BuronAI BuronAI
한국어 · English

BuronAI 개인정보처리방침

시행일: 2026년 3월 1일

부론랩스 주식회사(이하 “회사”)는 「개인정보 보호법」 제30조에 따라 정보주체의 개인정보를 보호하고 이와 관련한 고충을 신속하고 원활하게 처리할 수 있도록 하기 위하여 다음과 같이 개인정보 처리방침을 수립·공개합니다.

제1조 (개인정보의 처리 목적)

회사는 다음의 목적을 위하여 개인정보를 처리합니다.

제2조 (처리하는 개인정보의 항목)

제2조의2 (SNS 연동 OAuth 권한 범위)

한방살포, 댓글센터, 인사이트 기능 이용 시 아래 OAuth 권한을 요청합니다. 명시된 목적 외에 사용하지 않습니다.

플랫폼권한(Scope)수집·접근 정보사용 목적
YouTubeyoutube.upload업로드 API 접근YouTube 채널에 영상 업로드
YouTubeyoutube.readonly채널명, 채널 ID, 프로필 사진연동 채널 확인 및 화면 표시
YouTubeyoutube.force-ssl내 영상의 댓글·답글 본문, 작성자 채널명댓글 수집 및 답글 게시
YouTubeyt-analytics.readonly내 채널·영상의 분석 보고서(시청 시간, 시청 지속률, 유입 경로 및 검색어, 시청자 연령·성별·지역·기기, 구독 증감)인사이트 화면의 채널·콘텐츠 성과 표시
TikTokuser.info.basic사용자 ID, 닉네임, 프로필 사진, 공개 설정 옵션연동 채널 확인 및 업로드 설정
TikTokvideo.upload영상 업로드 API 접근 (초안/인박스)틱톡 앱에서 마무리할 초안 업로드
TikTokvideo.publish영상 게시 API 접근 (Direct Post)TikTok에 영상 게시
TikTokvideo.list내 영상 목록 — 영상 ID, 캡션, 썸네일, 공유 링크, 댓글 수, 게시 시각댓글 센터의 영상별 분류 및 댓글 조회 대상 선정
TikTokvideo.insights내 영상의 성과 지표(조회수, 도달, 좋아요·댓글·공유 수, 완주율, 평균·총 시청 시간, 노출 출처 비율, 시청자 국가 비율)인사이트 화면의 콘텐츠 성과 표시
TikTokcomment.list내 영상의 댓글·답글 본문, 작성자 식별자·표시명·프로필 사진 주소, 숨김·고정·좋아요 상태댓글 수집
TikTokcomment.list.manage답글 게시, 댓글 숨김·고정·좋아요, 회원 본인이 작성한 댓글 삭제 API 접근댓글 응대 및 숨김·고정 관리
Instagraminstagram_business_basic사용자 ID, 닉네임, 프로필 사진연동 계정 확인 및 화면 표시
Instagraminstagram_business_content_publishReels 게시 API 접근Instagram Reels 게시
Instagraminstagram_business_manage_comments내 게시물 댓글 본문, 작성자 ID·사용자명댓글 수집 및 공개 답글 게시
Instagraminstagram_business_manage_messages다이렉트 메시지 송수신댓글 작성자에게 1회 답장(댓글 후 7일 이내)
Facebookpages_manage_posts페이지 게시물 관리 API 접근Facebook 페이지 영상 게시
Facebookpages_show_list연결된 페이지 목록, 페이지 액세스 토큰페이지 연동 및 업로드 인증
Facebookpages_read_engagement페이지 게시물 참여 데이터 읽기pages_manage_posts 사용을 위한 필수 종속 권한
Facebookpages_read_user_content내 페이지 게시물의 이용자 댓글 본문, 작성자 ID·이름댓글 수집
Facebookpages_manage_engagement댓글 작성·수정·삭제 API 접근공개 답글 게시
Facebookpages_messaging페이지 메시지 송수신댓글 작성자에게 1회 답장(댓글 후 7일 이내)
Threadsthreads_basic사용자 ID, 닉네임, 프로필 사진연동 계정 확인 및 화면 표시
Threadsthreads_content_publish게시 API 접근Threads에 영상·이미지 게시
Threadsthreads_read_replies내 게시물 답글 본문, 작성자 사용자명답글 수집
Threadsthreads_manage_replies답글 게시·숨김 API 접근답글 게시
Xtweet.write트윗 게시 API 접근X에 트윗(영상 포함) 게시
Xmedia.write미디어 업로드 API 접근영상 파일 업로드
Xusers.read사용자명, 프로필 사진연동 계정 확인 및 화면 표시
Xoffline.access리프레시 토큰토큰 자동 갱신
Pinterestboards:read보드 목록, 보드 ID발행 대상 보드 선택
Pinterestboards:write핀 생성 시 보드 쓰기 API 접근핀 발행에 Pinterest API가 요구하는 필수 권한(보드에 핀 추가)
Pinterestpins:read미디어 업로드 상태 조회 API 접근영상 핀 트랜스코딩 상태 확인(폴링)
Pinterestpins:write핀 생성 API 접근Pinterest 보드에 이미지·영상 핀 게시
Pinterestuser_accounts:read사용자명, 프로필 사진(표시용, 미저장)연동 계정 확인 및 화면 표시

