Privacy Policy
This policy explains how VIBRA handles information across its websites, apps, support channels, and Google-connected products.
1. Scope
This Privacy Policy applies to websites, apps, support channels, and related services provided by VIBRA, Inc.
If a specific product requires additional explanation, VIBRA may provide it in the app, App Store listing, support page, or other product-specific notice.
2. Information we collect
VIBRA may collect inquiry details, product names, device and browser information, usage information, error information, purchase-related information, and support-related information.
Depending on the product features used, VIBRA may process user-entered content, settings, notification-related information, and references to files stored on the user's device.
For VIBRA Tasks, VIBRA may collect a stable app-install identifier, product interactions, coarse purchase outcomes, launch, sync, and operation timing, crash and diagnostic information, and session replays with text inputs masked for product improvement and issue investigation. After sign-in, this data may be associated with a stable VIBRA Account analytics identifier. Google Tasks content, Google task or list IDs, search terms, OAuth tokens, precise location, and attachment filenames are not sent to PostHog.
For VIBRA Cocktails, VIBRA may collect submitted catalog search terms, viewed public catalog IDs, selected public ingredient and filter IDs, an anonymous app-install identifier, product interactions, coarse Full Bar purchase outcomes, crash and diagnostic information, and session replays with text inputs masked for product improvement and issue investigation. Complete favorites and My Bar lists are stored on the device. Location analytics is disabled.
3. How we use information
VIBRA uses information to provide services, verify users, respond to inquiries, investigate issues, improve quality, deliver notifications, confirm purchase status, prevent abuse, and comply with legal obligations.
VIBRA does not use user-entered content for advertising, credit decisions, sale to third parties, or purposes unrelated to the user-facing service.
4. Google Account and Google service connections
Some VIBRA products connect to Google Accounts or Google services only after the user grants permission. For example, VIBRA Tasks uses https://www.googleapis.com/auth/tasks so users can view, create, edit, complete, reopen, move, and delete their own Google Tasks.
Information obtained through Google connections is used only to provide user-facing features. VIBRA does not receive or store Google passwords.
Google Tasks content is processed only as needed for in-app display, editing, notifications, sharing, and recovery of pending edits.
VIBRA-owned metadata for app-only features may be handled in VIBRA Cloud with the Google task or list identifiers needed to attach it to the correct item. VIBRA Cloud does not store Google Tasks content or OAuth tokens.
5. Limited use of Google user data
VIBRA's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Google user data is not used for advertising, credit decisions, data sale, unrelated analytics, or AI model training.
Google user data is not shared, transferred, or disclosed to third parties except as needed to sync with the Google Tasks API, operate the service, provide support, address security issues, comply with law, or complete sharing explicitly chosen by the user.
VIBRA personnel access user-entered content obtained through Google connections only when the user explicitly shares it for support, when needed for security, when required by law, or with user consent.
6. Storage and handling
Information required to provide services may be stored on the user's device, in systems managed by VIBRA, or in third-party services used to provide the product.
Google authorization information is stored in secure storage on the user's device and is used to connect to Google services, refresh the connection, and disconnect the connection.
Some information, such as attachments or images, may remain on the user's device. If cloud storage scope changes, VIBRA will update this policy or the relevant in-app notice.
7. Third-party services
VIBRA may use third-party services such as Google, Apple, Supabase, PowerSync, RevenueCat, PostHog, analytics, diagnostics, and notification delivery providers where needed to provide its services.
VIBRA Cloud sync uses Supabase and PowerSync for VIBRA Account, Pro, sync state, VIBRA-owned metadata, and the Google task or list identifiers needed to attach that metadata to the correct Google Tasks item.
PostHog events are grouped with a stable app-install identifier so VIBRA can understand activity from the same installation. In VIBRA Tasks, events may be associated with a stable VIBRA Account analytics identifier after sign-in. This association is used for product analytics and issue investigation, not advertising or tracking across other companies' apps or websites. Email addresses, App Store transaction IDs, receipts, and StoreKit verification payloads are not sent to PostHog.
Information sent to third-party services is limited to what is necessary for product functionality, purchase confirmation, issue investigation, notification delivery, and support. VIBRA does not use advertising tracking SDKs.
8. Retention and deletion
VIBRA retains information only for as long as needed for the purposes described in this policy or as required by law. Information that is no longer needed is deleted or anonymized where reasonably possible.
Google connections can be disconnected in the app or from the user's Google Account settings. After disconnection, VIBRA products do not make new requests to the connected Google service.
Users may contact support at https://vibra.jp/support to ask about data deletion or data handling.
9. Security
VIBRA applies reasonable safeguards, including access controls, protected communication, and permission management, to reduce the risk of unauthorized access, loss, alteration, or disclosure.
10. Changes to this policy
VIBRA may update this policy when its services, processed information, third-party services, laws, or review requirements change. Material changes will be communicated through the website or in-app notice where appropriate.
11. Contact
Questions about this policy or data handling can be sent through https://vibra.jp/support.