Backers100
Back to homeLast updated · Updated daily
Privacy

Privacy policy

This policy describes how Backers100 processes user personal information in accordance with the Personal Information Protection Act (PIPA) of the Republic of Korea.

1. Principles (four core principles)

  • Minimum collection — only data essential for the service.
  • Minimum retention — data is destroyed promptly after the purpose is fulfilled; anonymization is preferred.
  • No purpose-other use — no use beyond the purposes consented to at sign-up.
  • Explicit consent — bundled consent is prohibited; consent is collected per item.

2. Collected and retained data

CategoryItemsCollected atRetention
Identity (required)user_id, email, password hashSign-upWhile the account is active
Identity (optional)Nickname, profile photo, bioSign-up / updateWhile the account is active
OAuthExternal system_user_id, emailConnectionWhile the connection is active
Behaviorfan_signals (cheers, donations, reports)On action30 days raw + permanent aggregates
Search / viewsearch_logs, view_logsOn action90 days
PaymentPayment records (PG responses)On payment5 years (e-commerce law)
ReceiptDonation-receipt identifier (no national ID)On donation5 years (tax law)
DeviceIP hash, User-Agent hash, fingerprintOn action30 days
Consent recordsconsent_recordsOn consentPermanent (legal evidence)

3. No sensitive data

Backers100 does not collect any of the following sensitive categories.

  • Resident registration numbers (donation receipts are issued directly by the NGO)
  • Religion / political views / philosophical beliefs
  • Health information / sexual orientation / ethnicity
  • Criminal records

User-authored content in cheer messages or bios remains within the user's freedom of expression; Backers100 does not separately categorize or analyze such content.

5. Delegations and cross-border transfers

ProviderServiceLocationTransferred data
AWS (Amazon Web Services Korea)Hosting / DB / storageSeoul regionAll data
AWS Bedrock (Anthropic Claude)AI analysis (sentiment, summary)US-East-1Article bodies, entity metadata (no user PII)
Toss PaymentsPaymentsSouth KoreaPayment identifier, amount
NGO (per organization)Donation settlementSouth KoreaDonor email, amount
Cognito (AWS)AuthenticationSeoul regionuser_id, email, password hash
Naver / Kakao / GoogleOAuth authenticationGlobalOAuth subject ID, email

6. Data-subject rights (four core rights)

  1. 01Right of access (PIPA Art. 35)

    All personal data is accessible from the mypage; a JSON download is also provided. Processing time: immediate (within 10 seconds).

  2. 02Right of correction and deletion (Art. 36)

    Nickname, profile, email, and cheer messages may be corrected or deleted by the user. Computed outputs such as Fan Engagement tier are not subject to corrections.

  3. 03Right to halt processing (Art. 37)

    A halt-processing request is honored within 7 days. New data collection is paused; existing aggregates are kept in anonymized form.

  4. 04Right of portability (Art. 35-2)

    Personal data may be exported in machine-readable formats (JSON / CSV). Available as immediate self-service from the mypage.

7. Account closure

  1. 01Closure request → 30-day grace period (account may be restored)
  2. 02After 30 days, user_id is replaced with a random UUID
  3. 03Nickname → "closed user", email → null, OAuth connections disconnected
  4. 04Behavioral data (fan_signals etc.) is kept in anonymized form for aggregate statistics
  5. 05Payment and donation transactions are retained for 5 years (e-commerce, tax law) with anonymized identifiers
  6. 06consent_records are retained permanently (legal evidence)

8. Data-breach response

Upon awareness of an incident, Backers100 responds in accordance with the PIPA procedure.

  • Within 24 hours of awareness — initial notice to affected users and relevant authorities (security-incident standard procedure applies)
  • Within 72 hours of awareness — formal notice to the Personal Information Protection Commission
  • Notification emails follow the standard template in our incident

9. AI PII handling

  • user_id, email, and other PII are removed before Bedrock (AI analysis) calls.
  • AI summaries are produced at the entity level and do not include user-identifying information.
  • Fan Engagement is computed by an internal algorithm; behavior sequences are not sent to Bedrock.
  • User data is not provided to external AI models as training data.

10. Privacy officer (CPO)

Name / title
(placeholder)
Email
Support@backersby.com
Role
Operation, audit, and external response for personal-information processing

11. Change notice

Change typeNotice methodWhen
Changes unfavorable to user rightsIn-app banner + email to all users + changelog30 days before effective
Simple wording / translation fixChangelogOn effective date
New processing itemIn-app + email + re-consent required30 days before effective
New processor delegationIn-app + email7 days before effective

Change history is preserved permanently at /privacy/changelog.