위 SNS OAuth 권한은 회원이 소유·관리하는 채널에 한해 사용합니다. 수집된 정보는 표에 명시된 목적(한방살포 업로드 및 회원 채널의 댓글 응대)에만 사용하며, 광고·프로파일링·모델 학습에 사용하거나 제3자에게 제공하지 않습니다.

BuronAI는 연동된 각 플랫폼의 개발자 정책을 준수합니다:

제2조의3 (SNS 연동 데이터 삭제)

한방살포 기능을 통해 연동된 SNS 계정의 데이터(OAuth 액세스 토큰 및 계정 정보 — 플랫폼별 수집·저장 범위는 제2조의2 참조)는 다음 방법으로 즉시 삭제할 수 있습니다.

연동 해제 후에는 해당 SNS로의 업로드 기능이 비활성화됩니다. 업로드 기록(이력)은 서비스 개선 목적으로 보유 기간(제3조) 동안 보관됩니다.

제2조의4 (댓글 작성자 등 제3자 정보의 처리)

댓글 센터는 회원 채널에 달린 댓글을 수집하므로, 회원이 아닌 제3자(댓글 작성자)의 정보가 포함됩니다. 해당 정보는 각 플랫폼이 공개한 범위 내에서 회원의 채널 관리 목적으로만 처리합니다.

각 플랫폼에서 원 댓글이 삭제·수정되더라도 이미 수집된 사본은 자동으로 갱신되지 않으므로, 위 경로로 삭제를 요청해 주시기 바랍니다.

제2조의5 (YouTube API 서비스 이용 고지)

BuronAI 는 YouTube 채널로의 영상 업로드와 댓글 응대 기능을 제공하기 위해 YouTube API 서비스(YouTube API Services)를 사용합니다. 본 서비스를 이용함으로써 회원은 YouTube 서비스 약관에 동의하는 것으로 간주됩니다.

회원은 위 Google 보안 설정 페이지에서 언제든지 BuronAI 의 YouTube 접근 권한을 직접 철회할 수 있으며, BuronAI 앱 내 한방살포 화면의 [Disconnect] 로도 연결을 해제할 수 있습니다. 철회·해제가 확인되면 해당 회원의 YouTube 관련 데이터를 지체 없이(7일 이내) 삭제합니다.

YouTube API 를 통해 수집한 데이터(영상 정보, 댓글 본문, 작성자 채널명 등)는 YouTube API 서비스 약관에 따라 수집일로부터 30일 이내에 삭제하거나 최신 정보로 갱신합니다. 회원은 [email protected] 으로 해당 데이터의 삭제를 요청할 수 있으며, 요청 시 7일 이내 처리합니다.

제3조 (보유 기간)

제4조 (제3자 제공)

법률의 규정 또는 정보주체 동의 없이 제3자에게 제공하지 않습니다.

