개구리임

Privacy Policy (Next Step)

This policy was prepared based on the current implementation of the Next Step app. If mandatory laws of a country or region apply, those laws may take priority.


1. Purpose and Scope

Next Step is a local-first self-reflection app that helps users organize and review recurring problems, causes, next actions, and execution records on their own device.

The app does not require sign-up or login, and the developer does not operate a developer-managed server that receives memo content, folder information, backup files, PINs, biometric authentication information, or statistics data. However, the app may use Google AdMob and Google User Messaging Platform (UMP) to provide ads and advertising privacy choices.

2. Information Processed

2-1. Memo data directly entered or created by the user

The app may process the following information on the device to provide its features.

This information is processed on the user’s device to provide app features. The developer does not upload it to a developer-managed server.

2-2. Authentication and security information

To provide the app lock feature, the app may process the following information in secure storage on the device.

The original PIN is not stored or sent to the developer. Biometric authentication is performed by the operating system, and the app does not collect fingerprint images, face images, or biometric templates; it only checks whether authentication succeeded.

2-3. Local backup, restore, and sharing information

When the user directly exports, restores, or shares data, the app may process the following information.

Backup files and review images are created only when the user directly exports or shares them. The developer does not receive these files on a developer-managed server.

On supported platforms, the app may use Google AdMob and UMP. Google and advertising technology providers may process the following information.

This information may be processed for ad delivery, non-personalized ads, frequency capping, measurement, abuse prevention, consent management, security, and compliance with legal obligations. The app is implemented to request ads only when ad requests are available after the UMP process.

Google’s processing practices are described in the Google Privacy Policy and Google advertising technologies guide.

3. Purposes of Processing

Next Step processes information for the following purposes.

4. Storage Location and Retention Period

Category Storage location and period How to delete
Core data such as memos, folders, and completion status Stored in app-specific local storage until the user deletes it Delete in the app, delete app data, or uninstall the app
App lock settings, PIN hash, and biometric settings Stored in operating-system secure storage until settings are changed or app data is deleted Disable the related feature, delete app data, or uninstall the app
Backup files Stored in the device folder, document provider, or external storage location selected by the user until the user deletes them Delete from the relevant file manager app or storage service
Review images Temporarily generated just before sharing and processed by the operating system or the app selected by the user Exit the app, clear cache, or delete from the sharing app or storage location
Google advertising-related information Retained according to the policies and legal obligations of Google and related processors Change app or device ad settings, or use Google privacy settings

The operating system, device manufacturer, file provider, or cloud storage service may keep separate copies of app data or backup files created by the user. Those copies are governed by the relevant provider’s policies.

5. Third-Party Disclosure, Processing Entrustment, and Sale

The developer does not sell memo content, PINs, or local in-app data, and does not provide them to third parties through a developer-managed server.

When advertising or consent features operate, Google LLC, Google affiliates, advertising technology providers, and related processors may process the information described in Section 2-4. For details, please see the separate International Data Transfer Notice.

If the user directly selects an external app or cloud service to store a backup file, choose a file, or share a review image, that provider may process the file according to the user’s instructions. In that case, the provider’s privacy policy and security settings apply, and the developer does not control how the external service chosen by the user processes the file.

6. International Data Transfers

Memos and core app data are not transferred to a developer-managed server. However, when advertising and consent features are used, Google and related processors may process advertising and consent-related information in the United States and other countries where their infrastructure operates.

If the user selects an overseas cloud service or a foreign server-based service as a backup file storage location or sharing destination, the file may be transferred or synchronized to overseas servers according to the user’s choice. For details, please see the International Data Transfer Notice.

7. Permission Use

The app may use the following permissions or system features when the user uses the relevant feature.

If a permission is not allowed, only the relevant feature may be limited. When the system file picker is used, the app’s access is generally limited to the items selected by the user.

8. Security Measures and Limits

The current implementation uses the following measures.

No security method can completely eliminate all risks. Information may be exposed because of device loss, malware, operating-system vulnerabilities, weak PINs, files directly shared by the user, or security issues with external storage services.

If backup files or review images are stored or shared through external apps or cloud services, separate copies may remain in those locations. Users should directly check whether sensitive information is included.

9. User Rights and Choices

Because most information exists only on the user’s device, the developer cannot remotely view, modify, or delete it. Users can manage information in the following ways.

Requests regarding information directly provided by the user and held by the developer, such as inquiry emails, may be sent to the contact below. Where applicable by law, rights to access, correction, deletion, restriction of processing, withdrawal of consent, and complaints to a supervisory authority may be recognized.

10. Children’s Privacy

Next Step is not designed primarily for children and does not require children to enter personal information. Guardians may use parental control features provided by the device or app store.

11. Contact

For inquiries about personal information processing:

Requests regarding advertising information processed by Google may be made through the privacy controls and inquiry procedures described in the Google Privacy Policy.

12. Changes to This Policy

This policy may be revised if laws, app features, permissions, or the processing practices of third-party SDKs change. Important changes may be notified through this page, in-app screens, or distribution pages.

Last updated: 2026-07-08