Google API 사용자 데이터 공개
꾸림의 Google API 로부터 받은 정보의 사용 및 다른 앱으로의 전송은 제한적 사용(Limited Use) 요구 사항을 포함한 Google API 서비스 사용자 데이터 정책을 준수합니다.
무엇을 받나요
https://www.googleapis.com/auth/gmail.send— 이용자가 꾸림에서 직접 쓴 메일을 이용자의 Gmail 주소로 보내기 위해서만openid,email— 연결한 메일 주소를 확인해 ‘보낸 사람’에 보여 주기 위해서만
메일을 읽거나 고치는 권한(gmail.readonly, gmail.modify 등)은 요청하지 않습니다.
어떻게 쓰나요
- 이용자가 받는 사람·제목·본문을 쓰고 ‘보내기’를 누를 때에만 Gmail API(
users.messages.send)로 보냅니다. 이용자 모르게 보내는 일은 없습니다. - 보낸 메일의 받는 사람·제목·본문은 이용자가 고른 경우 이용자 팀의 고객 기록에 남습니다(팀 안에서만, 팀 데이터 권한 그대로).
- Google 로부터 받은 정보를 광고, 판매, 신용 평가, AI·머신러닝 모델 학습에 쓰거나 다른 회사에 넘기지 않습니다.
- 사람(운영자)이 이 정보를 보는 경우는 이용자가 명시적으로 동의했을 때, 보안·남용 조사에 꼭 필요할 때, 법이 요구할 때로 한정합니다.
어떻게 지키나요
- 권한 토큰(refresh token)은 별도 열쇠로 AES-256-GCM 암호화해 서버에만 두고, 브라우저나 다른 팀원에게 보내지 않습니다.
- 이용자는 설정 › 연결에서 언제든 연결을 끊을 수 있고, 끊으면 Google 에서 권한을 취소하고 토큰을 지웁니다. Google 계정 › 타사 앱에서도 끊을 수 있습니다.
- 탈퇴하면 연결 정보를 바로 지웁니다.
Google API Services User Data Policy — Limited Use disclosure
꾸림's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
- Scopes requested:
gmail.send,openid,email. We never request scopes that read or modify mailbox contents. - We use the
gmail.sendscope only to send a message that the user composed in 꾸림 and explicitly chose to send, from the user's own Gmail address. - We do not use Google user data for advertising, do not sell it, do not use it to train AI/ML models, and do not transfer it to third parties except as necessary to provide this user-facing feature or as required by law.
- Humans do not read this data unless the user gives affirmative consent, it is necessary for security purposes (such as investigating abuse), or it is required to comply with applicable law.
- Refresh tokens are encrypted at rest (AES-256-GCM) and never exposed to the browser. Users can disconnect at any time; we then revoke the token with Google and delete it.
문의: privacy@kkurim.kr · 개인정보 처리방침 · 이용약관