写真、音声、位置、連絡先、入力した文章や作成した内容を、当方の分析サービスへ送りません。カメラ、マイク、位置、モーションなどの権限は、使うデモの目的を画面で説明してから要求します。Appleの地図、音声認識、音楽などのサービスを使うデモでは、機能の提供に必要なデータがAppleに送信される場合があります。各機能の説明とOSの許可画面を確認できます。
TrueDepth・深度カメラ・ARの顔追跡
扱うデータと目的: カメラを許可して対応機能を使う場合、「深度と光」はカメラのカラー映像と画素ごとの深度・視差を端末内で処理し、距離の表示と、指で動かす光の表現を作ります。「写真と動画の形式」は対応カメラの写真、深度、人物マットを取得し、その撮影結果と対応形式を画面に表示します。TrueDepthは利用可能な深度カメラの一つです。
「拡張現実」で「顔」を選ぶと、ARKitがカメラ映像と顔の位置・向き・形状に関する顔追跡データを端末内で処理します。アプリはカメラ表示と追跡状態の確認に使います。顔メッシュや表情係数をプロフィールとして抽出・記録せず、TrueDepthやARの顔データを本人識別、顔認証テンプレートの作成、感情の推定、広告、マーケティング、機械学習の訓練には使いません。Face IDの登録済み生体情報を取得することもありません。
共有: これらの機能のカラー映像、深度マップ、顔追跡データをParticles and Wavesのサーバー、Appleのサーバー、Firebase/Google Analytics、RevenueCatその他の第三者へ送信しません。販売・貸与・第三者への提供も行いません。以下の一般的な利用分析・購入処理に、これらの映像や顔データを含めません。
保存・保持・削除: 深度・顔追跡データとそのプレビューは端末の実行時メモリで一時的に扱います。新しいフレームや撮影結果で更新され、関連する画面・セッションのオブジェクトが解放されるか、アプリが終了すると解放されます。顔データベース、顔の履歴、iCloud上の顔データは作成せず、これらの画面から写真ライブラリへの自動保存や書き出しも行いません。
「写真と動画の形式」で利用者がLive Photoを有効にした場合だけ、Appleの撮影APIが動画部分を端末のアプリ内一時領域に書き込みます。アプリは処理終了の通知を受けてその一時ファイルを削除します。処理中の強制終了などで残った一時ファイルについて、固定の自動削除期限は保証しません。OSの一時領域の整理、またはアプリの削除により除去されます。この動画をアップロードしたり、顔情報のデータベースとして保持したりすることはありません。
利用者の選択: カメラ権限を拒否したり、iOSの設定で取り消したりできます。該当の体験を使わなくても、カメラが不要な機能は利用できます。画面を離れると該当のカメラ・ARセッションは停止します。
近くの端末との通信では、利用者が相手を選んで招待し、受信側が承認した後に、入力したテキストを暗号化された直接接続で送受信します。会話は実行時メモリだけに表示し、当方のサーバーや分析サービスへ送信しません。
Appleサインインの体験は、当方のサービスのアカウントを作りません。Appleが返した名前・メールアドレスはその画面の表示にだけ使い、アプリは保存・外部送信しません。認証状態を確認するためのAppleユーザー識別子だけを端末内に保存します。「保存した識別子を削除」で端末内の識別子と表示中の認証結果を削除できます。Apple側の連携許可はApple Accountの設定から解除できます。
カレンダー、リマインダー、アラームへの追加は利用者の操作で行い、作成した内容はOSが保存します。必要に応じてカレンダー、リマインダー、アラームの管理画面から削除できます。予定・リマインダーの体験では、この画面で作成した項目だけを変更します。
Firebase Analytics(Google Analytics 4)を使い、機能の閲覧・操作・実際の結果への到達、設定や購入復元の操作を固定のイベント名で記録します。Googleはアプリインスタンス識別子、端末・OS情報、利用状況、マスク済みIPアドレスに基づく概算地域、アプリ内購入イベントを処理します。氏名、メールアドレス、正確な位置、入力本文、写真、音声、購入トークンや注文番号を分析イベントの値として送りません。
広告識別子(IDFA)を収集するSDK構成は使用せず、IDFVの収集と広告パーソナライズも無効にしています。広告配信や他社アプリ・Webサイトをまたぐ追跡には利用しません。TestFlight・開発環境のデータは一般利用のデータと区別します。
支払いはAppleが処理します。当方がクレジットカード番号を取得することはありません。RevenueCatが匿名のアプリ利用者識別子と購入・購読・復元情報を処理して購入状態と復元結果を確認します。購入イベントは検証できた取引に限って購入完了として記録し、未検証の操作やプレビューを売上に数えません。
設定、機能のお気に入り、体験の進捗は端末に保存します。共有先は利用者がOSの共有画面で選びます。Google Analyticsのイベントデータの保存期間はプロパティ設定に従い、購入履歴は購読管理・復元・不正防止に必要な期間、AppleとRevenueCatが保持します。データの取扱いに関する質問や削除の相談はsupport@particlesandwaves.orgへご連絡ください。
ApiipA requires no account. Demo inputs, photos, audio, precise location, contacts, and entered or created text are not sent to our analytics. Permission-dependent demos explain their purpose before requesting access. Apple-powered maps, speech and music features may send data needed to provide that feature to Apple.
