Privacy Policy / プライバシーポリシー

日本語

最終更新: 2026-09-16

Numphabet(以下「本アプリ」)は、Atsuki Murayama(以下「当方」)が提供します。 本ポリシーは、本アプリが取得する情報と、その取り扱いを説明します。

1. 当方が取得する情報

本アプリは、本名や連絡先の入力を求めません。 任意で5文字以内の表示名を 入力できます。この名前はアカウントに保存され、ランキングにも表示されます。 チャットや検索の機能はありません。

当方のサーバーが保持するのは次の情報です。

情報 用途
アカウントID セッションをまたいでプレイ記録を対応づけるため
自動生成の名前と、任意で入力された表示名 プロフィールとランキング表示のため
表示名の通報記録(通報者・対象者のアカウントID、対象の名前、日時) 不適切な表示名への対応のため
言語設定(2文字の言語コード) 表示言語の決定のため
スコア、難易度、所要時間、正答率 スコア記録、ランキング、デイリーチャレンジのため
デイリーチャレンジの達成記録と連続日数 進捗表示と報酬付与のため
フレンドコード、申請・承認・フレンド関係、招待・ルーム情報、対戦相手と勝敗記録 フレンド管理、対戦、対戦記録の表示のため
スタミナ購入の取引識別子・商品・数量・返金状態、アイテムの使用・消費記録 購入反映、残高管理、重複付与や不正利用の防止のため
購入済みコンテンツの保有状態 購入したテーマ等を利用可能にするため
アプリ・ルール・単語パックの各バージョン 不具合調査と統計のため
アカウントIDに紐づく利用イベントと一部の障害ログ 利用状況の分析、不具合や不正利用の調査のため

アカウントIDは、上記の表示名とプレイ記録に結び付いています。 ゲストとして遊ぶ場合、Apple のアカウント情報は取得しません。

結果の共有を選ぶと、端末内で作った結果画像を iOS の共有画面に渡します。 画像にアカウントID・表示名・解答の単語は含まれず、当方のサーバーには送信しません。 「画像を保存」では写真への追加権限を求める場合がありますが、写真ライブラリの 読み取りは行いません。共有先として選んだサービスでの取り扱いは、そのサービスの 規約に従います。

2. Sign in with Apple を利用する場合

複数の端末でプレイ記録を引き継ぐために Sign in with Apple を利用できます(任意です)。 この場合、当方は追加で次を保持します。

情報 用途
Apple が発行する仮名化された利用者識別子(sub アカウントの同一性確認のため
Apple が発行するリフレッシュトークン(暗号化して保存 退会時に Apple 側の連携を解除するため

Appleから提供されるメールアドレスは保存しません。 提供される場合がありますが、保存も 利用もしません。リフレッシュトークンは、Apple の要求する退会処理(連携解除)に必要な ため保持するもので、退会時に Apple へ送信して連携を解除し、その後削除されます。

3. 第三者サービス

本アプリには次のサービスが組み込まれており、それぞれが独自に情報を取得します。

サービス 取得する情報 目的
Cloudflare アカウント・プレイ・購入復元の記録、利用イベント、通信・障害情報 サーバーの運用、データ保存、利用状況の分析、不具合や不正利用の調査
Google AdMob・User Messaging Platform IPアドレス、端末識別子、広告関連情報、操作情報、大まかな位置情報、クラッシュ・性能・診断情報、広告に関する同意の選択内容 広告の表示と分析、地域に応じた同意の管理
RevenueCat アカウントID、購入・取引・保有状態に関する情報 課金の管理、購入の復元、分析
Sentry クラッシュ・性能・その他診断情報、インストール識別子。診断にはアカウント識別子が含まれる場合があります 不具合の調査

広告について: 本アプリは、広告のリクエストすべてに 「パーソナライズされていない広告」の指定を付けています。また本アプリは トラッキング許可(ATT)のダイアログを表示せず、広告識別子(IDFA)を要求しません。

