プライバシーポリシー / データ取り扱い方針 Privacy Policy / Data Handling Policy
Internalium.io(以下「本サービス」)は、個人の生産性とプライバシーの両立を最も重要な課題と考えています。本サービスがどのようにデータを収集、処理、および連携するかについての境界線を以下に明示します。 Internalium.io ("the Service") believes that balancing personal productivity and privacy is our most critical mission. Below we explicitly define the boundaries of how we collect, process, and transmit your data.
コア原則:活動の生ログ(閲覧URL、ウィンドウタイトル等)は原則として手元を離れません。Core Principle: Raw activity logs (browsing URLs, window titles) do not leave your device.
1. 端末内(ローカル)でのみ処理されるデータ 1. Data Processed Strictly On-Device (Local)
以下の詳細な活動履歴(アクティビティ生ログ)は、端末内のローカルデータベースにのみ保存され、本サービス提供元のサーバーへ自動的に送信されることはありません。 The following detailed activity history (raw activity logs) is stored only in your on-device local database and is never automatically sent to our servers:
- アクティブウィンドウ履歴: 前面で開いていたアプリ名、およびウィンドウの詳細タイトル。 Active Window History: Names of foreground applications and detailed window titles.
- 閲覧ブラウザURL: ブラウザ拡張機能経由で検知された、詳細なドメインおよびパス。 Browsing Browser URLs: Detailed domains and URL paths captured via browser extensions.
- 意味ベクトルデータ: ローカルAIモデルによって算出された活動テキストのベクトル情報。 Semantic Vector Data: Vector representations of activity text generated by local AI models.
※前面ウィンドウ名の機密パターン(例: パスワードマネージャー等)は、ローカルDBに保存される前に自動的にマスク(秘匿)されます。 *Sensitive patterns in window titles (e.g., password managers) are automatically masked before saving to the local database.
2. 外部(クラウドAI)に一時送信されるデータ 2. Data Transmitted Temporarily to Cloud AI
本サービスは、高度な定性分析やパーソナライズされたフィードバック(コーチング機能)を実現するため、以下のデータを暗号化通信を介してクラウドAI(Gemini等のLLM)へ送信します。 In order to provide qualitative insights and personalized coaching, the Service transmits the following data securely to cloud AI providers (such as Gemini LLM):
- 目標設定テキスト(Goals): ユーザー自身が登録した「今日の目標」や「プロジェクト目標」などの文言。 Goal Texts: Text strings entered by the user (e.g., "today's goals" or "project objectives").
- 抽象化されたアクティビティ統計: 個人やドメインを特定できない形に集計された、タグ単位の活動時間比率(例: #Development: 46%, #Research: 24%)。 Abstracted Activity Statistics: Time percentages aggregated by semantic tags (e.g., #Development: 46%, #Research: 24%) that do not contain personal identifiers or raw domains.
- 精密分析リクエスト(オプトインオプション): ユーザーが特定の時間枠やアクティビティについて、より高精度な意味解析や内省生成を明示的に要求した場合、対象のマスク済みテキストがLLMへ一時的に送信されることがあります。 Fine-Grained Analysis (Opt-in): If you explicitly request fine-grained semantic analysis for a specific time block, relevant masked activity texts may be sent to the LLM.
3. クラウド連携の通信経路とBYOK設計 3. BYOK (Bring Your Own Key) & Communication Path
クラウドAI(LLM)との通信は、本サービス提供元(Internalium)のサーバーを仲介せず、端末から直接LLMプロバイダ(Google Cloud等)のAPIエンドポイントへ送信されます。 All cloud AI requests are sent directly from your device to the LLM provider's API endpoints (e.g., Google Cloud), without routing through or being cached on our server.
- ユーザーAPIキーの利用: 送信にはユーザー自身が設定したAPIキー(BYOK)が使用され、データは各プロバイダのAPIデータプライバシー規約に基づき、AIモデルの学習などには利用されません。 Use of Personal API Keys: Requests utilize your own API key. Under standard provider API policies, this data is not used for training foundation models.
