1. はじめに
本プライバシーポリシー(以下「本ポリシー」)は、Discordコミュニティ「キッチンくりぃむ」の運営者(個人。以下「当方」)が提供する次のサービス(以下あわせて「本サービス」)における、利用者情報の取り扱いについて定めるものです。
- Discord上で動作する埋め込みアプリ「2Dラウンジ」(Discord Activity)
- ウェブブラウザ版ラウンジ(
https://office.7daystodie.jp)
- 上記に関連して動作するDiscordボット(マッチング・プロフィール・マイページ・AIアシスタント等の機能を含む)
本サービスを利用することで、利用者は本ポリシーの内容に同意したものとみなします。
2. 取得する情報
(1) Discordアカウント情報
利用者がDiscordのOAuth認可を通じて本サービスにログインした際、Discordから次の情報を取得します:ユーザーID、表示名(ユーザー名/グローバル名)、アバター画像。取得に用いる主なスコープは identify です(機能に応じて guilds、guilds.members.read、rpc.voice.read を求める場合があります)。ボットは、本サービス提供のため、コミュニティ内での利用者のロール、ボイスチャンネルの在室状況、公開されている表示名等を参照します。パスワードは取得しません(認証はDiscordが行います)。
(2) 在室・位置情報(一時的)
本サービスの体験提供のため、ボイスチャンネルへの在室状況、およびラウンジ内でのアバターの位置・移動を処理します。ブラウザ版では、利用者自身の操作に基づいて、参加中のボイスチャンネル間の移動を行います。これらのライブ情報はサーバーのメモリ上に一時的に保持され、部屋ごとに分離されます。
(3) 共有コンテンツ
同じ部屋の参加者と共有するために利用者が投稿した内容を処理します。うち、チャット・リアクション・「一緒に視聴/共有ステージ」の選択などのライブ情報はサーバーのメモリ上に一時的に保持されます。一方、ホワイトボードの描画、付箋、共有した画像、部屋の背景、部屋のデコレーション(マイルーム装飾)、選択したアバターの見た目など、部屋に「残す」タイプの内容は、次回以降も表示できるよう運営者のサーバー上に保存されます(下記6も参照)。画像は表示のため当方のプロキシ経由で取得・中継します。
(4) Cookie
ブラウザ版でのログイン状態を維持するため、署名付きのセッションCookie(office_uid)を利用します。このCookieには利用者のDiscordユーザーIDと改ざん防止用の署名のみが含まれます。
(5) アクセスログ
本サービスの運用・不正防止・障害対応のため、サーバーはIPアドレス、日時、リクエスト情報等の技術的ログを一時的に記録することがあります。
(6) コミュニティ機能で保存する情報
本サービスのコミュニティ機能を利用する際、機能提供のため次の情報を運営者のサーバー(設定ファイル/データベース)に保存します。
- プロフィール:利用者が自身で選択したロール/タグ(声・時間帯・雰囲気・趣味・話題・年代等)、一言プロフィール、称号・スキル・実績。
- マッチング・つながり:送受信した「話してみたい」、成立したマッチ/つながり、専用チャンネル、つながりグループ、解散履歴、ブロック設定。
- マイページ:利用者専用ページの設定・通知設定・お知らせ等。
- 交流の記録:他の利用者との仲良し度(親密度の指標)、自室への足あと(訪問記録)等。
- 安全・モデレーション:通報の記録、相互評価(フィードバック)、信頼スコア、マッチング停止状態。
これらは利用者本人・同じコミュニティの相手・運営者に関わる情報であり、削除方法は下記6(利用者の権利)に従います。
(7) AIアシスタント(生成AI)
利用者がAIアシスタント「くりぃむちゃん」に送信したメッセージ、および話題提供機能等でAI応答を生成する際、入力内容(利用者のメッセージ・関連する案内文)が応答生成のためGoogle の Gemini API(生成AIサービス)へ送信されます。Google での取り扱いには同社のプライバシーポリシーが適用されます。当方はAIとの会話を独自に恒久保存しませんが、Discord上のスレッドに投稿されたメッセージはDiscordのポリシーに従いDiscord側に残ります。
当方は、支払い情報、Discordのダイレクトメッセージ本文、その他本サービスの提供に不要な個人情報は取得しません。
3. 利用目的
- ラウンジ体験(アバター表示・在室/発話状況の表示・部屋の演出)の提供
- 利用者の操作に基づくボイスチャンネル間の移動
- 同じ部屋の参加者間での共有コンテンツの同期
- プロフィール(ロール等)に基づく利用者どうしのマッチング・つながり・グループの提供
- マイページ・仲良し度・実績等のコミュニティ機能の提供
- AIアシスタントによる案内・話題提供
- 通報・評価・ブロック等による安全性の確保、本サービスの運用・保守・不正利用の防止
4. 保存期間
- ライブ情報(在室/位置・ライブのチャット/リアクション):サーバーのメモリ上にのみ保持され、消去操作またはサーバーの再起動時に失われます(恒久保存はしていません)。
- 部屋に残すコンテンツ(ホワイトボード・付箋・共有画像・背景・デコ・アバターの見た目)および コミュニティ機能の情報(プロフィール・マッチング・つながり・マイページ・仲良し度・スキル・実績・通報・評価・信頼スコア・ブロック等):機能提供のため運営者のサーバーに保存され、利用者の削除操作、マイページの閉鎖、コミュニティからの退出、または削除依頼により消去されます。退出(退会)時には、当該利用者に紐づくこれらのデータおよび専用チャンネル等を整理・削除します。
- AIアシスタントへの入力:応答生成のためGoogleへ送信されます(Googleでの取り扱いは同社ポリシーに従います)。当方側では会話を恒久保存しません。
- セッションCookie:ブラウザの設定または有効期限に従って保持されます。Discordのアプリ連携を解除するか、Cookieを削除することで無効化できます。
- アクセスログ:運用上必要な範囲で一時的に保持し、順次消去・上書きします。
5. 第三者への提供・共有
当方は、法令に基づく場合を除き、取得した情報を販売・貸与しません。ただし本サービスの性質上、次の共有が発生します。
