개인정보처리방침
Stampa(이하 "앱") · 시행일 2026-06-17 · 개정 2026-07-11
Stampa 는 「개인정보 보호법」 등 관계 법령을 준수하며, 본 방침을 통해 개인정보의 수집·이용·보관·파기 및 이용자 권리를 고지합니다.
핵심. 원본 사진·영상은 이용자 기기에만 저장되며 회사 서버로 전송되지 않습니다. 클라우드 인증은 위·변조 검증용 해시값과 메타데이터(좌표·시각·발급번호)만 전송합니다.
1. 수집하는 개인정보 항목
촬영물(사진·영상) 및 음성수집 시점: 촬영 시 · 처리: 기기 내 저장만, 회사 서버 미전송
위치정보(GPS 좌표)수집 시점: 촬영·미리보기 시 · 처리: 워터마크 표기 + 주소 변환(제3자) + 날씨 조회(제3자)
인증 등록 정보 — 발급번호, 미디어 SHA-256 해시, 촬영 신고시각, 좌표, 익명 기기식별자, 촬영자 이름(촬영자 표시 설정 시), 템플릿 ID수집 시점: 클라우드 인증 등록 시 · 처리: 인증 서버 전송·보관(원본 미디어 제외, 해시·메타만)
팀 공유 시 — 공유한 사진, 좌표(위·경도), 담당자·메모·업로더 이름수집 시점: 이용자가 팀에 공유할 때만 · 처리: 같은 팀 구성원에게 제공(「위치정보법」 §19 제3자 제공)
오류 진단 정보수집 시점: 앱 오류 발생 시 · 처리: 진단 목적, 개인 식별정보 마스킹
2. 이용 목적
촬영물의 위·변조 인증 및 검증, 위치·시각·날씨 표기, 서비스 운영 및 품질 개선에 이용합니다.
3. 제3자 제공 및 처리위탁
Supabase목적: 인증 등록·조회 서버 호스팅 + 팀 공유 저장 · 항목: 발급번호·해시·촬영시각·좌표·익명 기기식별자·촬영자 이름(설정 시)·팀 공유 시 사진·담당자·메모 · 데이터 리전: 대한민국(서울)
Kakao(국내) · 단말 OS 지오코더(국외)목적: 좌표를 주소로 변환 · 항목: GPS 좌표
Open-Meteo목적: 날씨 조회 · 항목: GPS 좌표
Sentry목적: 오류 진단 · 항목: 진단 로그(개인정보 마스킹)
4. 보유·이용 기간 및 파기
- 인증 검증 레코드(발급번호·해시·촬영 메타데이터 — 원본 사진·영상은 포함하지 않음) — 검증 서비스가 제공되는 동안 검증 지속을 위해 보관합니다. 검증 레코드는 계정 정보와 분리되어 보관되므로, 회원 탈퇴만으로는 파기되지 않습니다.
- 촬영물 — 기기 내 저장이며 이용자가 직접 삭제합니다.
- 오류 진단 정보 — 해당 제3자 정책에 따릅니다.
이용자는 발급번호를 첨부해 개별 검증 레코드의 삭제를 아래 문의처를 통해 요청할 수 있습니다. 서비스가 종료되는 경우 최소 30일 전 앱 및 본 페이지를 통해 고지하며, 고지된 종료일 이후 보관 중인 검증 레코드는 파기됩니다.
5. 이용자 권리
개인정보 열람·정정·삭제·처리정지를 요청할 수 있습니다(앱 내 삭제 기능 및 아래 문의처). 인증 등록 정보 삭제는 발급번호를 기준으로 문의처를 통해 요청합니다.
6. 권한 및 거부 시 영향
- 카메라(필수) — 촬영에 사용합니다.
- 위치(선택) — 거부 시 좌표·주소가 표기되지 않습니다.
- 마이크(선택) — 거부 시 무음으로 녹화됩니다.
7. 만 14세 미만 아동
법정대리인의 동의 없이 만 14세 미만 아동의 개인정보를 수집하지 않습니다.
8. 개인정보 보호책임자 및 문의처
이메일 privacy@getstampa.com
9. 시행 및 변경
본 방침은 2026-06-17 부터 시행하며, 2026-07-11 개정되었습니다. 변경 시 앱 및 본 페이지를 통해 사전 고지합니다.
Privacy Policy
Stampa (the "App") · Effective 2026-06-17 · Revised 2026-07-11
Stampa complies with applicable data-protection laws and, through this policy, discloses how personal data is collected, used, retained, and deleted, as well as your rights as a user.
Core. Original photos and videos are stored only on your device and are never sent to our servers. Cloud verification transmits only a tamper-check hash and metadata (coordinates, time, issue number).
1. Data We Collect
Photos / videos and audioWhen: on capture · Handling: stored on device only, never sent to our servers
Location (GPS coordinates)When: on capture / preview · Handling: watermark + address lookup (third party) + weather (third party)
Verification record — issue number, media SHA-256 hash, reported capture time, coordinates, anonymous device identifier, capturer name (when the photographer label is on), template IDWhen: on cloud verification · Handling: sent to and stored on the verification server (no original media — hash & metadata only)
On team sharing — the shared photo, coordinates (lat/lng), manager, memo, and uploader nameWhen: only when you share to a team · Handling: provided to members of the same team (third-party location provision under the Location Information Act §19)
Crash diagnosticsWhen: on app error · Handling: diagnostics, with personal identifiers masked
2. Purpose
Authenticating and verifying media against tampering, displaying location / time / weather, and operating and improving the service.
3. Third Parties
SupabasePurpose: verification server hosting + team-share storage · Data: issue number, hash, capture time, coordinates, anonymous device id, capturer name (when on), and on team sharing the photo, manager, memo · Region: Republic of Korea (Seoul)
Kakao (domestic) · device OS geocoder (international)Purpose: coordinate to address · Data: GPS coordinates
Open-MeteoPurpose: weather · Data: GPS coordinates
SentryPurpose: crash diagnostics · Data: diagnostic logs (personal data masked)
4. Retention & Deletion
- Verification records (issue number, hash, capture metadata — no original photos or videos) — retained while the verification service is provided, so that verification remains available. Verification records are stored separately from account data, so closing your account does not by itself destroy them.
- Media — stored on device; deleted by the user.
- Crash diagnostics — per the respective third party's policy.
You may request deletion of an individual verification record by attaching its issue number, via the contact below. If the service is discontinued, we will give at least 30 days' advance notice via the app and this page, and any verification records still held after the announced end date will be destroyed.
5. Your Rights
You may request access, correction, deletion, or suspension of processing (in-app deletion and the contact below). To delete a verification record, request it by issue number via the contact below.
6. Permissions
- Camera (required) — capture.
- Location (optional) — if denied, coordinates / address are not shown.
- Microphone (optional) — if denied, video records without audio.
7. Children Under 14
We do not collect personal data from children under 14 without verifiable consent from a legal guardian.
8. Contact
Email privacy@getstampa.com
9. Effective Date & Changes
This policy is effective as of 2026-06-17 and was last revised on 2026-07-11. Changes will be announced in advance via the app and this page.