Privacy Policy

Last Updated: January 13, 2026

1. Introduction

Welcome to Gunghap ("we," "our," or "us"). We respect your privacy and are committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you use our compatibility calculation service at gunghap.app.

2. Information We Collect

2.1 Account Information

When you create an account, we collect:

  • Email address
  • Authentication credentials (encrypted password or OAuth provider data)
  • User ID (automatically generated)

2.2 Calculation Data

When you use our compatibility services, we collect:

  • Names (Korean and English transliterations)
  • Birth dates and times
  • Zodiac signs, MBTI types, blood types (as provided by you)
  • Facial analysis data (if using face reading features)

2.3 Payment Information

When you purchase tokens, payment processing is handled securely by Stripe. We do not store your full credit card information. We retain:

  • Transaction records (purchase date, amount, tokens purchased)
  • Stripe session IDs (for reference only)

2.4 Usage Data

  • Token balance and usage history
  • Calculation history and results
  • Log data (timestamps, IP addresses, browser information)

3. How We Use Your Information

We use your information to:

  • Provide and improve our compatibility calculation services
  • Process AI-powered name transliteration and analysis using OpenAI API
  • Manage your account and token balance
  • Process payments and maintain transaction records
  • Send service-related notifications (purchase confirmations, account updates)
  • Prevent fraud and ensure platform security
  • Comply with legal obligations

4. Data Sharing and Third Parties

4.1 Service Providers

We share data with trusted third-party services:

  • Supabase - Database and authentication services
  • Stripe - Payment processing
  • OpenAI - AI-powered name transliteration and analysis
  • Vercel - Application hosting and infrastructure

4.2 OAuth Providers

When you sign in with Google, we receive basic profile information (email, name) as authorized by you through Google's OAuth consent screen.

4.3 No Selling of Data

We do not sell, rent, or trade your personal information to third parties for marketing purposes.

5. Data Security

We implement industry-standard security measures:

  • Encrypted data transmission (HTTPS/TLS)
  • Secure authentication with hashed passwords
  • Role-based access controls in our database
  • Regular security audits and updates
  • Stripe's PCI-compliant payment processing

6. Data Retention

We retain your data for as long as your account is active or as needed to provide services. You may request deletion of your account and data at any time by contacting us.

7. Your Rights

You have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Request deletion of your data
  • Export your data
  • Withdraw consent for data processing
  • Object to data processing

8. Cookies and Tracking

We use essential cookies for authentication and session management. We do not use third-party tracking or advertising cookies. Your browser's local storage may be used to maintain your login session.

9. Children's Privacy

Our service is not intended for users under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe we have collected such information, please contact us immediately.

10. International Data Transfers

Your data may be processed and stored in servers located in different countries, including the United States. By using our service, you consent to the transfer of your data to countries that may have different data protection laws.

11. Changes to This Policy

We may update this privacy policy from time to time. We will notify you of significant changes by posting the new policy on this page and updating the "Last Updated" date. Continued use of our service after changes constitutes acceptance of the updated policy.

12. Contact Us

If you have questions about this privacy policy or wish to exercise your data rights, please contact us at:

Email: privacy@gunghap.app
Website: https://gunghap.app

GDPR Compliance (EU Users)

For users in the European Union, we comply with the General Data Protection Regulation (GDPR). Your legal basis for data processing is:

  • Contract performance: Processing necessary to provide our services
  • Legitimate interests: Fraud prevention, service improvement
  • Consent: Optional features and marketing communications
  • Legal obligation: Tax records, transaction logs

CCPA Disclosure (California Users)

California residents have additional rights under the California Consumer Privacy Act (CCPA):

  • Right to know what personal information is collected
  • Right to know if personal information is sold or disclosed
  • Right to say no to the sale of personal information (we do not sell data)
  • Right to access and delete personal information
  • Right to non-discrimination for exercising privacy rights

Advertisement - Support Gunghap

← Back to Home