Privacy
Day4Us helps families coordinate schedules, responsibilities and birthdays. This notice describes how the features currently available process information.
1. Operator and contact
Service operations and privacy enquiries: Day4Us Team
Privacy contact: day4us.support@gmail.com
You or your legal representative may request access, correction, deletion, restriction of processing or account assistance at this address. Send your account email and the scope of your request. We verify identity or authority with minimal information and explain the outcome. Requests involving other family members are reviewed to protect their rights; reasons will be provided if a request must be limited. Do not send passwords, verification codes or AI connection keys.
2. Information and purposes
| Feature | Information | Purpose |
|---|---|---|
| Account access | Email, account identifier and authentication information; account information returned by Google if you choose Google sign-in | Authentication, session continuity and recovery |
| Family and children | Family name and time zone, member names and work end times, child names, colors and optional gender, chosen profile pictures, invitations | Connect family members and distinguish people and schedules |
| Schedules | Titles, dates, times, recurrence, places, contacts, preparation, notes, assignment, visibility, reminder choices and acknowledgment, completion, cancellation and handoff records | Store and sync schedules, coordinate responsibilities and show progress |
| Birthdays | Name, birth year, month and day, solar or lunar calendar and leap-month choice | Convert dates, show annual birthdays and countdowns |
| Wedding anniversary | Family identifier, wedding year, month and day, version and deletion status | Show the annual anniversary, years married and countdown; allow both connected partners to manage the date |
| Optional connections | Google events, connection credentials, AI key information and push subscriptions described below | Provide connections and notifications you choose |
Account email and authentication information are needed for member features. Family and schedule information comes from what users enter or connected family members share. Birthdays, anniversaries, photos, external connections and notifications are optional; basic schedules work without them. Sending support email provides your sender address, message and reply history, which we use to handle the request.
Profile images are cropped and converted into small images on your device before storage. Parents or guardians should manage children's information and enter only what is needed. Consider using nicknames. Do not enter identity numbers, payment details, detailed health information or other unnecessary personal information in schedule fields.
3. Family access and sharing
Connected family members can view family information and shared schedules. Private schedules are visible to the owning account. Give invitation codes only to people with whom you want to coordinate.
Day sharing creates a PNG, HTML file or text on your device from your selection. Sharing through another app makes that content available to the recipient and the selected service. Private schedules require explicit selection; contact fields and imported Google events are excluded. Editing or deleting a schedule does not recall or update files already sent or saved.
4. Optional Calendar, AI and push connections
Google Calendar
If you connect Google Calendar, read-only access retrieves your calendar list and events within approximately the next year. Stored fields are event and calendar identifiers, calendar name, title, location, start and end, all-day status, time zone and the Google event link. Imported events are shown only to the connected user. Event descriptions and attendee lists are not stored in the app. The integration does not create or edit Google events.
A refresh credential is stored in encrypted form so that sync can continue without repeated authorization. Disconnecting deletes the app's connection information and imported events and requests Google authorization revocation. Revocation at Google may fail; you can also review access in Google Account connections. Your original Google events are not deleted.
AI applications
If you create an AI connection key and configure it in an AI app, that app can read permitted family, member and child information, shared schedules, your private schedules and your imported Google events. A write-enabled key also permits supported schedule actions. Review the selected AI provider's data practices first. The server stores a hash of the key with its permissions, expiry and revocation information. Revoking a key prevents further access; records already sent to an AI service must be managed separately there.
Device notifications
Where push is available, choosing to enable it stores a device subscription address and encryption keys. Google, Mozilla or Apple push services deliver notifications according to the device. Notifications use a general message and schedule identifiers and dates rather than family names or schedule details. You can disable notifications in app or browser settings.
5. External service providers
The family and schedule database currently uses the Seoul, Republic of Korea region (Supabase ap-northeast-2). This does not mean that all authentication, delivery, operational logs or other provider processing takes place only in Korea.
| Provider | Role | Policy |
|---|---|---|
| Supabase | Authentication, database storage, live synchronization and server processing | Privacy policy |
| Cloudflare | Website hosting, delivery and connection security | Privacy policy |
| Optional sign-in and Calendar connection, push delivery for supported devices, and support correspondence through Gmail | Privacy policy | |
| Mozilla and Apple | Push delivery you allow on supported devices | Mozilla · Apple |
| Your chosen AI and messaging services | Process information you connect or share | Review each app's policies and settings |
Providers may process IP addresses, browser or device information, access records and error logs to deliver and secure their services. Supabase's contracting provider is Supabase Pte. Ltd.; operations and support may involve processing outside the designated Seoul database region. Cloudflare may process information in multiple countries, including the United States and European Economic Area, as described in its policy. Google's and device push providers' policies also govern their international processing. Network transfers occur when you use the corresponding website, sign-in, sync, notification or support feature. You can disconnect optional integrations. If you do not want essential hosting or authentication processing, you can stop using the service and request deletion.
6. Retention and deletion limits
Family and schedule records are stored to provide the service. There is currently no configured fixed automatic deletion period for ordinary family, schedule or birthday records. A self-service whole-account deletion screen is not yet available. Contact the operator about whole-account deletion or stopping processing.
- Canceling a schedule changes its status; it does not erase its history.
- Deleting a child hides the child in a reversible way while retaining linked schedules and history.
- Deleting a birthday or anniversary marks it as deleted and removes it from display; it does not immediately erase the stored row.
- Disconnecting Google deletes the app's corresponding connection information and imported events.
- Disabling push unsubscribes the device and requests deletion of its server subscription. Expired push-job records older than 30 days are removed in batches when cleanup runs.
After checking a deletion request's scope and linked records, the team uses an administrative procedure to delete the relevant database records and account authentication information, disable affected integrations and notifications, and verify the outcome. This differs from hiding records in the interface. Electronic information is removed from active storage. Support correspondence is deleted when request handling and follow-up are no longer needed. If retention is legally required, we explain the specific records, basis and period to the requester and keep them only for that purpose.
On the current Supabase Free plan, accessible API and database logs are retained for one day and the automatic database backup feature is not in use. This does not mean that all provider security or operational records and internal copies are erased after one day. Provider logs and copies follow the policies and contractual retention and deletion terms linked above; we check necessary provider procedures when handling deletion requests. Files already shared and records held by outside AI apps must be managed separately with the recipient or service.
Protection measures
Connections use HTTPS. Database access rules separate family access and owner access to private schedules. Google refresh credentials are encrypted and AI connection keys are stored as hashes. Operational work is limited to necessary information, with controls against copying personal information into public documents or test materials.
7. Browser storage
Login sessions, language choices and demo data use browser storage. Demo data stays on the current device; do not put real family information into the demo. You can reset the demo or clear site data in your browser. Clearing site data may remove your session and demo content, but does not delete real schedules stored on the server. Sign out after using a shared device.
8. Advertising and cookies
The site currently includes AdSense ownership-verification information only. Code that displays advertisements has not been installed.
If Google advertising is added later, Google and third-party advertising providers may use cookies to show ads based on earlier visits to this or other websites. Before activation, this notice must be updated for the actual providers and settings, with consent and choice mechanisms where required.
You can manage personalized ads in Google My Ad Center. Participating third-party choices are also available through AdChoices. These choices do not remove all advertising. See Google's advertising technology information for details.
9. Updates
This page and its reference date will be updated when processing practices, connections or advertising features change. Contact the operator above about available controls and deletion scope.