Privacy Policy
Last updated: July 20, 2026
1. Introduction
YasaiDev (X: @YasaiDev, the “Developer”) considers the protection of users’ privacy in the mobile application “DoodleRise” (the “App”) to be important.
This Privacy Policy (the “Policy”) sets forth the types of information collected through the App, the purposes for which it is used, and how it is managed. By using the App, you are deemed to have agreed to the contents of this Policy.
The App consists of two layers: core features (alarms, drawing, review, etc.) that can be used entirely on the device without account registration, and social features (friend groups, feed, comments, stamps, stories, gifts, notifications, etc.) that allow drawings to be shared within invite-only groups after optionally signing in. The scope of information collected differs depending on how far the User uses these features.
2. Handling of Personal Information
Unless a User signs in, the Developer does not collect or retain any personally identifiable information such as names, email addresses, or phone numbers. We also do not collect tracking identifiers such as IDFA (Identifier for Advertisers). When only the core features are used, it is not possible to identify any specific individual based on the data we hold.
Only when a User signs in to use social features does the Developer handle the sign-in identifier and email address provided through Sign in with Apple (including the private, undisclosed email address provided by Apple’s Private Relay), as well as the profile information set by the User (display name, icon, and theme color).
The following table provides an overview of data handling in this App.
| Data Type | Managed By | Condition for Collection | Sharing / Disclosure |
|---|---|---|---|
| User Content (on-device drawing data) | User’s device only | Always on-device only | Not accessible to the Developer |
| Account information (sign-in identifier, email address) | The Developer | Only upon sign-in | Not disclosed to third parties. Disclosable/deletable upon the individual’s request |
| Profile (display name, icon, theme color) | The Developer | Only upon sign-in | Displayed to members of joined groups |
| Posted content (drawings and short messages posted to a group) | The Developer | Only when the User posts | Displayed only to members of joined groups. Automatically deleted within approximately 10 days at most |
| Groups / memberships, comments / stamps | The Developer | When using social features | Shared only among the members of that group |
| Push notification registration information | The Developer / OneSignal | Only when notifications are permitted | Used only for the purpose of delivering notifications |
| Payment information (credit cards, etc.) | Apple Inc. | Upon paid purchase | Managed by Apple. Not collected by the Developer |
| Purchase history / subscription status / gift balance | RevenueCat (linked to an anonymous app user ID / linked to the account ID after sign-in) | Upon paid purchase | Disclosable after identity verification |
| Usage data | The Developer (anonymized) | Always (opt-out available) | Cannot identify individuals. Users in the GDPR region are shown a consent dialog on first launch |
3. User Content
Illustrations and drawing data created by Users within the App (the “User Content”) are, by default, stored solely on the User’s device and are not transmitted to the Developer’s servers.
However, only when a User chooses to post User Content to a group through the social features will such content be stored by the Developer for the purpose of displaying it to the members of the joined group. The copyright to posted content belongs to the User, and the Developer will not use it for any purpose other than operating the App’s social features. For the sharing scope and retention period of posts, please refer to Section 6.
4. Data Stored on Your Device
The following data is stored only on the User’s device and, unless the User makes a post, is not transmitted to the Developer’s servers.
- Illustrations drawn by the User (drawing data)
- Data relating to core features, such as alarm settings and review records
5. Data We Collect
5.1 Usage Data and Device Information
To improve the App and enhance service quality, we collect the following anonymized usage data. This data cannot be linked to any specific individual.
- Usage Data: Anonymized analytics data such as app usage frequency, feature usage, and crash logs
- Device Information: Technical information such as OS version, device model, and language settings
Opt-out: Users can disable the collection of usage data in the App’s settings screen. If you opt out, transmission of anonymized analytics data will be stopped.
5.2 Information Collected Upon Sign-In
Only when a User signs in to use social features do we collect and retain the following information.
- Account Information: The sign-in identifier and email address provided through Sign in with Apple (including the private, undisclosed email address provided by Apple’s Private Relay)
- Profile Information: The display name, icon, and theme color set by the User
- Information Relating to the Use of Social Features: The groups joined, content posted (drawings and short messages), comments and stamps, and notification status
5.3 Purchase Information
In-app purchases and subscription management use a third-party service, RevenueCat, Inc. RevenueCat manages purchase history, subscription status, and the balance of gifts (Premium Tickets), linked to an app user ID (an anonymous identifier automatically generated from the device before sign-in, and the account identifier after sign-in).
Actual payment processing (credit card information, etc.) is handled through Apple Inc.’s App Store, and neither the Developer nor RevenueCat directly obtains or retains payment information.
6. Sharing and Retention of Information in Social Features
The App’s social features exist only within invite-only, closed groups. There is no mechanism for publishing to the general public, no public feed, and no indiscriminate user search or public discovery.
- Sharing Scope: Content posted by a User, comments and stamps, and the profile are displayed only to the members of the groups that the User has joined. They are not disclosed to third parties outside the group.
