Skip to content
PoomioSupport and policies한국어

Poomio

Privacy Policy

Last updated: October 5, 2026

IBRDOS Co., Ltd. ((주)아이비알도스, the “Company”) provides Poomio. Contact dev@ibrdos.com for privacy inquiries and requests.

1. The service and information we process

Poomio makes a small character from your own photo and lets invited, connected friends share moods and virtual greetings. It has no public feed, stranger matching, contact-book lookup, GPS collection, face recognition or biometric identity templates. Coffee and hugs are virtual greetings, not purchases or delivered gifts.

InformationPurposeRetention
Email, code verification information, account and session identifiersSign-in, recovery and verifying your requestsUntil account deletion or code/session expiry
Display name, language, mood, room, connections and sharing choiceYour space and permitted friend connectionsUntil changed or account deletion
Your photo, creation requests, generated images, job status and usageConsented avatar creation and usage limitsThe photo and account deletion rules below
Greeting type, sender/recipient identifiers and timeDelivery, memories and avoiding duplicate requestsManaged according to connection, sharing and account deletion rules
Push tokens and notification choicesOptional creation and friend notificationsUntil disabled, invalidated or account deletion
Products, transaction identifiers, expiry and entitlementsStore verification, restoration, subscriptions and purchased roomsUntil account deletion; a separate opaque hash association prevents purchase reuse
Blocks, inquiries and repliesSafety, support and preventing abuseUntil unblocking, account deletion or completion of support, subject to legal retention
Reporter and subject identifiers, report reason and descriptionReviewing reports and taking safety actionExpiry threshold of 90 days after creation; removed during related account erasure
Limited security/error records and opaque action recordsIncident response and checking safety actionsApplication logs 14 days, operational alerts 7 days and opaque action records 90 days

We do not collect your date of birth or identity documents. You confirm that you are at least 16 and meet the age of consent where you live. This is a self-declaration, not verified identity or age certification. Your device may store language choices, recent display data, a sign-in session and changes waiting to be sent. Queued requests are sent when the connection returns.

2. AI processing of your photo

Before uploading, you separately confirm your right to use your own photo, AI processing and the overseas transfer to OpenAI. These three choices are needed for photo creation. If you decline, you can explore with a default character. Sharing your generated mini self with connected friends is a separate, optional choice that starts unchecked. You can use your own mini self without sharing it with friends.

Your selected photo and creation instructions are sent to OpenAI’s image API. AI may change details of your appearance. The Company does not use the photo to identify you, infer sensitive traits or create face embeddings. Do not upload another person’s photo, an unconsented portrait or prohibited content.

Original uploads in the Company’s storage are deleted when a job completes or fails. Incomplete or abandoned uploads are cleaned up using a 24-hour age threshold, with retries for deletion failures. Storage lifecycle rules are an additional cleanup mechanism and do not guarantee deletion at an exact 24-hour instant. Generated results are retained until account deletion or a request to remove that information is fulfilled.

OpenAI’s retention is separate from the Company’s storage. Under the standard API controls, inputs and outputs are not used for model training by default, but abuse-monitoring logs may be retained for up to 30 days. Exceptions can apply for legal requirements, protecting the service or third parties from harm, or review of suspected child sexual abuse material. Deleting an original from the Company’s storage does not mean that copies already held by a provider are immediately deleted. See OpenAI API data controls.

3. Providers and international processing

ProviderData and purposeLocation and transferRetention
Amazon Web ServicesServer, storage and queues for accounts, images, connections, greetings and entitlementsSeoul, South Korea; encrypted service communicationThe Company’s deletion rules
OpenAI OpCo, LLC / privacy@openai.comYour photo, creation instructions and processing records; avatar generationEncrypted API transfer to the US-based processor when you request generation; OpenAI and subprocessor processing locations are described in the official list belowStandard abuse monitoring up to 30 days, with legal/safety exceptions
Resend — Plus Five Five, Inc. / privacy@resend.comEmail address, verification email content and delivery records; sign-in and deletion verificationEncrypted API request for a code; sending from Tokyo, Japan, with email metadata, logs and API records stored in the United StatesEmail/logs for 30 days on Free, Pro and Scale; remaining customer data deleted within 90 days after the Company terminates its Resend account, subject to legal retention
Expo (650 Industries, Inc.), Apple APNs, Google FCMPush token, notification content and delivery informationUnited States and provider operating regions; when notifications are enabledExpo content for delivery; tokens and delivery records under provider rules
Apple App Store, Google PlayTransaction identifiers, products and entitlement verificationYour store region and provider operating regions; purchase, restoration and entitlement checksStore payment and legal-retention rules
Google AdMob/UMPAdvertising/device information, IP, ad impressions and interactions, privacy choicesUnited States and Google operating regions; permitted SDK processingGoogle’s Privacy Policy and advertising rules

Poomio uses a standard global OpenAI API project without Zero Data Retention or a configured data-residency restriction. Photo transfer occurs after separate consent for generation. See OpenAI’s official subprocessor list for processing locations outside the United States and delegated processing. The list describes possible locations; it is not a record of the actual country used for an individual photo. The OpenAI DPA provides the processor’s contact and processing terms.

