PRIVACY POLICY

개인정보 처리방침

최종 업데이트: 2026년 6월 10일 · 시행일: 2026년 6월 10일

요약 (TL;DR): DiveCore는 사용자의 다이빙 데이터를 사용자 본인의 iCloud 계정에만 저장합니다. 외부 분석 서비스, 광고 SDK, 추적 도구를 일체 사용하지 않습니다. 다이버 안전을 위한 최소 데이터만 수집하며, 모든 AI 분석은 사용자의 기기 안에서만 처리됩니다.

1. 수집하는 정보

1.1 다이빙 측정 데이터

Apple Watch Ultra의 수압 센서, 가속도계, 자이로스코프, 컴파스에서 측정된 다이빙 데이터를 다이브 로그로 저장합니다.

  • 수심, 다이빙 시간, 평균/최대 수심
  • 수온 (가용 시)
  • 심박수 (HealthKit 권한 부여 시)
  • 가스 혼합 비율, 탱크 압력 (사용자 입력)
  • 안전 정지 완료 여부, NDL, 비행금지 시간

1.2 위치 정보

다이빙 입수 시점과 출수 시점에 각 1회씩만 GPS 좌표를 기록합니다. 수중에서는 GPS가 작동하지 않으므로 위치 추적이 이루어지지 않습니다. 추정 수중 경로는 컴파스 + 모션 센서 + 경과 시간을 융합한 dead-reckoning 추정값이며, 실제 GPS 추적이 아닙니다.

위치 권한이 거부되면 다이브 로그는 GPS 좌표 없이 기록되며, 다른 모든 기능은 정상 작동합니다.

1.3 건강 및 피트니스 데이터 (HealthKit)

사용자가 명시적으로 동의한 경우에 한해 HealthKit의 다음 데이터를 사용합니다:

  • 수중 워크아웃 세션: 다이빙 운동으로 기록 (사용자의 Apple 건강 앱에 저장)
  • 심박수: 다이빙 세션 중 1Hz 샘플링 — 스트레스 zone 감지에 사용. 심박수 측정은 다이빙 화면을 연 시점(입수 전 대기·준비 단계 포함)부터 시작되며, 다이브 로그에는 다이빙 중의 샘플만 기록됩니다.

심박수 데이터는 사용자의 iPhone/Apple Watch 및 Apple 건강 앱 안에만 보관되며, iCloud 동기화 대상에서 제외되고 DiveCore 서버나 제3자에게 전송되지 않습니다. iCloud로 동기화되는 다이브 통계(수심·시간·점수 등)에는 심박수 값이 포함되지 않습니다.

1.4 계정 식별자 (Apple Sign-In)

Apple Sign-In을 통해 고유 사용자 식별자(opaque ID)를 받습니다. 이름과 이메일은 사용자가 동의한 경우에만 전달되며, 동의하지 않으면 익명 ID만 사용합니다.

Apple의 요구사항에 따라, 계정 삭제 시 Sign in with Apple 토큰을 폐기하기 위한 최소한의 인증 엔드포인트를 운영합니다. 이 서버는 토큰 폐기 용도의 불투명(opaque) 토큰만 저장하며, 건강 데이터나 다이브 데이터는 일체 수신·저장하지 않습니다.

1.5 구독 정보 (Apple StoreKit)

DiveCore Pro 구독 상태는 Apple StoreKit이 관리합니다. DiveCore는 거래 영수증 검증 외에는 결제 정보(카드 번호, 청구지 등)를 보지 않으며 저장하지도 않습니다.

2. 사용 목적

수집한 정보는 다음 목적으로만 사용됩니다:

  • 다이빙 측정 및 분석 (감압 계산, AI 리포트, Risk Index)
  • 다이브 로그 저장 및 다중 기기 동기화 (iCloud)
  • 다이브 사이트 위치 표시 (입수/출수 GPS)
  • 비행금지 시간 알림 (Live Activity)
  • 안전 알람 (상승 속도, PPO2 한계, NDL 접근)

마케팅, 광고, 프로파일링, 알고리즘 학습용 외부 전송에는 사용하지 않습니다.

3. 데이터 보관 위치

  • 다이브 로그 본체: 사용자의 Apple iCloud (CloudKit Private Database) — 전송 중·저장 시 암호화됩니다. 사용자가 iCloud 고급 데이터 보호(Advanced Data Protection)를 활성화한 경우에만 종단간 암호화가 적용됩니다. 심박수 값은 iCloud 동기화에서 제외됩니다.
  • 다이빙 중 센서 데이터: Apple Watch 로컬 SwiftData → iPhone 동기화 → iCloud
  • 건강 데이터: Apple 건강 앱 (사용자 iPhone)
  • 설정 / 사진 워터마크 프로젝트: 사용자 iPhone UserDefaults + iCloud 백업

DiveCore는 다이브 데이터나 건강 데이터를 저장하는 자체 서버를 운영하지 않습니다. 유일한 예외로, 계정 삭제 시 Sign in with Apple 토큰을 폐기하기 위한 최소한의 인증 엔드포인트를 운영하며, 이 서버에는 토큰 폐기용 불투명(opaque) 토큰만 저장됩니다(1.4항 참조).

