Legal
Privacy Policy
This policy explains what personal data SSHOW collects, why we collect it, and the rights you have.
Upcoming revision
This policy (v1.2) takes effect on 1 October 2026. Until then, the previous version (v1.1) applies.
What changes — alongside a new audit trail for administrative actions and authentication events, section 4 now states the retention periods required by Korea’s personal-data safeguards notice: operator access records (1 year) and access-rights change history (3 years).
These records rest on a statutory duty (PIPA Art. 15(1)2) rather than your consent, and the retention period for user sign-in logs (3 months) is unchanged. Questions: [email protected].
01
Scope & definitions
SSHOW (the “Service”) respects your privacy. This policy applies to s.show, our desktop and mobile apps, and any related services we operate. “Personal information” means information that identifies, relates to, or can reasonably be linked with an individual.
02
Information we collect
| Source | Required | What we collect |
|---|---|---|
| Email signup | Yes | Email, username, password (one-way hashed), signup time |
| Social signup | Yes | Provider ID, email, display name from Google or Apple |
| Profile | Optional | Nickname, bio, avatar |
| Two-factor auth | Optional | TOTP secret (encrypted), passkey public keys, hashed backup codes |
| Your content | Yes | Project files, uploaded media, fonts, audio, text, motion data |
| Feedback | Optional | The comment you send, an optional screenshot of your current screen, diagnostic context (browser user-agent, OS, app and engine version, viewport, theme, language, page path), and your account ID and email |
| Access metadata | Auto | IP, user-agent, session ID, cookies, device IDs in apps |
| Payments (post-beta) | Yes | Handled by our payment processor; we receive only transaction ID, amount, and timestamp |
Things we never collect
National identifiers (e.g. Korean RRN, US SSN), precise geolocation, race, political views, religion, biometric templates, or any other special-category data.
03
How we use information
- Account & authentication — sign in, 2FA, password reset, abuse prevention.
- Service delivery — saving and syncing projects, team and space collaboration, share links, playback.
- Customer support — responding to enquiries, feedback, and bug reports (including replying by email where needed); sending notices.
- Security — anomaly detection, blocking unauthorised access, audit logs.
- Improvement — usage analytics, preferring pseudonymous or aggregate data.
- Incident response & quality — reproducing an error you reported, diagnosing a service failure, and reviewing a reported terms violation. Only within the limits set out in “Access to your content” below.
- Legal compliance — to meet retention obligations under applicable law.
Access to your content
We may open a project you created, to the minimum extent needed, only in these cases:
- to reproduce and diagnose an error or failure you reported;
- to find the cause of a service incident such as a failed save, sync, or render;
- to review a report of a terms violation, or to answer a lawful request under applicable law.
Access is limited to staff who need it for their work. Who opened which project, and when, is recorded automatically in our audit log and kept for one year under Korea’s personal-data safeguards notice (see §4).
Content we open is never used for advertising, profiling, or AI training (see §11 and our AI Usage Notice) and is not disclosed to third parties (see §5). You can ask us about the access history for your own projects using the contact in §14.
Legal bases (GDPR Art. 6): performance of contract (1, 2, and 6 where you reported the issue), legitimate interests (3, 4, 5, 6), consent (marketing emails), legal obligation (7).
04
Retention
We delete personal data without undue delay once its purpose is fulfilled, except where law requires longer retention.
| Data | Period | Reason |
|---|---|---|
| Account info (active) | Until account deletion | Consent / contract |
| Account info (deleted) | Removed immediately | Consent / contract |
| Abuse records | 1 year after deletion | Dispute & legal duty |
| User sign-in logs | 3 months | Communications law |
| Operator access records | 1 year | PIPA Art. 29 & safeguards notice |
| Access-rights change history | 3 years | PIPA safeguards notice |
| E-commerce records | 5 years | Consumer protection law |
05
Sharing with third parties
We do not sell or rent your personal data, and we do not share it with third parties except: with your prior consent, when required by law or by a valid legal process, or in pseudonymised/anonymised form for statistics or research.
06
Sub-processors
| Processor | Purpose | Region |
|---|---|---|
| Oracle Cloud Infrastructure | Cloud hosting (servers, storage, DB) | Chuncheon (ap-chuncheon-1) |
| Cloudflare, Inc. | DNS, CDN, DDoS protection | Global edge |
| Google LLC | OAuth (Google), transactional email infra | USA |
| Apple Inc. | OAuth (Sign in with Apple) | USA |
| OpenAI, L.L.C. / Anthropic, PBC / Google LLC | Optional AI assistance (see §11) | USA |
07
International transfers
Some sub-processors operate outside your country. Transfers rely on Standard Contractual Clauses (EU/UK) and equivalent safeguards. Data in transit is protected by TLS 1.2+. You may decline international transfers, in which case some features (social sign-in, AI assistance) may be unavailable.
08
Your rights
- Access, rectify, erase, restrict, or object to processing.
- Withdraw consent at any time, without affecting prior lawful processing.
- Export your projects in portable formats (.sshow, .json) — data portability.
- Lodge a complaint with your supervisory authority (e.g. KOPICO in Korea, your DPA in the EU).
Most rights can be exercised on the profile page. For anything else, write to [email protected]. We respond within 30 days.
09
Deletion
Electronic data is destroyed using techniques that prevent recovery (e.g. cryptographic erasure, secure overwrite). Paper records, if any, are shredded or incinerated.
10
Cookies & similar technologies
We use only the cookies needed to keep you signed in, remember your language, and validate security tokens. We do not use third-party advertising cookies. You can block cookies in your browser, though some features may stop working.
11
AI features & your data
Some features (text generation, image cleanup, motion suggestions) call external AI APIs (e.g. OpenAI, Anthropic, Google Gemini) only when you explicitly request them. We follow these rules:
- Only the data needed for the request is sent.
- We never use your content to train AI models, and we set the “no training” option on the upstream provider.
- See the dedicated AI usage notice for full details.
12
Children’s privacy
SSHOW is not directed at children under 14 (or under 13 in the United States, per COPPA). If we learn that we have collected data from a child without proper consent, we will delete it promptly. If you are a parent or guardian, contact [email protected].
13
Security
- Passwords are stored only as one-way hashes (bcrypt, cost ≥ 12).
- All traffic is TLS 1.2+ in transit; sensitive fields (2FA secrets, etc.) are encrypted at rest.
- Access follows the principle of least privilege; admin actions are recorded in audit logs — including the content access described in §3.
- We run regular vulnerability reviews and notify you of any breach without undue delay, as required by law.
14
Contact
- Privacy enquiries — [email protected]
- General support — [email protected]
15
Changes
- v1.0 — 2026-04-25 — Initial version (beta).
- v1.1 — 2026-06-25 — Added disclosure of in-app feedback data (comment, screenshot, diagnostics).
- v1.2 — announced 2026-08-31 / effective 2026-10-01 — Introduced the administrative audit log. Added retention periods for operator access records (1 year) and access-rights change history (3 years).
We will give at least 7 days’ notice of any change in advance on this page. Material or adverse changes will be announced 30 days in advance, and we will obtain new consent where required by law.