Faith Mirror 개인정보 처리방침 / Privacy Policy
시행일 / Effective date: 2026-07-12
최종 업데이트 / Last updated: 2026-07-12
문의 / Contact: app.2weeks@gmail.com
한국어
1. 한눈에 보기
Faith Mirror는 기기 우선(device-first) 앱입니다. 회원가입이 없고 별도의 Faith Mirror 서버도 운영하지 않습니다. 테스트 결과, 성장 플랜, 저널 등 대부분의 데이터는 사용자의 기기 안에 머뭅니다. AI 요청은 사용자가 선택한 방식에 따라 기기 안에서 처리되거나, 명시적으로 선택한 Apple Private Cloud Compute 또는 동의 후 설정한 OpenAI로 전송될 수 있습니다.
2. 기기에 저장되는 정보
다음 정보가 SwiftData, UserDefaults, Keychain 등 Apple이 제공하는 기기 저장소에 보관될 수 있습니다.
- 테스트 응답, 점수 및 결과
- 성장 플랜 진행 상황, 체크인 및 메모
- 저널 제목, 본문 및 태그
- 닉네임
- 알림 및 언어 설정
- 생성된 AI 답변
- 사용자가 직접 등록한 OpenAI API 키
OpenAI API 키는 잠금 해제된 이 기기에서만 사용할 수 있도록 Keychain에 저장됩니다.
3. 로컬 저장과 백업
Faith Mirror 1.0은 기록을 이 기기에만 저장하며 자동 클라우드 저장 기능을 제공하지 않습니다. 다른 곳에 보관하려면 설정에서 백업 파일을 직접 내보내 주세요. OpenAI API 키는 백업에 포함되지 않습니다.
4. AI 처리 방식 (선택)
AI 처리는 사용자가 AI 요청 버튼을 누를 때만 시작됩니다.
- 기기 내 모델: 지원되는 기기와 언어에서 Apple Foundation Models를 기기 안에서 실행하며 요청 내용을 서버로 전송하지 않습니다.
- 자동: 기기 내 모델을 우선 사용합니다. 사용할 수 없고 OpenAI API 키와 명시적 동의가 준비된 경우에만 OpenAI를 대체 모델로 사용합니다. Private Cloud Compute는 자동으로 선택하지 않습니다.
- Private Cloud Compute: 사용자가 이 방식을 직접 선택한 경우에만 Apple PCC를 사용합니다.
- OpenAI: 사용자가 본인의 API 키를 등록하고 명시적으로 동의한 경우에만 사용합니다.
5. Apple Private Cloud Compute (선택)
사용자가 설정에서 Private Cloud Compute를 선택하고 AI 요청을 시작하면 기능에 필요한 다음 정보가 암호화되어 Apple의 PCC 서버에서 처리될 수 있습니다.
- 결과 해설: 점수, 결과 유형, 일부 질문과 선택 답변
- 성장 플랜 격려: 체크인, 메모 및 진행률
- 저널 해설: 제목, 본문, 태그, 최근 저널 제목 및 결과 유형
Apple은 PCC로 보낸 요청 데이터와 응답을 저장하지 않고 Apple이 접근할 수도 없으며 요청 처리에만 사용한다고 밝힙니다. PCC에는 인터넷 연결, 지원되는 OS·기기 및 사용자별 일일 사용 한도가 적용됩니다. PCC를 사용할 수 없으면 Faith Mirror가 지원되는 기기 내 모델을 사용할 수 있지만 OpenAI로 자동 전송하지 않습니다.
6. OpenAI 전송, 동의 및 보관 (선택)
OpenAI는 사용자가 본인의 API 키를 등록하고 명시적으로 동의한 뒤
OpenAI를 직접 선택하거나 자동 방식의 대체 모델로 요청할 때만 사용됩니다.
키 확인 시 API 키와 최소 확인 요청이 api.openai.com으로
전송됩니다. AI 요청에는 5항에 적힌 기능별 정보가 포함될 수 있습니다.
종교적 성찰과 자유 입력 내용은 민감정보일 수 있습니다. 요청은 사용자의
OpenAI 계정에서 처리되며 Faith Mirror 서버를 거치지 않습니다.