- 同じ部屋・同じコミュニティの他の参加者:利用者の表示名・アバター・位置・発話状況・共有した内容、およびプロフィール(公開設定に基づく)は、設計上、同室・マッチング相手・つながり相手等に表示されます。
- 外部サービス:認証・機能提供のため以下を利用します。各社のプライバシーポリシーが適用されます。
6. 利用者の権利
- いつでも本サービスの利用を停止できます。
- 自身が共有・保存したコンテンツ(付箋・デコ・背景等)は、本サービス上の削除操作で消去できます。
- マイページを閉じる/コミュニティから退出することで、あなたに紐づくプロフィール・マッチング・つながり・マイページ等の保存データは整理・削除されます。
- Discordの「ユーザー設定 → 認証済みアプリ」から、本サービスへのアクセス許可(連携)をいつでも取り消せます。
- 自身に関する情報の開示・訂正・削除等をご希望の場合は、下記お問い合わせ先までご連絡ください。
7. 年齢
本サービスの利用には、Discordの利用規約が定める最低年齢(原則13歳以上。お住まいの地域によってはより高い年齢)を満たしている必要があります。
8. 安全管理
当方は、取得した情報の漏えい・改ざん・不正アクセスを防止するため、通信の暗号化(TLS)、Cookieの署名検証、部屋ごとのデータ分離、アクセス制限などの合理的な安全管理措置を講じます。ただし、インターネットを通じた通信・保存の安全性を完全に保証するものではありません。
9. 本ポリシーの変更
当方は、必要に応じて本ポリシーを変更することがあります。重要な変更を行う場合は、本サービス上またはコミュニティ内で告知します。変更後に本サービスを利用した場合、変更後の内容に同意したものとみなします。
10. お問い合わせ
本ポリシーに関するお問い合わせ・情報の開示/削除依頼等は、「キッチンくりぃむ」Discordサーバーの運営・管理者宛のダイレクトメッセージにてお受けします。
1. Introduction
This Privacy Policy (the "Policy") explains how the operator of the Discord community "Kitchen Cream" (an individual; "we", "us") handles user information in the following services (together, the "Service"):
- The embedded "2D Lounge" app that runs inside Discord (a Discord Activity)
- The web browser version of the lounge (
https://office.7daystodie.jp)
- The related Discord bot operated together with the above (including matching, profiles, My Page, and an AI assistant)
By using the Service, you agree to this Policy.
2. Information We Collect
(1) Discord account info
When you log in via Discord OAuth, we receive from Discord your user ID, display name (username / global name), and avatar image. The primary scope used is identify (we may also request guilds, guilds.members.read, or rpc.voice.read depending on the feature). To provide the Service, the bot also reads your roles within the community, your voice-channel presence, and publicly visible display names. We never receive your password (authentication is handled by Discord).
(2) Presence & position (transient)
To provide the experience, we process your presence in a voice channel and your avatar position/movement inside the lounge. In the browser version, we move you between voice channels only in response to your own actions. This live data is held temporarily in server memory, separated per room.
(3) Shared content
We process content you post to share with others in the same room. Of this, live information such as chat, reactions and "watch-together / shared stage" selections is held temporarily in server memory. However, content of the "leave it in the room" type — whiteboard drawings, sticky notes, shared images, room backgrounds, room decorations (My Room decor), and your chosen avatar appearance — is stored on the operator's server so it can be shown again later (see also 6 below). Images are fetched and relayed through our proxy for display.