TrueDepth, depth cameras, and AR face tracking
Data and purpose: After camera permission is granted, Depth and light processes live color frames and per-pixel depth/disparity on the device to display distance and render a light controlled by touch. Photo and video formats receives a photo, supported depth data, and a portrait-effects matte to display the capture result and supported formats. TrueDepth is one of the depth cameras these tools can use.
When Face mode is selected in Augmented reality, ARKit processes camera imagery and face-tracking data describing face position, orientation, and shape on the device. The app uses the camera display and tracking status to demonstrate tracking. It does not extract or record face meshes or expression coefficients as a profile. TrueDepth and AR face data are not used for identification, creating face-authentication templates, emotion inference, advertising, marketing, or training machine-learning models. The app does not access the enrolled biometric information used by Face ID.
Sharing: Color frames, depth maps, and face-tracking data from these features are not transmitted to Particles and Waves servers, Apple servers, Firebase/Google Analytics, RevenueCat, or any other third party. We do not sell, rent, or disclose these data. The general interaction analytics and purchase processing described elsewhere in this policy do not include this imagery or face data.
Storage, retention, and deletion: Depth/face-tracking data and previews are handled temporarily in runtime memory on the device. They are updated by new frames or capture results and released when the associated view/session objects are released or the app terminates. We create no face database, face history, or iCloud copy of face data. These screens do not automatically save to the photo library or provide an export of these data.
Only if the user enables Live Photo in Photo and video formats does Apple's capture API write the movie component into the app's temporary directory on the device. The app deletes that temporary file when it receives the processing-completion callback. We do not guarantee a fixed deletion deadline for a temporary file left by an interruption such as force termination during capture. OS temporary-directory cleanup or deletion of the app removes it. The movie is not uploaded or retained as a face-information database.
Your choice: You can deny camera permission or revoke it in iOS Settings. Features that do not require the camera remain available. Leaving the relevant screen stops its camera or AR session.
Device connections and the identity experience
For nearby-device connections, you choose a device and invite it. Once the receiving device accepts, entered text is exchanged over an encrypted direct connection. Messages appear only in runtime memory and are not sent to our servers or analytics.
The Sign in with Apple experience creates no account with our service. Names and email addresses returned by Apple are displayed in that screen only, not saved or transmitted by the app. Only the Apple user identifier is stored locally to check authorization status. Remove saved identifier deletes that identifier and the displayed authentication result from the device. You can revoke Apple's authorization in Apple Account settings.
Calendar events, reminders and alarms are added only through user actions and stored by the operating system. You can remove them in the corresponding calendar, reminder or alarm management screen. The event and reminder experiences change only items created in that screen.
Firebase Analytics processes app interactions, app-instance identifiers, device/OS information, coarse region derived from masked IP, and in-app purchase events to improve the app. We do not include names, email addresses, input contents, raw purchase tokens or order IDs in analytics events. IDFA collection is excluded, IDFV collection and ad personalization are disabled, and data is not used for advertising or cross-app tracking. Internal test traffic is separated from public traffic.
Apple handles payment. RevenueCat processes an anonymous app-user identifier and purchase/subscription information to verify purchase status and restore purchases. Only verified transactions count as completed purchases. Settings and progress are stored on the device. Analytics retention follows the Google Analytics property setting; purchase records are retained by Apple and RevenueCat as needed for subscription management, restoration and fraud prevention. Contact support@particlesandwaves.org with questions or deletion requests.