各サービスでは、本アプリの処理や通信に必要な情報が取り扱われます。 各社の取り扱いは各社のポリシーに従います。 Cloudflare: https://www.cloudflare.com/privacypolicy/ / Google: https://policies.google.com/privacy / RevenueCat: https://www.revenuecat.com/privacy / Sentry: https://sentry.io/privacy/

広告は非パーソナライズ広告のみをリクエストします。必要な地域では広告に関する 同意画面を表示し、同意管理の仕組みで広告のリクエストが許可されるまで広告を 読み込みません。地域の要件に応じて、アプリの設定に 「広告のプライバシー設定」を表示し、選択内容を確認・変更できるようにします。

4. 情報の取得・保存・利用の制限

  • チャットや検索の文字列は取得しません(これらの機能はありません)。
  • 端末の連絡先は取得しません。
  • Appleから提供されるメールアドレスは保存・利用しません。
  • IPアドレスはアプリ独自のデータベースに保存しません(通信・不正利用防止に使用します。第三者サービスによる取り扱いは上記のとおりです)。
  • スコア検証用の操作列(タップの全順序)は検証のためサーバーに送信しますが、検証後は保存しません。利用状況を分析するためのイベントは別に保存します。

5. 保存期間と削除

アプリ内の 設定 → アカウントを削除 から、いつでも削除できます。 削除すると、アカウント、表示名、スコア、デイリーの記録、コインなどを 稼働中のアカウント用データベースから削除します。これらのプレイ記録は元に戻せません。 Sign in with Apple を利用していた場合、Apple 側の連携も解除されます。

利用状況の分析情報や運用ログは、この操作では個別に削除されません。 Cloudflare Analytics Engineの分析情報は3か月で失効します。 データベースのバックアップには、削除前の情報が最大30日残る場合があります。 運用ログや第三者サービスの購入・診断情報は、各サービスの保存期間と設定に従って扱われます。

購入済みテーマと広告非表示は復元できます。 同じ Apple アカウントで「購入を復元」すれば、 新しいアカウントで再び利用できます。

そのために当方は、購入時のアカウントに対応する識別子、商品の識別子、 購入を付与したイベントと日時を、アカウント削除後も保持します。期間の定めはありません。 Apple の買い切り商品はいつでも復元できるため、期間で区切ると、久しぶりに戻られた方の 購入だけが復元できなくなるからです。当方の復元用データベースには、レシート、金額、 Apple アカウントの認証情報、メールアドレスは保存しません。

フレンド関係、申請、対戦記録、回復アイテムの利用権と有料スタミナ残高は、 アカウント削除後に復元できません。消費型購入の取引識別子・商品・数量・返金状態は、 二重付与や返金の再処理を防ぐため期間の定めなく保持しますが、削除したアカウントへの紐づけは解除します。

6. 児童のプライバシー

本アプリは特定の年齢層を対象としていません。年齢の入力は求めず、任意で入力された 表示名は、利用者の年齢にかかわらず上記のとおり扱います。

7. 本ポリシーの変更

変更する場合は、本ページの「最終更新」を改め、重要な変更についてはアプリ内で通知します。

8. お問い合わせ

akao.gamedev@gmail.com

お問い合わせへの対応には、送信元のメールアドレスとお問い合わせ内容を使用します。

English

Last updated: 2026-09-16

Numphabet (the "App") is provided by Atsuki Murayama ("we", "us").

1. What we collect

The App does not ask for your real name or contact details. You may enter an optional display name of up to five characters. It is saved with your account and displayed on leaderboards. There is no chat or search feature.

Our server stores:

Data Purpose
A pseudonymous account id (u_…, issued by us) Linking play records across sessions
A generated alias and an optional player-entered display name Profile and leaderboards
Name reports (reporter and target account IDs, reported name and timestamp) Responding to inappropriate display names
Language setting (two-letter code) Choosing the display language
Scores, difficulty, timings, accuracy Score records, leaderboards, daily challenge
Daily challenge completions and streak Progress and rewards
Friend codes, requests, accepted friendships, invitations, room information, opponents and match results Friend management, battles and match history
Stamina purchase transaction IDs, products, quantities and refund state; activation and spending records Purchase delivery, balances and preventing duplicate grants or abuse
Entitlements (what has been purchased) Making purchased content available
App, rules and word-pack versions Diagnostics and statistics
Usage events and some operational diagnostics linked to an account ID Analytics, troubleshooting and abuse prevention

The pseudonymous account id is linked to the display name and play records above. If you play as a guest, we receive no Apple account information.