4. 제3자 공유

DiveCore는 사용자 데이터를 제3자에게 판매하거나 공유하지 않습니다. 1.4항의 자체 인증 엔드포인트(토큰 폐기 전용)를 제외하면, 다음 Apple 플랫폼 서비스만 데이터 흐름에 관여합니다:

  • Apple iCloud / CloudKit: 다이브 로그 동기화 — Apple의 개인정보 처리방침 적용
  • Apple HealthKit: 다이빙 운동 세션 기록 — Apple의 처리방침 적용
  • Apple StoreKit: 구독 결제 — Apple의 처리방침 적용
  • Apple Sign-In: 계정 인증 — Apple의 처리방침 적용

이 외에는 분석 SDK(Firebase, Mixpanel, Amplitude 등), 광고 네트워크, 크래시 리포트 서비스(Sentry 등) 등 일체의 제3자 SDK를 사용하지 않습니다.

5. 데이터 보관 기간

  • 다이브 로그: 사용자가 직접 삭제할 때까지 보관 (사용자 권한)
  • Watch 디버그 CSV 로그: 최대 30일 또는 15개 파일 (자동 회전 삭제)
  • 계정 식별자: 계정 삭제 시 즉시 폐기

6. 사용자 권리

사용자는 언제든 다음 권한을 행사할 수 있습니다:

  • 열람·수정: 앱 내에서 모든 다이브 로그를 직접 확인하고 편집
  • 삭제: 설정 → 계정 삭제 → 모든 로컬 데이터 + iCloud 데이터 즉시 제거 (Apple CloudKit Private Database에서 영구 삭제)
  • 이동: 다이브 로그를 사진 카드 또는 텍스트로 내보내기
  • 철회: HealthKit / 위치 권한을 iPhone 설정에서 언제든 철회 가능 — 기능 제한만 발생, 데이터는 보존됨

위 권리 행사 후 24시간 안에 모든 사용자 데이터가 시스템에서 제거됩니다.

7. 어린이 개인정보

DiveCore는 13세 미만 어린이를 대상으로 하지 않습니다. 다이빙은 자격 있는 다이버만 수행해야 하며, 어린이의 개인정보를 의도적으로 수집하지 않습니다.

8. 보안

모든 다이브 데이터는 Apple의 표준 보안 메커니즘(전송 중·저장 시 iCloud 암호화, Keychain, App Sandbox)으로 보호되며, 사용자가 iCloud 고급 데이터 보호를 활성화하면 종단간 암호화가 적용됩니다. DiveCore의 인증 엔드포인트(1.4항)는 토큰 폐기용 불투명 토큰만 저장하며, 다이브·건강 데이터는 자체 서버에 존재하지 않습니다.

9. 약관 변경

본 처리방침이 변경되는 경우 앱 내 알림 또는 본 페이지의 "최종 업데이트" 날짜로 사전 고지합니다. 중대한 변경 시 앱 첫 실행 시 동의 화면을 다시 표시합니다.

문의처

개인정보 처리 관련 문의는 아래로 보내주세요:

이메일: support@furyus.dev

답변까지 영업일 기준 5일 이내 회신 드립니다.

PRIVACY POLICY

Privacy Policy

Last updated: June 10, 2026 · Effective: June 10, 2026

Summary (TL;DR): DiveCore stores your dive data only in your own iCloud account. We do not use any external analytics services, advertising SDKs, or tracking tools. We collect only the minimum data needed for diver safety, and all AI analysis is processed entirely on your device.

1. Information We Collect

1.1 Dive Measurement Data

We save dive data measured by the Apple Watch Ultra's depth (water pressure) sensor, accelerometer, gyroscope, and compass as a dive log.

  • Depth, dive duration, average/maximum depth
  • Water temperature (when available)
  • Heart rate (when HealthKit permission is granted)
  • Gas mix ratio, tank pressure (entered by the user)
  • Safety-stop completion status, NDL, no-fly time

1.2 Location Information

We record GPS coordinates only once each at the moment of dive entry and dive exit. Since GPS does not work underwater, no location tracking takes place. The estimated underwater path is a dead-reckoning estimate fusing compass + motion sensors + elapsed time, and is not actual GPS tracking.

