Last updated: September 15, 2025
This Privacy Policy describes Our policies and procedures on the collection, use and disclosure of Your information when You use the Service and tells You about Your privacy rights and how the law protects You.
We use Your Personal data to provide and improve the Service. By using the Service, You agree to the collection and use of information in accordance with this Privacy Policy.
The words of which the initial letter is capitalized have meanings defined under the following conditions. The following definitions shall have the same meaning regardless of whether they appear in singular or in plural.
For the purposes of this Privacy Policy:
Application refers to Link2Me, the software program provided by the Company.
Anonymous User refers to individuals who access the Service through shared links without creating an account or logging in.
Authenticated User refers to individuals who have created an account and logged in through Firebase Authentication using email or social login providers.
Business, for the purpose of CCPA/CPRA, refers to the Company as the legal entity that collects Consumers' personal information and determines the purposes and means of the processing of Consumers' personal information.
CCPA and/or CPRA refers to the California Consumer Privacy Act (the "CCPA") as amended by the California Privacy Rights Act of 2020 (the "CPRA").
Chat Link refers to the unique URL generated by Authenticated Users that allows Anonymous Users to initiate conversations without authentication.
Company (referred to as either "the Company", "We", "Us" or "Our" in this Agreement) refers to Nicher, 807-45, 385, Gangseo-ro, Gangseo-gu, Seoul 07803.
For the purpose of the GDPR, the Company is the Data Controller.
Consumer, for the purpose of the CCPA/CPRA, means a natural person who is a California resident.
Country refers to: South Korea
Data Controller, for the purposes of the GDPR (General Data Protection Regulation), refers to the Company as the legal person which alone or jointly with others determines the purposes and means of the processing of Personal Data.
Device means any device that can access the Service such as a computer, a cellphone or a digital tablet.
Do Not Track (DNT) is a concept that has been promoted by US regulatory authorities for the Internet industry to develop and implement a mechanism for allowing internet users to control the tracking of their online activities across websites.
GDPR refers to EU General Data Protection Regulation.
Personal Data is any information that relates to an identified or identifiable individual.
For the purposes of GDPR, Personal Data means any information relating to You such as a name, an identification number, location data, online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity.
For the purposes of the CCPA/CPRA, Personal Data means any information that identifies, relates to, describes or is capable of being associated with, or could reasonably be linked, directly or indirectly, with You.
Service refers to the Application and the web chat interface accessed through Chat Links.
Service Provider means any natural or legal person who processes the data on behalf of the Company. It refers to third-party companies or individuals employed by the Company to facilitate the Service, to provide the Service on behalf of the Company, to perform services related to the Service or to assist the Company in analyzing how the Service is used.
For the purpose of the GDPR, Service Providers are considered Data Processors.
Usage Data refers to data collected automatically, either generated by the use of the Service or from the Service infrastructure itself (for example, the duration of a page visit).
You means the individual accessing or using the Service, or the company, or other legal entity on behalf of which such individual is accessing or using the Service, as applicable.
Under GDPR, You can be referred to as the Data Subject or as the User as you are the individual using the Service.
When You create an account and use Our Application, We collect:
Email address (for email authentication)
Social media profile information (when using social login)
Firebase User ID
Device information and identifiers
IP address
Usage Data
Chat Links created and shared
Messages sent and received
Media files uploaded
When accessing the Service through a Chat Link without authentication, We automatically collect:
IP address
Browser type and version
Session identifier
Messages sent
Media files uploaded
Usage Data
For all users, We collect and store:
Chat Messages: Text messages exchanged between users
Chat Rooms: Metadata about chat sessions
Link-Chat Room Connections: Associations between Chat Links and chat sessions
Session Information: Technical data about chat sessions
Media Files: Images, videos, or other files shared in chats
Usage Data is collected automatically when using the Service.
Usage Data may include information such as Your Device's Internet Protocol address (e.g. IP address), browser type, browser version, the pages of our Service that You visit, the time and date of Your visit, the time spent on those pages, unique device identifiers and other diagnostic data.
When You access the Service by or through a mobile device, We may collect certain information automatically, including, but not limited to, the type of mobile device You use, Your mobile device unique ID, the IP address of Your mobile device, Your mobile operating system, the type of mobile Internet browser You use, unique device identifiers and other diagnostic data.
