Privacy Policy
Hansoo Labs (“we”) explains here how list3+ handles your information. The lists and items you create stay on your device and are not sent to our servers. Information reaches a server only when you sign in, run a backup or make a purchase yourself, plus the minimal data described in section 5.
1. Information that stays on your device
The following never leaves your device and is removed when you delete the app.
- List and item titles, amounts, notes, checked state and order; tags, budgets, currency settings
- Archived and trashed lists
- Reminders — notifications are scheduled locally; no push server is involved
- Theme, font size, sort order and other app settings
- Your app passcode — stored only as a salted hash, never in plain text, and never transmitted. Biometric authentication is handled by your operating system; the app receives only the success or failure result.
2. Account (optional)
Backup requires signing in with a Google or Apple account. Everything else in the app works without signing in. When you sign in, the following is stored in Firebase Authentication.
| Data | Account identifier (UID), email address, sign-in provider (Google or Apple) |
|---|---|
| Purpose | Identifying the owner of a backup; checking purchase entitlements |
| Retention | Until the account is deleted |
We never receive or store your account password. If you use Sign in with Apple and choose to hide your email, we receive only the anonymous relay address Apple issues.
3. Cloud backup (optional)
Running a backup uploads a compressed copy of the entire app database — including your lists and items — to Firebase Storage. This is the only path by which list contents leave your device. The backup's title and timestamp are recorded separately in Firebase Realtime Database.
- Storage is partitioned per account; other users cannot access your backups.
- A backup file also contains the hash of your app passcode.
- Subscribers who enable automatic backup have the same backup created periodically in the background. When the retention limit is reached, the oldest backup is deleted.
- You can delete individual backups at any time from the app's backup screen.
- If you never run a backup, none of your list contents exist on a server.
4. Purchases and subscriptions
Payment is handled by the App Store or Google Play. We never receive card numbers or other payment details. We record only the verified result of the receipt the store issues, stored per account in Firestore.
| Data | Product identifier, purchase and expiry times, ad-free and subscription entitlement flags |
|---|---|
| Purpose | Confirming ad removal and subscriber-only features (automatic backup, printing) |
| Retention | Until the account is deleted |
5. Information collected automatically
| Crash diagnostics | If the app crashes, Firebase Crashlytics collects the error, device model, OS version and app version. List contents are not included. |
|---|---|
| Usage analytics | Google Analytics counts screen views and key actions (creating a list, adding an item, exporting, backing up, setting a reminder) in aggregate. Titles and amounts from your lists are never sent. |
| Advertising | Users who have not removed ads are shown Google AdMob ads, which use your device's advertising identifier. On iOS this follows your App Tracking Transparency choice. Once ads are removed, no ad requests are made at all. |
6. Processors and international transfers
We rely on the following providers, and data may be stored and processed in data centres they operate outside your country.
| Google LLC | Firebase (authentication, storage, database, crash reporting, analytics), AdMob, Google Play billing |
|---|---|
| Apple Inc. | Sign in with Apple, App Store billing |
We do not sell your personal information or share it for any other purpose.
7. Retention and deletion
- Data on your device is deleted when you delete the app.
- Backups are deleted when you delete them, or when automatic backup rotates them out.
- Your account and related data (authentication record, backups, entitlements) are deleted immediately when you delete your account in the app, or when we process an emailed request.
8. Your rights and how to exercise them
- Access and portability — export your lists as TXT or PDF from the app.
- Delete backups — remove individual backups from the app's backup screen.
- Sign out — available in settings; your on-device lists are kept.
- Delete your account — in the app, go to Settings > Account & Backup > Delete account. Your account, cloud backups and entitlement records are deleted together, and this cannot be undone. If you cannot use the app, request deletion as described on the account deletion page.
- Advertising identifier — you can turn off personalised ads in your device settings.
9. Children
list3+ is not directed to children under 14 and we do not knowingly collect their personal information. If we learn that we have, we delete it without delay.
10. Security
- All communication with our servers uses encrypted connections (HTTPS).
- Backups and entitlements are separated by per-account access rules.
- App passcodes are never stored in plain text.
11. Changes to this policy
We will post any change and its effective date on this page. Changes that disadvantage users will be announced at least 30 days in advance.
12. Contact
For privacy questions or account deletion requests, please contact us.
- Hansoo Labs
- Email hansoo.labs@gmail.com
13. Language
This English text is provided for convenience. If it conflicts with the Korean version, the Korean version prevails.