Privacy Policy
Effective July 31, 2026
Weallfine Inc. processes only the information needed to operate NOpenBook, fulfill reservation requests, and present public store content with privacy safeguards.
1. Information we process
Account: Google account identifier, email, name, age-14-or-older confirmation, Terms version, and consent timestamps.
Reservation: visitor name, phone number, confirmation email, optional messenger contact, optional requests, selected store and service, party size, date, time, selected interface language, status, and Naver reservation identifier.
Visit feedback: whether the visit occurred, whether the store found the reservation, optional reason for a missed visit, NOpenBook and store ratings, optional service and store comments, an optional traveler-selected country code, submission time, and optional consent time and version for featuring the NOpenBook comment and selected country flag as an anonymous testimonial.
Public store content: store details, business photos, and up to 20 recent Naver visitor-review excerpts may be stored for the public store page. Reviewer names, profile identifiers, and profile images are not imported; email addresses, phone numbers, and messenger identifiers found in review text are masked before storage.
Payment and service records: payment identifier, product, amount, status, Credit balance and ledger. Complete card numbers are handled by payment providers and are not stored by NOpenBook.
Technical records may include IP address, browser, device, access time, security logs, and first-party cookies used for authentication, A/B assignment, and daily visitor counting. Daily counts use a random browser identifier that is converted to a one-way, date-specific hash before database storage; visited paths, account IDs, and the original identifier are not stored with the count.
2. Purposes
We use information to create and secure accounts, submit and manage reservations, localize reservation notices and public store content including review excerpts, present public store information, send reservation confirmations, pre-visit reminders, post-visit feedback requests, and subscription-expiry service notices with aggregate booking-language counts, improve reservation and store-discovery experiences from feedback, feature a founder-reviewed NOpenBook comment and optional selected-country flag as an anonymous testimonial only with optional consent, process Credits and payments, prevent fraud, support customers, resolve disputes, comply with law, maintain service security, measure daily service use, and compare landing-page messages.
3. Retention and deletion
Account identifiers and profile data are kept until account deletion. When an account is deleted, sign-in identifiers and profile data are removed or irreversibly replaced so the account can no longer be accessed.
Reservation names, phone numbers, email addresses, messenger contacts, and requests are deleted or anonymized six months after the reservation date for completed, failed, or cancelled reservations. Masked name, phone suffix, and masked email may be retained for customer support and dispute matching for up to three years, after which those hints are also deleted.
Submitted visit feedback and testimonial-consent records are retained for up to three years after submission and deleted sooner when a valid deletion or consent-withdrawal request applies. Unsubmitted feedback invitations expire after 30 days and are automatically removed after an additional 30 days.
Imported review excerpts are replaced when store content is refreshed and are removed when the public store page is removed or a valid correction or deletion request is completed.
A/B assignment and anonymous visitor cookies remain for up to 30 days. Date-specific visitor hashes remain for up to three days, while anonymous daily counts and A/B event totals remain for up to six months.
Contract, payment, and service-supply records are retained for five years; customer complaint and dispute records for three years; and display or advertising records for six months where Korean e-commerce law applies.
4. Sharing for reservations
Recipient: the store selected by the customer and Naver Booking. Purpose: submitting, confirming, changing, and supporting the requested reservation. Fields: visitor name, phone number, optional messenger contact, confirmation email, optional requests, selected service, party size, date, and time.
The selected store and Naver retain information under their own policies and legal obligations. Consent is requested before each reservation submission because the recipient store changes by reservation. Refusing consent prevents submission of that reservation. We do not sell personal information.
5. Processors
Google processes account authentication and Maps requests; Supabase hosts account, reservation, and transaction data; Vercel hosts and delivers the web service; OpenAI translates masked public store text and imported review excerpts and generates review summaries; Resend delivers reservation, store, and subscription-service notification email; PortOne and the selected payment provider process payments; Discord delivers restricted operational error alerts containing a reservation identifier, error details, and masked name, phone, and email. Store-configured notification providers may deliver reservation notices to that store.
Processors may use only the information necessary for their assigned service and retain it for the service term or applicable legal period. Messenger contacts, customer requests, and complete contact details are not included in Discord alerts. Complete card numbers are not stored by NOpenBook.
6. International processing
Google LLC (United States and Google's global server locations): Google account identifier, email, name, and Maps request data such as IP address, browser, and device information are transferred over an encrypted network when you sign in or load a store map, for authentication and map delivery. Google retains this information under its privacy policy and account controls.
Supabase, Inc. (the AWS region selected for the NOpenBook project) and Vercel Inc. (United States and locations used by its infrastructure and subprocessors): account, reservation, payment-record, IP, browser, and service-log data are transferred over encrypted networks while the service is used, for database hosting, authentication, web delivery, security, and support. NOpenBook applies the retention periods in Section 3; providers may retain service records for the service term or a legally required period.
OpenAI, L.L.C. (United States and authorized processor locations): masked public store text and imported review excerpts are transferred over an encrypted network when translations or review summaries are generated, for machine translation and summary generation. The Chat Completions API does not retain application state; by default, abuse-monitoring logs may retain prompts and responses for up to 30 days, unless longer retention is legally required or reasonably necessary to prevent harm.
Plus Five Five, Inc., operating Resend (United States): recipient email, name, email metadata, and confirmation or notification content are transferred over an encrypted network when a service email is sent. Resend processes the data to deliver email during the service agreement and states that customer data is deleted within 90 days after account termination, unless law requires longer retention.
Discord Inc. (United States and other countries where Discord operates): reservation identifier, error details, and masked name, phone, and email are transferred over an encrypted network only when an operational error alert is sent. The information is retained under Discord's data-retention policy or until the restricted alert is deleted. Full contact details, messenger contacts, and customer requests are not transferred to Discord.
PortOne SG Pte. Ltd. (Singapore and authorized processor locations) and the selected payment provider: payment identifier, product, amount, status, and information entered in the payment window are transferred over an encrypted network when payment is requested or verified, for payment processing, reconciliation, refunds, fraud prevention, and legal compliance. They retain information for the service term or applicable payment and transaction retention period. NOpenBook does not store complete card numbers.
You may decline optional features, but refusing a transfer required for sign-in, reservation email, operational processing, or payment can make that feature unavailable. Contact support@weallfine.com to exercise applicable rights or ask about the current processor location.
7. Google Maps
Store pages may load Google Maps automatically. When loaded, Google may receive IP address, browser, device, and request information under Google's own privacy policy.
8. Your rights
You may request access, correction, deletion, suspension, withdrawal of consent, or account closure through the Account page or customer support. Store-owner accounts require support review so store ownership and active service records can be transferred or closed first. Legally retained transaction records are separated and used only for the required purpose.
9. Children
NOpenBook account registration is not available to children under 14. We do not intentionally collect their account or reservation information without a verified legal-representative consent process.
10. Security and changes
We use access controls, service-role separation, encryption in transit, restricted administration, and logging appropriate to the information handled. Operational error alerts use reservation identifiers, error details, and masked contact information; full contact details, messenger contacts, and customer requests are excluded. Material Policy changes will be announced before taking effect.
11. Controller and contact
Controller: Weallfine Inc. / Privacy contact: Yoongeon Kim / support@weallfine.com / +82 10-3075-8205 / 505-U237, 66 Gimpo Hangang 9-ro 75beon-gil, Gimpo-si, Gyeonggi-do, Republic of Korea