If you choose to share a result, the App creates an image on your device and passes it to the iOS share sheet. It contains no account ID, display name or solved words, and is not uploaded to our server. Save Image may request permission to add a photo; the App does not read your photo library. A service you select as the destination handles its copy under that service's terms.

2. If you use Sign in with Apple

Sign in with Apple is optional and lets you carry your record across devices. If you use it, we additionally store:

Data Purpose
Apple's pseudonymous user identifier (sub) Identifying your account
Apple's refresh token (stored encrypted) Revoking the Apple connection when you delete your account

We do not store the email address supplied by Apple. Apple may provide one; we neither store nor use it. The refresh token is held solely because Apple requires apps to revoke tokens when an account is deleted; it is sent to Apple at deletion to revoke the connection, and then deleted.

3. Third-party services

Service What it collects Purpose
Cloudflare Account, gameplay and purchase-restoration records, usage events, network and operational information Operating our servers, storing data, analytics, troubleshooting and abuse prevention
Google AdMob and User Messaging Platform IP address, device ID, advertising data, product interaction, coarse location, crash / performance / diagnostic data, and advertising consent choices Serving and analyzing ads; managing consent according to region
RevenueCat Account ID, purchase, transaction and entitlement information Managing and restoring purchases, analytics
Sentry Crash, performance and other diagnostic data, and an installation identifier. Diagnostics may contain account identifiers Diagnosing faults

About advertising: every ad request made by this App is marked non-personalised. The App does not present the App Tracking Transparency prompt and does not request the advertising identifier (IDFA).

Cloudflare: https://www.cloudflare.com/privacypolicy/ · Google: https://policies.google.com/privacy · RevenueCat: https://www.revenuecat.com/privacy · Sentry: https://sentry.io/privacy/

We request only non-personalized ads. Where required, we show an advertising consent form and do not load ads until the consent-management system permits ad requests. Where regional requirements call for a privacy choices entry point, Settings includes "Ad privacy choices" so you can review and change your choices.

4. Limits on collection, storage and use

  • Chat or search text is not collected; these features do not exist.
  • The device's contacts are not collected.
  • Email addresses supplied by Apple are neither stored nor used.
  • IP addresses are not stored in our application database. They are used for network requests and abuse prevention; third-party processing is described above.
  • Complete tap sequences sent to our server for score validation are not retained after validation. Analytics events are stored separately.

5. Retention and deletion

You can delete your account at any time from Settings → Delete account. Deletion removes your account, display name, scores, Daily records, Coins and related data from the active account database. These play records cannot be restored. If you used Sign in with Apple, its connection is also revoked.

This action does not individually delete analytics events or operational logs. Analytics events in Cloudflare Analytics Engine expire after three months. Database backups may retain pre-deletion information for up to 30 days. Operational logs and third-party purchase or diagnostic records follow the relevant service's retention periods and settings.

Purchased themes and Remove Ads remain restorable. Use "Restore purchases" with the same Apple Account to make them available again on a new account.

To make that possible we retain the identifier associated with the purchasing account, the product identifier, the granting event and its timestamp after account deletion, with no time limit. Apple's one-time purchases can be restored at any time, so a cut-off would break restoration only for the person returning after a long absence. Our restoration database contains no receipt, price, Apple Account credentials or email address.

Friend relationships, requests, match records, recovery items and paid stamina cannot be recovered after account deletion. Consumable transaction IDs, products, quantities and refund state are retained with no time limit to prevent duplicate delivery and handle refunds, with the deleted account association removed.

6. Children's privacy

The App is not directed at a specific age group and does not ask for age. Optional display names are handled as described above, regardless of the player's age.

7. Changes

If we change this policy we will update the date above and notify significant changes in the App.

8. Contact

akao.gamedev@gmail.com

We use your sender email address and message to respond to support requests.