Verification email is separate from photo creation. It is sent when you request an email sign-in or deletion code. We do not attach original photos, friend greetings or purchase records to Resend requests. Sending from Japan does not change the US storage location. The 90-day rule starts when the Company’s Resend service account ends, not when an individual Poomio account is deleted. See Resend’s region guide, retention notice and DPA.

Declining the photo’s overseas transfer prevents photo creation, but you can explore with a default character. Withdraw consent through account deletion or by contacting dev@ibrdos.com. If you decline the international processing of verification email, explore without email sign-in. Notifications can be disabled; purchases and ads follow their feature and privacy choices. Photo consent does not permit unrelated purposes.

See the providers’ notices: AWS, Resend, Expo, Apple and Google. The Company does not sell personal information or include your profile, photo or greetings in advertising requests.

4. Friends, sharing and safety

Your moods, greetings and mini self that you allow to be shared are shown to connected friends. Account permissions and expiring image URLs restrict access. When you share a memory image, the operating system sends it to the service you choose. Its terms apply to that copy. Later deletion in Poomio does not remove externally shared copies.

You can disconnect, block or report in the app. Blocking stops new greetings and shared access. You can report a friend or your own AI-generated result. The Company processes the subject, reason and details you provide to assess and respond to reports. In-app reports use a 90-day expiry threshold from creation and are removed during erasure of a related account. Physical deletion after expiry is asynchronous; legally required preservation follows the applicable rules. Report notification emails contain only the report identifier, with no description or photo attached. Unlawful or harmful content and impersonation may be removed or lead to account restrictions.

5. Ads and permissions

Free accounts may see ads below the Studio and Account areas. Plus accounts do not request ads. On iOS, the app checks tracking permission and applicable regional privacy choices before requesting ads. Declining does not prevent core use. Android blocks advertising-ID access permissions. Non-personalized advertising may still process approximate IP-based location, device/app information, impressions, interactions and diagnostics. Where required, advertising privacy settings let you review or change your choices.

The camera is used when you take your own photo, and photo access when you select an avatar photo. Your whole photo library is not automatically uploaded. Notifications are optional. The app does not request a microphone, contacts or precise location. A home-screen widget uses a device copy of the selected friend’s information and recent state; someone who can see your device may see it.

6. Deletion and your rights

Request a data download or account deletion from Account. Outside the app, use the account deletion page or contact dev@ibrdos.com. Deletion verification uses the email registered to the account. Merely entering someone else’s email does not authorize deleting that account.

Deletion revokes sessions and removes the account’s connections, greetings, photos, jobs and payment-entitlement records. A minimal deletion marker prevents a deleted account from being reactivated. An opaque hash association remains separately to prevent the same purchase being reused across accounts; it contains no original photo, email address or greeting content. These minimal records use a 180-day retention threshold starting when full account erasure actually finishes, followed by expiry processing. Markers and retry jobs for an erasure in progress remain until cleanup is complete. You may also request deletion of these minimal records; the Company explains any applicable restriction. Cleanup may continue to retry failures and wait for previously issued upload links to expire. Device caches, externally shared copies, store transaction records and emails you sent each have separate retention and deletion rules. Account deletion does not cancel a store subscription. Manage your subscription through the store first.

Server application logs are retained for 14 days. The configuration excludes email addresses, verification codes, original photos and request bodies from these logs. Operational alert records contain only the category, time, status, optional queue counts and opaque identifiers, with a 7-day expiry threshold. Opaque records used to check safety actions have a 90-day expiry threshold from the action. These records contain no photos or report descriptions. Physical deletion after expiry is asynchronous, and failed cleanup is retried until it finishes. Database recovery backups may contain pre-deletion account data for up to 35 days and are not used for ordinary service access.

Contact dev@ibrdos.com to request access, correction, deletion, restriction, withdrawal of consent, or applicable portability and objection rights. We request only what is needed to verify the request and respond under applicable law. A guardian may contact us if an ineligible minor’s data has been provided. We do not offer a parental-consent account path for ages requiring it.

We use private storage, access controls, encrypted communication, expiring sessions/invitations/image URLs and input checks. You may also seek assistance from Korea’s Privacy Infringement Report Center or Personal Information Dispute Mediation Committee, or your local authority. Changes and their application date are announced in the app or information pages. New consent is obtained where required.

7. Company and contact

  • Company: IBRDOS Co., Ltd. ((주)아이비알도스)
  • Representative: Taewoong Ra (라태웅)
  • Address: Room 618A, 6F, 326 Wangsimni-ro, Seongdong-gu, Seoul, South Korea
  • Business registration: 829-86-02325
  • Mail-order business registration: 제2026-서울성동-0450호
  • Privacy/service contact: dev@ibrdos.com / +82-70-4589-9109

Poomio is not designed or marketed primarily for children. Korean and English policies are provided. Other UI languages identify the policy link as an English document.