We retain different types of data for specific periods:
Chat Messages (ChatMessage): 90 days from creation
Chat Rooms (ChatRoom): 90 days from last activity
Link-Chat Room Connections (LinkChatRoom): 90 days from creation
Session Information: 90 days from creation
Media Files in S3: 90 days from upload
Account Information: Until account deletion is requested
Important Note: In cases where content is reported for violation of our Terms of Service or when required by law enforcement or legal obligations, We may retain relevant data beyond the standard retention period as necessary to comply with legal requirements, resolve disputes, or enforce our agreements.
The Company may use Personal Data for the following purposes:
To provide and maintain our Service, including to monitor the usage of our Service.
To manage Your Account: to manage Your registration as a user of the Service. The Personal Data You provide can give You access to different functionalities of the Service that are available to You as a registered user.
To enable anonymous messaging: to facilitate communication between Authenticated Users and Anonymous Users through Chat Links.
For the performance of a contract: the development, compliance and undertaking of the purchase contract for the products, items or services You have purchased or of any other contract with Us through the Service.
To contact You: To contact You by email, telephone calls, SMS, or other equivalent forms of electronic communication, such as a mobile application's push notifications regarding updates or informative communications related to the functionalities, products or contracted services, including the security updates, when necessary or reasonable for their implementation.
To manage Your requests: To attend and manage Your requests to Us.
For security and fraud prevention: We store IP addresses and session data to help prevent abuse, respond to legal requirements, and protect our users and service.
For business transfers: We may use Your information to evaluate or conduct a merger, divestiture, restructuring, reorganization, dissolution, or other sale or transfer of some or all of Our assets, whether as a going concern or as part of bankruptcy, liquidation, or similar proceeding, in which Personal Data held by Us about our Service users is among the assets transferred.
For other purposes: We may use Your information for other purposes, such as data analysis, identifying usage trends, determining the effectiveness of our promotional campaigns and to evaluate and improve our Service, products, services, marketing and your experience.
We may share Your personal information in the following situations:
The security of Your Personal Data is important to Us, but remember that no method of transmission over the Internet, or method of electronic storage is 100% secure. While We strive to use commercially acceptable means to protect Your Personal Data, We cannot guarantee its absolute security.
We implement several security measures to protect your data:
We use the following third-party services to operate and improve our Service:
Amazon Web Services (AWS)
We use various AWS services including S3 for file storage, CloudFront for content delivery, WAF for security, DynamoDB for database services, RDS (PostgreSQL) for relational data, API Gateway, Lambda for serverless computing, Batch, and ECS Fargate for container services.
AWS Privacy Policy: https://aws.amazon.com/privacy/
Firebase (Google)
We use Firebase Authentication for user account management and Firebase Analytics for usage analytics.
You may opt-out of certain Firebase features through your mobile device settings, such as your device advertising settings.
Firebase Privacy Policy: https://firebase.google.com/support/privacy
Google Privacy Policy: https://policies.google.com/privacy
Google AdMob
We use Google AdMob to display advertisements in our Service. AdMob may collect and use the following data:
This data is used for:
Google AdMob Privacy Policy: https://policies.google.com/privacy
Opting Out of Personalized Ads:
You can opt-out of personalized advertisements by adjusting your device settings:
U.S. State Privacy Compliance:
For users in Iowa, Delaware, New Jersey, Nebraska, and New Hampshire, data may be processed under Restricted Data Processing mode as required by state privacy laws effective January 2025.
Sentry
We use Sentry for error tracking and monitoring to improve the stability of our Service.
Sentry Privacy Policy: https://sentry.io/privacy/
RevenueCat
We use RevenueCat to manage in-app subscriptions and purchases.
RevenueCat Privacy Policy: https://www.revenuecat.com/privacy/
We may provide paid products and/or services within the Service. In that case, we may use third-party services for payment processing (e.g. payment processors).
We will not store or collect Your payment card details. That information is provided directly to Our third-party payment processors whose use of Your personal information is governed by their Privacy Policy. These payment processors adhere to the standards set by PCI-DSS as managed by the PCI Security Standards Council.
