개인정보 처리방침
서비스명: 오잉 (OING) · 최종 수정일: 2026-10-02
이 게임은 이름·전화번호·이메일을 받는 회원가입이 없습니다. 오잉 랭킹과 젤리 기능을 제공하기 위해 토스가 발급한 게임 전용 익명 키를 확인하고, 이를 다시 일방향 변환한 내부 식별자와 게임 기록을 보관합니다. 저장 항목과 사용 목적은 아래에 적었습니다.
1. 수집하지 않는 정보
이 게임은 아래 정보를 직접 요구하거나 보관하지 않습니다.
- 이름, 이메일, 전화번호 등 이용자를 식별할 수 있는 정보
- 기기 식별자(광고 ID 등), 위치 정보, 연락처, 사진, 파일
- 토스 계정 원문, Google 계정 원문, 결제 정보
분석 SDK와 별도 소셜 로그인은 사용하지 않습니다. 플랫폼 랭킹·광고·공유에서 처리되는 정보는 5항에 적었습니다.
2. 기기 안에만 저장되는 정보
게임 기록과 설정의 사본은 이용자의 기기 브라우저 저장소(localStorage)에 저장됩니다. 아래 표의 로컬 기록 전체는 개발자 서버로 전송되지 않습니다. 다만 오잉 랭킹에 참여하는 토스·Android 이용자는 한 판의 점수와 부정 이용 판정에 필요한 최소 플레이 수치가 3항에 따라 전송됩니다. 토스 또는 Google Play의 플랫폼 랭킹에는 최종 점수만 5항에 따라 전송될 수 있습니다.
| 항목 | 내용 |
| 게임 기록 | 최고 점수, 최근 점수, 최고 콤보, 도달 스테이지, 모은 고양이 수, 열어본 그림 목록 |
| 설정 | 배경음악·효과음 켜짐/꺼짐 |
| 진행 상태 | 튜토리얼을 봤는지 여부, 결과 화면 문구 중복 방지 기록 |
| 프로모션 진행 상태 | 프로모션 시작 후 완료한 판 수와, 첫 판·3판 포인트를 중복으로 요청하지 않기 위한 시도·완료 여부 |
| 플레이 통계 | 한 판의 선택 횟수·성공 횟수·사용한 아이템 수 등 익명 수치와 화면 크기. 난이도 조정을 위한 것이며 최근 50판까지만 기기에 남습니다. |
이 정보에는 이용자를 식별할 수 있는 내용이 포함되지 않습니다.
3. 오잉 랭킹 서버에 저장되는 정보
오잉 랭킹과 젤리를 사용하는 토스·Android 이용자에 한해 아래 정보를 저장합니다.
| 항목 | 내용과 목적 |
| 익명 계정 키 | 토스가 이 게임에만 발급한 익명 키를 토스 서버에서 확인한 뒤, 다시 일방향 변환한 내부 키. 동일 이용자의 기록·지갑을 연결하고 중복 지급을 막는 데 사용합니다. 토스 익명 키 원문은 저장하지 않습니다. Android에서는 Firebase Authentication이 발급한 설치별 익명 ID를 서버에서 검증하고 별도의 내부 키로 변환해 같은 랭킹에 참여합니다. 랭킹에는 Firebase UID 원문을 저장하지 않으며 토스 계정과 자동 합치지 않습니다. 앱 삭제·데이터 초기화 시 설치 ID가 달라질 수 있습니다. |
| 공개 랭킹 기록 | 자동 생성 또는 이용자가 직접 정한 별명, 최고점수, 달성 시각, 순위. 다른 이용자에게 랭킹으로 공개됩니다. 별명은 최초 설정 후 30일에 한 번 변경할 수 있습니다. |
| 저장한 친구 | 랭킹에서 이용자가 직접 친구로 저장한 내부 익명 계정 간 연결. 친구끼리 이번 주 기록을 비교하는 데 사용하며, 연락처·실명·전화번호는 받거나 저장하지 않습니다. |
| 플레이 판정 기록 | 한 판의 점수, 소요시간, 성공 횟수·시각, 도달 판, 최고 콤보. 비정상적으로 빠르거나 높은 기록을 자동 반영하지 않고 검토 상태로 두는 데 사용합니다. |
| 보안용 접속 정보 | 과도한 반복 요청과 비용 공격을 막기 위해 IP 주소별 요청 횟수를 서버 실행 메모리에서만 세며, 데이터베이스에는 저장하지 않고 최대 약 2분 안에 삭제합니다. Firebase 등 인프라 제공자의 기본 접속 로그는 해당 제공자의 정책에 따라 처리될 수 있습니다. |
| 젤리·꾸미기 | 젤리 잔액, 지급·사용 원장, 구매·장착한 꾸미기. 중복 지급과 이중 차감을 막고 기기가 바뀌어도 상태를 복원하는 데 사용합니다. |
위 정보는 서비스 제공 기간 동안 또는 삭제 요청을 처리할 때까지 보관합니다. 부정 이용 조사나 관계 법령에 따른 보관 의무가 있는 경우에는 필요한 범위와 기간에 한해 보관할 수 있습니다.
