arrow_backアプリに戻るBack to app

プライバシーポリシー

最終更新日: 2026年7月11日

Paper Atlas(以下「本サービス」)は、利用者のプライバシーを尊重し、個人情報の保護に関する法律(個人情報保護法)を含む関係法令および Google API Services User Data Policy を遵守します。本ポリシーは、本サービスが取得する情報とその取り扱いを定めるものです。

1. 取得する情報

2. 利用目的

取得した情報は、文献管理サービスの提供・維持・改善、本人認証、不正利用の防止、および利用者からのお問い合わせ対応のためにのみ利用します。取得した情報を広告目的で利用・販売することはありません。

3. Google ユーザーデータの限定使用(Limited Use)

本サービスによる Google API から取得した情報の利用および他者への提供は、Google API Services User Data Policy(限定的な使用要件(Limited Use)を含む)に準拠します。具体的には次を遵守します。

4. LLM(AI)APIキーの取り扱い

利用者が設定する LLM(AI)の API キーは、本サービスのサーバーには一切保存しません。キーは利用者のブラウザ内(IndexedDB)にのみ保持され、AI 機能の実行時にリクエストヘッダー経由で都度供給されます。サーバー側ではリクエスト処理中の一時的な利用に限られ、データベースやログには残しません。

5. Google Drive 連携トークンの保護

Google Drive 連携に用いるリフレッシュトークンは、サーバー上で暗号化(Fernet)して保存します。利用者は設定画面からいつでも連携を解除でき、解除時に当該トークンは削除されます。

6. 第三者提供

法令に基づく場合を除き、利用者の同意なく個人情報を第三者へ提供することはありません。なお、本サービスの提供にあたり、以下の外部サービスを利用します。

7. 保管と削除

利用者は設定画面の「アカウント削除(退会)」からいつでも退会でき、退会時には当該アカウントに紐づく全データ(文献・タグ・注釈・連携トークン等)が即時に削除されます。個別のデータについても、利用者は本サービス上でいつでも削除できます。

8. お問い合わせ

本ポリシーに関するお問い合わせ、および取得情報の開示・訂正・削除のご請求は下記までご連絡ください。


関連:利用規約

Privacy Policy

Last updated: July 11, 2026

Paper Atlas (the “Service”) respects users’ privacy and complies with applicable laws — including Japan’s Act on the Protection of Personal Information — as well as the Google API Services User Data Policy. This policy describes the information the Service collects and how it is handled.

1. Information we collect

2. Purpose of use

We use the collected information solely to provide, maintain and improve the literature-management service, to authenticate users, to prevent abuse, and to respond to your inquiries. We do not use or sell the information for advertising purposes.

3. Limited Use of Google user data

The Service’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically, we comply with the following:

4. Handling of LLM (AI) API keys

Any LLM (AI) API key you configure is never stored on the Service’s servers. The key is kept only in your browser (IndexedDB) and is supplied per request via a request header when AI features run. On the server it is used only transiently during request processing and is never written to the database or logs.

5. Protection of Google Drive integration tokens

The refresh token used for Google Drive integration is stored encrypted (Fernet) on the server. You can disconnect the integration at any time from the settings screen, and the token is deleted when you do.

6. Provision to third parties

Except as required by law, we do not provide personal information to third parties without your consent. In providing the Service, we use the following external services:

7. Retention and deletion

You can close your account at any time via “Delete account” on the settings screen; upon closure, all data linked to that account (literature, tags, annotations, integration tokens, etc.) is deleted immediately. You can also delete individual data on the Service at any time.

8. Contact

For inquiries about this policy, or to request disclosure, correction or deletion of collected information, please contact us:


Related: Terms of Service