요약
통하리는 조합, 추진위원회, 사업주체 등 제한된 고객 조직과 그 구성원이 사용하는 민간 운영 도구입니다. Latel은 앱 운영, 인증, 보안, 고객지원에 필요한 정보를 처리하며, 고객이 관리하는 조합원·토지등소유자·물건지 데이터는 서비스 제공을 위한 범위에서 처리합니다.
1. 서비스 개요
통하리는 도시정비사업 조합 및 관련 사업주체의 공지, 질문게시판, 댓글, 첨부파일, 조합 가입 요청, 가입 상태 확인, 내 물건지 정보, 푸시 알림을 제공하는 앱입니다.
통하리는 정부기관 앱, 공공 선거 앱, 공공 신분증 앱이 아니며, 총회·전자투표·서면결의 등 법적 효력 판단 기능은 별도 약정 또는 별도 서비스 범위에 따릅니다.
2. 개인정보 처리 주체와 역할
조합원 명부, 토지등소유자 정보, 물건지·소유 관련 정보, 고객 조직이 등록하거나 관리하는 사업지 데이터는 원칙적으로 해당 고객 조직이 개인정보 처리 목적과 범위를 정합니다. Latel은 통하리 서비스를 제공하기 위해 필요한 범위에서 이러한 데이터를 처리하는 서비스 제공자 또는 수탁자로 역할을 수행합니다.
가입 요청을 제출하면 선택한 고객 조직의 관리자는 이름, 생년월일, 휴대전화번호, 주소·물건지 정보, 동의 및 가입 상태를 가입 심사, 연락과 명부 관리 목적으로 열람하거나 내보낼 수 있습니다. Latel은 이 범위에서 고객 조직의 지시에 따라 서비스를 제공하며 해당 정보를 독립적인 광고·판매 목적으로 제공하지 않습니다.
계정 운영, 앱 인증, 보안 로그, 장애 대응, 고객지원, 스토어 심사 대응 등 Latel이 직접 결정하는 제한된 목적에 대해서는 Latel이 개인정보처리자로서 필요한 최소 정보를 처리합니다.
3. 처리하는 개인정보 항목
카카오 로그인 제공 정보
| 수집 경로 | 수집 항목 | 조건 | 수집·이용 목적 | 보유 기간 |
| 카카오 로그인(웹·모바일) |
카카오 회원번호(서비스 연동 식별자) |
필수 |
카카오계정 기반 회원가입·로그인 및 서비스 계정 연결 |
모바일 앱 계정 삭제 또는 해당 모바일 서비스 계정 연결 해제 시까지. 별도 웹 인증계정이 남는 경우 그 계정은 제5절에 따라 처리 |
| 웹 카카오 로그인(Supabase Auth) |
프로필 닉네임, 프로필 이미지 URL |
웹 카카오 로그인 이용 시 필수 |
웹 인증계정 생성·식별 및 Supabase Auth 계정 메타데이터 처리 |
웹 인증계정 삭제 또는 연결 해제 시까지. 인증·보안 기록은 제5절에 따라 처리 |
| 웹 카카오 로그인(Supabase Auth) |
카카오계정 이메일 |
선택 |
웹 인증계정 생성·식별 및 Supabase Auth 계정 이메일 처리 |
웹 인증계정 삭제 또는 연결 해제 시까지. 인증·보안 기록은 제5절에 따라 처리 |
| 통하리 모바일 카카오 로그인 |
카카오계정(전화번호) |
필수 |
카카오 로그인 기반 회원가입, 사전 등록된 조합원·토지등소유자 명부 또는 초대정보와의 대조, 가입 대상자 매칭, 조합 가입 처리, 서비스 계정 연결, 중복·오가입 방지, 가입정보 입력 간소화 및 회원 연락처 등록 |
카카오 제공 전화번호는 로그인 세션 유지 중 앱 보안 저장소에 보관하고 로그아웃·세션 초기화·앱 계정 삭제 시 삭제. 가입 과정에서 제출·확정된 휴대전화번호는 제5절의 고객 조직 가입·명부 기록 보유 범위에 따름 |
회사는 카카오 로그인 회원가입 과정에서 카카오계정(전화번호)을 필수로 제공받습니다. 필수 항목 제공에 동의하지 않으면 카카오 로그인 기반 회원가입을 완료할 수 없습니다. 카카오계정에 전화번호가 없거나 카카오 API·서버 문제, 카카오톡 미사용 등으로 전화번호가 제공되지 않는 경우에는 회원가입 화면에서 이름, 생년월일, 휴대전화번호를 직접 입력하거나 확인해야 합니다.
카카오계정 전화번호가 제공되고 관리자가 생성한 유효 초대정보와 일치하면 해당 조합은 개인정보 입력과 관리자 승인을 생략하고 즉시 가입 처리할 수 있습니다. 전화번호가 제공되지 않았거나 자동가입되지 않은 경우, 입력·확인한 이름·생년월일·휴대전화번호를 통하리를 이용 중인 활성 고객 조직 전체의 사전 등록 명부와 대조합니다. 유효 초대정보가 있는 일치 조합은 즉시 가입되고, 초대정보가 없는 일치 조합은 관리자 승인 대기로 등록되며, 일치 조합이 없으면 물건지·주소 등 나머지 필수 정보를 입력하는 일반 가입 요청 절차로 이어집니다.
카카오계정 전화번호는 법적 본인인증 수단으로 사용하지 않으며, 명부·초대 연락처 대조를 통한 가입 대상 확인, 계정 연결, 중복·오가입 방지 및 가입정보 입력 간소화에 사용합니다.
통하리는 카카오 추가 동의항목으로 이름, 성별, 연령대, 생일, 출생연도, CI 또는 배송지 정보를 요청하지 않습니다. 카카오 로그인 추가 동의항목 및 통하리 모바일 조합 가입 화면에서는 성별을 요청·수집하지 않습니다.
