English
Solo + Us ("the App") is a personal wellness app for recording Solo
and Partnered sexual activity over time, so you can reflect on your
own patterns. This policy explains what information the App handles
and how it is treated.
1. Our Approach
- No account or sign-up is required.
- Your records are, in principle, stored only on your device (see "4. Health Connect Integration" for the one exception).
- We do not operate our own server, and your records are never sent to any server of ours.
- We do not use your records for advertising purposes.
- We do not include any analytics SDK, advertising SDK, or crash-reporting SDK.
2. Information We Collect
The App stores the following information on your device only when
you explicitly enter it. Only "date/time" and "category (Solo /
Partnered)" are required; everything else is optional.
- Date and time of the record
- Category (Solo / Partnered)
- Outcome (orgasm, ejaculation, whether protection was used)
- Optional context (duration, mood before/after, free-text notes)
- Time zone information for each record (e.g. "Asia/Tokyo" and its UTC offset)
- App settings such as which fields are shown
The App does not collect information that could identify you, such
as your gender, name, email address, or GPS-based location. Note
that the time zone stored with each record is not precise location
data, but it can suggest your general region.
3. How Data Is Stored
- All records are stored only in an on-device database encrypted with SQLCipher.
- The encryption key is stored in the device's Keychain (iOS) / Android Keystore, independently of biometric data.
- On Android, your records are explicitly excluded from the OS's automatic backup and device-to-device transfer.
- On iOS, this exclusion is not yet implemented, so the database file itself is included in iCloud/iTunes backups. The encryption key is tied to your device, so restoring that backup to a different device will not let it decrypt the database. This policy does not make a claim about restoring to the same device, since that behavior depends on the OS.
- Your records are kept on your device until you delete them or uninstall the App. We do not retain them on any server we operate.
-
As a result, if your device is lost, reset, or the App is
uninstalled, your records effectively cannot be recovered. The
only way to restore them is through export/import, described below.
4. Health Connect Integration (Android)
The App is distributed in two variants: one that supports Health
Connect integration and one that does not.
Everything below applies only to the Health
Connect–enabled variant. In the other variant, Health
Connect–related settings and features are not shown in the App and
cannot be used at all.
In the Health Connect–enabled variant, the App integrates with
Android Health Connect only if you explicitly enable it in
Settings. It is disabled by default.
- Only "date/time" and "protection used" are sent to Health Connect.
- The Solo/Partnered distinction, orgasm/ejaculation, duration, mood, and notes are never sent.
- The current setting is a single on/off toggle for this integration — there is no separate option to sync only Solo or only Partnered records. Enabling sync applies to both.
- Currently the App only writes to Health Connect; it does not read data back from Health Connect.
- You can disable or disconnect this integration at any time from Settings.
- Data stored in Health Connect itself is governed by Google's Health Connect privacy policy.
5. App Lock
The App offers a lock screen using your device's Face ID / Touch ID
/ fingerprint, or device passcode. Authentication itself is handled
by the OS; the App only receives the result. The App does not
implement its own PIN.
6. Backup and Export
- You can export your records as a plain-text JSON or CSV file from within the App.
- JSON is the canonical backup/restore format and can be imported back into the App. CSV is a one-way export intended for viewing or analysis in spreadsheet software, and cannot be imported back.
- A regular export is only generated when you explicitly request it, and you choose the destination through the OS's standard share sheet. Temporary files created for sharing are deleted afterward.
- Export files are not encrypted. Please handle them carefully when storing or sharing.
-
When you run a "replace import" (restoring your data from a
backup, which overwrites what's currently on the device), the
App automatically creates a plain-text JSON safety backup of your
existing records before making any changes. This file does not
go through the share sheet, so it is not auto-deleted, and the
App does not currently offer a way to delete it from within its
UI. On Android, you can delete it yourself from wherever you
chose to save it, using your device's file manager. On iOS,
there is currently no way to access or delete this file from
outside the App (e.g. via the Files app) — it remains on your
device until you uninstall the App (and, in the meantime, is
included in iCloud/iTunes backups as described in section 3).
