Privacy

プライバシーポリシー Privacy Policy

Todiaは、予定、To Do、Chat履歴を利用者の端末内に保存します。Google連携後にデータ同期が有効な場合、これらのコピーを当社バックエンドへ保存し、同じアカウントのiOS端末とAndroid端末で利用できます。

Todia stores events, to-dos, and Chat history on your device. When data sync is enabled after Google linking, copies are stored on our backend and made available to your iOS and Android devices using the same account.

制定日:2026年7月23日 Effective: July 23, 2026 最終更新日:2026年9月21日 Last updated: September 21, 2026

1. 運営者

本ポリシーは、MakeSomethingNew株式会社(代表取締役 杉山英一)が提供するiPhone・Android向けアプリケーション「Todia」(以下「本アプリ」)および本Webサイトに適用されます。

2. 本アプリで取り扱う情報

本アプリでは、利用者が入力した次の情報を、アプリの機能を提供するために取り扱います。

  • カレンダー名、色、表示設定
  • 予定のタイトル、説明、開始日時、終了日時、リマインダー設定
  • To Doリスト名、色、シンボル
  • タスクのタイトル、メモ、期限、時刻、優先度、完了状態、リマインダー設定
  • Chatに入力したメッセージ、生成された回答および操作提案
  • 利用者が任意に設定するGroq APIキー
  • 告知画像の生成対象とするカレンダー名、予定、追加指示および利用者が任意に選択する参考画像
  • 利用者が任意に設定するGemini APIキーおよび生成された画像
  • 時間割取り込み時に利用者が選択または撮影する時間割写真、および写真から認識した科目・曜日・授業時刻
  • Gmail連携時のGoogleアカウントのメールアドレス、OAuth認可情報および作成するメール下書き
  • Firebase匿名識別子、連携した認証方法、Google連携時の確認済みメールアドレス
  • アプリの言語、タイムゾーン、同意した利用規約・プライバシーポリシーのバージョン
  • クラウド機能の利用権限、利用量、アカウント作成・更新・削除状態
  • 共同To Doのメンバー、招待、変更履歴および同期状態

本アプリは初回利用時にFirebase匿名アカウントを作成します。利用者は、対応するGoogleアカウント等へ同じFirebase UIDを維持したまま連携できます。当社は、本アプリを通じて電話番号、正確な位置情報、連絡先、広告識別子を収集しません。画像生成で利用者が任意に選択した参考画像は、当社サーバーを経由せずGoogleのGemini APIへ直接送信されます。

Firebase Analyticsは、アプリの起動や画面表示などの利用状況、アプリインスタンス識別子、端末・OS・アプリの情報、IPアドレスから推定されるおおよその地域、および診断情報を自動的に収集する場合があります。予定、タスク、Chat内容、Groq APIキーおよびGemini APIキーはAnalyticsへ送信しません。

3. 保存場所と外部送信

通常の予定、タスク、カレンダー、リストおよびChat履歴は、iPhoneではSwiftData、AndroidではRoomを使用して利用者の端末内に保存されます。Google連携後にデータ同期の利用権限が有効な場合、既存データを含む予定、タスク、カレンダー、リスト、Chat本文、生成回答および操作提案のコピーを、端末間同期のため当社バックエンドのMySQLにも保存します。利用者がカレンダー共有を実行した場合、選択したカレンダー名、色、予定のタイトル、メモ、日時および繰り返し設定の公開時点のコピーをMySQLへ保存します。新しい共有リンクでは、リンクを知る人にカレンダー名、予定件数および期間を表示し、SNSのリンクプレビュー画像にはカレンダー名を表示します。予定タイトルとメモはWebページおよびリンクプレビュー画像に表示しません。利用者が共同To Doを開始または参加した場合、そのリスト名、タスク内容、メンバーおよび変更履歴を共同編集のためMySQLへ保存し、参加メンバーへ提供します。本アプリはFirebase Analyticsを使用しますが、広告SDKやアプリをまたぐ第三者トラッキングは使用しません。