이름·생년월일·주소 등 회원가입 화면에서 직접 입력하는 정보는 카카오에서 제공받거나 카카오 추가 동의항목으로 요청하는 정보가 아니며, 아래 '가입 요청 화면 입력·확인 정보'에서 별도로 안내합니다. 웹 카카오 로그인에서 처리하는 이메일·프로필 정보도 위 표에서 별도로 구분합니다.
Apple 로그인 처리 정보
| 수집 경로 | 처리 항목 | 조건 | 처리 목적 | 보유 기간 |
| Apple 로그인 |
Apple 사용자 고유 식별자 |
Apple 로그인 이용 시 필수 |
회원가입·로그인 및 서비스 계정 연결 |
앱 계정 삭제 또는 서비스 계정 연결 해제 시까지. 다른 로그인수단과 공유된 웹 인증계정이 남는 경우 공통 계정정보는 제5절에 따라 처리 |
| Apple 로그인 |
이름, 이메일 주소(비공개 릴레이 주소 포함) |
최초 로그인 시 Apple 제공 및 이용자 공유 선택에 따름 |
계정 생성, 가입 화면 이름 입력 간소화 및 계정 식별 |
앱 계정 삭제 또는 서비스 계정 연결 해제 시까지. 다른 로그인수단과 공유된 웹 인증계정이 남는 경우 공통 계정정보는 제5절에 따라 처리 |
| Apple 로그인 |
ID 토큰, nonce |
Apple 로그인 이용 시 필수 |
로그인 검증, 회원가입·로그인, 서비스 계정 연결 및 세션 발급 |
인증 처리 완료 시까지 |
| Apple 로그인 |
인가 코드, 암호화된 갱신 토큰 |
Apple이 인가 코드를 제공하고 코드 교환에 성공한 경우 |
앱 계정 삭제 시 Apple 연결 해제 |
인가 코드는 코드 교환 완료 시까지, 갱신 토큰은 앱 계정 삭제 또는 연결 해제 시까지 |
스토어 심사용 로그인
심사 기능이 활성화된 경우에만 심사자가 입력한 이메일·비밀번호를 서버에 설정된 심사용 자격 증명과 대조합니다. 비밀번호 원문은 별도 데이터베이스에 저장하지 않습니다. 일치한 설정 이메일과 표시 이름 등 심사용 프로필은 해당 기능·계정 운영 기간 동안 회원 프로필로 저장하며, 기기·세션 식별자와 로그인 보안기록은 일반 모바일 인증 기록과 동일하게 처리합니다.
가입 요청 화면 입력·확인 정보
| 수집 경로 | 수집 항목 | 조건 | 수집·이용 목적 | 보유 기간 |
| 회원가입 화면 |
이름, 생년월일, 휴대전화번호 |
카카오 전화번호 미제공 또는 자동가입 미완료 후 사전 등록 명부 전체 조합 확인 시 필수 |
활성 고객 조직 전체의 사전 등록 명부·초대정보 대조, 가입 대상 조합 확인, 계정 연결, 초대 조합 즉시 가입 및 미초대 조합 승인 요청 |
제5절의 고객 조직 가입 요청·프로필 기록 보유 범위에 따름 |
| 회원가입 화면 |
이름, 생년월일, 휴대전화번호, 조합 선택, 소유 물건지 주소·유형, 실거주지 주소 |
사전 등록 명부에 일치하는 사용자가 없는 일반 가입 요청 시 필수 |
가입 신청, 사전 등록 명부·초대정보 대조, 조합원·토지등소유자 자격 확인, 연락 및 서비스 제공 |
제5절의 고객 조직 가입 요청·프로필 기록 보유 범위에 따름 |
| 회원가입 화면 |
건물 유형에 따른 동·호수 |
조건부 필수 |
소유 물건 특정 및 명부 대조 |
제5절의 고객 조직 가입 요청·물건지 기록 보유 범위에 따름 |
| 회원가입 화면 |
실거주지 상세주소 |
선택 |
우편·방문 연락 및 주소 보완 |
제5절의 고객 조직 가입 요청·주소 기록 보유 범위에 따름 |
해당 가입 경로에서 요구되는 필수 직접 입력 정보의 수집·이용에 동의하지 않으면 조합 가입 요청을 완료할 수 없습니다. 복수 조합에서 사전 등록 정보가 확인되면 초대된 조합은 즉시 가입되고, 초대되지 않은 일치 조합은 관리자 승인 대기로 등록됩니다. 일치 조합이 없으면 나머지 가입정보를 입력해 일반 가입 요청을 제출합니다.
Apple 최초 로그인에서 이용자가 공유한 이름은 가입 요청 화면에 제시될 수 있으며 이용자가 확인·수정합니다. 생년월일과 주소는 Apple 또는 카카오에서 제공받지 않습니다. 주소 검색 시 카카오·다음 우편번호 서비스가 검색어, 선택 주소 및 접속정보를 처리할 수 있습니다.
