Privacy Policy
Effective: September 1, 2026
TheGist (‘The Gist,’ ‘we,’ or ‘us’) processes only the personal data needed to operate and protect the Service.
1. Information We Process
Google Sign-In may provide your Google account identifier, email address and verification status, display name, and account and sign-in timestamps. We do not receive or store your Google password.
We may process session identifiers, activity timestamps, one-way hashed browser information, account and access-control records, and communications you send us. Saved Insights remain only in your browser and are not sent to our servers.
2. Why We Process It
We use personal data to authenticate members, manage accounts and archive access, protect the Service, respond to requests, comply with law, and handle disputes. We do not use it for advertising profiles or third-party marketing.
3. Retention
Member information is retained while the account remains active. To request account deletion, contact privacy@thegist.co.kr. After verification, we will delete the account unless retention is required by law or reasonably necessary for security or dispute resolution.
Standard sessions are retained for no longer than 30 days. Security, access, permission-change, and inquiry records may be retained for up to 3 years.
4. Sharing and External Services
We do not sell personal data and do not ordinarily disclose it without permission, except where required by law or urgently necessary to protect life or safety.
Google Sign-In uses Google’s authentication service. Google may process information outside your country under its privacy policy. We receive only the information needed to authenticate your account.
5. Cookies and Local Storage
We use an essential secure session cookie, not advertising trackers. Saved Insights and preferences may be stored in your browser. Removing or blocking this storage may prevent some features from working.
6. Security
We use reasonable safeguards including access controls, encrypted transmission, secure session handling, protection of authentication information, and operational logging.
7. Your Rights
Subject to applicable law, you may request access, correction, deletion, restriction, or withdrawal of consent by emailing privacy@thegist.co.kr. We may verify your identity. Information subject to legal retention duties may not be deleted until those duties end.
8. Children
The Service is not directed to children under 14. If we learn that such data was collected without valid guardian consent, we will delete it without undue delay.
9. Privacy Contact
Privacy officer: Brandon Wongun Lee · privacy@thegist.co.kr
Room 4116, 27-8 Gukjegeumyung-ro 8-gil, Yeongdeungpo-gu, Seoul, Republic of Korea
10. Changes
We may update this Policy and will announce material changes before they take effect.