Apple Store In-App Payments
Their Privacy Policy can be viewed at https://www.apple.com/legal/privacy/en-ww/
Google Play In-App Payments
Their Privacy Policy can be viewed at https://www.google.com/policies/privacy/
Your information, including Personal Data, is processed at the Company's operating offices and in any other places where the parties involved in the processing are located. It means that this information may be transferred to — and maintained on — computers located outside of Your state, province, country or other governmental jurisdiction where the data protection laws may differ than those from Your jurisdiction.
Your consent to this Privacy Policy followed by Your submission of such information represents Your agreement to that transfer.
The Company will take all steps reasonably necessary to ensure that Your data is treated securely and in accordance with this Privacy Policy and no transfer of Your Personal Data will take place to an organization or a country unless there are adequate controls in place including the security of Your data and other personal information.
You have the right to delete or request that We assist in deleting the Personal Data that We have collected about You.
Our Service may give You the ability to delete certain information about You from within the Service.
You may update, amend, or delete Your information at any time by signing in to Your Account, if you have one, and visiting the account settings section that allows you to manage Your personal information. You may also contact Us to request access to, correct, or delete any personal information that You have provided to Us.
Please note, however, that We may need to retain certain information when we have a legal obligation or lawful basis to do so.
If the Company is involved in a merger, acquisition or asset sale, Your Personal Data may be transferred. We will provide notice before Your Personal Data is transferred and becomes subject to a different Privacy Policy.
Under certain circumstances, the Company may be required to disclose Your Personal Data if required to do so by law or in response to valid requests by public authorities (e.g. a court or a government agency).
The Company may disclose Your Personal Data in the good faith belief that such action is necessary to:
We may process Personal Data under the following conditions:
In any case, the Company will gladly help to clarify the specific legal basis that applies to the processing, and in particular whether the provision of Personal Data is a statutory or contractual requirement, or a requirement necessary to enter into a contract.
The Company undertakes to respect the confidentiality of Your Personal Data and to guarantee You can exercise Your rights.
You have the right under this Privacy Policy, and by law if You are within the EU, to:
You may exercise Your rights of access, rectification, cancellation and opposition by contacting Us. Please note that we may ask You to verify Your identity before responding to such requests. If You make a request, We will try our best to respond to You as soon as possible.
You have the right to complain to a Data Protection Authority about Our collection and use of Your Personal Data. For more information, if You are in the European Economic Area (EEA), please contact Your local data protection authority in the EEA.
As of 2025, multiple U.S. states have enacted comprehensive privacy laws that provide residents with specific rights regarding their personal information. This section applies to residents of states with comprehensive privacy laws, including but not limited to:
Additional states may enact privacy laws in the future. We will update this Privacy Policy to reflect new state privacy laws as they become effective.
We collect information that identifies, relates to, describes, references, is capable of being associated with, or could reasonably be linked, directly or indirectly, with a particular Consumer or Device. The following is a list of categories of personal information which we may collect or may have been collected within the last twelve (12) months.
Please note that the categories and examples provided in the list below are those commonly defined in state privacy laws. This does not mean that all examples of that category of personal information were in fact collected by Us, but reflects our good faith belief to the best of Our knowledge that some of that information from the applicable category may be and may have been collected.
Category A: Identifiers.
Examples: A real name, alias, postal address, unique personal identifier, online identifier, Internet Protocol address, email address, account name, or other similar identifiers.
Collected: Yes.
Category B: Personal information categories listed in the California Customer Records statute (Cal. Civ. Code § 1798.80(e)).
Examples: A name, signature, address, telephone number, or any other financial information. Some personal information included in this category may overlap with other categories.
Collected: Yes.
Category C: Protected classification characteristics under California or federal law.
Examples: Age (40 years or older), race, color, ancestry, national origin, citizenship, religion or creed, marital status, medical condition, physical or mental disability, sex, sexual orientation, veteran or military status, genetic information.
Collected: No.
Category D: Commercial information.
Examples: Records and history of products or services purchased or considered.
Collected: Yes.
Category E: Biometric information.
Examples: Genetic, physiological, behavioral, and biological characteristics, or activity patterns used to extract a template or other identifier or identifying information.
Collected: No.
Category F: Internet or other similar network activity.
Examples: Interaction with our Service or advertisement.
Collected: Yes.
