Privacy Policy
Last updated: April 24, 2026 · Effective: May 1, 2026
Amajors Inc. ("Company", "we", "our", "us") provides the Nasly mobile application ("Service"). This Privacy Policy explains how we collect, use, store, and delete your personal information. We comply with applicable laws including the Korean Personal Information Protection Act (PIPA), the EU General Data Protection Regulation (GDPR), and the California Consumer Privacy Act (CCPA/CPRA).
1. Overview
Nasly is a media player app that plays local and remote (SMB, FTP, SFTP, WebDAV, DLNA, etc.) media files on your mobile device. No account signup is required. We collect only the minimum information needed to deliver the Service. Your remote server credentials (host, username, password) are stored exclusively on your device's secure storage and never transmitted to our servers.
2. Information We Collect
2.1 Information you provide
- Remote server credentials (host, port, username, password, path) — stored only in Android Keystore on your device. Not transmitted to our servers.
- Media library configuration (registered sources, recent playback history) — stored only on your device
2.2 Anonymous information collected automatically
- Crash reports (Firebase Crashlytics): anonymous stack traces, device model, OS version, app version when a crash occurs
- Usage analytics (Firebase Analytics): Google Advertising ID, app events (launches, feature use, purchases), session duration, approximate country/region
- Billing information (RevenueCat): anonymous user ID, purchase history, subscription status. Payment processing is handled by Google Play Billing; we do not store card numbers or financial details.
2.3 When you redeem a coupon
- Coupon code, RevenueCat user ID, redemption timestamp stored in Firebase Firestore
3. Purposes of Collection and Use
- Provide the Service and enable on-device media playback
- Diagnose errors and crashes to improve quality
- Process in-app purchases, manage subscriptions, and handle refunds
- Analyze usage to improve features
- Comply with legal obligations
4. Retention and Deletion
- Remote server credentials · library: deleted when you uninstall the app
- Crash and analytics data: retained up to Firebase default (max 14 months), then automatically deleted
- Purchase records: retained for 5 years as required by Korean Electronic Commerce Act
- Deletion method: electronic files are permanently deleted in a non-recoverable manner
5. Third-Party Sharing
We do not share your personal information with third parties, except:
- With your prior consent
- When required by law or lawful request from authorities
6. Processors and International Data Transfers
We use the following processors to deliver the Service. Their servers are located outside of Republic of Korea.
| Processor | Purpose | Server Location |
| Google LLC (Firebase) | Crash reports, usage analytics, coupon database | United States |
| RevenueCat Inc. | Subscription management, receipt validation, entitlement grant | United States |
| Google LLC (Play Billing) | Payment processing | United States |
Processors handle data only within the scope of entrusted services. Their privacy policies:
7. Your Rights
You may exercise the following rights at any time:
- Right to access your personal information
- Right to correct inaccurate information
- Right to request deletion
- Right to restrict processing
- Right to data portability
Submit requests through the app settings or by email to contact@nearten.com. We respond promptly. Requests to disconnect your anonymous Firebase/RevenueCat IDs can be submitted through the same channel.
8. Security Measures
- Remote server passwords stored in Android Keystore (hardware-backed encryption)
- TLS encryption for all transit (Firebase, RevenueCat, Play Billing)
- Least-privilege access for processors
- Crash and analytics data pseudonymized to exclude identifiable information
9. Children's Privacy
Nasly is intended for users aged 14 and older. We do not knowingly collect personal information from children under 14. If we become aware of such collection, we delete it promptly.
10. Notice to EU Residents · GDPR
For users in the EU, the Company acts as Data Controller under GDPR and guarantees the following rights:
- Right of access
- Right to rectification
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing based on legitimate interests
- Right to lodge a complaint with your national data protection authority
Legal bases for processing: performance of contract (GDPR Art. 6(1)(b)), legitimate interests (GDPR Art. 6(1)(f)), legal obligations (GDPR Art. 6(1)(c)).
EU residents may exercise rights by emailing contact@nearten.com.
11. Notice to California Residents · CCPA/CPRA
- Categories of information collected in the past 12 months: identifiers (anonymous ID, advertising ID), internet activity (app usage events), geolocation (approximate region), commercial information (purchase history)
- Purposes: Service delivery, quality improvement, payment processing
- We do not "sell" or "share" personal information as defined by CCPA/CPRA
- Your rights: right to know, right to delete, right to opt-out, right to non-discrimination
To exercise your rights: contact@nearten.com
12. Data Protection Officer / Privacy Contact
13. Remedies for Privacy Violations (Korean Users)
To seek remedies for privacy violations, contact:
- Personal Information Dispute Mediation Committee (kopico.go.kr, 1833-6972)
- Korea Internet & Security Agency Privacy Center (privacy.kisa.or.kr, 118)
- Supreme Prosecutors' Office (spo.go.kr, 1301)
- Korean National Police Agency (ecrm.cyber.go.kr, 182)
14. Changes to This Policy
We will notify users of material changes through in-app announcements and this page. Material changes take effect 7 days after the notice date.