- Retention Period: Content posted to a group is displayed on the feed only for a limited period after posting, and is automatically deleted from the Developer’s storage within approximately 10 days at most from the time of posting.
- Deletion: Users may delete their own posts at any time. If a User deletes a post, leaves or is removed from a group, or deletes their account, such content will no longer be viewable by the other members of that group.
7. Purpose of Use
Collected data is used only for the following purposes:
- Improving App quality and fixing bugs
- Providing and operating social features (sign-in, profile display, sharing content within groups, delivering notifications, etc.)
- Responding to user support requests
- Analyzing usage patterns (as anonymized statistical data)
8. Provision to Third Parties
The Developer will not provide collected information to third parties except with the User’s consent or as required by applicable law.
However, the Developer may entrust the handling of data to the third-party service providers described below to the extent necessary to provide the App. In addition, anonymized usage data is used for the purpose of analysis necessary to improve the App’s quality.
9. Use of Third-Party Services
The App uses the following third-party services. Each of these services operates under its own respective privacy policy. The handling of data is governed by each service provider’s privacy policy.
- Apple Inc.: App distribution, in-app purchase payment processing, and authentication via Sign in with Apple (payment information is managed by Apple Inc.)
- Cloudflare, Inc.: Storage and delivery of data in the social features (accounts, profiles, posted content, etc.)
- OneSignal: Delivery of push notifications
- RevenueCat, Inc.: Management of in-app purchases, subscriptions, and gifts
- Analytics Tools: App usage analysis (anonymized data only)
10. Data Storage and Management
Data relating to core features (drawing data, alarm settings, etc.) is stored exclusively on the User’s device. Unless the User makes a post, this data is not transmitted to the Developer’s servers.
Data relating to social features (accounts, profiles, posted content, etc.) is stored by the Developer only for signed-in Users, to the extent necessary to operate the service. As described above, posted content is automatically deleted within approximately 10 days at most.
When the App is deleted, all locally stored data on the device, such as drawing data and alarm settings, will be removed. The Developer cannot restore this data. Please note that deleting the App alone does not delete the account. If you wish to delete information associated with your account, please perform the account deletion operation within the App.
11. Data Security
The Developer implements reasonable technical and organizational security measures to prevent the leakage, loss, or damage of collected data.
12. User Rights
Under applicable law, users have the right to request the disclosure, correction, deletion, or suspension of use of information about themselves.
- Users who use only the core features: As described above, since the Developer does not hold personally identifiable information, there is no personal data to provide or delete in response to requests for disclosure, deletion, or the like.
- Signed-in users: Since the Developer holds accounts, profiles, posted content, and the like, we will respond to requests for the disclosure, correction, deletion, or the like of such information. Users can perform much of this themselves through operations within the App, such as editing their profile, deleting posts, and deleting their account.
Regarding purchase information, only if a User can verify their identity through Apple-issued receipt information or similar means, we can respond to requests for disclosure of the purchase history linked to that user ID through RevenueCat.
Please submit inquiries through the in-app contact feature or the contact form on the website.
13. For EU/EEA Residents (GDPR Compliance)
For users residing in the European Union (EU) or the European Economic Area (EEA), the following rights are guaranteed under the EU General Data Protection Regulation (GDPR):
- Right of Access (Disclosure)
- Right to Rectification
- Right to Erasure (Deletion)
- Right to Data Portability
- Right to Restriction of Processing
- Right to Object
- Right to Withdraw Consent
- Right to Lodge a Complaint with a Supervisory Authority
For users who use only the core features, since the Developer does not hold data linked to a specific individual, there is no personal data to provide or delete in response to requests based on the above rights. For signed-in users, the Developer will respond in good faith in accordance with the above rights with respect to the accounts, profiles, posted content, and the like that it holds.
In addition, data relating to social features may be processed on servers located outside Japan. In accordance with GDPR requirements, the Developer collects only the minimum necessary data and processes data with appropriate safeguards in place.
14. Children’s Privacy
The App is not primarily intended for children under the age of 13. The Developer does not intentionally collect personal information from children under the age of 13.
15. Changes to Policy
The Developer may amend this Policy in response to changes in applicable law, changes to the service, and the like. In the event of significant changes, we will provide notice within the App or on the website. Continued use of the App after any amendments constitutes the User’s agreement to the amended Policy.
16. Language
This Policy was originally prepared in Japanese, which shall be the authoritative version. In the event this Policy is translated into another language and there is any contradiction or discrepancy between the Japanese version and a translation, the Japanese version shall prevail.
17. Governing Law
This Policy is governed by the laws of Japan (including the Act on the Protection of Personal Information). However, for EU/EEA residents, the GDPR shall take precedence to the extent its provisions apply.
18. Contact
For inquiries regarding this Policy, please contact us through the following:
Developer: YasaiDev X (Twitter): @YasaiDev Contact: Please use the in-app contact feature or the contact form on the website.