認証はGoogle LLCのFirebase Authenticationで処理されます。当社バックエンドは、Firebase UID、認証種別、表示名、確認済みメールアドレス、言語、タイムゾーン、同意バージョン、利用権限、利用量および前記AI履歴をMySQLへ保存します。Firebase ID tokenはリクエスト時の本人確認にだけ使用し、当社データベースへ保存しません。招待リンクのtokenとメール検索値はdigestで保存します。

利用者がChatを使用すると、入力したメッセージ、アプリの言語・タイムゾーン、および質問への回答や利用者が依頼した操作に必要な範囲の予定・タスク情報が、当社バックエンドを経由してGroq Technologies, Inc.のAPIへ送信されます。予定・タスクの全件を常に送信することはありません。送信後の情報はGroqの利用規約およびプライバシーポリシーに従って処理されます。

利用者がタスクのAI機能を使用すると、タスクのタイトル、メモ、期限および端末内で算出した会議候補日時がGroqへ送信されます。空き時間の算出は端末内で行い、予定のタイトルや予定全件は送信しません。Gmail下書きを作成する場合、本アプリはGoogleログインを通じてGmailの下書き作成権限のみを取得し、確認済みの宛先、件名および本文をGoogle LLCのGmail APIへ送信します。メールは自動送信されません。OAuth認可情報はGoogleのSDKにより端末のKeychainで管理され、当社サーバーでは受信または保存しません。

利用者が告知画像生成を使用すると、カレンダー名、選択した予定のタイトル・メモ・日時、追加指示、および利用者が任意に選択した参考画像が、利用者自身のAPIキーを使用してGoogle LLCのGemini APIへ送信されます。リクエストには保存を無効にする指定を行いますが、送信後の情報はGoogleの利用規約およびプライバシーポリシーに従って処理されます。Gemini APIキーは端末のKeychain、生成画像と生成履歴は端末内に保存します。参考画像は本アプリの履歴には保存しません。

利用者が時間割取り込みを使用すると、明示的な同意後に時間割写真、アプリの言語およびタイムゾーンが当社バックエンドを経由してGoogle LLCのGemini APIへ送信されます。当社は元の写真、認識した科目・曜日・授業時刻および解析結果を当社データベース、AI履歴または端末内ファイルへ保存しません。利用者が確認して登録した予定だけを通常の予定として端末内へ保存します。送信後の情報はGoogleの利用規約およびプライバシーポリシーに従って処理されます。

iCloudバックアップなど、利用者が端末またはApple Accountで有効にしているバックアップ機能については、Appleが定める設定およびプライバシーポリシーが適用されます。

利用者は、予定、To DoおよびChat履歴を暗号化されていないJSONバックアップとして、Filesアプリで選択した場所へ保存できます。このファイルは当社サーバーへ送信されません。APIキー、ログイン情報、共有リンク、同期情報および生成画像は含まれません。バックアップファイルの保護、共有および削除は利用者が管理します。

4. 通知

利用者がリマインダーを設定した場合、本アプリはiOSの通知機能を利用して、予定またはタスクのローカル通知を登録します。通知の利用にはiOS上で利用者の許可が必要です。通知は端末上で処理され、当社の外部サーバーを経由しません。

通知の許可は、iPhoneの「設定」からいつでも変更できます。ロック画面などでの通知内容の表示方法も、iOSの通知設定に従います。

5. 利用目的

端末内の情報は、次の機能を利用者の端末上で提供するためにのみ使用されます。

  • 予定、タスク、カレンダーおよびTo Doリストの表示、作成、編集、削除
  • 利用者が選択したカレンダーの共有用コピーの作成および取り込み
  • 共同To Doリストへの招待、参加およびメンバー間の継続同期
  • 期限付きタスクのカレンダー表示および日付移動
  • 設定された予定およびタスクのローカル通知
  • 「毎日」リストにある完了済みタスクの翌日への復帰
  • Chatによる質問への回答、予定・タスクの参照、追加提案およびタスク完了
  • タスクの実行手順の提案、会議候補日時の算出および確認後のGmail下書き作成
  • カレンダーの予定を掲載したSNS告知画像の生成、端末内保存および共有
  • 利用状況の分析、不具合の把握および本アプリの改善