4. 저장 정보의 삭제
기기 안의 기록은 아래 방법으로 삭제할 수 있습니다.
- 브라우저에서 이 사이트의 데이터(쿠키 및 사이트 데이터)를 삭제
- 앱으로 설치한 경우, 앱을 삭제하거나 앱 정보에서 저장공간 데이터를 삭제
오잉 랭킹 서버의 기록·젤리·꾸미기 삭제는 9항의 이메일로 요청할 수 있습니다. 삭제 시 랭킹 기록과 젤리·구매 상태는 복구할 수 없습니다.
5. 플랫폼 기능에서 오가는 정보
이 게임은 토스 미니앱과 Google Play 앱으로 제공됩니다. 아래 기능이
처리하는 정보는 토스 또는 Google의 개인정보 처리방침을 따릅니다.
플랫폼 사업자가 자체적으로 처리하는 정보는 이 게임이 별도로 받거나 보관하지 않습니다. 오잉 랭킹 서버에 저장되는 정보는 3항과 같습니다.
| 기능 | 오가는 정보 |
| 오잉 랭킹·젤리 |
토스가 이 게임에만 발급한 익명 키를 서버에서 확인하고, 3항의
랭킹·플레이 판정·젤리 정보를 오잉 서버에 저장합니다. 익명 키
원문은 확인 직후 일방향 변환하며 데이터베이스에 저장하지 않습니다.
|
| 토스 게임 랭킹 |
한 판이 끝날 때 그 판의 점수만 토스 게임센터로
보냅니다(판당 1회). 이름·닉네임·기기 정보는 이 게임이 보내지
않습니다. 랭킹 화면은 토스가 그립니다.
|
| Google Play 게임 랭킹 |
Google Play 앱에서는 한 판이 끝날 때 그 판의 점수만
Google Play Games 서비스로 보냅니다(판당 1회). 랭킹 참여와 표시에는
이용자의 Google Play 게임 프로필이 사용될 수 있으며, 이 게임은
프로필 이름이나 계정 정보를 자체 서버에 저장하지 않습니다.
랭킹 화면은 Google Play Games가 제공합니다.
|
| 보상형·전면형 광고 |
이용자가 스스로 "광고 보고 이어하기" 또는 "광고 보고 도움팩
받기"를 눌렀을 때만 보상형 광고가 실행됩니다. Google Play 앱은 Google AdMob SDK를 사용하며, 필요한 동의를 확인한 후에만 광고를 요청합니다. 광고 노출과
관련한 처리는 토스와 광고 제공사(Google AdMob)가 담당하며,
이 과정에서 광고 식별자가 사용될 수 있습니다. 이 게임은 광고가
"끝까지 재생됐다"는 신호만 받아 보상을 지급합니다. 전면형 광고는
두 판 이상을 완료한 뒤 결과 화면에서 "한 판 더" 또는 "홈으로"를 누르는 자연스러운
전환 시점에 노출될 수 있으며, 플레이 도중에는 나타나지 않습니다. Android 앱에서는 첫 3분 동안 전면광고를 표시하지 않고, 전면광고 사이와 보상형 광고 이후 최소 3분 간격을 두며 앱 실행 세션당 최대 3회로 제한합니다. 필요한 경우 설정의 광고 개인정보 설정에서 동의 선택을 다시 변경할 수 있습니다.
|
| 토스 포인트 프로모션 |
프로모션이 진행 중일 때 첫 판 또는 3판 완료 조건을 달성하면
약속된 포인트를 지급하기 위해 프로모션 코드와 지급액을 토스에 보냅니다.
이 게임은 이용자의 이름·계정 정보를 받거나 저장하지 않으며, 기기 안에
중복 요청 방지용 시도·완료 상태만 남깁니다.
|
| 공유하기 |
이용자가 공유 버튼을 눌렀을 때만 토스의 공유 화면이 열립니다.
보낼 상대를 고르고 전송하는 일은 전부 토스 화면에서 이루어지며,
이 게임은 공유할 글과 링크를 전달할 뿐 받는 사람의 정보를
알지 못합니다.
|
| 친구 초대 리워드 |
이용자가 "친구 초대하고 힌트 받기"를 눌렀을 때만 토스의 초대
화면이 열립니다. 이때 토스는 초대할 상대를 고르기 위해 이용자의
연락처 목록을 불러올 수 있으며, 그 처리는 토스의 개인정보
처리방침을 따릅니다. 이 게임은 연락처 접근 권한을 따로 요청하지
않고, 연락처의 내용을 받지도 저장하지도 않습니다. 이 게임이
받는 값은 "초대가 완료되었다"는 결과와 지급할 보상 수량뿐입니다.
|
Google Mobile Ads SDK는 광고 제공·성과 측정·부정 이용 방지를 위해 IP 주소(대략적 위치 추정), 기기·광고 식별자, 광고 상호작용과 앱 성능 진단 정보를 처리할 수 있습니다. 오잉 서버는 이러한 SDK 기록을 별도로 저장하지 않습니다. Google 개인정보 처리방침.
6. 그 밖의 네트워크 통신
게임 실행 파일(HTML, 이미지, 글꼴, 음악)을 내려받는 통신과 3·5항의
기능을 위한 통신이 발생합니다. 오잉 랭킹 서버에 연결할 수 없어도 게임과
결과 화면은 정상 진행되고, 점수·젤리 동기화만 보류됩니다. 이미 내려받아
저장된 화면과 파일의 범위 안에서는 네트워크 없이도 플레이할 수 있습니다.
처음 열어보는 화면이나 아직 받지 않은 배경·소리는 연결이 필요할 수 있고,
온라인 랭킹·광고·공유는 연결이 필요합니다.
7. 연령대와 광고 개인정보 보호
Android 앱은 첫 실행에 “만 18세 미만”, “만 18세 이상”, “선택하지 않음” 중 연령대를 선택하게 합니다. 미리 선택된 답은 없으며, 생년월일·실명은 받지 않습니다. 연령대는 기기의 앱 설정 저장소에만 저장하며 개발자 랭킹 서버로 보내지 않습니다. 설정의 “광고 연령대 설정”에서 변경할 수 있고, 앱 데이터를 지우거나 삭제하면 이 선택도 지워집니다.
만 18세 미만 또는 연령 미확인을 선택하면 Android Google 광고 요청에 보호 연령 처리(CHILD), 비개인화 처리와 G등급 광고 제한을 적용하고 UMP에는 동의 연령 미만으로 표시합니다. 광고 식별자 전송·개인맞춤 광고에 대한 Google SDK의 보호 처리를 사용합니다. 이는 모든 이용자의 실제 나이를 확인하거나 국가별 법적 요건 전체를 보장한다는 뜻은 아닙니다.
성인 선택은 개인정보 동의가 아닙니다. Android에서는 UMP로 필요한 지역의 동의 상태를 확인하고, 광고 요청이 허용된 후에만 광고를 요청합니다. 성인 광고의 개인맞춤 여부는 이용자의 동의와 Google 정책에 따릅니다. 필요한 경우 설정의 “광고 개인정보 설정”에서 거부·변경·철회할 수 있습니다. 연령대 변경 시 기존 광고를 버리고 광고·동의 설정을 다시 평가하며, 확인에 실패하면 광고를 요청하지 않습니다.
토스 앱의 광고·동의 처리는 토스 플랫폼의 제공 기능과 정책에 따르며, 위 Android 연령 선택을 토스 앱에 적용하지 않습니다. 게임은 실명·전화번호·이메일 입력을 요구하지 않으며 공개 별명에 연락처를 넣지 않도록 제한합니다.
8. 처리방침의 변경
내용이 변경되는 경우 이 페이지를 통해 공지하며, 변경일을 상단에 표시합니다.
9. 문의 및 삭제 요청
개인정보 처리에 관한 문의는 아래로 연락해 주시기 바랍니다.
이메일: takea@naver.com
Privacy Policy
Service: OING · Last updated: October 2, 2026
OING does not require an account with your name, phone number, or email address. To provide OING rankings and Jelly features, we verify an app-specific anonymous key issued by Toss, transform it one-way into an internal identifier, and store the game records described below. Android uses a verified Firebase Authentication anonymous installation ID to participate in the same rankings without a sign-up screen. Reinstalling or clearing app data can create a new installation ID; Android and Toss identities remain separate.
1. Information we do not collect
We do not directly request or store your name, email address, phone number, advertising ID, location, contacts, photos, files, raw Toss or Google account details, or payment information. We do not use a separate analytics SDK or social login.
2. Information stored only on your device
A copy of your settings and game progress is stored in your browser's localStorage. This includes best and recent scores, combos, reached stages, collected cats and scenes, sound settings, tutorial state, promotion progress, and anonymous gameplay statistics from up to the latest 50 runs. These local records are not sent to the developer's server as a whole. Ranking participants may send the limited data described in section 3.
3. Information stored on the OING ranking server
For Android and Toss users who use OING Ranking or Jelly, we may store:
- Internal anonymous account ID: a one-way transformation of the app-specific anonymous key verified by Toss. Android uses a Firebase Authentication anonymous installation ID, verified on the server and transformed into a separate internal identifier. The original Toss key and Firebase UID are not stored in ranking records. Android and Toss accounts are not automatically merged.
- Public ranking record: an automatically generated or user-selected nickname, best score, achieved time, and rank.
- Saved friends: links between anonymous internal accounts selected by the user. We do not receive contacts, real names, or phone numbers.
- Play validation data: score, run duration, successful clears and timestamps, reached round, and best combo, used to detect abnormal records.
- Security request data: request counts are grouped by IP address in temporary function memory to limit abusive traffic and cost attacks. They are not written to the database and are deleted within about two minutes. Infrastructure providers such as Firebase may process standard access logs under their own policies.
- Jelly and customization data: balance, transaction history, purchased items, and equipped items.
We retain this information while the service is provided or until a deletion request is completed, unless a longer period is required for fraud investigation or by law.
4. Deleting stored information
You can remove on-device information by clearing this site's browser data, uninstalling the app, or clearing the app's storage. To delete OING server ranking, Jelly, and customization data, email the address in section 9. Deleted ranking and purchase state cannot be restored.
5. Platform features and third parties
- Shared OING rankings: Android uses Firebase Authentication anonymous sign-in. Firebase handles installation authentication and the server verifies ID tokens before accepting run tickets and scores. Public rankings display the nickname and accepted scores, not the Firebase UID. Firebase privacy information.
- Toss and Google Play rankings: after a run, only the score is submitted once to the relevant platform leaderboard. Google Play Games may use your Play Games profile to show its leaderboard; OING does not store that profile information on its server.
- Ads: rewarded ads run only after you choose an ad-based reward. Interstitial ads may appear at a natural transition after at least two completed runs, never during active play. On Android, interstitials are suppressed for the first three minutes, require a three-minute gap after any full-screen ad, and are limited to three per app session. When required, use Ad privacy choices in Settings to change your consent. Toss, Google AdMob, or their partners may process an advertising identifier; OING receives only the completion signal needed to grant a reward.
- Toss Points promotions: when an active promotion requirement is met, OING sends the promotion code and reward amount to Toss. Only duplicate-request state is retained on the device.
- Sharing and invitations: these features open the platform or browser share interface only after you choose them. OING does not receive the recipient's information or contact list.
These platform services are also governed by the privacy policies of Toss, Google, and the applicable advertising providers.
Google Mobile Ads SDK may process IP address (to estimate general location), device and advertising identifiers, ad interactions and app performance diagnostics to deliver ads, measure performance and prevent fraud. The SDK privacy controls govern these uses; OING does not retain those SDK records on its server. Google Privacy Policy.
6. Other network communication
The app downloads its HTML, images, fonts, and audio and communicates for the services described above. If the OING ranking server is unavailable, gameplay and results continue, while score and Jelly synchronization may be delayed. Online rankings, ads, and sharing require a network connection.
7. Age range and advertising privacy
On first launch, Android asks you to choose “Under 18”, “18 or older”, or “Prefer not to say”, with no answer preselected. We do not ask for a birth date or real name. The age range is stored only in the app's settings on your device and is not sent to the developer's ranking server. You can change it using “Ad age range” in Settings. Clearing app data or uninstalling removes this choice.
For under-18 or undisclosed age ranges, Android Google ad requests use protective CHILD age treatment, non-personalized treatment and a G ad-content limit. UMP is also told to treat the user as below the age of consent. We use Google's SDK safeguards for advertising-identifier transmission and personalized ads. This does not verify every user's actual age or guarantee all legal requirements in every country.
Selecting an adult age range is not privacy consent. Android checks regional consent with UMP and requests ads only after ad requests are allowed. Adult ad personalization depends on your consent and Google's policies. Where required, “Ad privacy choices” in Settings lets you reject, change or withdraw consent. Changing the age range discards cached ads and reassesses ad and consent settings; unsuccessful checks do not allow ad requests.
Toss advertising and consent use the Toss platform's features and policies; the Android age selection is not applied to Toss. OING does not ask for a real name, phone number or email address and restricts contact details in public nicknames.
8. Changes to this policy
Changes will be posted on this page, with the updated date shown above.
9. Contact and deletion requests
For privacy questions or deletion requests, contact takea@naver.com.