Privacy Policy
This policy explains how the iOS app “Oshi Check” (Japanese name: 推しくらべ, hereafter “the App”) handles user information.
1. Information We Collect
With your permission (sign-in and consent through your Google Account), the App retrieves the following information via the YouTube Data API:
- Your list of subscribed YouTube channels — channel name, channel ID, channel icon, and public channel information (description, keywords, topic categories). The App uses a read-only scope only and never accesses any other part of your account.
The App does not collect your name, email address, location, or any similar personal information on its own.
2. How We Use It
- To display your imported channel list on your device so that you can choose which favorites (“oshi”) you are willing to share.
- To automatically classify channels into genres so the list can be grouped and browsed easily.
- To match, with the person in front of you, which channels and genres you have in common and to compute a compatibility score.
3. Storage and Retention
- The imported channel list (the “catalog”) is stored only on your device. It is never stored on our servers.
- The catalog is automatically deleted 30 days after import (you can refresh it by importing again).
- The list of channels you select for sharing is also stored only on your device.
- Deleting the App erases all of this data from your device.
4. Data Sent Outside the Device
For genre classification
To classify channels into genres, the App sends public channel information only (channel ID, channel name, description, keywords, topic categories) to our classification server (Google Cloud, Tokyo region) and receives the classification result. Results are cached on the server so that the same channel does not have to be classified again. No information about who subscribes to which channel — no account information and no subscription list as a set — is transmitted or stored.
During a face-to-face match
Matching is performed by direct communication between the two devices present (local network / proximity). Matching data never passes through any external server, including ours. The match uses a cryptographic technique (PSI: Private Set Intersection), so only the items you both have are revealed to each other; items that do not match are not disclosed to the other person. However, the number of favorites you have registered and the number of tag types in each genre level are visible to the other person (they are exchanged so that both of you see the same compatibility score).
5. Advertising, In-App Purchases, and Third Parties
Advertising
The App is free to use. If you want to match more than the one free match per day, you can watch a rewarded video ad to restore a match. Ads are delivered through Google AdMob.
- AdMob may collect device identifiers and information about ad impressions and interactions in order to serve ads, prevent fraud, and measure impressions. For details, see Google’s Privacy & Terms.
- The App is configured to request non-personalized ads only and does not track you across apps or websites (it does not present an App Tracking Transparency prompt).
- Your imported channel list, your selected favorites, and your match results are never shared with advertising providers.
In-app purchases
Purchasing the one-time “Oshikurabe Pro” removes ads and makes matching unlimited. Purchases and restores are handled by Apple’s App Store (StoreKit); we never receive or store your payment information.
Third parties
Other than as described above, we do not provide or sell your information to third parties.
6. Google User Data (Limited Use)
The App’s use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
6-1. How the App uses Google user data
The only Google user data the App obtains through Google APIs is your list of subscribed YouTube channels. The App requests a single scope, https://www.googleapis.com/auth/youtube.readonly, which is read-only. This data is used only for the following three purposes:
- Displaying the list on your device — so that you can choose yourself which favorites you are willing to share.
- Automatic genre classification — so that the list can be grouped and displayed clearly.
- Face-to-face matching — to compute shared favorites, shared genres, and a compatibility score, using only the channels you explicitly selected.
The data is not used for any other purpose. Specifically, it is not used for advertising or ad targeting, for sale to third parties, for creditworthiness assessment, or for training AI or machine learning models. We do not allow humans to read your Google user data.
6-2. With whom we share, transfer, or disclose Google user data
- We do not sell, rent, or transfer Google user data to any third party.
- What is sent to our classification server (Google Cloud, Tokyo region, operated by us) is publicly available channel information only (channel ID, channel title, description, keywords, and topic categories). The link between a user and the channels they subscribe to — account identifiers, or the subscription list as a set — is never sent. The classification server does not log the content it receives.
- Genre classification is performed using the Anthropic API. Only the publicly available channel information above is sent; no information that identifies a user is included. Anthropic does not, by default, use inputs or outputs from its commercial API to train its models. Classification results (channel ID to genre tags) are cached on the server to avoid re-classification, but no user information is stored.
- The person you match with in person is shown only the items you explicitly selected for sharing that they also have, plus the counts described in Section 4.
- No Google user data is ever passed to advertising providers (Google AdMob).
- Apart from the above, we do not share, transfer, or disclose the data, except where required by law.
6-3. Data protection mechanisms for sensitive data
- On-device storage: The imported channel list is stored only on your device and is never stored on our servers. It is protected at the OS level by the iOS application sandbox.
- Automatic deletion: The imported list is automatically erased 30 days after import. Deleting the App erases all data on the device.
- Encryption in transit: All communication with external services uses HTTPS/TLS.
- Cryptographic matching: Face-to-face matching uses PSI (Private Set Intersection), so nothing other than the matching items is disclosed either to the other person or to us. Matching runs over a direct device-to-device connection and does not pass through any external server.
- Access control: The classification server is protected by shared-secret authentication and is not open for anyone to call.
- Least privilege: The App requests exactly one read-only scope and no others.
- Revocation by the user: You can revoke the App’s access at any time from the Google security settings page.
7. YouTube API Services
The App uses YouTube API Services. The YouTube Terms of Service and the Google Privacy Policy apply to your use of the App.
You can revoke the App’s access to your data at any time from the Google security settings page.
8. Changes to This Policy
If we change this policy, we will announce the change on this page. If the change is significant, we will also notify you inside the App.
9. Contact
For questions about this policy, please contact nanana03info@gmail.com.
Effective: July 20, 2026 / Last updated: August 4, 2026 (added disclosures on how Google user data is used, with whom it is shared, and how it is protected; disclosed that set sizes are visible to the other person during matching)