OpenAI는 사용자의 API 계정에 적용되는 OpenAI 서비스 약관, API 데이터 제어 정책 및 비즈니스 데이터 개인정보 보호 약속에 따라 요청을 처리합니다. 실제 보관 기간은 계정, 조직 및 프로젝트 설정과 당시 정책에 따라 달라질 수 있으며 악용 방지 로그가 보관될 수 있습니다. Faith Mirror는 OpenAI가 보관한 기록을 관리할 수 없습니다. OpenAI 플랫폼에서 데이터 제어를 확인하고 OpenAI 개인정보 포털에서 관련 요청을 할 수 있습니다.
설정에서 API 키 삭제를 선택하거나 OpenAI 전송 동의를 끄면 이후 OpenAI 전송만 중단됩니다. 기기 내 모델과 PCC는 계속 사용할 수 있습니다. 모든 데이터 삭제는 API 키, 동의 기록 및 AI 방식 설정도 삭제합니다.
7. 보안과 생체 인증
저널 잠금에는 Apple의 기기 소유자 인증(Face ID, Touch ID 또는 기기 암호)을 사용합니다. Faith Mirror는 얼굴이나 지문 원본 등 생체정보를 받거나 저장하지 않고 인증 성공 여부만 전달받습니다. OpenAI API 키는 Keychain에 저장되고 PCC와 OpenAI 네트워크 전송에는 암호화된 연결이 사용됩니다. 보호된 저널이 백업에 포함되면 내보내기 전에 기기 인증을 다시 요청합니다.
8. 백업과 공유
백업 파일은 비밀번호 기반 AES-GCM 암호화를 기본으로 사용합니다. 사용자는 경고를 확인한 뒤 암호화하지 않은 평문 내보내기를 선택할 수 있습니다. 내보낸 백업과 결과 이미지는 사용자가 iOS 시스템 공유 시트에서 직접 선택한 앱, 사람 또는 저장 위치로 전달되며, 전달 이후에는 해당 수신자와 서비스의 정책이 적용됩니다.
앱의 모든 데이터 삭제 기능이나 앱 삭제는 이미 내보내거나 공유한 사본을 삭제하지 않습니다. 평문 백업 및 공유 대상은 특히 신중하게 관리해 주세요.
9. 광고, 분석 및 추적 없음
Faith Mirror는 광고, 제3자 분석·추적 SDK 또는 데이터 브로커를 사용하지 않습니다. 다른 회사의 앱이나 웹사이트 활동과 데이터를 결합해 사용자를 추적하지 않으며 데이터를 판매하지 않습니다.
10. 보관과 삭제
기기 기록과 생성된 AI 답변은 사용자가 삭제할 때까지 보관됩니다.
- Apple은 PCC 요청 데이터와 응답을 저장하지 않는다고 밝힙니다.
- API 키 삭제: Keychain의 API 키와 OpenAI 동의 기록을 삭제합니다.
- 모든 데이터 삭제: SwiftData 기록, API 키, AI 방식 설정, 캐시 및 Faith Mirror 알림을 삭제합니다. 앱을 삭제하는 것만으로는 Keychain 또는 내보낸 파일의 삭제를 보장할 수 없습니다. 완전한 삭제가 필요하면 앱을 삭제하기 전에 앱 안의 삭제 기능과, 해당하는 경우 OpenAI 계정의 데이터 관리 기능을 사용하고 내보낸 파일은 별도로 삭제해 주세요.
11. 어린이
Faith Mirror는 만 13세 미만 어린이를 대상으로 하지 않으며 어린이의 정보를 의도적으로 수집하지 않습니다.
12. 정책 변경
이 방침이 변경되면 이 문서와 최종 업데이트 날짜를 갱신합니다. Apple PCC 또는 OpenAI로 보내는 정보나 목적이 실질적으로 변경되면 새 안내 또는 필요한 동의를 제공합니다.
13. 문의
개인정보와 관련한 문의는 app.2weeks@gmail.com으로 보내주세요.
English
1. At a glance
Faith Mirror is a device-first app with no account sign-up and no Faith Mirror-operated server. Most information—including test results, growth plans, and journals—remains on your device. Depending on the option you choose, an AI request may be processed on device, sent to Apple Private Cloud Compute after you explicitly select it, or sent to OpenAI after you configure and consent to that service.