6. 第三者提供

当社は本アプリの情報を販売しません。カレンダー共有を利用した場合、共有用コピーは当社バックエンドで処理され、共有リンクを受け取った相手へ利用者の指示に基づいて提供されます。共同To Doを利用した場合、共有対象のリストとタスクは招待または参加したメンバーへ提供されます。ChatまたはタスクAIを利用した場合は前記の必要最小限の情報がGroqへ提供され、告知画像生成を利用した場合は生成対象の情報と任意の参考画像がGoogleのGemini APIへ提供されます。FirebaseおよびGeminiにより処理される情報はGoogleのプライバシーポリシーに従って処理されます。

7. 情報の管理と削除

クラウドアカウントの削除要求後は、Firebase認証情報、当社バックエンドの利用者情報、同期用の予定・To Do・Chatコピー、AI履歴、利用者が公開したカレンダー共有用コピー、利用者が所有する共同To Doを非同期に削除します。共同To Doのownerは共同リストを全メンバーから削除でき、editorは退出できます。削除要求は取消不可で、一時的な失敗時は削除処理中として再試行します。オフライン端末内のデータ、写真ライブラリへ保存した画像、受信者が既に端末へ取り込んだカレンダー共有コピーは、その端末が再接続するか利用者が削除するまで残る場合があります。

8. 本Webサイトについて

本WebサイトのイベントFeed追加リクエストフォームでは、希望するFeed名、説明、任意の参考URLおよび任意の返信用メールアドレスを収集し、リクエストの確認、対応可否の検討および必要な連絡のため当社バックエンドのMySQLへ保存します。未解決のリクエストは送信から最長1年、採用または不採用となったリクエストは解決から180日を経過した後に本文とメールアドレスを削除します。これらの情報は権限を持つ運営担当者だけが閲覧します。

本Webサイトでは、利用状況の把握と改善のためGoogle Analytics 4を使用します。Google AnalyticsはCookie等を利用し、閲覧したページ、利用日時、ブラウザ・端末情報、参照元、IPアドレスから推定されるおおよその地域などを収集する場合があります。共有・招待用ページは計測対象外です。収集された情報はGoogle LLCにより同社のプライバシーポリシーに従って処理されます。当社はGoogle Analyticsへ予定、タスク、共有内容、Feedリクエストの入力内容などを送信しません。

言語選択を保持するため、ブラウザのローカルストレージに「日本語」または「英語」の選択だけを保存します。Feedリクエストの入力内容をブラウザのローカルストレージへ保存しません。

公開時に利用するホスティング事業者が、セキュリティや運用上の目的で標準的なアクセスログを処理する場合があります。その場合は当該事業者の方針が適用されます。外部サイトへのリンク先における情報の取り扱いについても、各サイトのポリシーをご確認ください。

9. ポリシーの変更

本アプリの機能、情報の取り扱いまたは関連法令の変更に応じて、本ポリシーを改定することがあります。重要な変更がある場合は、本Webサイトまたは本アプリ内でお知らせします。改定後の内容は、本ページに掲載した時点から適用されます。

10. お問い合わせ

本ポリシーまたは本アプリの情報の取り扱いに関するお問い合わせは、以下までご連絡ください。

MakeSomethingNew株式会社
代表取締役 杉山英一
eiichi_sugiyama@makesomethingnew.jp

1. Operator

This Policy applies to “Todia,” an iPhone and Android application (the “App”), and this website, provided by MakeSomethingNew, Inc., represented by Eiichi Sugiyama, Representative Director.

