Privacy Policy
Privacy Policy
Last updated: September 23, 2026
Provider and controller
The controller of personal data processed by the developer in connection with this app is HARUKARY, represented by Ryo Inoue, at Shinjuku Dainana Hayama Building 3F, 1-36-2 Shinjuku, Shinjuku-ku, Tokyo 160-0022, Japan.
Data stored by the app
100 Year Diary Journal stores diary text, photos attached to diary entries, and app settings on your device. You can use the app without creating an account.
Encrypted cloud backup
Cloud backup is off by default. Only when you enable it, the app encrypts your diary data and attached photos before storing the backup in your own iCloud account on iOS or your own Google Drive account on Android. Diary text and photos are not sent to a server managed by the developer. Cloud backup is for recovery from device loss, failure, replacement, or reinstallation; it is not real-time multi-device sync.
On iOS, the encrypted backup is stored in iCloud Documents and the backup key needed to decrypt it is stored in synchronizable iCloud Keychain. On Android, the app uses only Google Drive's app-specific data area (appDataFolder). The Google Drive scope requested by 100 Year Diary Journal is https://www.googleapis.com/auth/drive.appdata; it is not used to read or modify your regular Google Drive files.
Google Account permissions and data are used only to create, list, restore, and delete your encrypted backups. They are not used for advertising or app usage analytics and are not sold. For backup-key recovery on Android, supported devices use Google Block Store with end-to-end encryption.
You can delete the cloud backup from "Delete cloud backup" in the app. Storage and account handling by Apple or Google are also subject to their respective terms and privacy policies.
Zip export
When you choose to export, the app can write your diary data to a Zip file. How that exported file is stored or shared depends on the destination you select.
Moving from another diary app
When you import from a supported third-party diary app, the export file, diary text, and photos you select are parsed and converted on your device. They are not uploaded to a server managed by the developer. Temporary app-owned copies used during processing are deleted afterward, or recovered on a later launch if processing is interrupted.
Photo selection and notifications
To attach a photo, the app opens the system photo picker and receives only the photo you select. It does not request access to your full photo library. It may also ask for notification permission so your device can show diary reminders at the time you choose.
Ads
The free version may show ads through Google AdMob. For ad delivery, the Google Mobile Ads SDK may process device information, advertising identifiers, and ad interaction information.
100 Year Diary Journal does not send diary text or photos attached to diary entries for ad display.
In the European Economic Area (EEA), the United Kingdom, and Switzerland, we use Google's certified consent management platform (CMP) to ask for choices about storing or accessing information and using personal data for advertising. If you do not consent, only advertising permitted by your choices, such as limited ads, may be served. You can change your choice later through "Ad privacy settings" in the app's Settings when that option is required.
App usage analytics
100 Year Diary Journal uses Firebase Analytics, provided by Google, to find problems and improve the app. Analytics may process information about app opens, sessions, screen views, diary create, update, and delete actions, Zip exports, third-party diary import starts and completions, the selected source-app category, coarse ranges for imported, skipped, and photo counts, ad removal purchases or restores, Theme Store views, theme identifiers, downloads, selections and changes, and individual theme or Theme Pass purchases and restores.
The app does not send diary text, photos attached to entries, imported diary files or their file names, photo file names, free-form notes, keywords extracted from diary text, or the specific dates you select for usage analytics. An event may indicate whether a photo was attached to an entry, but the photo itself is not sent.
Firebase Analytics may process an app instance ID, device and operating system information, app version, approximate region information, and app usage information. Google processes this information for us and may process it across national borders.
To measure ad delivery and revenue, RevenueCat also receives ad loads, impressions, interactions, failures, ad placements and identifiers, impression identifiers, and revenue amounts, currencies, and precision. These may be associated with an app user ID and purchase status. Diary text and photos are not sent. This ad measurement follows the same permission and stop controls as usage analytics. Turning measurement off does not disable purchase verification or restoration.
Website analytics
The official website uses Google Analytics 4 (Google Analytics) to improve the site and understand how visitors find it. On your first visit, you can choose whether to allow website analytics. The Google Analytics tag loads only if you allow it. If you do not allow it, Google Analytics measurement does not start. You can change your choice later from "Analytics" in the footer.
Google Analytics may process the pages you view, referrer information, UTM campaign information, browser and device information, approximate region information, and interactions with the site. Diary text, photos stored in the app, and other content saved inside the app are not sent to website analytics.
The official website also uses Cloudflare Web Analytics to understand site delivery and aggregate access activity. Processing by Google and Cloudflare is also subject to their respective privacy policies.
How analytics works by region
If Google's certified consent management platform (CMP) determines that European privacy regulations apply, the app asks for your choice before usage analytics and the ad measurement described above start. If you decline, neither is collected. You can turn them off at any time in Settings. Your choice is not required to use the app. If you previously allowed usage-only analytics, the app asks you to choose again for the updated purposes.
If the CMP determines that European privacy regulations do not apply, usage analytics is enabled by default and the app does not show an analytics switch. The app itself does not access your device's precise location for this decision.
For people in the EEA, United Kingdom, and Switzerland
In these regions, usage analytics and advertising processing that requires consent are based on your consent. Once you decline or withdraw consent in Settings, the app stops new processing that requires that consent. Withdrawal does not affect the lawfulness of processing before withdrawal.
Subject to applicable law, you may request access, correction, deletion, restriction, objection, data portability, or withdrawal of consent by contacting us below. You may also lodge a complaint with the data protection supervisory authority responsible for your place of residence.
Purchases
One-time ad removal and individual theme purchases, and Theme Pass subscriptions, are processed through the App Store on iOS and Google Play on Android. Purchase status, restores, refunds, and related procedures follow the process provided by the applicable store.
100 Year Diary Journal uses RevenueCat to verify purchase status and restore purchases across devices. RevenueCat may process an app user ID, purchased product identifiers, purchase status, and app or device information. Neither 100 Year Diary Journal nor RevenueCat obtains your credit card number for these purchases.
Retention and international processing
Diary data stored on your device remains there until you delete it or uninstall the app. Data related to advertising, analytics, and purchase verification is retained by the applicable service provider for as long as needed for those purposes, legal compliance, and fraud prevention. See the privacy policies of Google, Apple, and RevenueCat for details.
Google, Apple, and RevenueCat may process data outside your country of residence. Where required, those providers use an adequacy decision, standard contractual clauses, or another lawful transfer mechanism described in their policies.
Contact
For privacy questions about the provider of 100 Year Diary Journal, contact diary@harukary.comor call +81 90-7584-1492.