개인정보처리방침
시행일 2026년 10월 1일 · 운영: ELOP Studio(이롭스튜디오) · 개인 운영, 대표 박경호
ELOP Crew 프로그램은 계정 없이 PC 안에서만 동작합니다. 이 방침은 선택 기능인 crew.elopstudio.com 계정과 ELOP Crew 모바일 앱(휴대폰에서 연결한 PC의 ELOP Crew를 쓰는 기능)에 적용됩니다. 계정을 만들지 않으면 아래 정보는 하나도 수집하지 않습니다.
1. 수집하는 정보와 목적
| 항목 | 목적 |
|---|---|
| 로그인한 서비스(GitHub, Google 또는 Apple)의 사용자 번호와 표시 이름(Apple은 사용자 번호만) | 로그인, 계정 화면 표시 |
| 로그인 유지용 무작위 토큰(쿠키). 서버에는 해시값만 둡니다 | 로그인 상태 유지 |
| 요금제 | 연결할 수 있는 PC 수 |
| 연결한 PC의 이름(기본값 “Windows PC”·“Mac”, 직접 바꿀 수 있음), 운영체제, ELOP Crew 버전, 연결·마지막 접속 시각, 그 PC의 공개키 | PC 연결과 확인, 계정 화면의 PC 목록 |
| 앱에 로그인한 휴대폰: 앱이 알려 주는 기기 이름, 로그인·마지막 사용 시각, 로그인 유지 토큰(해시만) | 앱 로그인 유지, 계정 화면의 기기 목록 |
| 푸시 알림(앱에서 허용한 경우): 휴대폰의 푸시 토큰. 알림에는 PC 이름, 에이전트 별명, 기다리는 일의 종류(예: “Bash 허용”)만 담고 명령·질문·대화는 담지 않습니다 | 에이전트가 답을 기다릴 때 알리기 |
| 중계되는 내용: 앱과 PC의 ELOP Crew가 주고받는 에이전트 목록·상태, 대화, 보내는 메시지와 파일, 승인·답변, 실행하는 명령과 그 결과 | 휴대폰에서 PC의 ELOP Crew를 쓰기. 서버 메모리에서 전달만 하고 저장하거나 기록하지 않습니다(아래 참고) |
| 유료 요금제를 쓰는 경우: Paddle의 고객·구독·거래 번호, 요금제와 결제 주기, 금액·통화, 결제일, 다음 결제일, 환불 여부 | 요금제 적용, 계정 화면의 결제 내역, 해지·환불 처리 |
중계: 휴대폰과 PC 사이의 내용은 전송 구간이 암호화(TLS)된 채 이롭스튜디오의 서버를 지나갑니다. 서버는 이것을 목적지로 넘기기만 하며, 디스크·데이터베이스·로그에 남기지 않습니다. 다만 종단간 암호화는 아니어서, 전달되는 동안 서버의 메모리에는 내용이 있습니다. PC의 ELOP Crew는 앱이 요청할 수 있는 기능을 제한하며(Claude 로그인·로그아웃과 PC 연결 설정은 PC에서만), 자기 PC의 접근 토큰은 앱에 주지 않습니다.
수집하지 않는 것: 이메일 주소(GitHub와 Apple에는 권한을 요청하지 않고, Google에는 기본 프로필만 요청하며, 저장할 곳도 없습니다), 프로필 사진, 대화·명령·파일 내용의 저장본, Claude 계정 정보와 토큰, PC의 호스트 이름, 카드 등 결제수단 정보(결제 대행사 Paddle이 직접 받고, 회사에는 오지 않습니다).
PC 연결 요청이 들어오면 남용을 막으려고 요청한 IP 주소를 서버 메모리에만 10분간 두고 저장하지 않습니다. 웹 서버의 접속 기록(IP 주소, 시각, 요청 경로)은 장애 대응을 위해 서버 로그에 잠시 남을 수 있습니다.
2. 보관 기간
- 계정 정보와 연결된 PC: 계정을 삭제할 때까지. 삭제하면 즉시 지웁니다
- 로그인 유지 토큰: 웹 30일, 앱은 마지막 사용 후 180일, 또는 로그아웃할 때까지(푸시 토큰도 함께 지웁니다)
- 계정에서 해제한 PC: 해제 후 30일 뒤 삭제
- PC 연결 코드: 10분
- 결제 내역: 계정을 삭제할 때까지. 법령(전자상거래법: 대금결제·계약 기록 5년)이 보관을 요구하는 거래 기록은 판매자인 Paddle이 보관합니다
- 장애 복구용 백업: 데이터베이스 백업에 최대 약 10일 남았다가 자동으로 지워집니다
3. 제3자 제공과 위탁
개인정보를 판매하거나 제3자에게 제공하지 않습니다. 로그인은 GitHub(GitHub, Inc.), Google(Google LLC), Apple(Apple Inc.)의 로그인 기능을 쓰며, 로그인할 때 그 서비스의 약관과 방침이 함께 적용됩니다. 유료 요금제의 결제는 판매 대행사(Merchant of Record)인 Paddle.com Market Ltd(영국)가 처리하며, 결제할 때 이메일 주소, 결제수단, 청구 국가 등을 Paddle이 직접 받습니다(Paddle 개인정보처리방침). 해외(영국 등)로 이전되는 정보는 결제에 필요한 범위로 한정되며, 결제 시점에 이전됩니다. 푸시 알림은 Expo(650 Industries, 미국)를 거쳐 Apple(APNs)·Google(FCM)이 휴대폰에 전달하며, 위의 짧은 알림 문구와 푸시 토큰만 넘어갑니다. 서버와 데이터베이스는 이롭스튜디오가 직접 운영하는 서버(대한민국)에 있고, 백업은 Amazon Web Services 서울 리전에 암호화해 보관합니다.
