Privacy Policy
AllSenseLab Co., Ltd. processes personal information from the myinstay app under this policy. Inquiries on the company website and registrations and orders on the online shop are covered by the policies on those sites.
Usage collection is off by default. We collect usage data only after you consent in Settings > Privacy, where the data, purpose, retention and processing locations are shown. You can decline or withdraw and continue controlling the diffuser. If you explicitly request deletion, we process the information needed to authenticate and receive that request.
1. Information we collect
What we collect — install identifiers and usage information
| Item | Details |
|---|---|
| Install ID | An ID automatically generated through Firebase Anonymous Authentication. Usage records are stored under this ID. If you delete the app and reinstall it on the same phone, the ID may carry over through iOS secure storage or Google backup restoration on Android. Restoring an Android backup onto a new phone may also carry the ID over. Anonymous Authentication describes the authentication method; it does not mean the records cannot be linked to a device. |
| Android device-value hash | We store a hash derived from ANDROID_ID, which is scoped to the app-signing key, device, and Android user, alongside the install ID. It can distinguish a device under the same conditions; the original ANDROID_ID and advertising ID are not transmitted. The value may change after a factory reset or a change of signing key, among other circumstances. We do not collect this value on iOS. |
| App and environment | App version, operating system (iOS or Android), language, country |
| Usage | Spray schedule settings (start and end time, days of the week, spray and pause duration), the daily spray time estimated from them, the scent you selected, the last connection time, and when you opened the app, connected, or saved a schedule |
What we do not collect as usage statistics
- Personally identifying information such as name, email, or phone number
- Location (GPS)
- Registration names, emails, or passwords (there is no user registration or login screen)
- Advertising identifiers (neither Apple IDFA nor the Android advertising ID)
- Contacts, photos, microphone
- Crash reports
2. Why we collect it
- Product improvement — understanding which schedules people use, and how much, so we can refine the app and the product.
- Usage statistics — aggregating usage patterns from records stored under install IDs. Estimated daily spray time is not measured cumulative usage.
We do not use this information for advertising and do not sell it to third parties.
3. Permissions the app uses
| Permission | Purpose |
|---|---|
| Bluetooth | BLE communication with the AllSenseLab MUSE diffuser (AJBLE100). This communication happens only between your device and the diffuser. |
| Internet access | (1) sending the install identifiers and usage information above, (2) fetching a static JSON file to check for app updates, (3) showing help pages and opening external links |
4. Data exchanged with the diffuser
Over BLE, myinstay exchanges the following with the diffuser:
- Spray schedule (start and end time, days of the week, spray and pause duration)
- Power on/off
- Clock synchronization (current time)
That exchange itself happens only between your device and the diffuser. The schedule settings listed above are, however, stored on our server as part of the usage information.
5. Data stored on your device
myinstay stores the following on your device:
- The identifier of each diffuser you connected to, along with the schedule, scent, and nickname you set for it
- The anonymous install ID
Deleting the app or clearing its storage removes all of the above from your device. The anonymous install ID, however, may remain in the device's secure storage (iOS) or Google backup (Android) and carry over if you reinstall on the same phone.
6. Third-party services
myinstay uses the following external services:
- Google Firebase (Google LLC) — anonymous authentication and usage information storage (Cloud Firestore). Firestore data is stored in the South Korea (Seoul) region. Version 0.1.4 does not use Cloud Messaging. Firebase privacy information
- App update manifest hosting — requests a static JSON file for update notices. This request does not include the telemetry install ID or diffuser settings.
No advertising SDKs and no tracking SDKs are used.
Where the data goes — usage information is stored in the South Korea (Seoul) region, but anonymous authentication is processed in Google's data centers in the United States.
| What is transferred | The install ID, Android device-value hash, app and environment information, and usage information listed in section 1. Processing locations for the Firebase services are listed below. |
| Where | United States (anonymous authentication) and South Korea, Seoul region (usage information) |
| When and how | Over an encrypted connection when usage is recorded after consent, or when you explicitly request deletion |
| Who receives it | Google LLC — firebase.google.com/support/privacy |
| Purpose | As set out in section 2 |
| Retention | As set out in section 7 |
| How to refuse | Turn off usage consent in Settings > Privacy to stop new uploads and cancel pending requests. Requests already received by the server cannot be recalled. You can keep using the diffuser without deleting the app, and request deletion of stored records on the same screen. |
7. Retention and deletion
- Install records are kept for two years after their last usage-data update; individual events for two years after creation. Using the app with collection off does not renew these periods.
- Settings > Privacy > Request data deletion sends a request authenticated by the current installation. Collection stops immediately. Receipt is shown only after server confirmation and does not mean deletion is complete. An operator deletes the usage events, install record and Firebase authentication account in that order.
- The request record contains the install ID, platform, request time, status and completion time. It is retained for two years after completion to record processing and block further uploads by the old ID, then deleted. Local diffuser settings remain unchanged. Opting in again starts collection under a new install ID.
- For records from an older installation that this app can no longer access, contact service@allsenselab.com. Other installation records are not automatically deleted based on a matching install ID or Android device value. If a request fails, you can retry on the same screen.
8. Children
myinstay does not knowingly collect information from children under 13.
9. Changes
This policy may change. Any change will be announced on this page.
10. Privacy officer and your rights
You can request access, correction, deletion or suspension of processing of your personal information using the contact details below. A legal or authorized representative may also make a request. We will explain the verification needed to confirm your identity or the representative's authority. In-app data deletion requests follow section 7.
Contact details and request content you provide are used for identity verification, handling your request and communicating the result, not for marketing. Please do not send unnecessary copies of identity documents or sensitive information.
- Operator: AllSenseLab Co., Ltd. (주식회사 올센스랩)
- Privacy officer: 김민기 (CEO)
- Privacy inquiries: service@allsenselab.com
- Phone: +82-2-2138-3421
- Address: Room 508, The Space Tower, 144 Gwangnaru-ro, Seongdong-gu, Seoul, South Korea