2. Information handled by the App

The App handles the following information entered by you solely to provide its features:

  • Calendar names, colors, and display settings
  • Event titles, descriptions, start and end times, and reminder settings
  • To-do list names, colors, and symbols
  • Task titles, notes, due dates, times, priorities, completion status, and reminder settings
  • Messages entered in Chat, generated responses, and action proposals
  • A Groq API key optionally configured by you
  • Calendar names, events, additional instructions, and an optional reference image selected by you for announcement-image generation
  • A Gemini API key optionally configured by you and generated images
  • A timetable photo you select or capture for timetable import, and the subjects, weekdays, and class times recognized from it
  • When Gmail is connected, your Google Account email address, OAuth authorization information, and email drafts you create
  • Your Firebase anonymous identifier, linked sign-in methods, and verified email address when Google is linked
  • App language, time zone, and the versions of the Terms and Privacy Policy you accepted
  • Cloud entitlements, usage, and account creation, update, and deletion status
  • Shared to-do memberships, invitations, change history, and sync status

The App creates an anonymous Firebase account on first use. You may link it to a supported Google Account or another supported provider while retaining the same Firebase UID. Through the App, we do not collect your telephone number, precise location, contacts, or advertising identifier. A reference image you optionally select for image generation is sent directly to Google’s Gemini API without passing through our servers.

Firebase Analytics may automatically collect App usage such as launches and screen views, an app-instance identifier, device, operating system and App information, approximate region inferred from IP address, and diagnostic information. Events, tasks, Chat content, and your Groq and Gemini API keys are not sent to Analytics.

3. Storage and transmission

Ordinary events, tasks, calendars, lists, and Chat history are stored on your device using SwiftData on iPhone and Room on Android. When your data-sync entitlement is enabled after Google linking, copies of events, tasks, calendars, lists, Chat text, generated responses, and action proposals, including existing on-device data, are also stored in MySQL on our backend for cross-device sync. Calendar-share snapshots and shared to-do content are also stored in MySQL when you use those features. New calendar-share links display the calendar name, event count, and date range to people who know the link, and display the calendar name in social-media link preview images. Event titles and notes are not displayed on the web page or link preview image. The App uses Firebase Analytics but does not use an advertising SDK or cross-app third-party tracking.

Authentication is processed by Google LLC’s Firebase Authentication. Our backend stores the Firebase UID, authentication type, display name, verified email address, language, time zone, consent versions, entitlements, usage, and the AI history described above in MySQL. A Firebase ID token is used only to authenticate a request and is not stored in our database. Invite-link tokens and email lookup values are stored as digests.

When you use Chat, your message, app language and time zone, and the limited event or task information needed to answer your question or perform your requested action are sent through our backend to the API of Groq Technologies, Inc. The App does not routinely send all events or tasks. Information sent to Groq is processed under Groq’s terms and privacy policy.

When you use task AI, the task title, notes, due date, and meeting time candidates calculated on your device are sent to Groq. Availability is calculated on-device; event titles and your complete event history are not sent. To create a Gmail draft, the App requests only Gmail compose access through Google Sign-In and sends the recipient, subject, and message you reviewed to the Gmail API provided by Google LLC. Email is never sent automatically. OAuth authorization information is managed in the device Keychain by Google’s SDK and is not received or stored by our servers.

When you generate an announcement image, the calendar name, titles, notes and times of selected events, your additional instructions, and an optional reference image you select are sent to Google LLC’s Gemini API using your own API key. The request instructs the API not to store the interaction, but information sent to Google is processed under Google’s terms and privacy policy. Your Gemini API key is stored in the device Keychain, and generated images and generation history are stored on-device. The reference image is not retained in the App’s history.

