버디픽(BuddyPick) 개인정보처리방침
시행일: 2026년 7월 27일 · 최종 개정: 2026년 9월 1일
버디픽(BuddyPick, 이하 "서비스")은 이용자의 개인정보를 중요하게 생각하며 관련 법령을 준수합니다. 본 방침은 서비스가 어떤 개인정보를 어떤 목적으로 처리하고 얼마 동안 보관하는지 설명합니다.
1. 개인정보 처리 목적
- 회원 가입·식별·계정 관리 및 로그인 상태 유지
- 이메일 소유 확인(이메일 인증) 및 비밀번호 재설정
- 학교 인증 코드 확인을 통한 이용 자격 확인
- 시간표 저장, 프로필·언어 설정 등 개인화 기능 제공
- 강의 리뷰·커뮤니티 게시글·댓글·좋아요 등 커뮤니티 기능 제공
- 신고 처리, 사용자 차단, 부정 이용·과도한 요청 차단 등 서비스 안전·운영
- 문의 응대 및 공지
2. 수집하는 개인정보 항목과 방법
가. 가입·인증 (이용자 입력/연동)
- 아이디 가입: 아이디, 비밀번호(솔트 적용 해시로만 저장)
- 이메일 가입: 이메일, 비밀번호(해시), 이메일 인증 정보
- Google 로그인: Google 계정 식별자, 이메일, 이름 (제9항)
- Apple 로그인: Apple 계정 식별자, 이메일(이메일 가리기 사용 시 릴레이 주소), 이름 (제9항)
- 학교 인증 코드 및 인증 상태
나. 프로필 (선택)
- 닉네임, 학교, 전공, 국적, 소속 대학, 교환학생 여부, 언어
다. 서비스 이용 과정에서 생성
- 시간표(담은 강의)
- 리뷰 및 평가 항목: 총평, 난이도, 과제량, 성적, 외국인 친화도, 후기 내용
- 게시글·댓글·좋아요, 신고 내용, 차단 관계
- 로그인 세션 정보(세션 토큰의 해시값, 만료 시각)
- 관리자 제재·감사 기록(관리자 계정 기준)
- 보안 목적의 IP 기반 요청 제한 기록(제11항)
- 방문 통계: 쿠키 없이 집계되는 페이지뷰·방문 정보(Vercel Web Analytics). 개인 식별에 사용하지 않습니다.
- 운영 로그: 서비스 자체 애플리케이션 로그에는 이메일·IP·요청 본문·토큰 등 개인정보가 남지 않도록 처리합니다. 다만 호스팅·데이터베이스·이메일 제공업체(제7·8항)의 인프라 로그에는 접속 IP·요청 URL·시각 등이 각 업체 정책에 따라 기록될 수 있습니다.
3. 개인정보의 보유 및 이용기간
아래 기간은 별도 법령상 의무가 있는 경우를 제외하고 버디픽이 운영상 정한 보유기간입니다.
| 정보 | 보유기간 | 목적 |
|---|---|---|
| 계정·프로필 정보 | 회원 탈퇴 시까지 | 회원 식별 및 서비스 제공 |
| 로그인 세션 | 생성일부터 30일 | 로그인 상태 유지·계정 보호 |
| 이메일 인증정보 | 생성일부터 24시간 | 이메일 소유 확인 |
| 비밀번호 재설정 정보 | 생성일부터 1시간 | 계정 복구 |
| IP 기반 요청 제한 기록 | 최대 48시간 | 비정상 요청 탐지·차단 |
| 시간표·소셜 로그인(Google·Apple) 연결정보·차단 관계·좋아요 | 회원 탈퇴 시 삭제 | 개인화 기능 제공 |
| 리뷰·게시글·댓글 | 이용자가 삭제하거나 서비스 종료 시까지 | 정보 제공·대화 흐름 유지 |
| 신고 내용 및 처리 기록 | 처리 완료일부터 3년 | 반복 악용 방지·제재 이력·분쟁 대응 |
| 관리자 감사 로그 | 관리자 행위 발생일부터 3년 | 운영 이력·오남용 방지·분쟁 대응 |
- 아직 처리가 완료되지 않은 신고는 처리 완료 시점을 기준으로 위 기간을 계산하며, 처리 전에는 위 기간만으로 삭제하지 않습니다.
- 보유기간이 지난 신고·관리자 기록은 삭제하거나 개인을 식별할 수 없도록 처리합니다.
- IP 기반 요청 제한 기록은 보안·부정이용 차단 목적으로만 사용하며 광고·행동분석·프로파일링에 사용하지 않습니다.
4. 회원 탈퇴와 콘텐츠 보관
- My 탭에서 언제든 탈퇴할 수 있습니다.
- 탈퇴 시 계정·프로필·로그인 정보(이메일·아이디·비밀번호 해시·닉네임·국적·소속 대학·전공·학교·교환학생 여부·언어)를 삭제하거나 식별할 수 없도록 처리하고, 로그인·권한·인증 상태를 초기화합니다. 이메일·아이디는 재가입에 다시 사용할 수 있습니다.
- 시간표, 소셜 로그인(Google·Apple) 연결정보, 로그인 세션, 차단 관계, 좋아요, 미사용 이메일 인증·비밀번호 재설정 정보는 탈퇴 시 삭제됩니다.
- 서비스 정보·대화 흐름 유지를 위해 리뷰·게시글·댓글은 탈퇴 후에도 작성자 식별정보를 제거한 상태로 보관될 수 있습니다. 리뷰는 익명으로, 닉네임으로 작성된 게시글·댓글은 작성자가 "탈퇴한 사용자"로 표시됩니다. (완전 익명화가 아니라, 작성자 식별정보를 제거한 상태의 보관을 의미합니다.)
- 이용자가 남긴 신고 기록, 이용자가 관리자였던 경우의 관리자 감사 기록은 제3항 기간 동안 비식별화된 계정과 연결된 상태로 보관될 수 있습니다.
- 특정 리뷰·게시글·댓글의 삭제를 원하면 탈퇴 전에 직접 삭제하시기 바랍니다.
5. 파기 절차 및 방법
- 파기 사유(회원 탈퇴, 보유기간 경과 등)가 발생하면 지체 없이 삭제하거나 복구할 수 없도록 처리합니다.
- 전자적 파일은 데이터베이스에서 삭제하거나 식별정보를 제거하는 방식으로 파기합니다.
- 데이터베이스 백업본에 포함된 개인정보는 데이터베이스 제공업체의 백업 보관주기가 경과하면 삭제됩니다.
6. 개인정보의 제3자 제공
서비스는 개인정보를 제3자에게 판매·제공하지 않습니다. 법령에 따른 요청이 있는 경우에 한해 법령이 정한 절차·범위 내에서 제공할 수 있습니다.
7. 개인정보 처리위탁
서비스는 원활한 운영을 위해 아래와 같이 개인정보 처리를 위탁하며, 각 수탁업체의 데이터 처리 약관에 따라 개인정보를 보호합니다.
| 수탁업체 | 위탁 업무 | 처리 정보 | 데이터 처리 약관 |
|---|---|---|---|
| Vercel Inc. | 애플리케이션 호스팅·서버리스 실행 | 요청 처리 과정의 정보(요청 IP·URL 등 인프라 로그 포함) | vercel.com/legal/dpa |
| Supabase Inc. | 회원·서비스 데이터 저장·관리 | 본 방침이 정한 회원·서비스 데이터 전반 | supabase.com/legal/dpa |
| Plus Five Five, Inc. (Resend) | 인증·비밀번호 재설정 이메일 발송 | 수신 이메일 주소, 인증·재설정 링크 | resend.com/legal/dpa |
8. 개인정보의 국외 처리·이전
서비스의 데이터베이스는 대한민국(서울) 리전에서 처리됩니다. 다만 아래 수탁업체 및 Google 로그인의 특성상 일부 개인정보가 국외에서 처리·저장됩니다.
| 이전받는 자 | 이전 국가 | 이전 항목 | 이전 시점·방법 | 이용 목적 | 보유기간 |
|---|---|---|---|---|---|
| Vercel Inc. | 미국(글로벌 인프라) | 요청 처리 정보(IP·URL 등) | 서비스 이용 시 네트워크를 통해 전송 | 애플리케이션 호스팅·서버리스 실행 | 본 방침 제3항에 따름 |
| Supabase Inc. | 대한민국(서울, 데이터 저장) 및 미국(회사·지원 인프라) | 회원·서비스 데이터 | 서비스 이용 시 저장·처리 | 데이터베이스 저장·관리 | 본 방침 제3항에 따름 |
| Plus Five Five, Inc.(Resend) | 미국 | 수신 이메일 주소, 인증·재설정 링크 | 인증·재설정 이메일 발송 시 | 이메일 발송 | 발송·전달에 필요한 기간 |
| Google LLC | 미국(글로벌) | Google 계정 식별자, 이메일, 이름 | Google 로그인 시 | 소셜 로그인 인증 | 본 방침 제3항에 따름 |
| Apple Inc. | 미국(글로벌) | Apple 계정 식별자, 이메일, 이름 | Apple 로그인 시 | 소셜 로그인 인증 | 본 방침 제3항에 따름 |
이용자는 개인정보의 국외 이전을 원하지 않을 경우 해당 이전이 수반되는 기능(예: Google 로그인)을 사용하지 않거나 회원 탈퇴로 서비스 이용을 중단할 수 있으며, 이 경우 해당 기능 또는 서비스 이용이 제한됩니다. 각 업체의 개인정보 보호 정책은 위 데이터 처리 약관 및 각 사 개인정보처리방침에서 확인할 수 있습니다.
9. 소셜 로그인 (Google·Apple)
- Google 로그인 사용 시 서비스는 Google로부터 Google 계정 식별자, 이메일, 이름을 전달받습니다(요청 범위: openid, email, profile).
- 이 중 Google 계정 식별자와 이메일을 저장하며, 이름은 가입 시 닉네임 초기값으로만 사용합니다.
- Google 계정 비밀번호는 알 수 없으며, Google 접근 토큰은 로그인 처리에 일시적으로만 사용하고 저장하지 않습니다. 리프레시 토큰은 요청·저장하지 않습니다.
- 회원 탈퇴 시 서비스에 저장된 Google 연결정보는 삭제됩니다. Google 계정 자체의 앱 연결 해제는 이용자가 Google 계정 설정(myaccount.google.com/permissions)에서 별도로 할 수 있으며, 이는 버디픽 회원 탈퇴와는 별개 절차입니다.
- 서비스는 Google API로 취득한 정보를 위 목적(로그인·계정 식별) 외로 사용하지 않으며 Google API Services User Data Policy(Limited Use 포함)를 준수합니다.
- Apple 로그인 사용 시 서비스는 Apple로부터 Apple 계정 식별자, 이메일, 이름을 전달받습니다. 식별자와 이메일을 저장하며(이메일 가리기를 선택하면 릴레이 주소가 저장됩니다), 이름은 최초 인증 시 닉네임 초기값으로만 사용합니다.
- Apple 인증 과정에서 발급되는 토큰은 회원 탈퇴 시 Apple에 인증 연결을 해지(revoke)하는 목적에 한해 보관하며, 다른 용도로 사용하지 않습니다. 탈퇴 시 서비스에 저장된 Apple 연결정보·토큰은 삭제되고 Apple 측 토큰 해지를 요청합니다.
10. 쿠키와 로그인 세션
- 로그인 상태 유지를 위해 세션 쿠키(httpOnly, 운영환경 secure, SameSite=Lax)를 사용합니다. 세션은 생성일부터 30일 유효하며, 서버에는 세션 토큰 원문이 아니라 해시값만 저장합니다.
- 광고·추적 목적의 쿠키는 사용하지 않습니다.
11. IP 기반 보안 기록
회원가입·로그인·글 작성 등에서 과도한 요청·부정 이용을 차단하기 위해 요청 제한 기록을 남깁니다. 최대 48시간 내 정리되며 보안 목적으로만 사용하고 광고·행동분석·프로파일링에 사용하지 않습니다.
12. 이용자의 권리와 행사 방법
- 이용자는 언제든 개인정보 열람·정정·삭제·처리정지를 요청할 수 있습니다.
- 프로필 정정과 계정 삭제(탈퇴)는 My 탭에서 직접 가능합니다.
- 기타 문의는 dahoo0404@gmail.com으로 요청할 수 있으며 관련 법령에 따라 지체 없이 처리합니다.
13. 개인정보의 안전성 확보조치
- 비밀번호는 솔트 적용 해시로만 저장하고 원문을 저장하지 않습니다.
- 세션·인증·재설정 토큰은 해시 형태로 저장하고 만료 시각을 적용합니다.
- 애플리케이션 운영 로그에서 이메일·IP·요청 본문·토큰 등 개인정보를 제거하는 안전 로깅을 적용합니다.
- 데이터베이스 접근 권한을 제한하고, 적용 가능한 테이블에 행 수준 보안(RLS) 등 접근통제 조치를 적용합니다.
- 관리자 기능은 서버에서 권한을 검증합니다.
14. 만 14세 미만 아동의 가입 제한
서비스는 만 14세 미만 아동의 회원가입을 허용하지 않으며, 가입 시 만 14세 이상임을 확인받습니다.
15. 개인정보 보호책임자 및 사업자 정보
- 상호: 버디픽 (대표자: 이다후)
- 사업자등록번호: 345-04-03679
- 사업장 주소: 서울특별시 강서구 공항대로 194, 6층 610호 (마곡동, 문영 퀸즈파크12차)
- 개인정보 보호책임자: 이다후
- 문의: dahoo0404@gmail.com
16. 개인정보처리방침의 변경
본 방침은 법령·서비스 변경에 따라 개정될 수 있으며, 개정 시 서비스 내 공지 또는 본 페이지 게시로 알립니다. 중요한 변경은 시행일 전에 사전 공지합니다.
17. 시행일
본 방침은 2026년 7월 27일부터 시행됩니다.
BuddyPick Privacy Policy
Effective: July 27, 2026 · Last amended: September 1, 2026
The Korean version above governs; this English version is provided for convenience.
1. Purposes
- Account registration/identification, account management, and staying signed in
- Email verification and password reset
- Eligibility confirmation via a school code
- Personalized features (timetable, profile, language)
- Community features (reviews, posts, comments, likes)
- Reports, user blocking, and abuse/rate-limit protection
- Inquiries and notices
2. Data we collect
Signup/auth: ID + password (salted hash); or email + password (hash) + verification data; or Google account identifier, email, and name (§9); school code and verification status. Profile (optional): nickname, school, major, nationality, home university, exchange-student status, language. Generated in use: timetable; reviews and ratings (overall, difficulty, workload, grading, foreigner-friendliness, review text); posts, comments, likes; reports; block relationships; login session data (a hash of the session token and its expiry); admin moderation/audit records; IP-based rate-limit records (§11). Aggregate, cookieless visit statistics (page views, visit info via Vercel Web Analytics) are collected and not used to identify individuals. Our application logs exclude personal data; provider infrastructure logs (§7–8) may record access IP/URL/time under their own policies.
3. Retention
| Data | Retention | Purpose |
|---|---|---|
| Account & profile | Until deletion | Identification and service |
| Login session | 30 days | Stay signed in; protection |
| Email-verification | 24 hours | Verify email |
| Password-reset | 1 hour | Account recovery |
| IP rate-limit records | Up to 48 hours | Abuse detection |
| Timetable, social login (Google/Apple) connections, block relationships, likes | Deleted on withdrawal | Personalized features |
| Reviews, posts, comments | Until you delete them or the service ends | Information & continuity |
| Report content & handling | 3 years from resolution | Abuse prevention; disputes |
| Admin audit logs | 3 years from the action | Operations; disputes |
Unresolved reports are measured from the resolution time and are not deleted by the period alone before handling. Records past their period are deleted or de-identified. IP rate-limit records are used only for security.
