네트워크·보안 정보를 보관하는 기간은 서비스 제공과 법적 의무 등에 필요한 기간을 기준으로 결정됨
이전 거부 방법 및 효과다운로드 또는 업데이트를 요청하지 않으면 해당 요청 정보는 전송되지 않습니다. 이 경우 앱을 내려받거나 업데이트를 확인·설치할 수 없습니다.
국외 이전 근거앱 다운로드·업데이트 제공을 위한 처리위탁·보관과 본 방침 공개(개인정보 보호법 제28조의8 제1항 제3호 가목)

자세한 내용은 Cloudflare 개인정보처리방침 및 Cloudflare 데이터 처리 부속합의서를 참고할 수 있습니다.

Share Analytics를 끄면 향후 제품 분석 및 실험 참여 정보가 Google로 전송되지 않습니다. Strofi의 로컬 기능에는 영향을 주지 않습니다. 앱 다운로드 또는 업데이트 제공업체가 해당 서비스 제공에 필요한 요청 정보를 처리하는 것을 원하지 않는 경우에는 다운로드 또는 업데이트를 요청하지 않아야 합니다.

10. 아동의 개인정보

Strofi는 만 16세 이상의 사용자를 대상으로 하며 만 16세 미만의 아동을 대상으로 하지 않습니다. Strofi는 계정을 요구하지 않으며 사용자의 연령이나 생년월일을 묻거나 저장하지 않습니다. 따라서 사용자, 법정대리인 또는 다른 사람이 해당 정보를 제공하지 않는 한 운영자는 일반적으로 사용자의 연령을 파악할 수 없습니다.

Strofi에는 계정이나 자체 백엔드가 없으므로 연령을 기준으로 특정 사용자를 식별하거나 차단할 수 없습니다. 만 16세 미만 사용자는 Strofi를 사용해서는 안 됩니다. 사용자 또는 법정대리인은 Strofi를 종료하거나 macOS 권한을 철회해 로컬 수집을 중단할 수 있으며, Delete Activity History(활동 기록 삭제)로 로컬 활동 데이터를 삭제하거나 Uninstall Strofi(Strofi 제거)로 앱을 휴지통으로 이동하고 제3절에 설명된 Strofi 로컬 데이터 삭제를 시작할 수 있습니다. 향후 Strofi를 더 어린 사용자에게 제공하는 경우에는 개인정보를 수집하기 전에 적용 법률이 요구하는 법정대리인 고지, 동의 및 확인 절차를 마련합니다.

11. 보안

Strofi는 처리하는 정보를 보호하기 위해 기술적·관리적 보호조치를 사용합니다. 이러한 조치에는 로컬 처리, 민감한 활동 메타데이터의 암호화, 분석 정보 필드 제한, 접근 통제 및 제한된 보유기간이 포함됩니다.

어떠한 저장 또는 전송 시스템도 완벽한 보안을 보장할 수는 없습니다.

12. 링크 및 외부 서비스

Strofi는 사용자의 요청에 따라 파일, 웹사이트 또는 제3자 애플리케이션을 열 수 있습니다. 사용자가 다른 애플리케이션이나 서비스와 상호작용하면 해당 서비스의 개인정보처리방침과 이용약관이 적용됩니다.

13. 개인정보처리방침의 변경

Strofi의 기능, 데이터 처리 방식, 서비스 제공업체 또는 법적 의무가 변경되면 운영자는 본 개인정보처리방침을 수정할 수 있습니다.

변경 사항이 개인정보 처리 방식에 중대한 영향을 미치는 경우 운영자는 법률에서 요구하는 바에 따라 변경 사항이 적용되기 전에 앱 또는 다른 적절한 방법으로 안내합니다.

필요한 경우 Strofi는 중대하게 변경된 방침을 검토했음을 사용자가 확인하기 전까지 활동 데이터 수집을 다시 시작하지 않을 수 있습니다.

본 방침 상단의 "최종 수정일"은 가장 최근에 방침이 수정된 날짜를 나타내며, "시행일"은 현재 버전이 적용되는 날짜를 나타냅니다.

14. 문의

개인정보에 관한 질문이나 요청은 다음 연락처로 문의해 주십시오.

개인정보처리자 및 운영자: Jisung Kim
이메일: hello@strofi.app