2. Information stored on your device
The following information may be stored using Apple device storage such as SwiftData, UserDefaults, and Keychain:
- Test answers, scores, and results
- Growth-plan progress, check-ins, and notes
- Journal titles, bodies, and tags
- Nickname
- Notification and language settings
- Generated AI responses
- An OpenAI API key that you provide
Your OpenAI API key is stored in Keychain so it is accessible only while this device is unlocked.
3. Local storage and backups
Faith Mirror 1.0 stores records only on this device and does not provide automatic cloud storage. To keep a copy elsewhere, export a backup file yourself from Settings. Your OpenAI API key is never included in a backup.
4. AI processing choices (optional)
AI processing starts only when you tap an AI request button.
- On-Device Model: Runs Apple Foundation Models locally on supported devices and languages and does not send request content to a server.
- Automatic: Prioritizes the on-device model. OpenAI is used as a fallback only when the local model is unavailable and you have already provided a key and explicit consent. Private Cloud Compute is never selected automatically.
- Private Cloud Compute: Uses Apple PCC only after you select this option directly.
- OpenAI: Used only after you add your own API key and explicitly consent.
5. Apple Private Cloud Compute (optional)
When you select Private Cloud Compute in Settings and start an AI request, the following information needed by the feature may be encrypted and processed on Apple's PCC servers:
- Result insight: scores, result type, and selected question-and-answer text
- Growth-plan encouragement: check-ins, notes, and progress
- Journal insight: title, body, tags, recent journal titles, and result type
Apple states that request data and responses sent to PCC are not stored or accessible to Apple and are used only to fulfill the request. PCC requires a network connection and a supported OS and device, and a per-user daily usage limit applies. If PCC is unavailable, Faith Mirror may use a supported on-device model but never sends the request to OpenAI automatically.
6. OpenAI transfer, consent, and retention (optional)
OpenAI is used only after you add your own API key, explicitly
consent, and make a request with OpenAI selected directly or available
as the Automatic fallback. Key validation sends the key and a minimal
validation request to api.openai.com. An AI request may
include the feature-specific information listed in section 5. Faith
reflections and free-form text may be sensitive. Requests are processed
under your OpenAI account and never pass through a Faith Mirror
server.
OpenAI processes requests under the OpenAI Services Agreement, API data controls, and business data privacy commitments that apply to your API account. Actual retention depends on your account, organization, and project settings and then-current policies; abuse-monitoring logs may be retained. Faith Mirror cannot manage records held by OpenAI. Review controls on the OpenAI Platform and submit related requests through the OpenAI Privacy Portal.
Deleting the API key or withdrawing OpenAI consent stops only future OpenAI transfers. The on-device model and PCC remain available. Delete All Data also removes the key, consent record, and AI-provider preference.
7. Security and device authentication
Journal locks use Apple's device-owner authentication (Face ID, Touch ID, or device passcode). Faith Mirror receives only the authentication result and never receives or stores face images, fingerprints, or other biometric data. The OpenAI API key stays in Keychain, and PCC and OpenAI transfers use encrypted connections. If a backup includes a protected journal, Faith Mirror authenticates again before export.
8. Backups and sharing
Password-based AES-GCM encryption is the default for backup files. You may choose plaintext export only after acknowledging a warning. Exported backups and result images go to the app, person, or location you select in the iOS system share sheet; after delivery, the recipient's policies apply.
Delete All Data and uninstalling Faith Mirror do not remove copies you have already exported or shared. Take particular care with plaintext backups and sharing recipients.
9. No ads, analytics, or tracking
Faith Mirror has no advertising, third-party analytics or tracking SDKs, or data-broker sharing. We do not combine your data with activity from other companies' apps or websites for tracking, and we do not sell data.
10. Retention and deletion
Device records and generated AI responses remain until you delete them.
- Apple states that PCC request data and responses are not stored.
- Delete API Key: removes the Keychain API key and OpenAI consent record.
- Delete All Data: removes SwiftData records, the API key, AI-provider preference, cache, and Faith Mirror notifications. Uninstalling alone cannot guarantee deletion of Keychain or exported copies. When complete deletion is required, use the in-app deletion controls and, when applicable, OpenAI account controls before uninstalling, then delete exported files separately.
11. Children
Faith Mirror is not directed to children under 13 and does not knowingly collect their information.
12. Changes
If this policy changes, we update this document and its last-updated date. A material change to information or purposes involving Apple PCC or OpenAI receives a new disclosure or consent when required.
13. Contact
For privacy questions, contact app.2weeks@gmail.com.