プライバシーポリシー
S9 DevWorks(日本。以下「当社」)は、BlinkJotアプリおよびblinkjot.appにおける情報の取扱いを、次のとおり定めます。連絡先はcontact@s9devworks.comです。
1. 端末内に保存する情報
メモ本文・下書き・ユーザー辞書・位置情報は、端末内のデータベースにのみ保存します。当社サーバーはメモを保存しません。
なお、端末内データベースはOS標準のバックアップ・端末間移行機能の対象となる場合があります(Androidのクラウドバックアップは端末側の暗号化条件を満たす場合のみ、機種変更時の端末間直接転送は条件なしで対象。iOSはiCloudバックアップの対象)。外部サービス連携の認証トークンはいずれも対象外です。
2. 文字起こし
録音音声は、文字起こしのため当社サーバー(Cloudflare Workers)を経由して外部音声認識プロバイダ(OpenAI / Soniox)へ送信されます。音声は文字起こしの完了後に削除処理を実行し、当社が音声を保存・目的外利用することはありません。モデル学習にも利用されません。ユーザー辞書の登録語は認識精度向上のため文字起こしリクエストに同送しますが、当社サーバーには保存しません。
3. 端末識別子と利用量
OSの端末ID(Android ID / IDFV)からHMACで導出した匿名識別子を、利用量管理および不正利用防止のためAPIリクエストへ付与します。氏名・メールアドレスなどと紐付くBlinkJotアカウントの登録はありません。
無料枠および有料プランの管理のため、端末識別子ごとの月間文字起こし時間を当社サーバーで記録します。
4. 位置情報
位置情報は任意で、利用者が許可した場合に限り、メモへ場所を記録する目的で端末内だけで利用・保存します。当社サーバーへは送信しません。
5. 外部サービス連携
Google Drive、GitHub、Notionとの連携は任意です。認証トークンは端末のセキュアストレージにのみ保存します。トークン交換は当社サーバーを経由しますが、当社サーバーには保存しません。メモの出力は、アプリから利用者が選択したサービスへ直接送信されます。
6. Google APIの利用
Googleから取得するユーザーデータは、drive.fileスコープにより本アプリが作成したファイルを操作するための情報と、アプリ内で接続アカウントの表示ラベルとしてのみ使用するメールアドレスです。
BlinkJotによるGoogle APIから受け取った情報の使用および他のアプリへの転送は、Limited Use要件を含むGoogle API Services User Data Policyに従います。
BlinkJot's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
7. 保持期間と削除
サーバー上の利用量および端末レコードは、サービス運営に必要な期間保持します。課金イベントの生データは、アプリ内課金の導入後、受領から12か月で自動削除します。
contact@s9devworks.comへ連絡することで、当社サーバー上の記録の削除を依頼できます。アプリのアンインストールでメモ等の端末内データは消去されます。OSの仕様によりセキュアストレージが残る場合も、再インストール時に消去します。
8. 児童のプライバシー
BlinkJotは13歳未満の児童を対象としたサービスではありません。
9. GDPR等に関する補足
匿名化した端末識別子であっても、法域によっては個人データに該当する場合があります。当社は、サービス提供に必要な契約の履行、および利用量管理・不正利用防止という正当な利益を法的根拠として処理します。適用法令に基づく権利については、上記連絡先へお問い合わせください。
10. 改定
本ポリシーを改定する場合は、本ページで告知します。
2026年9月14日: 対象ドメインをs9devworks.comからblinkjot.appへ変更しました。
Privacy Policy
S9 DevWorks, based in Japan ("we"), provides this policy for the BlinkJot app and blinkjot.app. Contact us at contact@s9devworks.com.
1. Data stored on your device
Memo content, drafts, user dictionary entries, and location information are stored only in the on-device database. We do not store your memos on our servers.
The on-device database may be included in standard operating-system backup and device-transfer features. Android cloud backup applies only when the device meets the required encryption conditions, while direct device-to-device transfer during device migration is included without that condition. On iOS, the database may be included in iCloud Backup. Authentication tokens for external-service integrations are excluded from all of these features.
2. Transcription
Recorded audio is sent through our Cloudflare Workers server to external speech-recognition providers (OpenAI / Soniox) for transcription. After transcription completes, deletion of the audio is initiated. We do not store the audio or use it for purposes other than transcription, and it is not used for model training. User dictionary terms are included in transcription requests to improve recognition accuracy and are not stored on our servers.
3. Device identifier and usage
We attach a pseudonymous identifier derived by HMAC from an OS device identifier (Android ID / IDFV) to API requests for usage management and abuse prevention. BlinkJot has no account registration linked to a name, email address, or similar identity data.
We record monthly transcription time for each device identifier to administer free allowances and paid plans.
4. Location
Location access is optional and used only with your permission to record a place on a memo. Location information is used and stored only on your device and is not sent to our servers.
5. External service integrations
Google Drive, GitHub, and Notion integrations are optional. Authentication tokens are stored only in secure storage on your device. Token exchange passes through our server, but tokens are not stored there. Memo exports are sent directly from the app to the service you select.
6. Google API data
Google user data accessed by BlinkJot consists of the drive.file scope, which permits access only to files created by the app, and the email address, used only as the connected-account label shown inside the app.
BlinkJot's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Google API Services User Data Policy
7. Retention and deletion
Server-side usage and device records are retained for as long as needed to operate the service. After in-app purchases are introduced, raw billing-event data will be deleted automatically 12 months after receipt.
You may request deletion of server-side records by contacting contact@s9devworks.com. Uninstalling the app removes on-device data such as memos. If secure-storage data remains because of OS behavior, BlinkJot clears it when the app is reinstalled.
8. Children's privacy
BlinkJot is not directed to children under 13.
9. GDPR and other privacy laws
A pseudonymous device identifier may qualify as personal data in some jurisdictions. Our legal bases are performance of our contract to provide the service and our legitimate interests in usage management and abuse prevention. Contact us to exercise rights available under applicable law.
10. Changes
Changes to this policy will be announced on this page.
September 14, 2026: The covered domain changed from s9devworks.com to blinkjot.app.