- You can also import a JSON export to restore your records.
7. Data Deletion
You can delete your records from within the App's settings.
Uninstalling the App also deletes the on-device database (on
Android this cannot be recovered afterward, since it is excluded
from OS backups as described above; see section 3 for how iOS
backups are currently handled).
If you are using the Health Connect–enabled variant and sync is
enabled, deleting a record also queues a request to delete the
corresponding entry from Health Connect. However, while sync is
disabled, or while a deletion has not yet been processed, that
entry can remain in Health Connect for a while. Re-enabling sync
will resume any pending deletions. (If you are using the variant
without Health Connect support, the App never communicates with
Health Connect at all.)
8. Age Rating
The App is intended for adults aged 18 and over. It does not
knowingly collect information from children.
9. Changes to This Policy
This policy may be updated as the App evolves. You can review
changes on this page and in the commit history of the
GitHub repository.
10. Data Controller & Contact
The developer (data controller) of this App is yskms.studio.
For any questions or feedback about the App, please use one of the
following:
日本語
Solo + Us(以下「本アプリ」)は、Solo / Partnered
な性的活動を長期間記録し、自分自身の変化を振り返るための
Personal Wellness アプリです。本ポリシーは、本アプリが取り扱う情報と
その取り扱い方針について説明します。
1. 基本方針
- アカウント登録は不要です。
- 記録データは原則として端末内にのみ保存されます(例外は「4. Health Connect との連携」を参照)。
- 独自サーバーへ記録データを送信することはありません。
- 記録データを広告目的で利用することはありません。
- 不要な Analytics・広告 SDK・クラッシュレポート SDK は導入していません。
2. 収集する情報
本アプリは、利用者が明示的に入力した場合に限り、以下の情報を
端末内に保存します。いずれも任意入力であり、入力を必須とする項目は
「記録日時」と「分類(Solo / Partnered)」のみです。
- 記録日時
- 分類(Solo / Partnered)
- Outcome(Orgasm、Ejaculation、Protection 使用の有無)
- 状況メモ(Duration、記録前後の気分、自由記述メモ)
- 記録のタイムゾーン情報(例: Asia/Tokyo、UTC からのオフセット)
- 表示項目のカスタマイズなど、本アプリの設定
本アプリは、利用者の性別・氏名・メールアドレス・GPS 等の位置情報など、
個人を特定しうる情報を収集しません。ただし上記のタイムゾーン情報は、
正確な位置情報ではないものの、おおまかな地域を推測できる情報である点に
ご留意ください。
3. データの保存方法
- すべての記録データは、SQLCipher により暗号化された端末内データベースにのみ保存されます。
- 暗号鍵は端末の Keychain(iOS)/ Android Keystore に保管され、生体認証の情報とは独立しています。
- Android では、記録データを OS の自動バックアップ・端末間移行(デバイス間コピー)の対象から明示的に除外しています。
- iOS では現時点でこの除外を実装しておらず、データベースファイル自体は iCloud / iTunes のバックアップに含まれます。暗号鍵は端末に紐づく設定のため、別の端末にそのバックアップから復元した場合はデータベースを復号できません。同一端末への復元時の挙動は OS の実装に依存するため、本ポリシーでは断定しません。