Category G: Geolocation data.
Examples: Approximate physical location.
Collected: No.
Category H: Sensory data.
Examples: Audio, electronic, visual, thermal, olfactory, or similar information.
Collected: No.
Category I: Professional or employment-related information.
Examples: Current or past job history or performance evaluations.
Collected: No.
Category J: Non-public education information.
Examples: Education records directly related to a student maintained by an educational institution.
Collected: No.
Category K: Inferences drawn from other personal information.
Examples: Profile reflecting a person's preferences, characteristics, psychological trends, predispositions, behavior, attitudes, intelligence, abilities, and aptitudes.
Collected: No.
Category L: Sensitive personal information.
Examples: Account login and password information, precise geolocation.
Collected: Yes (login credentials only).
We obtain the categories of personal information listed above from the following categories of sources:
We may use or disclose personal information We collect for "business purposes" or "commercial purposes" (as defined under state privacy laws), which may include the following examples:
We may use or disclose and may have used or disclosed in the last twelve (12) months the following categories of personal information for business or commercial purposes:
We may share, and have shared in the last twelve (12) months, Your personal information identified in the above categories with the following categories of third parties:
We do not sell personal information as the term sell is commonly understood. We do allow Service Providers to use Your personal information for the business purposes described in Our Privacy Policy, for activities such as analytics and performance monitoring, and these may be deemed a sale under certain state privacy laws.
We do not knowingly collect personal information from minors under the age of 16 through our Service. We do not sell the personal information of Consumers We actually know are less than 16 years of age.
If You are a resident of a state with a comprehensive privacy law, You may have the following rights regarding your personal information (specific rights may vary by state):
In order to exercise any of Your rights under your state's privacy law, You can contact Us:
Only You, or a person legally authorized to act on Your behalf, may make a verifiable request related to Your personal information.
Your request to Us must:
We cannot respond to Your request or provide You with the required information if We cannot verify Your identity or authority to make the request and confirm that the personal information relates to You.
You have the right to opt-out of the sale of Your personal information. Once We receive and confirm a verifiable consumer request from You, we will stop selling Your personal information. To exercise Your right to opt-out, please contact Us at chris@nicher.io.
Your mobile device may give You the ability to opt out of the use of information about the apps You use in order to serve You ads that are targeted to Your interests:
You can also stop the collection of location information from Your mobile device by changing the preferences on Your mobile device.
Our Service does not respond to Do Not Track signals.
However, some third party websites do keep track of Your browsing activities. If You are visiting such websites, You can set Your preferences in Your web browser to inform websites that You do not want to be tracked. You can enable or disable DNT by visiting the preferences or settings page of Your web browser.
Under California Civil Code Section 1798 (California's Shine the Light law), California residents with an established business relationship with us can request information once a year about sharing their Personal Data with third parties for the third parties' direct marketing purposes.
If you'd like to request more information under the California Shine the Light law, and if You are a California resident, You can contact Us using the contact information provided below.
California Business and Professions Code Section 22581 allows California residents under the age of 18 who are registered users of online sites, services or applications to request and obtain removal of content or information they have publicly posted.
To request removal of such data, and if You are a California resident, You can contact Us using the contact information provided below, and include the email address associated with Your account.
Be aware that Your request does not guarantee complete or comprehensive removal of content or information posted online and that the law may not permit or require removal in certain circumstances.
Our Service does not address anyone under the age of 18. We do not knowingly collect personally identifiable information from anyone under the age of 18. If You are a parent or guardian and You are aware that Your child has provided Us with Personal Data, please contact Us. If We become aware that We have collected Personal Data from anyone under the age of 18 without verification of parental consent, We take steps to remove that information from Our servers.
Our Service may contain links to other websites that are not operated by Us. If You click on a third party link, You will be directed to that third party's site. We strongly advise You to review the Privacy Policy of every site You visit.
We have no control over and assume no responsibility for the content, privacy policies or practices of any third party sites or services.
We may update Our Privacy Policy from time to time. We will notify You of any changes by posting the new Privacy Policy on this page.
We will let You know via email and/or a prominent notice on Our Service, prior to the change becoming effective and update the "Last updated" date at the top of this Privacy Policy.
You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.
If you have any questions about this Privacy Policy, You can contact us: