Privacy Policy
Effective: July 15, 2026 / Last updated: July 19, 2026
DROPPER runs in your browser. For Event, Schedule and Decisions we never collect, store, or transmit your data. the Attendance tool is the one exception - we hold the attendance data (see its own section).
1. Operator
- Operator: 重吉 哲弥 (independent developer)
- Contact: movie.pingpong@gmail.com
2. Our approach
Event, Schedule and Decisions run entirely in your browser. Nothing you read is sent to our servers; everything happens inside your own Google account. the Attendance tool is the exception - we hold that data (see its own section below).
3. How we handle Google user data
With your permission, DROPPER accesses Google services within the following scopes.
| Scope | Why it is needed |
Create and edit Google Calendar events (calendar.events) | To add the dates read from your event document or schedule to your own calendar. |
Access to files this app creates (drive.file) | To read the text from your event document or schedule (OCR) and save the document to your own Google Drive. |
App-specific data folder (drive.appdata) | To remember which folder your files are saved in, so the same folder is reused across your devices (for example, phone and computer). |
- All of this data is processed inside your own Google account. We never receive any of it.
- drive.file is limited to files this app itself creates. It cannot see the rest of your Google Drive.
- Temporary files created for text recognition (OCR) are deleted immediately after the text is read.
- These scopes have been reviewed by Google (OAuth verification) and were approved in July 2026.
4. About the AI feature (Gemini)
When the AI feature is used, the text read from your event document or schedule — or the file itself (PDF or image) — is sent to Google's Gemini API. Whether to use this feature is entirely your choice.
- Using AI is opt-in. After you sign in, a dialog asks you to choose "Use AI" or "Do not use AI".
- Only if you choose "Use AI" is the text read from your event document or schedule — or the file itself (PDF or image) — sent to Google's Gemini API.
- The request uses an API key that you obtain yourself. The key is stored only on your own device (in your browser's localStorage) and is never sent to us.
- Data sent to the Gemini API is handled under Google's own policies.
- If you choose "Do not use AI", no text is sent anywhere outside your browser and your own Google account.
5. Data Sharing and Third-Party Disclosure
Dropper does not sell, share, or transfer your Google user data to us or to any third party. We never receive Google user data in the first place. The data held for the Attendance tool is likewise never sold or shared with third parties.
- The only exception is when you choose "Use AI". Only then is the text read from the event document or schedule — or the file itself (PDF or image) — sent to Google's Gemini API using your own API key. This is a direct transmission between you and Google, based on your choice, and does not pass through us.
- Data sent to the Gemini API is handled in accordance with Google's Privacy Policy.
- Apart from the above, we never disclose Google user data to any advertiser, analytics provider, or other third party.
6. Data Protection
Dropper uses the following mechanisms to protect your data:
- All communication takes place over an encrypted connection (HTTPS).
- For the three tools other than the Attendance tool we store no data, so nothing of yours sits under our control to be breached. The data held for the Attendance tool is protected on Cloudflare's platform.
- Your Gemini API key and settings are stored only on your device (in the browser's localStorage) and are never transmitted to us or anyone else.
- All access to Google services and the Gemini API takes place under the authentication and authorization of your own Google account.
7. Data Retention and Deletion
For the three tools other than the Attendance tool we store nothing, so we hold none of your Google user data. Only the following information is stored on your device (in the browser's localStorage), and we cannot access it:
- Whether you chose to use the AI feature
- Your Gemini API key (only if you chose to use AI)
- Information about the destination folder
You can delete this data at any time in the following ways:
- Temporary files created for text recognition (OCR) are deleted immediately after reading.
- Events created in your Google Calendar and event documents or schedules saved to your Google Drive are managed by you and can be deleted from Google at any time (Dropper has no delete function).
- The API key and settings stored on your device can be deleted at any time from your browser settings.
- You can revoke Dropper's access to your Google account at any time from your Google Account security settings.
8. Pricing
DROPPER is provided free of charge, and we do not collect or store any payment information. If this policy changes, it will be revised and the change announced.
9. Compliance with the Google API Services User Data Policy
DROPPER's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
10. Changes to This Policy
Any changes to this policy will be posted on this page. If a change is significant, it will also be announced within the tool.
11. About the LINE official account version
The LINE official account "Dropper" reads images and PDFs sent in the chat and returns the result. For this feature only, the processing goes through our server (Google Apps Script); the browser version runs entirely on your device and does not go through our server. The handling is as follows.
- We do not store the images or PDFs you send. They are sent to Google's Gemini API for reading and discarded as soon as processing finishes.
- We do not store the extracted content (event name, dates, venue, etc.) either. It is returned to you in the reply and embedded in the link used to add the event to your calendar.
- The operator's own API key is used for these requests (in the browser version it is your own key). Because it runs within the free tier, there is a daily limit per person.
- To understand usage, we record only the date and time, the type of item sent, the result, the time taken, and a hashed string derived from your LINE user identifier (first 8 characters only). The original identifier cannot be recovered from this string.
- We do not obtain your LINE profile information (display name, profile image, phone number, etc.).
- Data sent to the Gemini API is handled according to Google's policies (same as section 4). When used within the free tier, the content sent may be used to improve Google's services.
About the Attendance tool (we do hold this data)
Of the tools in this series, only the Attendance tool stores data on our server. Attendance means several people writing from different devices and everyone seeing the same result, which cannot work inside one browser. The other three tools (Event, Schedule, Decisions) still run entirely in your browser and we receive nothing.
- What we hold: the group name, the roster (names and gender), event details (title, dates, venue), the replies, and a random id used to recognise a device.
- What we do not hold: email addresses, phone numbers, postal addresses. People replying never log in or create an account.
- Where: Cloudflare D1. Servers may be located outside Japan, so data may be transferred abroad.
- Deletion: the organiser can delete the group, roster, events and replies at any time from "Delete this group" in the admin screen. Deletion cannot be undone.
- Retention: data for groups with no activity for a long period may be deleted after notice.
- Who can see what: anyone with the shared URL (the group id) can see the roster names and the counts. Who has not replied is shown only on the organiser’s screen.
12. Analytics
Dropper uses the following tools to understand site usage for the purpose of improving the service. These handle statistical information about site browsing and are unrelated to the contents of your Google Calendar or Drive (Google user data).
- Google Analytics: collects statistics such as page views and referrers using cookies. The information collected is anonymized usage statistics and does not identify individuals. Data is handled in accordance with Google's Privacy Policy.
- Visitor counter (hits.sh): counts and displays the number of page views. It does not use cookies.
- If you do not wish to allow cookies, you can disable them in your browser settings or use the Google Analytics Opt-out Add-on.
← Back to top page