4. 이용자의 권리
- 계정 페이지에서 연결된 PC를 보고, 이름을 바꾸고, 해제할 수 있습니다
- 같은 페이지의 계정 삭제로 계정과 연결된 PC 정보를 한 번에 지울 수 있습니다
- 계정 페이지에서 휴대폰의 앱 로그인을 끊거나, PC의 ELOP Crew 계정 창에서 PC 연결을 해제하면 중계가 바로 멈춥니다
5. 개인정보 보호책임자와 문의
개인정보 보호책임자: 박경호 (ELOP Studio 대표) · elopadmin@elopstudio.com
개인정보에 관한 문의와 요청(열람·정정·삭제·처리정지)은 위 이메일, 이롭스튜디오 문의 또는 GitHub로 보내 주세요. 방침이 바뀌면 이 페이지에 시행일과 함께 알립니다.
Privacy
In effect from 1 October 2026 · Run by ELOP Studio, operated by 박경호 as an individual
The ELOP Crew program works on your PC without any account. This page is about the optional crew.elopstudio.com account and the ELOP Crew mobile app, which reaches ELOP Crew on the PCs you link. Without an account, none of the below is collected.
1. What is kept, and why
| What | Why |
|---|---|
| The user id and display name from the service you sign in with (GitHub, Google or Apple; from Apple, the user id only) | Signing in; your account page |
| A random sign-in token (cookie); the server keeps only its hash | Staying signed in |
| Your plan | How many PCs you may link |
| Each linked PC's name (“Windows PC” or “Mac” unless you rename it), operating system, ELOP Crew version, when it was linked and last seen, and its public key | Linking and checking PCs; the list on your account page |
| Phones signed in to the app: the name the app gives, when it signed in and was last used, its sign-in token (hash only) | Keeping the app signed in; the list on your account page |
| Push notifications (if allowed in the app): the phone's push token. A push carries the PC's name, the agent's nickname and what kind of thing it waits for (e.g. “allow Bash”) — never the command, the question or the conversation | Telling you when an agent waits for an answer |
| What is relayed: what the app and your PC's ELOP Crew exchange — the agents and their state, conversations, messages and files you send, approvals and answers, commands you run and their output | Using your PC's ELOP Crew from your phone. Passed on in the server's memory only, never stored or logged (below) |
| On a paid plan: Paddle's customer, subscription and transaction ids, your plan and billing cycle, amounts and currency, payment and renewal dates, refunds | Putting you on your plan; the payments on your account page; cancelling and refunds |
The relay: between your phone and your PC, content passes through ELOP Studio's server encrypted in transit (TLS). The server only hands it on; it keeps none of it on disk, in a database or in logs. It is not end-to-end encryption: while being passed on, the content is in the server's memory. Your PC's ELOP Crew limits what the app may ask of it (Claude sign-in and sign-out, and linking, stay on the PC) and never gives the app its local access token.
Not collected: e-mail addresses (GitHub and Apple are asked for no scope and Google for the basic profile only, and there is nowhere to store one), profile pictures, stored copies of conversations, commands or files, your Claude account or tokens, your PC's hostname, card or other payment details (Paddle, our payment processor, receives those directly; they never reach us).
When a PC asks to be linked, the address it asks from is held in the server's memory for ten minutes to stop abuse, and never stored. The web server's access log (IP address, time, path) may keep requests for a short time for troubleshooting.
2. How long
- Your account and linked PCs: until you delete the account, at once when you do
- Sign-in tokens: 30 days on the web; in the app, 180 days after last use; or until you sign out (the push token goes with it)
- A PC removed from the account: deleted 30 days later
- Link codes: ten minutes
- Payments: until you delete the account. Transaction records the law requires to be kept (five years in Korea) are kept by Paddle, the seller
- Backups for recovery: up to about ten days in database backups, then deleted automatically
3. Other parties
Nothing is sold or given to anyone. Signing in uses GitHub's (GitHub, Inc.), Google's (Google LLC) and Apple's (Apple Inc.) sign-in, whose own terms apply when you use them. Payments for paid plans are processed by Paddle.com Market Ltd (UK), our merchant of record, which receives your e-mail address, payment details and billing country directly when you pay (Paddle's privacy notice). Only what payment needs goes abroad, when you pay. Push notifications go through Expo (650 Industries, USA) and are delivered by Apple (APNs) or Google (FCM); only the short line above and the push token go to them. The server and database run on ELOP Studio's own servers in South Korea; backups are kept encrypted in Amazon Web Services' Seoul region.
4. What you can do
- On the account page: see, rename and remove your linked PCs
- On the same page, Delete account removes the account and everything about its PCs at once
- Sign a phone out on the account page, or unlink the PC in its ELOP Crew account window: the relay stops at once
5. Who is responsible, and contact
Responsible for personal data: 박경호 (ELOP Studio) · elopadmin@elopstudio.com
Questions and requests about your data (access, correction, deletion, stopping its use): the e-mail above, contact ELOP Studio or GitHub. Changes to this page are announced here with the date they take effect.