If location permission is denied, dive logs are recorded without GPS coordinates, and all other features work normally.

1.3 Health and Fitness Data (HealthKit)

Only when you have explicitly consented do we use the following HealthKit data:

  • Underwater workout sessions: recorded as a diving workout (saved in your Apple Health app)
  • Heart rate: sampled at 1 Hz during a dive session — used for stress-zone detection. Heart-rate monitoring starts when you open the dive screen (including the brief pre-dive ready/standby phase); only samples taken during the dive itself are recorded in the dive log.

Heart-rate data stays on your iPhone/Apple Watch and in the Apple Health app; it is excluded from iCloud sync and is never transmitted to DiveCore servers or any third party. The dive statistics that sync to iCloud (depth, time, scores, etc.) do not include heart-rate values.

1.4 Account Identifier (Apple Sign-In)

Through Apple Sign-In, we receive a unique user identifier (opaque ID). Your name and email are provided only if you consent; if you do not consent, only the anonymous ID is used.

As required by Apple, we operate a minimal authentication endpoint used solely to revoke your Sign in with Apple token when you delete your account. This server stores only an opaque token for revocation purposes and never receives or stores any health or dive data.

1.5 Subscription Information (Apple StoreKit)

DiveCore Pro subscription status is managed by Apple StoreKit. Aside from verifying transaction receipts, DiveCore does not see or store any payment information (card numbers, billing address, etc.).

2. How We Use Information

The information we collect is used solely for the following purposes:

  • Dive measurement and analysis (decompression calculation, AI reports, Risk Index)
  • Dive log storage and multi-device synchronization (iCloud)
  • Displaying dive site location (entry/exit GPS)
  • No-fly time notifications (Live Activity)
  • Safety alarms (ascent rate, PPO2 limits, NDL approach)

It is not used for marketing, advertising, profiling, or external transmission for algorithm training.

3. Where Data Is Stored

  • Main dive logs: your Apple iCloud (CloudKit Private Database) — encrypted in transit and at rest. End-to-end encryption applies only when you enable iCloud Advanced Data Protection. Heart-rate values are excluded from iCloud sync.
  • In-dive sensor data: Apple Watch local SwiftData → synced to iPhone → iCloud
  • Health data: Apple Health app (your iPhone)
  • Settings / photo watermark projects: your iPhone UserDefaults + iCloud backup

DiveCore does not operate any server that stores your dive or health data. The only exception is a minimal authentication endpoint used to revoke your Sign in with Apple token upon account deletion; it stores only an opaque revocation token (see Section 1.4).

4. Third-Party Sharing

DiveCore does not sell or share your data with third parties. Apart from our own authentication endpoint described in Section 1.4 (token revocation only), only the following Apple platform services are involved in the data flow:

  • Apple iCloud / CloudKit: dive log synchronization — Apple's privacy policy applies
  • Apple HealthKit: recording diving workout sessions — Apple's policy applies
  • Apple StoreKit: subscription payments — Apple's policy applies
  • Apple Sign-In: account authentication — Apple's policy applies

Beyond these, we do not use any third-party SDKs whatsoever, including analytics SDKs (Firebase, Mixpanel, Amplitude, etc.), ad networks, or crash-report services (Sentry, etc.).

5. Data Retention Period

  • Dive logs: retained until you delete them yourself (under your control)
  • Watch debug CSV logs: up to 30 days or 15 files (automatically rotated and deleted)
  • Account identifier: discarded immediately upon account deletion

6. Your Rights

You may exercise the following rights at any time:

  • Access · Modify: view and edit all dive logs directly within the app
  • Delete: Settings → Delete Account → immediately removes all local data + iCloud data (permanently deleted from the Apple CloudKit Private Database)
  • Portability: export dive logs as photo cards or text
  • Withdraw consent: HealthKit / location permissions can be revoked at any time in iPhone Settings — this only limits features, and your data is preserved

After you exercise the above rights, all user data is removed from the system within 24 hours.

7. Children's Privacy

DiveCore is not directed to children under 13. Diving must be performed only by qualified divers, and we do not intentionally collect children's personal information.

8. Security

All dive data is protected by Apple's standard security mechanisms (iCloud encryption in transit and at rest, Keychain, App Sandbox); end-to-end encryption applies when you enable iCloud Advanced Data Protection. Our authentication endpoint (Section 1.4) stores only an opaque revocation token — no dive or health data ever resides on our servers.

9. Changes to This Policy

If this policy changes, we will give advance notice via an in-app notification or the "Last updated" date on this page. For material changes, the consent screen will be shown again on the next app launch.

Contact

For inquiries regarding the handling of personal information, please contact us at:

Email: support@furyus.dev

We will respond within 5 business days.