1. Purpose of the Privacy Policy
This policy aims to stipulate the collection, use, provision, and destruction of personal information processed while using the location-based tourist information inquiry and travel record sharing service (hereinafter "Service") provided by Whego, as well as the rights, obligations, and methods of exercising them by the user.
2. Personal Information Collected and Methods of Collection
1) Upon Registration and Basic Use
Required: Email, Password, Nickname
Optional: Profile Picture
2) Automatically Generated/Collected During Service Use
Location information (GPS latitude/longitude), Service usage records (search, bookmark, filter settings), Device information (IP address, Device ID, Advertising ID (ADID/IDFA)), Cookies, Log data
3) Upon Using the Travel Record Sharing Feature
Travelogue content (text, photos, videos) uploaded by the user, Metadata included in the content (such as location and time of capture), Friend lists or visibility settings entered when designating sharing targets
4) Collection Methods
Direct input and upload by the user, Automatic collection via device sensors, system logs, and external advertising platforms (SDKs)
3. Purpose of Collection and Use
- Member Management: Confirming intent to register/withdraw, user identification and authentication.
- Service Provision: Location-based tourist spot inquiry, providing filter and bookmark features.
- Travel Record Management: Storing and displaying user-uploaded content, sharing with friends or the public.
- Service Improvement & Statistics: Analyzing usage patterns, customized notifications and recommendations.
- Marketing & Advertising: Delivering promotional info, delivering personalized ads based on behavioral data, and analyzing ad performance.
- Legal Compliance: Responding to retention and provision requests under relevant laws.
4. Retention, Use Period, and Destruction Procedures
1) Retention Period:
All personal information, including basic info, location info, logs, and travel record content, will be retained for a 30-day grace period after the user requests account withdrawal to support recovery and resolve disputes, after which it will be completely destroyed. (However, if a user requests the deletion of individual content, it will be destroyed immediately).
2) Destruction Procedure:
Internal review after the 30-day grace period following withdrawal or purpose achievement. Electronic files are permanently deleted using irreversible technical methods. Photo and video files are also completely deleted from the applicable server.
5. Third-Party Provision and Entrustment of Processing
- Third-Party Provision: Content is shared with third parties (friends, public) only with the user's explicit consent.
- Entrustment of Processing: For service operation, tasks are entrusted as follows. Protective measures and restrictions on re-entrustment are specified in the contract:
1) Cloud storage operation and Push notification delivery: Google LLC (Firebase / Google Cloud)
2) In-app personalized ad delivery and statistical analysis: Google LLC
6. Processing of Location Information
- Purpose: Inquiring nearby tourist spots, adding location tags to travel records.
- Retention Period: Processed immediately upon collection and stored only in the app's internal storage; deleted after the 30-day grace period following withdrawal.
- Prohibition of Third-Party Provision: Location information is not provided or sold externally.
7. User Rights and Methods of Exercise
- Rights: Users may view, correct, delete, suspend processing, or withdraw consent regarding their personal information.
- Method of Exercise: App Settings → Account Info → Delete Account.
- Processing Time: Processed within 14 days of the request.
- Opt-out of Personalized Ads: Users can opt out of personalized ads via device settings at any time (Android: Settings → Google → Ads / iOS: Settings → Privacy & Security → Tracking).
8. Security Measures for Personal Information
Access control, Encrypted storage of key information, TLS communication protection, Intrusion prevention, anti-virus, regular security training, internal audits.
9. Personal Information of Children Under 14
This Service does not allow the registration and use by children under the age of 14. If it is recognized during service monitoring that the personal information of a child under 14 has been collected, the account and information will be destroyed immediately.
10. Privacy Officer and Contact
Officer: YS
Email: fogsea23@gmail.com
11. Notice of Changes to the Privacy Policy
In case of changes, notices will be provided via the App and email 7 days prior to implementation.
Announcement Date: March 25, 2026
Effective Date: April 1, 2026