가입 요청 및 고객 조직 관리 정보
- 사전 등록 전체 조합 확인 및 일반 가입 요청 개인정보 수집·이용 동의의 문서 버전, 서버 기록 일시, 앱이 전송한 동의 일시, 앱 플랫폼·버전, 인증계정 유형·식별자, 조합·가입 요청 사용자 식별자 및 가입 상태
- 고객 조직이 서비스에 등록하거나 관리하는 조합원, 토지등소유자, 소유·물건지 관련 정보
게시판 및 첨부파일 정보
- 공지, 질문, 답변, 댓글, 신고 내용, 사용자가 업로드한 이미지·PDF 등 첨부파일과 파일명·크기·형식 등 메타데이터
- 작성·수정 기록 및 게시물별 집계 조회수
기기 및 서비스 운영 정보
- Expo 푸시 토큰, 알림 전달 및 딥링크 처리를 위한 데이터
- 앱 버전, 플랫폼, 기기·세션 식별자, 운영정책·약관 동의 버전과 일시, 접속 일시, User-Agent, 오류·보안 로그
- 푸시 발송 이력의 이용자·조합 식별자, 알림 유형, 전송 상태·대상·성공·실패 건수, 정제된 오류 코드 및 생성 일시. 알림 제목은 비식별 고정값만 저장하고 본문은 저장하지 않음
- 광고 문의 또는 신고·차단 알림 이메일을 사용하는 경우 문의 제목·내용·회신 연락처, 신고 유형·대상·관련 이용자·조합 식별자 및 접수 일시
- 모바일 인증 이벤트의 IP 주소 해시값. 호스팅 사업자의 보안·접속 로그에는 IP 주소가 포함될 수 있음
웹 전자총회·본인확인·전자서명 기능 이용 시
| 조건 | 처리 항목 | 처리 목적 |
| 해당 통하리 웹 기능을 이용하는 경우에만 |
이름·휴대전화번호·생년월일(인증 요청에 전달되는 경우), CI·DI, 성별·내외국인 여부(인증 결과로 제공되는 경우), 인증·서명 데이터, 동의서 내용, 거래 식별자(mTxId·txId), 결과 코드, 인증 방법·일시, 총회 출석 시 IP 주소·User-Agent |
본인확인, 전자서명, 전자총회 입장·출석 확인, 중복 참여 방지 및 의결·분쟁 증빙 |
이 조건부 웹 기능은 현재 통하리 모바일 앱의 카카오 조합 가입 경로와 구분됩니다. 모바일 카카오 가입 경로에서는 CI·DI·성별·내외국인 여부 또는 KG이니시스 서명 데이터를 요청하지 않습니다.
4. 개인정보 처리 목적
- 카카오·Apple 로그인, 제한된 스토어 심사용 로그인, 서비스 계정 연결, 세션 유지, 로그아웃 처리
- 활성 고객 조직 전체의 사전 등록 명부·초대 연락처 대조, 복수 조합 가입 대상 확인, 조합별 즉시 가입·승인 대기 판정, 계정 연결 및 중복·오가입 방지
- 조합 가입 요청 접수, 승인 상태 확인, 회원 자격 확인
- 공지사항, 질문게시판, 답변, 댓글, 첨부파일 기능 제공
- 내 물건지 정보 표시 및 고객 조직의 사업지 운영 지원
- 공지, 질문, 답변 등 앱 기능과 관련된 푸시 알림 발송 및 딥링크 처리
- 웹 전자총회에서 본인확인·전자서명·입장·출석 확인, 중복 참여 방지 및 의결·분쟁 증빙
- 보안, 부정 이용 방지, 장애 대응, 서비스 품질 유지, 고객지원
- 법령, 계약, 앱스토어 및 플레이스토어 정책 준수
5. 보관 및 삭제
앱에서 계정 삭제를 실행하면 모바일 로그인 계정, 로그인 세션, 계정 연결정보 및 해당 앱 계정에 연결된 푸시 토큰을 삭제하고, Apple 또는 카카오 연결 해제를 시도합니다. Apple 표시 이름과 암호화된 갱신 토큰도 모바일 로그인 계정과 함께 삭제됩니다. 외부 인증사업자의 장애 등으로 연결 해제가 지연될 수 있습니다.
| 정보 구분 | 실제 보유·삭제 범위 |
| 로그인 세션에 로컬 저장된 카카오 제공 전화번호 |
로그인 세션 유지 중 앱 보안 저장소에 보관하며 로그아웃, 세션 초기화 또는 앱 계정 삭제 시 삭제. 가입 요청에 제출·확정된 휴대전화번호는 고객 조직 가입·명부 기록의 보유 범위에 따름 |
| 모바일 로그인 계정, 제공자 식별자, 세션·연결정보, 푸시 토큰, Apple 표시 이름·갱신 토큰 |
앱 계정 삭제 또는 서비스 계정 연결 해제 시까지 보관한 뒤 삭제 |
| 가입 요청, 조합원·토지등소유자 프로필, 연락처·주소, 물건지·소유정보 |
고객 조직의 명부 관리·자격 확인 목적, 서비스 계약 또는 관계 법령상 필요한 기간까지. 앱 계정 삭제만으로 자동 삭제되지 않으며, 별도 요청 시 고객 조직의 권한과 법적 보존 사유를 확인하여 삭제·분리보관 또는 반환 |
| 게시글, 질문, 답변, 댓글, 신고 및 첨부파일 |
콘텐츠 삭제, 고객 조직의 운영 목적 종료 또는 계약 종료 시까지. 공동체 기록, 분쟁 대응 또는 법령상 보존이 필요한 경우 앱 계정 삭제 후에도 제한적으로 보관 |
| 푸시 발송 이력 |
생성 후 90일 동안 보관하고 자동 삭제. 앱 계정 삭제 시점보다 먼저 삭제를 요청하면 권한과 법적 보존 사유를 확인한 뒤 처리 |
| 광고 문의 및 신고·차단 운영 알림 이메일 내용·전송기록 |
문의·신고 대응과 운영 목적 달성 또는 관계 법령상 필요한 기간까지 보관한 뒤 삭제. 이메일 수신함과 전송 로그는 회사의 Google 계정 설정 및 Google 서비스 정책에 따른 기간 동안 처리될 수 있음 |
| 인증·보안·접속 및 동의 기록 |
보안, 부정 이용 방지, 분쟁 대응 및 관계 법령상 필요한 기간까지. 앱 계정 삭제 시 모바일 계정 ID와의 연결은 제거되나 공유 웹 인증계정이 남으면 auth 사용자 식별자는 감사기록에 남을 수 있음. 가입 요청 개인정보 동의 증적은 가입 요청 사용자·조합에 연결해 보관하며 해당 가입 요청 사용자 또는 조합 기록이 삭제되면 함께 삭제 |
| 웹 KG이니시스 인증·전자서명 거래 및 총회 증빙 |
API 중계 서버의 진행 중 거래·콜백 토큰은 5분의 TTL이 지난 뒤 주기적으로 정리하고 최종 결과 조회 후 즉시 삭제. 인증 완료 후 생성되는 CI·DI 해시, 인증 방법·일시, 출석기록 및 전자서명 증빙은 해당 총회·의결 증빙 목적과 관계 법령·고객 조직 계약상 필요한 기간 동안 별도 보관될 수 있음 |
앱 계정 및 관련 데이터 삭제 요청은 통하리 계정 및 데이터 삭제 요청 페이지에서 안내하는 절차에 따라 접수할 수 있습니다.
법령상 보관 의무, 분쟁 대응, 보안 로그, 백업 주기, 침해사고 조사 등 정당한 사유가 있으면 필요한 범위에서 분리 보관합니다. 보유 목적이 끝난 전자파일은 복구하기 어려운 방법으로 삭제하고, 백업본은 정해진 백업 순환 주기에 따라 덮어쓰며 그 전까지 접근을 제한합니다. 출력물 등 종이 문서가 있는 경우 분쇄하거나 소각합니다.
6. 제3자 제공 및 처리위탁
Latel은 개인정보를 판매하지 않으며, 고객 조직이 관리하는 조합원·물건지 데이터를 광고 타깃팅이나 독자적인 영업 목적으로 사용하지 않습니다.
이용자의 사전 동의 또는 법률상 근거가 있는 경우를 제외하고 개인정보를 독립된 제3자의 목적으로 제공하지 않습니다. 서비스 제공을 위해 다음 사업자에게 처리업무를 위탁하거나 이용자가 선택한 외부 서비스와 연동합니다.
| 수탁·연동 사업자 | 업무 내용 |
| Supabase Pte. Ltd. | 데이터베이스, 인증 및 파일 저장 서비스 운영 |
| Vercel Inc. | 웹·모바일 API 호스팅, 배포 및 보안 로그 처리 |
| 650 Industries, Inc. (Expo) | 푸시 토큰과 알림 내용을 Apple APNs·Google FCM으로 전달 |
| Apple Inc. | Apple 로그인, 계정 연결 해제 및 iOS 푸시 알림 |
| Google LLC | Android 푸시 알림·앱 배포 및 현재 운영 환경의 Gmail SMTP를 통한 광고 문의·신고·차단 운영 알림 이메일 발송 |
| 주식회사 카카오 | 카카오 로그인, 동의한 계정정보 제공 및 카카오·다음 우편번호 주소 검색 |
| 알리고 | 해당 기능을 사용하는 고객 조직의 카카오 알림톡 발송 |
| 주식회사 케이지이니시스 | 통하리 웹 전자총회에서 해당 기능 이용 시 본인확인·간편인증·전자서명 |
| Amazon Web Services, Inc. (AWS) | KG이니시스 등 외부 연동을 중계하는 통하리 API 서버 인프라 운영 |
7. 국외 이전
Latel은 개인정보 처리와 관련하여 다음과 같이 국외 사업자의 서비스를 이용합니다.
| 이전받는 자·국가 | 이전 항목·목적 | 이전 시기·방법 | 보유·이용 기간 |
Supabase Pte. Ltd. (싱가포르). 주 저장·처리 리전: 대한민국 서울 AWS ap-northeast-2 연락처: privacy@supabase.io |
본 방침의 계정·가입·콘텐츠·기기 정보 중 Supabase 서비스의 계약 관리·지원 및 운영에 필요한 정보. 주 DB·인증·파일 저장은 대한민국 서울 리전에서 이루어지며, 요청한 지원 또는 서비스 제공에 필요한 경우 Supabase나 승인된 하위처리자의 다른 시설에서 제한적으로 처리될 수 있음 |
서비스 이용 시 암호화된 통신망으로 전송 |
계약 기간 동안 보관하되 서비스 기능에 따라 조기 삭제를 요청할 수 있음. 계약 종료 후 DPA상 30일의 반환 기간이 지난 뒤 삭제 |
Vercel Inc. (미국 및 Vercel이 운영하는 기타 관할) 연락처: privacy@vercel.com |
웹·모바일 API 요청 정보, IP 주소, User-Agent 및 요청 메타데이터의 호스팅·전송·보안 처리. 현재 Function 실행 리전은 대한민국 서울(icn1)이며, 계정 관리·지원·보안·서비스 운영 및 백업 과정에서 미국 또는 Vercel이 운영하는 다른 관할에서 처리될 수 있음 |
웹·앱 API 이용 시 암호화된 통신망으로 전송 |
현재 프로젝트의 Function 런타임 로그는 1시간. 그 밖의 정보는 Vercel Privacy Notice에 따라 법적·계약상 의무, 분쟁 해결, 권리 집행 및 정당한 사업 목적 달성에 필요한 최소 기간 보관하며, 지속적인 정당한 사업상 필요가 없으면 삭제 또는 익명화. 백업 등 즉시 삭제할 수 없는 경우 안전하게 보관 |
650 Industries, Inc. (Expo, 미국) 연락처: https://expo.dev/contact |
Expo 푸시 토큰, 기기 푸시 토큰, 알림 제목·본문·딥링크 데이터의 Apple APNs·Google FCM 전달 |
푸시 발송 시 미국 GCP의 Expo Push Service로 암호화 전송한 뒤 미국의 Apple·Google 푸시 서비스로 전달 |
Expo는 서비스 제공에 필요한 토큰을 저장하고 알림 payload는 APNs·FCM 전달 후 삭제하며 push receipt는 24시간 후 삭제 |
Apple Inc. (미국) — Sign in with Apple 연락처: https://www.apple.com/legal/privacy/contact/ |
앱·서비스 식별자, nonce, 인가 요청, 인가 코드·토큰 교환 및 연결 해제 요청의 Apple 로그인 인증·계정 연결 관리. Apple이 회사에 제공하는 이름·이메일·ID 토큰은 이 행의 회사→Apple 이전 항목에 포함하지 않음 |
Apple 로그인, 토큰 교환 또는 연결 해제 시 암호화된 통신망으로 전송 |
Apple이 로그인 제공 및 법률상 의무 이행에 필요한 기간 |
Apple Inc. (미국) — APNs 연락처: https://www.apple.com/legal/privacy/contact/ |
iOS 푸시 토큰, 알림 제목·본문·딥링크 데이터의 푸시 알림 전달 |
iOS 알림 발송 시 암호화된 통신망으로 전송 |
미전달 APNs 알림은 별도 TTL 미설정 시 기본 최대 1개월 |
Google LLC (미국 법인·Google 글로벌 인프라) — FCM 연락처: https://support.google.com/policies/contact/general_privacy_form |
Android 푸시 토큰, Firebase installation ID, 알림 제목·본문·딥링크 데이터의 FCM 전달 |
Android 알림 발송 시 암호화된 통신망으로 전송 |
미전달 FCM 메시지는 별도 TTL 미설정 시 기본 최대 4주. Firebase installation ID는 삭제 API 호출 전까지 보관되며, 삭제 요청 후 해당 ID에 연결된 데이터는 live·backup 시스템에서 180일 이내 삭제 |
Google LLC (미국 법인·Google 글로벌 인프라) — Gmail SMTP 연락처: https://support.google.com/policies/contact/general_privacy_form |
운영 이메일의 수신 주소·제목·본문을 광고 문의·신고·차단 알림 발송에 이용 |
운영 이메일 발송 시 암호화된 통신망으로 전송 |
현재 개인 Gmail 계정의 운영자가 삭제할 때까지 보관될 수 있음. 삭제 시 Google의 안전한 삭제 절차가 시작되며, 보안·사기 방지·법적 의무 등 제한된 목적 또는 백업을 위해 더 오래 보관될 수 있음 |
국외 이전을 원하지 않으면 개인정보 보호업무 및 고충처리 담당부서에 처리정지를 요청할 수 있습니다. 다만 DB·인증·파일 저장, 소셜 로그인 또는 푸시·운영 이메일 처리가 중단되면 해당 기능이나 서비스 이용이 제한될 수 있습니다.
8. 정보주체의 권리
이용자는 개인정보 열람, 정정, 삭제, 처리정지, 동의 철회를 요청할 수 있습니다. 통하리 앱 내 기능, 고객 조직의 담당 창구, 통하리 계정 및 데이터 삭제 요청 페이지, 또는 ceo@latel-co.com을 통해 요청할 수 있습니다.
고객 조직이 관리하는 조합원·물건지 데이터의 경우, 정확한 권한 확인과 법적 근거 검토를 위해 해당 고객 조직과의 확인 절차가 필요할 수 있습니다.
9. 안전성 확보조치
- 전송 구간 암호화 및 인증 기반 API 접근 제어
- 모바일 세션 정보의 안전한 로컬 저장소 사용
- 관리자 권한 분리, 최소 권한 접근, 접속 기록 관리
- 서버 비밀키와 서비스 역할 키를 모바일 앱에 포함하지 않는 구조
- 침해사고 및 장애 대응을 위한 로그 점검과 접근 통제
10. 아동 개인정보
통하리는 만 14세 미만 아동을 대상으로 하는 서비스가 아닙니다. 법정대리인 동의 없이 아동의 개인정보가 처리되었다고 판단되는 경우 위 연락처로 문의해 주시면 확인 후 필요한 조치를 취하겠습니다.
11. 광고 및 추적
Latel은 광고주와 직접 계약하여 통하리 앱에 표시 광고를 운영할 수 있습니다. 광고는 이용자가 접속한 조합별 서비스 화면을 기준으로 노출될 수 있으나, 해당 조합이 광고 계약에 관여하거나 광고 내용을 승인했다는 의미가 아닙니다.
통하리 모바일 앱은 현재 제3자 광고 SDK를 포함하지 않습니다. Latel은 이용자의 이름·연락처·물건지·소유관계·동의·투표·민원·문의 내용을 이용해 개인별 광고를 맞춤화하거나 개인정보를 판매하지 않습니다.
광고를 누르면 광고주 웹사이트로 이동할 수 있으며, 이동한 사이트에서의 정보 처리는 해당 광고주의 개인정보처리방침이 적용됩니다. 향후 제3자 광고 SDK, 행태정보 또는 추적 기능을 도입하면 공개 방침과 스토어 선언을 갱신하고 관계 법령에 따라 필요한 사전 고지와 별도 동의를 진행합니다.
12. 개인정보 보호업무 및 고충처리 담당부서
개인정보 처리에 관한 문의, 불만 처리, 권리 행사와 피해 구제는 위 연락처로 접수할 수 있습니다.
13. 정책 변경
서비스 기능, 관계 법령, 스토어 정책, 처리위탁 구조가 변경되는 경우 본 개인정보처리방침을 수정할 수 있습니다. 중요한 변경은 앱 또는 웹사이트에서 안내하고 이 페이지의 시행일을 갱신합니다.
Summary
Tonghari is a private operations tool used by limited customer organizations such as redevelopment unions, committees, project entities, and their members. Latel processes information needed for app operation, authentication, security, and support, and processes customer-managed member, landowner, and property data only as needed to provide the service.
1. Service Overview
Tonghari provides notices, Q&A boards, comments, attachments, membership requests, membership status, property information, and push notifications for redevelopment union and project operations.
Tonghari is not a government app, public election app, or public identity app. Legal-effect workflows such as general meetings, electronic voting, or written resolutions are handled only under separate agreements or service scopes.
2. Controller and Processor Roles
For member rosters, landowner data, property and ownership-related data, and project data registered or managed by a customer organization, the customer organization generally determines the processing purpose and scope. Latel acts as a service provider or processor to provide Tonghari.
When a user submits a join request, administrators of the selected customer organization may view or export the user's name, date of birth, mobile phone number, address/property information, consent, and join status for review, contact, and roster management. Latel provides the service under the customer organization's instructions for this scope and does not disclose the information for an independent advertising or sales purpose.
Latel acts as an independent controller for limited purposes it determines directly, such as account operation, app authentication, security logs, incident response, customer support, and store review support.
3. Information We Process
Information provided through Kakao Login
| Source | Item | Condition | Purpose | Retention |
| Kakao Login (web and mobile) |
Kakao member number (service-linked identifier) |
Required |
Kakao account-based sign-up and login, and linking the Kakao account to the Tonghari service account |
Until deletion of the mobile app account or unlinking of that mobile service account. A separate web authentication account, if any, is handled under Section 5. |
| Web Kakao Login (Supabase Auth) |
Profile nickname and profile image URL |
Required when web Kakao Login is used |
Creating and identifying the web authentication account and processing Supabase Auth account metadata |
Until deletion or unlinking of the web authentication account; authentication and security records follow Section 5 |
| Web Kakao Login (Supabase Auth) |
Kakao Account email |
Optional |
Creating and identifying the web authentication account and processing the Supabase Auth account email |
Until deletion or unlinking of the web authentication account; authentication and security records follow Section 5 |
| Tonghari mobile Kakao Login |
Kakao Account (phone number) |
Required |
Kakao Login-based registration; comparison with a pre-registered member or landowner roster or invitation; eligible-user matching; organization enrollment; service-account linking; prevention of duplicate or incorrect sign-ups; simplified registration-information entry; and member contact registration |
A Kakao-provided phone number is stored in the app's secure storage while the login session is maintained and deleted on logout, session reset, or app-account deletion; a phone number submitted or confirmed during registration follows the customer-organization join/roster retention scope in Section 5 |
During Kakao Login-based registration, the Company receives the Kakao Account phone number as a required item. If you do not consent to this required item, you cannot complete Kakao Login-based sign-up. If the Kakao Account has no phone number or Kakao cannot provide it because of an API or server issue, including when KakaoTalk is not used, you must enter or confirm your name, date of birth, and mobile phone number in the sign-up form.
When the Kakao Account phone number is provided and matches valid invitation information created by an administrator, Tonghari may immediately enroll the user in that organization without additional personal-information entry or administrator approval. If the number is unavailable or automatic enrollment is not completed, the entered or confirmed name, date of birth, and mobile phone number are compared with pre-registered rosters across all active customer organizations using Tonghari. A matching organization with valid invitation information is enrolled immediately, a matching organization without invitation information is placed in administrator-approval pending status, and no match continues to the full property and address join-request form.
The Kakao Account phone number is not used as a legal identity-verification method. It is used to confirm enrollment eligibility against roster or invitation contact details, link accounts, prevent duplicate or incorrect sign-ups, and simplify registration-information entry.
Tonghari does not request name, gender, age range, birthday, birth year, CI, or shipping address as additional Kakao consent items. Gender is not requested or collected as a Kakao additional-consent item or on the Tonghari mobile union-registration form.
Name, date of birth, address, and other information entered directly in the sign-up form are not obtained from Kakao or requested as additional Kakao consent items; they are disclosed separately under “Information entered or confirmed in the registration form” below. Email and profile information processed through web Kakao Login are also identified separately in the table above.
Information processed through Sign in with Apple
| Source | Item | Condition | Purpose | Retention |
| Sign in with Apple |
Apple user identifier |
Required when Apple login is used |
Registration, login, and service-account linking |
Until app-account deletion or service-account unlinking. If a web authentication account shared with another login method remains, common account data is handled under Section 5. |
| Sign in with Apple |
Name and email address, including an Apple private relay address |
At first login when Apple provides it and the user chooses to share it |
Account creation, simplifying name entry, and account identification |
Until app-account deletion or service-account unlinking. If a web authentication account shared with another login method remains, common account data is handled under Section 5. |
| Sign in with Apple |
ID token and nonce |
Required when Apple login is used |
Login verification, registration/login, service-account linking, and session issuance |
Until authentication completes |
| Sign in with Apple |
Authorization code and encrypted refresh token |
When Apple provides a code and the code exchange succeeds |
Revoking Apple access when the app account is deleted |
Authorization code until exchange completes; refresh token until app-account deletion or unlinking |
Store review login
Only when the review feature is enabled, the submitted email and password are compared with reviewer credentials configured on the server. The password itself is not stored in a separate database. The matching configured reviewer email and display name are stored as a member profile while the reviewer feature/account is operated. Device/session identifiers and login security records are handled like other mobile authentication records.
Information entered or confirmed in the registration form
| Source | Item | Condition | Purpose | Retention |
| Sign-up form |
Name, date of birth, and mobile phone number |
Required for the all-organization pre-registration check when the Kakao phone number is unavailable or automatic enrollment was not completed |
Comparing pre-registered rosters and invitations across all active customer organizations, identifying eligible organizations, linking the account, immediately enrolling invited matches, and requesting approval for uninvited matches |
Under the customer-organization join-request/profile retention scope in Section 5 |
| Sign-up form |
Name, date of birth, mobile phone number, selected organization, owned-property address and type, and residence address |
Required for a general join request when no pre-registered match is found |
Processing the join request, comparing roster or invitation data, checking member or landowner eligibility, contact, and providing the service |
Under the customer-organization join-request/profile retention scope in Section 5 |
| Sign-up form |
Building and unit number when required by the property type |
Conditionally required |
Identifying the owned property and matching it against roster data |
Under the customer-organization join-request/property retention scope in Section 5 |
| Sign-up form |
Detailed residence address |
Optional |
Postal or in-person contact and completing the address |
Under the customer-organization join-request/address retention scope in Section 5 |
You cannot complete a join request if you do not consent to the collection and use of required information entered in the app. When pre-registration matches are found in multiple organizations, invited matches are enrolled immediately and uninvited matches are placed in administrator-approval pending status. If no organization matches, the user completes the remaining fields and submits a general join request.
A name shared by the user at the first Sign in with Apple may be shown in the registration form and can be confirmed or edited. Date of birth and addresses are not obtained from Apple or Kakao. When address search is used, the Kakao/Daum postcode service may process the search query, selected address, and connection information.
Join request and customer-managed information
- Document version, server-recorded time, client acceptance time, app platform/version, authentication identifiers, organization/member identifiers, and result status for the all-organization pre-registration check and general join-request privacy consent
- Customer-managed member, landowner, ownership, and property-related information
Board and attachment information
- Notices, questions, answers, comments, report details, user-uploaded image/PDF attachments, and metadata such as filename, size, and type
- Writing/editing records and aggregate view counts for each post
Device and service operation information
- Expo push tokens and data used for notification delivery and deep linking
- App version, platform, device/session identifiers, accepted policy version and time, access time, User-Agent, error logs, and security logs
- Push-delivery log data: user/organization identifiers, notification type, delivery status and target/success/failure counts, sanitized error code, and creation time. Only a non-identifying fixed title is stored; the message body is not stored
- When advertising-inquiry or report/block alert email is used: inquiry title/message/reply contact, report type/target, related user/organization identifiers, and submission time
- A hash of the IP address in mobile authentication events; hosting-provider security/access logs may contain the IP address
When web electronic-meeting, identity, or e-signature features are used
| Condition | Items | Purpose |
| Only when the relevant Tonghari web feature is used |
Name, phone number, and date of birth when passed to the authentication request; CI/DI; gender and domestic/foreign status when returned in the result; authentication/signature data; consent text; transaction identifiers (mTxId and txId); result code; authentication method/time; and IP address/User-Agent for meeting attendance |
Identity verification, electronic signature, meeting entry and attendance, duplicate-participation prevention, and voting/dispute evidence |
This conditional web feature is separate from the current Tonghari mobile Kakao registration flow. The mobile Kakao flow does not request CI/DI, gender, domestic/foreign status, or KG Inicis signature data.
4. Purposes of Processing
- Kakao and Apple login, limited store-review login, service-account linking, session maintenance, and logout
- Comparing pre-registered rosters and invitation contacts across all active customer organizations, identifying eligible organizations, deciding immediate enrollment or administrator-approval pending status per organization, linking accounts, and preventing duplicate or incorrect sign-ups
- Receiving membership requests, showing approval status, and verifying membership
- Providing notices, Q&A, answers, comments, and attachment features
- Showing property information and supporting customer organization operations
- Sending push notifications and routing deep links related to app features
- Identity verification, electronic signatures, meeting entry/attendance, duplicate-participation prevention, and voting/dispute evidence in web electronic meetings
- Security, fraud prevention, incident response, service quality, and customer support
- Compliance with laws, contracts, App Store, and Google Play policies
5. Retention and Deletion
Selecting account deletion in the app deletes the mobile login account, login sessions, account links, and push tokens associated with that app account, and initiates revocation or unlinking with Apple or Kakao. The Apple display name and encrypted refresh token are deleted with the mobile login account. External identity-provider outages may delay unlinking.
| Information Category | Actual Retention and Deletion Scope |
| Kakao-provided phone number stored locally with the login session |
Stored in the app's secure storage while the login session is maintained and deleted on logout, session reset, or app-account deletion. A phone number submitted or confirmed in a join request follows the customer-organization join/roster retention scope. |
| Mobile login account, provider identifier, sessions/links, push token, Apple display name and refresh token |
Retained until app-account deletion or service-account unlinking and then deleted |
| Join requests, member/property-owner profiles, contact/address data, and property/ownership information |
Retained for customer-organization roster management and eligibility purposes, the service contract, or applicable legal retention. App-account deletion does not automatically delete these records. A separate request is handled after checking the customer organization's authority and legal retention grounds. |
| Posts, questions, answers, comments, reports, and attachments |
Until content deletion, completion of the customer organization's operational purpose, or contract termination. Limited retention after app-account deletion may apply for shared records, disputes, or legal obligations. |
| Push-delivery logs |
Retained for 90 days after creation and then automatically deleted. If earlier deletion is requested before app-account deletion, the Company processes it after confirming authority and any legal-retention basis. |
| Advertising-inquiry and report/block operations email content and transmission logs |
Retained until the inquiry/report response or operations purpose is complete, or for the period required by applicable law, and then deleted. Mailbox content and transmission logs may be processed under the Company's Google Account settings and Google service policy. |
| Authentication, security, access, and consent records |
For the period needed for security, misuse prevention, dispute handling, or applicable law. The mobile account ID link is removed on deletion; if a shared web authentication account remains, its auth user identifier may remain in the audit record. |
| Web KG Inicis authentication/e-signature transactions and meeting evidence |
Pending transaction and callback tokens are periodically cleared after their five-minute TTL expires and removed after final result retrieval. CI/DI hashes, authentication method/time, attendance records, and e-signature evidence generated after completion may be retained for meeting/voting evidence and the period required by law or the customer contract. |
Requests to delete a Tonghari app account and associated data can be submitted through the Tonghari Account and Data Deletion Request page.
Information needed for legal obligations, disputes, security logs, backup cycles, or incident investigations is segregated where appropriate. Electronic files whose purpose has ended are deleted using a method designed to prevent recovery. Backups are overwritten under the backup rotation schedule and access is restricted until then. Any paper records are shredded or incinerated.
6. Sharing and Service Providers
Latel does not sell personal information and does not use customer-managed member or property data for advertising targeting or independent sales purposes.
Except with prior user consent or a legal basis, Latel does not provide information for an independent third party's own purpose. The following providers process information for service delivery or provide an external service selected by the user.
| Provider | Function |
| Supabase Pte. Ltd. | Database, authentication, and file-storage operations |
| Vercel Inc. | Web/mobile API hosting, deployment, and security logging |
| 650 Industries, Inc. (Expo) | Forwarding push tokens and notification content to Apple APNs and Google FCM |
| Apple Inc. | Sign in with Apple, account revocation, and iOS push notifications |
| Google LLC | Android push notifications, app distribution, and advertising-inquiry or report/block operations email delivery through Gmail SMTP in the current operating configuration |
| Kakao Corp. | Kakao Login, consented account information, and Kakao/Daum postcode address search |
| Aligo | Kakao AlimTalk delivery for customer organizations using the feature |
| KG Inicis Co., Ltd. | Identity verification, simple authentication, and e-signature when the relevant web electronic-meeting feature is used |
| Amazon Web Services, Inc. (AWS) | Infrastructure for the Tonghari API server that relays KG Inicis and other external integrations |
7. International Transfers
Latel uses the following overseas service provider in connection with processing personal information.
| Recipient and Country | Items and Purpose | Timing and Method | Retention |
Supabase Pte. Ltd. (Singapore). Primary storage/processing region: AWS ap-northeast-2, Seoul, South Korea Contact: privacy@supabase.io |
Account, registration, content, and device information needed for Supabase contract administration, support, and service operations. Primary database, authentication, and file storage are in the Seoul region; Supabase or authorized subprocessors may process limited data at other facilities when necessary for requested support or services. |
Encrypted network transfer during service use |
For the duration of the agreement unless earlier deletion is requested through service functionality; deletion follows the DPA after the 30-day return period on agreement expiry |
Vercel Inc. (United States and other jurisdictions where Vercel operates) Contact: privacy@vercel.com |
Information in web/mobile API requests, IP address, User-Agent, and request metadata for hosting, transmission, and security. The current Function execution region is Seoul, South Korea (icn1), while account administration, support, security, service operations, and backups may involve the United States or other jurisdictions where Vercel operates |
Encrypted network transfer when the web or app API is used |
Function runtime logs for the current project are retained for one hour. Other information is retained under Vercel's Privacy Notice for the minimum period needed for legal and contractual obligations, dispute resolution, enforcement of rights, and legitimate business purposes; deleted or anonymized when there is no ongoing legitimate business need, or securely retained where immediate deletion is not possible, such as backups |
650 Industries, Inc. (Expo, United States) Contact: https://expo.dev/contact |
Expo push token, device push token, and notification title, body, and deep-link data for delivery to Apple APNs and Google FCM |
Encrypted transfer to Expo Push Service on U.S. GCP when a notification is sent, followed by transfer to Apple and Google push services in the United States |
Expo stores tokens needed to provide push service, deletes notification payloads after handoff to APNs or FCM, and clears push receipts after 24 hours |
Apple Inc. (United States) — Sign in with Apple Contact: https://www.apple.com/legal/privacy/contact/ |
App/service identifier, nonce, authorization request, authorization code/token exchange, and revocation request for authentication and account-link management. Name, email, and ID token provided by Apple to the Company are not Company-to-Apple transfers in this row |
Encrypted transfer during Apple login, token exchange, or revocation |
Retained by Apple as needed to provide Sign in with Apple and meet legal requirements |
Apple Inc. (United States) — APNs Contact: https://www.apple.com/legal/privacy/contact/ |
iOS push token and notification title, body, and deep-link data for push delivery |
Encrypted transfer when an iOS notification is sent |
Undelivered APNs notifications use a default maximum of one month when no separate TTL is set |
Google LLC (U.S. entity; Google global infrastructure) — FCM Contact: https://support.google.com/policies/contact/general_privacy_form |
Android push token, Firebase installation ID, and notification title, body, and deep-link data for FCM delivery |
Encrypted transfer when an Android notification is sent |
Undelivered FCM messages remain for up to four weeks by default when no separate TTL is set. A Firebase installation ID is retained until the deletion API is called; after deletion, data tied to that installation ID is removed from live and backup systems within 180 days |
Google LLC (U.S. entity; Google global infrastructure) — Gmail SMTP Contact: https://support.google.com/policies/contact/general_privacy_form |
Operations-email recipient address, subject, and body for advertising inquiries, report notices, and block notices |
Encrypted transfer when an operations email is sent |
May be retained until the operator of the current personal Gmail account deletes it. Deletion starts Google's safe-deletion process; limited retention may continue for security, fraud prevention, legal obligations, or backups |
You may ask the privacy operations and grievance-handling department to suspend processing if you do not want the overseas transfer. If database, authentication, file-storage, social-login, push, or operations-email processing is suspended, the related feature or use of the service may be limited.
8. User Rights
Users may request access, correction, deletion, suspension of processing, or withdrawal of consent through the app, the customer organization's contact point, the Tonghari Account and Data Deletion Request page, or ceo@latel-co.com.
For customer-managed member or property data, Latel may need to coordinate with the relevant customer organization to verify authority and applicable legal grounds.
9. Security Measures
- Encrypted transmission and authenticated API access control
- Secure local storage for mobile session information
- Separated administrator privileges, least-privilege access, and access logging
- Architecture that does not embed server secrets or service-role keys in the mobile app
- Log review and access controls for incident and service-disruption response
10. Children's Privacy
Tonghari is not directed to children under 14. If you believe that a child's personal information has been processed without proper guardian consent, please contact us and we will take appropriate steps after review.
11. Advertising and Tracking
Latel may contract directly with advertisers to operate display advertisements in the Tonghari app. Advertisements may be shown based on the customer organization screen being accessed, but this does not mean that the organization participated in the advertising contract or approved the advertisement.
The Tonghari mobile app currently does not include third-party advertising SDKs. Latel does not personalize advertisements or sell personal information using a user's name, contact details, property, ownership, consent, vote, complaint, or inquiry information.
Selecting an advertisement may open the advertiser's website, where the advertiser's privacy policy applies. Before introducing a third-party advertising SDK, behavioral information, or tracking, Latel will update the public policy and store declarations and provide prior notice and obtain separate consent where required by applicable law.
12. Privacy Operations and Grievance Handling Department
- Privacy operations and grievance-handling department: Latel Privacy Team
- Email: ceo@latel-co.com
- Phone: 010-3504-8164
Questions, complaints, rights requests, and requests for privacy-related relief can be submitted through the contact details above.
13. Changes to This Policy
We may update this Privacy Policy when service functionality, applicable laws, store policies, or subprocessors change. Material changes will be announced through the app or website, and the effective date on this page will be updated.