(4) Cookies
To keep you signed in on the browser version, we use a signed session cookie (office_uid) containing only your Discord user ID and a tamper-protection signature.
(5) Access logs
For operation, abuse prevention and troubleshooting, the server may temporarily record technical logs such as IP address, timestamp and request metadata.
(6) Information stored for community features
When you use the Service's community features, we store the following on the operator's server (configuration files / database) to provide those features:
- Profile: roles/tags you select yourself (voice style, time bands, vibe, hobbies, topics, age band, etc.), a short bio, titles, skills and achievements.
- Matching & connections: "want to talk" signals you send/receive, matches/connections formed, dedicated channels, connection groups, parting history, and block settings.
- My Page: your personal-page settings, notification preferences and notices.
- Interaction records: a closeness (familiarity) indicator with other users, and visit footprints to your room.
- Safety & moderation: reports, mutual feedback/ratings, a trust score, and matching-suspension state.
These relate to you, the community members you interact with, and the operator. Deletion follows Section 6 (Your Rights).
(7) AI assistant (generative AI)
When you send a message to the AI assistant ("Kurii-mu-chan"), or when AI responses are generated (e.g. the topic-suggestion feature), your input (your message and related guidance text) is sent to Google's Gemini API (a generative-AI service) to produce a response. Google's handling is subject to Google's privacy policy. We do not separately retain AI conversations, though messages posted to a Discord thread remain on Discord under Discord's policy.
We do not collect payment information, the contents of your Discord direct messages, or any personal data unnecessary for providing the Service.
3. Purposes of Use
- Providing the lounge experience (avatars, presence/speaking indicators, room visuals)
- Moving you between voice channels in response to your actions
- Synchronizing shared content among participants in the same room
- Matching users and providing connections/groups based on profiles (roles, etc.)
- Providing community features such as My Page, closeness and achievements
- Providing guidance and topic suggestions via the AI assistant
- Ensuring safety via reports, ratings and blocking; operating, maintaining and preventing misuse of the Service
4. Retention
- Live information (presence/position, live chat/reactions): held only in server memory and lost on clearing or server restart (not permanently stored).
- "Kept in the room" content (whiteboard, notes, shared images, backgrounds, decor, avatar appearance) and community-feature data (profile, matching, connections, My Page, closeness, skills, achievements, reports, ratings, trust score, blocks, etc.): stored on the operator's server to provide the features, and deleted upon your delete action, closing your My Page, leaving the community, or a deletion request. When you leave, we clean up and delete such data and dedicated channels associated with you.
- AI assistant input: sent to Google to generate a response (Google's handling follows its policy). We do not permanently retain the conversation on our side.
- Session cookie: retained per your browser settings / its expiry; you can invalidate it by revoking the app in Discord or clearing cookies.
- Access logs: retained temporarily as operationally necessary, then deleted/overwritten.
5. Sharing with Third Parties
Except as required by law, we do not sell or rent collected information. By the nature of the Service, the following sharing occurs:
- Other participants in the same room / community: by design, your display name, avatar, position, speaking state, shared content, and profile (per your visibility settings) are shown to others in the same room, your match partners, connections, etc.
- External services used for authentication and functionality (their own privacy policies apply):
- Discord (authentication, app platform, voice state, roles) — discord.com/privacy
- Google — policies.google.com/privacy
- Gemini API: processing input sent for the AI assistant and topic suggestions
- YouTube: thumbnail display and external playback when you share a YouTube URL
- The hosting provider that runs the Service
6. Your Rights
- You may stop using the Service at any time.
- You can delete content you shared or saved (notes, decor, backgrounds, etc.) using the delete controls in the Service.
- By closing your My Page or leaving the community, the stored data associated with you (profile, matching, connections, My Page, etc.) is cleaned up and deleted.
- You can revoke the Service's access at any time via Discord "User Settings → Authorized Apps".
- To request access to, correction of, or deletion of information about you, contact us using the details below.
7. Age
You must meet Discord's minimum age requirement (generally 13, or higher where required by your region) to use the Service.
8. Security
We apply reasonable safeguards including encrypted transport (TLS), cookie signature verification, per-room data isolation and access controls. However, no method of transmission or storage over the Internet can be guaranteed to be completely secure.
9. Changes to this Policy
We may update this Policy as needed. For significant changes we will announce them within the Service or the community. Continued use after a change constitutes acceptance of the updated Policy.
10. Contact
For questions about this Policy, or requests to access or delete your information, please contact the operator / administrators of the "Kitchen Cream" Discord server via direct message.