Privacy Policy
Hypia ("we") sets forth the following policy regarding the handling of personal information in infoholick ("the Service"). In the event of any discrepancy between the Japanese and English versions, the Japanese version shall prevail.
1. Information We Collect
- Email address (at registration and account recovery)
- WebAuthn credentials (passkeys)
- Usage data such as feed subscriptions, favorites, lists, feed filters, and column layout
- Push notification subscription data (endpoint URL, encryption keys)
- Payment information (for paid plans, via Stripe)
- Access logs (IP address, access time, browser information, etc.)
2. Purpose of Use
- Providing and operating the Service
- Providing AI curation features (generating article summaries)
- Delivering new article notifications via push notifications
- Processing payments for paid plans
- Improving the Service and developing new features
- Responding to inquiries
3. Disclosure to Third Parties
We do not provide personal information to third parties except in the following cases:
- With the user's consent
- When required by law
- As a delegation of payment processing to our payment provider (Stripe, Inc., United States)
4. Payment Information & Cross-Border Transfer
Credit card information is managed by Stripe, Inc. (United States) and is not stored on our servers. The provision of information to Stripe is carried out as a delegation under the Act on the Protection of Personal Information. Stripe maintains PCI DSS-compliant security measures and is certified under the EU-US Data Privacy Framework. Please refer to Stripe's website for their privacy policy.
5. Data Retention Periods
We retain collected personal information for the following periods:
- Account information (email, credentials, etc.): deleted immediately upon account deletion
- Usage data (feed subscriptions, favorites, lists, filters, column layout, etc.): deleted upon account deletion
- Push notification subscription data: deleted upon account deletion or when unsubscribed by the user
- AI curation data (generated summary text): retained as shared per-article data (no personal information is included)
- Payment information: retained per Stripe's retention policy (not stored by us)
- Access logs: retained in accordance with the infrastructure provider's (Cloudflare) retention policy
6. Information Security
We take appropriate security measures to prevent leakage, loss, or damage of collected personal information. In the event of a data breach, we will report to the Personal Information Protection Commission and notify affected users as required by the Act on the Protection of Personal Information.
7. Use of Cookies
The Service uses cookies for session management and language preference storage. It also uses browser localStorage to store display settings such as dashboard column layout, column width, and theme preferences. These are necessary for the proper functioning of the Service and are not used for tracking or advertising purposes.
8. Disclosure, Correction, Suspension & Deletion Requests
Users may request disclosure, correction, suspension of use, or deletion of their personal information by contacting us at info@hypia.jp with information sufficient for identity verification. We will respond within two weeks as a general rule. No fee is charged.
9. Changes to This Policy
We may modify this policy as necessary. Users will be notified of significant changes through the Service.
Effective: April 4, 2026 / Last revised: July 5, 2026