When you use timetable import, after your explicit consent the timetable photo, App language, and time zone are sent through our backend to Google LLC’s Gemini API. We do not retain the original photo, recognized subjects, weekdays, class times, or analysis result in our database, AI history, or an on-device file. Only events you review and register are stored on-device as ordinary events. Information sent to Google is processed under Google’s terms and privacy policy.

Backups you enable on your device or Apple Account, including iCloud Backup, are governed by Apple’s settings and privacy policy.

You may save events, to-dos, and Chat history as an unencrypted JSON backup in a location you choose through the Files app. The file is not sent to our servers. It excludes API keys, sign-in information, share links, sync information, and generated images. You are responsible for protecting, sharing, and deleting the backup file.

4. Notifications

When you set a reminder, the App uses the iOS notification system to schedule a local notification for an event or task. Notifications require your permission in iOS. They are processed on your device and do not pass through a server operated by us.

You can change notification permission at any time in iPhone Settings. How notification content appears on the Lock Screen and elsewhere is also controlled by your iOS notification settings.

5. Purpose of use

Information on your device is used only to provide the following features on that device:

  • Displaying, creating, editing, and deleting events, tasks, calendars, and to-do lists
  • Creating and importing a shareable copy of a calendar you select
  • Inviting members to, joining, and continuously syncing shared to-do lists
  • Showing dated tasks on the calendar and moving them between dates
  • Providing local notifications for events and tasks you configure
  • Returning completed tasks in the “Daily” list on the next day
  • Answering Chat questions, looking up events and tasks, proposing additions, and completing tasks
  • Proposing task steps, calculating meeting candidates, and creating a reviewed Gmail draft
  • Generating, storing on-device, and sharing social-media announcement images containing calendar events
  • Analyzing usage, identifying issues, and improving the App

6. Disclosure to third parties

We do not sell App information. When you share a calendar, the shared copy is processed by our backend and provided at your direction to people who receive the link. When you use a shared to-do, the shared list and tasks are provided to invited or participating members. When you use Chat or task AI, the limited information described above is provided to Groq. When you generate an announcement image, the generation data and optional reference image are provided to Google’s Gemini API. Information processed through Firebase and Gemini is handled under Google’s privacy policy.

7. Managing and deleting information

After a cloud-account deletion request, your Firebase authentication record, backend user record, synced event, to-do, and Chat copies, AI history, calendar-share snapshots you published, and shared to-dos you own are deleted asynchronously. A shared-to-do owner can delete a list for all members, and an editor can leave it. The request cannot be canceled, and temporary failures remain pending and are retried. Data on offline devices, images saved to Photos, and calendar copies already imported by recipients may remain until the device reconnects or you delete them.

8. This website

The event-feed request form on this website collects the requested feed name, a description, an optional reference URL, and an optional reply email address. We store this information in MySQL on our backend to review the request, decide whether it can be supported, and contact you when necessary. Unresolved requests are retained for up to one year after submission. The request text and email address of accepted or rejected requests are deleted 180 days after resolution. Only authorized operations staff may access this information.

This website uses Google Analytics 4 to understand usage and improve the site. Google Analytics may use cookies and collect pages viewed, access times, browser and device information, referrers, and approximate location inferred from IP addresses. Share and invitation pages are excluded from analytics. Google LLC processes the collected information under its Privacy Policy. We do not send events, tasks, shared content, feed-request entries, or similar user content to Google Analytics.

The site stores only your Japanese or English language choice in browser local storage. Feed-request entries are not stored in browser local storage.

The hosting provider used when this site is published may process standard access logs for security and operational purposes, in which case that provider’s policy applies. Information handled by external websites linked from this site is governed by each website’s policy.

9. Changes to this Policy

We may revise this Policy to reflect changes to the App, our information practices, or applicable law. We will announce material changes on this website or in the App. A revised Policy applies when it is posted on this page.

10. Contact

For questions about this Policy or the App’s handling of information, please contact:

MakeSomethingNew, Inc.
Eiichi Sugiyama, Representative Director
eiichi_sugiyama@makesomethingnew.jp