Privacy Policy (Contacts+) body
1. Information We Collect
The App collects and uses the following information.
1. Information you enter
- Phone number: used for account authentication (SMS verification)
- Names and notes for people: used to manage information about people you register
- Tag information: used to categorize and search for people
2. Photo and facial image data
- Photos: we collect photos you select from the camera or your photo library
- Facial image data: after a face is detected and cropped on your device using the Apple Vision Framework, it is sent to our server in JPEG format
- Facial image data is sent to Amazon Rekognition (AWS Tokyo region), a service provided by Amazon Web Services, Inc. (AWS, USA), where it is used to generate facial feature vectors and to match people
- Photo data is stored on Amazon S3 (AWS Tokyo region)
3. Location data
- When you register a person, we obtain your current location (latitude and longitude) with your permission
- You can still use the App’s core features even if you decline to share location data
4. Automatically collected information
- The date and time data is created or updated
2. Purpose of Use
We use the information we collect for the following purposes.
- Account authentication and identity verification
- Providing the ability to register, manage, and search information about people
- Matching and searching for people using facial recognition
- Providing classification and filtering by tags
- Recording the location captured at the time of registration
- Managing subscriptions and applying usage limits
3. Where Data Is Stored
On your device (local)
- Information about people, tags, and photo data are stored locally on your device
- Authentication information (user ID, phone number) is stored securely in the iOS Keychain
- Your subscription usage status is stored on your device
Amazon Web Services (AWS)
- Information about people (names, notes, tags, location) is synced to and stored on our servers on AWS
- Photos are stored on Amazon S3 (AWS Tokyo region)
- Facial image data is sent to Amazon Rekognition (AWS Tokyo region), where it is converted into and matched against facial feature vectors
- Recipient: Amazon Web Services, Inc. (headquartered in Seattle, Washington, USA)
All data is sent and received over HTTPS-encrypted communication.
4. Handling of Facial Data
The App handles facial image data and facial feature data that may fall under "Face Data" as defined in Apple App Store Review Guidelines 5.1.1(i), within the following scope.
Why we retain it
- We use it to automatically identify and match people you have registered within photos you later load, to help with name entry and searching for people
- Without this facial data, automatic matching against previously registered people is not possible, and you would need to manually confirm and enter each person for every photo
- Facial data is used only to the extent necessary for matching people, searching, and managing the people you have registered
Retention period
- Facial data is retained only for as long as your account remains active and the corresponding person data exists within the App
- We do not retain facial data for more than one year past your last active date
- When you delete a person’s data within the App, the related photo data, facial image data, and facial feature data are deleted from the server and from our storage locations on AWS
- If you request account cancellation or complete deletion of your data on our servers, we will promptly delete the related facial data
- We do not retain facial data indefinitely without reason
Processing and deletion on AWS
- Facial data sent to Amazon Rekognition is used to generate facial feature vectors and to match people
- Amazon Web Services, Inc. does not use facial data sent from the App for advertising, sale to third parties, or any purpose other than providing the App’s functionality
- Data on AWS remains under our control; when you perform a deletion within the App, our systems are designed to also delete the corresponding data on the AWS side
5. Data Sent to Third-Party Services
The App sends and processes data through the following third-party services.
| Service | Provider | Data involved | Purpose | Storage location |
|---|---|---|---|---|
| Amazon S3 | Amazon Web Services, Inc. (USA) | Photo data | Secure storage and backup of photos | AWS Tokyo region |
| Amazon Rekognition | Amazon Web Services, Inc. (USA) | Facial image data | Conversion to facial feature vectors and matching of people | AWS Tokyo region |
| AWS cloud server | Amazon Web Services, Inc. (USA) | Information about people (names, notes, tags, location) | Syncing and backup across devices | AWS Tokyo region |
| Apple StoreKit | Apple Inc. (USA) | Payment information (managed by Apple) | Processing subscriptions | Apple’s systems |
- The App does not collect or store any payment information (such as credit card details). All of it is processed by Apple’s systems.
- We do not use any third-party advertising networks or tracking tools.
- All data communication is encrypted using HTTPS (SSL/TLS).
- Processing of facial data by Amazon Rekognition is carried out in accordance with AWS’s data protection policies.
6. Data Sharing
- We do not sell any information we collect to third parties
- We do not use or share data for any purpose other than those described above
- Facial image data and photo data are sent to Amazon Web Services, Inc. (AWS) as described above, but are not provided to any third party other than AWS
- We do not provide data to any other third party, except where required to comply with a legal disclosure request
7. Data Protection
- All communication is encrypted using HTTPS (SSL/TLS)
- Authentication information is protected by the iOS Keychain
- Access to our servers is restricted to authenticated users
8. Your Rights
You have the following rights.
- Right of access: you can view all data you have registered
- Right of correction: you can edit and correct data you have registered
- Right of deletion: when you delete a person’s data within the App, the corresponding photo on our servers (Amazon S3) and facial feature data (Amazon Rekognition) are deleted at the same time. Uninstalling the App deletes the data stored on your device
- Control over location: you can change location permission at any time from iOS Settings
- Data retention: data is retained only for as long as your account remains active and for as long as is necessary to provide the App’s functionality. However, facial data is not retained for more than one year past your last active date. When you delete a person’s data within the App, the data on your device is deleted along with the corresponding photo data on AWS and facial feature data on Amazon Rekognition. We do not retain data indefinitely without reason.
9. About Subscriptions
- The App offers auto-renewing subscriptions
- Payment is processed through Apple’s App Store
- You can manage or cancel your subscription from iOS Settings > Apple ID > Subscriptions
- The App does not collect or store any payment information
10. Children’s Privacy
The App is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected information from a child under 13, we will delete it promptly.
11. Changes to This Privacy Policy
This Privacy Policy may be changed without prior notice. If there is a material change, we will notify you within the App. The current version of this Privacy Policy is always available on this page.
12. Contact
For questions or requests regarding this Privacy Policy, please contact us by direct message on our official X account (@nmri_jp) or Instagram (@nmri_jp).