4. クラウドAIパス(サブスクリプション)提供開始後のデータ経路(計画中) 4. Data Path for the Cloud AI Pass (Subscription) After Launch (Planned)
クラウドAIパス(サブスクリプションプラン)は本ページ公開時点ではまだ提供を開始していません。提供開始後は、以下の経路でデータが取り扱われる設計です。 The Cloud AI Pass (subscription plan) has not launched as of this page's publication. Once it launches, data will be handled via the following path.
- 中継サーバー経由の送信・共通APIキーの利用: BYOKプランでは端末から直接クラウドLLMへデータが送信されるのに対し、クラウドAIパスでは、ローカル側でマスキング済みのデータが、開発者が管理する中継サーバーへ一時的に送信され、そこから開発者が保有する共通のAPIキーを用いて外部LLMプロバイダへ送信されます(ユーザー自身のAPIキーは使用しません)。 Relay via our server, using a shared API key: Unlike the BYOK plan, where data travels directly from your device to the cloud LLM, the Cloud AI Pass sends already-masked data temporarily to a relay server we operate, which then forwards it to the external LLM provider using an API key we hold and share across subscribers (not your own key).
- 一時的な中継のみ(活動データ): 中継サーバーは、AI機能の提供、不正利用防止、および利用量管理に必要な範囲で活動データを一時的に処理し、レスポンス返却後は速やかに破棄します。サービス改善や開発者の利益のために恒久的に保存または分析することはありません。 Temporary relay only (activity data): The relay server processes your activity data only as needed to provide the feature, prevent abuse, and manage usage quotas, and discards it promptly after returning a response. It is never retained or analyzed permanently for service improvement or our own benefit.
- アカウント情報の保持: 利用者を識別するため、事前にご登録いただいたアカウント情報(メールアドレス等)はサーバー内に保持されます。前項の活動データとは異なり、アカウント情報はサブスクリプションの管理に必要な範囲で継続的に保持されます。 Retention of account information: To identify you, the account information you registered in advance (such as your email address) is retained on our server. Unlike the activity data described above, account information is retained on an ongoing basis, as needed to manage your subscription.
5. 本サービスサーバーに送信されるデータ(商用ウェブ) 5. Data Sent to Our Servers (Commercial Web)
商用ウェブサイト(Internalium.io)および早期アクセス申し込みフローにおいて、以下のデータが送受信されます。 The following data is handled strictly during the commercial website visits and early access signups:
- アクセスログ: ウェブサイトへのアクセス時、Cloud Runにて接続元IPアドレスおよびブラウザのUser-Agent情報が一時的に記録されます(セキュリティおよび統計目的)。 Access Logs: Web server logs (IP address and User-Agent) are logged in Cloud Run for security and traffic statistics.
- ウェイティングリスト登録情報: 早期アクセスのウェイティングリストにご登録いただく際、メールアドレス・ご興味のあるプラン・任意で入力いただいた「期待する内容」、および送信元IPアドレスが、Google Cloud Logging 上の専用ログ(データベースではありません)に記録されます。これらの情報は早期アクセスのご案内や製品に関するご連絡のためにのみ利用し、第三者への提供や他の目的での利用は行いません。 Waiting List Sign-up Data: When you join the early-access waiting list, your email address, the plan you're interested in, any optional "what you're hoping for" text, and your source IP address are recorded to a dedicated Google Cloud Logging log (not a database). This data is used solely to reach out about early access and related product updates — it is never shared with third parties or used for any other purpose.
- 決済情報: サブスクリプションのお支払いは、決済代行サービス(Lemon Squeezy等のMerchant of Record)を通じて処理されます。氏名・メールアドレス・お支払い情報は当該決済代行サービスが取り扱い、開発者側のサーバーがクレジットカード情報等を保持することはありません。 Payment information: Subscription payments are processed through a payment provider (a Merchant of Record such as Lemon Squeezy). Your name, email address, and payment details are handled by that provider — we do not store your card information on our own servers.