제5조 (처리 위탁)

수탁업체위탁 내용
Supabase Inc.데이터베이스 및 인증
Cloudflare Inc.CDN 및 웹 호스팅, 스토리지(R2)
OpenAI / Anthropic / GoogleAI 콘텐츠 생성 API
Polar Inc.결제 및 구독 관리
Stripe Inc.결제 처리 및 정산
Railway Corp.서버 호스팅 및 운영

제6조 (정보주체의 권리)

열람, 정정, 삭제, 처리정지 요구를 이메일([email protected])로 하실 수 있으며, 지체 없이 조치합니다.

제7조 (파기)

보유기간 경과 시 지체 없이 파기합니다. 전자적 파일은 복구 불가능한 방법으로 삭제합니다.

제8조 (안전성 확보조치)

제9조 (쿠키)

맞춤서비스를 위해 쿠키를 사용합니다. 브라우저 설정에서 거부할 수 있으나, 일부 서비스 이용이 제한될 수 있습니다.

제10조 (보호책임자)

개인정보 보호책임자

성명: 김태현 · 직책: 개인정보보호책임자

이메일: [email protected]

제11조 (권익침해 구제)

제12조 (변경)

이 방침은 2026년 3월 1일부터 적용됩니다. 변경 시 7일 전 공지합니다.

BuronAI Privacy Policy

Effective Date: March 1, 2026

BURON LABS Co., Ltd. (“Company”) establishes and discloses this Privacy Policy to protect the personal information of users and to handle related complaints promptly and smoothly, in accordance with applicable laws.

Article 1 (Purpose of Processing Personal Information)

The Company processes personal information for the following purposes:

Article 2 (Personal Information Collected)

Article 2-A (SNS OAuth Permission Scopes)

The Company requests the following OAuth permissions when you use Multi Publisher, Comment Center and Insights. Data accessed is used solely for the purposes listed below.

PlatformScopeData AccessedPurpose
YouTubeyoutube.uploadUpload API accessUpload videos to YouTube channel
YouTubeyoutube.readonlyChannel name, channel ID, profile pictureDisplay connected channel info in UI
YouTubeyoutube.force-sslComments and replies on the member's videos, commenter channel nameCollect comments and post replies
YouTubeyt-analytics.readonlyAnalytics reports for the member's channel and videos (watch time, audience retention, traffic sources and search terms, viewer age/gender/geography/device, subscriber changes)Display channel and content performance in the Insights screen
TikTokuser.info.basicUser ID, username, profile picture, privacy optionsDisplay connected account and configure upload settings
TikTokvideo.uploadVideo upload API access (draft/inbox)Upload drafts to finish in the TikTok app
TikTokvideo.publishVideo publish API access (Direct Post)Publish videos to TikTok
TikTokvideo.listList of the member's videos — video ID, caption, thumbnail, share link, comment count, publish timeGroup comments by video and select videos to fetch comments for
TikTokvideo.insightsPerformance metrics for the member's videos (views, reach, likes, comments, shares, completion rate, average and total watch time, impression sources, viewer countries)Display content performance in the Insights screen
TikTokcomment.listComments and replies on the member's videos, commenter identifier, display name and profile picture URL, hidden/pinned/liked stateCollect comments
TikTokcomment.list.manageAPI access to post replies, hide, pin and like comments, and delete comments written by the memberRespond to comments and manage hiding and pinning
Instagraminstagram_business_basicUser ID, username, profile pictureDisplay connected account info in UI
Instagraminstagram_business_content_publishReels publish API accessPublish Reels to Instagram
Instagraminstagram_business_manage_commentsComment text on the member's posts, commenter ID and usernameCollect comments and post public replies
Instagraminstagram_business_manage_messagesDirect message send and receiveSend one private reply to a commenter (within 7 days of the comment)
Facebookpages_manage_postsPage post management API accessPublish videos to Facebook Page
Facebookpages_show_listConnected pages list, page access tokenLink page and authenticate uploads
Facebookpages_read_engagementPage post engagement data read accessRequired dependency for pages_manage_posts
Facebookpages_read_user_contentUser comments on the member's Page posts, commenter ID and nameCollect comments
Facebookpages_manage_engagementComment create, edit and delete API accessPost public replies
Facebookpages_messagingPage message send and receiveSend one private reply to a commenter (within 7 days of the comment)
Threadsthreads_basicUser ID, username, profile pictureDisplay connected account info in UI
Threadsthreads_content_publishPublish API accessPublish videos and images to Threads
Threadsthreads_read_repliesReplies on the member's posts, replier usernameCollect replies
Threadsthreads_manage_repliesReply publish and hide API accessPost replies
Xtweet.writeTweet post API accessPost tweets (with video) to X
Xmedia.writeMedia upload API accessUpload video files to X
Xusers.readUsername, profile pictureDisplay connected account info in UI
Xoffline.accessRefresh tokenAuto-renew token
Pinterestboards:readBoard list, board IDSelect target board for publishing
Pinterestboards:writeBoard write API access for pin creationRequired by the Pinterest API to publish Pins (adding a Pin to a board)
Pinterestpins:readMedia upload status API accessCheck video Pin transcoding status (polling)
Pinterestpins:writePin creation API accessPublish image/video Pins to Pinterest boards
Pinterestuser_accounts:readUsername, profile picture (display only, not stored)Display connected account info in UI