- 記録データは、利用者が削除するかアプリをアンインストールするまで端末内に保持されます。当方が運用するサーバーでの保持は一切ありません。
-
以上の結果として、端末の紛失・初期化・アンインストールが発生すると、記録データは実質的に復元できなくなります。復元手段は次項のエクスポート/インポートのみです。
4. Health Connect との連携(Android)
本アプリには、Health Connect 連携に対応したビルドと、対応していない
ビルドがあります。以下は Health Connect 対応ビルドにのみ
当てはまります。対応していないビルドでは、Health Connect
関連の設定・機能はアプリ内に一切表示されず、利用もできません。
Health Connect 対応ビルドでは、利用者が設定画面で明示的に有効化した
場合に限り、Android の Health Connect と連携します。既定では無効です。
- Health Connect へ送信される情報は「日時」と「Protection(避妊具等の使用有無)」のみです。
- Solo / Partnered の区別、Orgasm / Ejaculation、Duration、気分、メモは送信されません。
- 現在の設定は連携の ON / OFF のみで、Solo / Partnered を個別に選んで同期対象を絞る設定はありません。連携を有効にすると、両方の記録が同期対象になります。
- 現時点では本アプリから Health Connect への書き込みのみを行い、Health Connect からのデータ読み込みは行いません。
- 連携はいつでも設定画面から無効化・切断できます。
- Health Connect 上に保存されたデータの取り扱いは、Google の Health Connect のプライバシーポリシーに従います。
5. アプリロック
本アプリは、端末の Face ID / Touch ID / 指紋認証、または端末パスコードによる
ロック機能を提供します。認証そのものは OS が行い、本アプリはその結果のみを
受け取ります。アプリ独自の PIN は実装していません。
6. バックアップとエクスポート
- 利用者は、アプリ内の操作により、記録データを平文の JSON または CSV ファイルとしてエクスポートできます。
- JSON 形式はバックアップ・復元(インポート)に対応した正本形式です。CSV 形式は表計算ソフト等での閲覧・集計を目的とした一方向のエクスポートであり、インポート(復元)には利用できません。
- 通常のエクスポートは利用者が明示的に操作した場合にのみ生成され、OS 標準の共有機能を通じて送信先を利用者自身が選択します。共有後、アプリ内に作成された一時ファイルは削除されます。
- エクスポートファイルは暗号化されていない平文です。保管・共有時はファイルの取り扱いにご注意ください。
-
「置換インポート(バックアップから丸ごと復元)」を実行する際は、安全のため、
置換前の記録データを平文 JSON として自動的にバックアップするファイルが端末に
生成されます。このファイルは共有シートを経由しないため上記の自動削除の対象外で、
現時点ではアプリ内に削除用の操作を用意していません。Android では、保存先として
選んだ場所を端末のファイル管理アプリ等から手動で削除できます。iOS では現時点で
このファイルをアプリ外(「ファイル」アプリ等)から参照・削除する手段がなく、
アプリをアンインストールするまで端末に残り続けます(§3 の通り iCloud / iTunes
バックアップの対象にもなります)。
- エクスポートした JSON ファイルから記録データをインポート(復元)することも可能です。
7. データの削除
利用者は、アプリ内の設定から記録データを削除できます。また、アプリを
アンインストールすると端末内のデータベースも削除されます(Android では
前述の通り OS バックアップの対象外のため、アンインストール後の復元はできません。
iOS のバックアップの扱いは §3 を参照してください)。
Health Connect 対応ビルドをご利用で、かつ連携を有効にしている場合、記録を削除する
とその削除を Health Connect 側にも反映する処理が行われます。ただし、連携が無効に
なっている間や、削除の反映がまだ完了していない間は、その記録が Health Connect 側に
残り続けることがあります。連携を有効な状態に戻すと、未反映の削除は改めて Health
Connect 側へ反映されます。(Health Connect 非対応ビルドをご利用の場合、本アプリは
Health Connect と一切通信しません。)
8. 対象年齢
本アプリは 18 歳以上の成人を対象としています。本アプリが児童を対象として
意図的に情報を収集することはありません。
9. 本ポリシーの変更
本ポリシーは、本アプリの開発状況に応じて更新されることがあります。
変更内容は本ページおよび
GitHub リポジトリ
のコミット履歴で確認できます。
10. データ管理者・お問い合わせ
本アプリの開発者(データ管理者)は yskms.studio です。
本アプリに関するご質問・ご意見は、下記のいずれかの方法でお願いします。