4. Account deletion & content retention
Delete anytime in the My tab. Account/profile/login data is deleted or de-identified; timetable, social login (Google/Apple) connections, sessions, block relationships, likes, and pending verification/reset data are deleted. Reviews/posts/comments may be kept with author-identifying information removed (reviews anonymous; nickname-authored posts show "Deleted member") — de-identified, not fully anonymized. Reports you filed and admin audit records (if you were an admin) may be kept for the §3 periods, linked to the de-identified account. To remove specific content, delete it before withdrawing.
5. Destruction
On a destruction trigger, data is deleted or made irrecoverable without undue delay. Personal data in database backups is deleted when the database provider's backup cycle lapses.
6. Third parties
We do not sell or share personal data, except where required by law within the prescribed scope and procedure.
7. Sub-processors
| Sub-processor | Task | Data | Terms |
|---|---|---|---|
| Vercel Inc. | Hosting / serverless | Request-processing data (incl. IP/URL) | vercel.com/legal/dpa |
| Supabase Inc. | Storing/managing member & service data | Member/service data | supabase.com/legal/dpa |
| Plus Five Five, Inc. (Resend) | Verification/reset emails | Recipient email, links | resend.com/legal/dpa |
8. International processing / transfer
The database is processed in the Korea (Seoul) region. Given the sub-processors and Google sign-in, some data is processed/stored abroad.
| Recipient | Country | Items | When/how | Purpose | Retention |
|---|---|---|---|---|---|
| Vercel Inc. | USA (global infra) | Request-processing data (IP/URL) | Transferred over the network during use | Hosting / serverless | Per §3 |
| Supabase Inc. | Korea (Seoul, storage) and USA (company/support) | Member/service data | Stored/processed during use | Database storage | Per §3 |
| Plus Five Five, Inc. (Resend) | USA | Recipient email, links | When sending auth email | Email delivery | As needed for delivery |
| Google LLC | USA (global) | Google account identifier, email, name | On Google sign-in | Social login | Per §3 |
| Apple Inc. | USA (global) | Apple account identifier, email, name | On Apple sign-in | Social login | Per §3 |
You may decline international transfer by not using the feature that entails it (e.g., Google sign-in) or by withdrawing; the feature or service is then limited.
9. Social sign-in (Google & Apple)
We receive your Google account identifier, email, and name (scopes: openid, email, profile). We store the identifier and email; the name is only the initial nickname. We never see your Google password; the access token is used transiently and not stored; no refresh token is requested/stored. Withdrawal deletes the Google connection we store; revoking the app on Google's side (myaccount.google.com/permissions) is a separate step. We comply with Google API Services User Data Policy (incl. Limited Use).
With Apple sign-in we receive your Apple account identifier, email (a relay address if you choose Hide My Email), and name. We store the identifier and email; the name is only the initial nickname. The token issued during Apple authentication is kept solely to revoke the connection with Apple when you delete your account, and for no other purpose; on deletion the stored Apple connection and token are removed and a revocation request is sent to Apple.
10. Cookies and session
A session cookie (httpOnly, secure in production, SameSite=Lax) keeps you signed in for 30 days; the server stores only a hash of the token. No advertising/tracking cookies.
11. IP-based security records
Rate-limit records block abuse, are cleared within 48 hours, and are used only for security — never for advertising, analysis, or profiling.
12. Your rights
Request access, correction, deletion, or suspension anytime. Profile edits and account deletion are in the My tab. Other requests: dahoo0404@gmail.com.
13. Security measures
Passwords are stored only as salted hashes; tokens as hashes with expiry; safe logging removes personal data from application logs; database access is restricted, and access controls such as row-level security (RLS) are applied to applicable tables; admin functions are authorized server-side.
14. No signup under age 14
Membership is not allowed under 14; users confirm they are 14 or older at signup.
15. Privacy contact
The Service is operated by BuddyPick (버디픽; representative: Dahoo Lee), business registration no. 345-04-03679, 610-ho, 6F, 194 Gonghang-daero, Gangseo-gu, Seoul, Republic of Korea. Privacy officer: Dahoo Lee. Contact: dahoo0404@gmail.com.
16. Changes
We may amend this policy and will notify via in-service notice or this page; material changes are announced before they take effect.
17. Effective date
This policy is effective from July 27, 2026.