Data accessed via these OAuth scopes is used solely to provide the Multi Publisher feature. It is never sold, used for advertising, or shared with third parties.

BuronAI complies with the developer policies of each integrated platform:

Article 2-B (Deletion of SNS Integration Data)

Data collected through the Multi Publisher feature (OAuth access tokens and account information — the scope collected and stored per platform follows the table in Article 2-A) can be deleted immediately using any of the following methods:

After disconnecting, upload functionality to that SNS will be disabled. Upload history records may be retained for the period specified in Article 3 for service improvement purposes.

Article 2-C (Processing of Third-Party Data such as Commenters)

Because the Comment Center collects comments left on a member's channels, it necessarily includes information about third parties (commenters) who are not members of BuronAI. Such information is processed only within the scope made available by each platform, and only for the purpose of helping the member manage their own channel.

If the original comment is later edited or deleted on the platform, the copy already collected is not updated automatically. Please use the channel above to request deletion.

Article 2-D (YouTube API Services Notice)

BuronAI uses YouTube API Services to upload videos to a member's own YouTube channel and to manage comments on those videos. By using this service, members are deemed to agree to the YouTube Terms of Service.

Members may revoke BuronAI's access to their YouTube data at any time through the Google security settings page above, or by clicking [Disconnect] on the Multi Publisher screen in the BuronAI app. Once a revocation is confirmed, BuronAI deletes that member's YouTube data promptly and within 7 days.

Data obtained through the YouTube API (video information, comment text, commenter channel names, and the like) is deleted or refreshed within 30 days of collection, in accordance with the YouTube API Services Terms of Service. Members may request deletion of this data at [email protected]; such requests are processed within 7 days.

Article 3 (Retention Period)

Article 4 (Disclosure to Third Parties)

Personal information is not provided to third parties without legal basis or user consent.

Article 5 (Entrusted Processing)

Service ProviderPurpose
Supabase Inc.Database and authentication
Cloudflare Inc.CDN, web hosting, and storage (R2)
OpenAI / Anthropic / GoogleAI content generation API
Polar Inc.Payment and subscription management
Stripe Inc.Payment processing and settlement
Railway Corp.Server hosting and operations

Article 6 (User Rights)

Users may request access, correction, deletion, or suspension of processing via email ([email protected]). The Company will respond without delay.

Article 7 (Destruction)

Personal information is destroyed without delay upon expiration of the retention period. Electronic files are deleted using methods that prevent recovery.

Article 8 (Security Measures)

Article 9 (Cookies)

The Company uses cookies to provide personalized services. Users may refuse cookies via browser settings, though some services may be restricted as a result.

Article 10 (Privacy Officer)

Privacy Officer

Name: Kim Taehyun · Title: Privacy Officer

Email: [email protected]

Article 11 (Remedies)

For privacy-related complaints, users may contact the Company or the relevant data protection authority in their jurisdiction.

Article 12 (Changes)

This policy is effective from March 1, 2026. Users will be notified at least 7 days before any changes take effect.