mykura
  • Top
  • MeCloud
  • くらちゃん
  • Use Cases
  • Store
  • About Us
  • News
  • Support
JP / EN / 中文

mykura

プライバシーポリシー

最終更新日:2026年7月29日

本プライバシーポリシーは、Initial S株式会社(以下「Initial S」または「当社」といいます)が、mykura、くらちゃん、MeCloudデバイス、当社ウェブサイトおよび関連サービス(以下、総称して「本サービス」といいます)をご利用いただく際に、情報をどのように収集、利用、開示、保存および保護するかを説明するものです。

目次

  1. 適用範囲と処理の概要
  2. 本サービスの基本処理
  3. コミュニケーションチャネルでの処理
  4. 外部連携サービスでの処理
  5. AI処理とプロバイダーの選択
  6. 情報の利用目的
  7. 保存場所と保存期間
  8. 情報の開示
  9. 国際的なデータ移転
  10. セキュリティ
  11. お客様の選択肢と権利
  12. 子どものプライバシー
  13. 本ポリシーの変更
  14. お問い合わせ

1. 適用範囲と処理の概要

本サービスは、MeCloudデバイス上で動作するソフトウェアと、クラウドサービスおよび第三者サービスを組み合わせて提供されます。一部の情報はお客様のデバイス内に保持されますが、ご利用になる機能に必要な場合には、その他の情報がクラウド基盤またはサービスプロバイダーへ送信されます。

本ポリシーでは、情報処理をその処理が発生する機能別に分類します。

処理区分適用される場合主な送信・処理先
本サービスの基本処理登録、デバイスの接続、サブスクリプションの維持、クラウド基盤の利用、サポートの依頼、または本サービスの運用時MeCloud、Initial S、AWS、Stripe、Resendおよびその他の運用事業者
コミュニケーションチャネルでの処理LINE、Slack、Telegram、WeChat/Weixinまたはその他のチャネルを通じてくらちゃんとやり取りする場合チャネル事業者、MeCloud、およびLINEの場合はInitial SのAWS環境
外部連携サービスでの処理Google、Microsoft、GitHubまたはその他の対応サービスとの連携を許可する場合連携先サービス、MeCloudおよびInitial SのAWS認証基盤
AI処理会話、検索、認識、抽出、文字起こし、要約またはナレッジ整理機能を利用する場合Kura AI、お客様が選択したAIプロバイダー、または機能固有のAWSもしくは第三者サービス

お客様自身のAIプロバイダーを選択すると、通常のAIリクエストの送信経路が変わります。ただし、本サービスの基本処理、コミュニケーションチャネルでの処理、外部連携サービスの認証、または各機能で別途必要となるAWS上の処理が無効になるわけではありません。

2. 本サービスの基本処理

本サービスの基本処理は、アカウント、デバイス、サブスクリプション、セキュリティ、サポートおよび本サービスの運用を支えるものです。ご利用になる機能に応じて、当社は次の情報を処理します。

  • 氏名、メールアドレス、アカウント識別子、認証情報、アカウント状態などのアカウント情報
  • サブスクリプション、プラン、請求、請求書、取引および決済に関する識別子(カード情報は決済事業者が処理します)
  • デバイス識別子および名称、ソフトウェアバージョン、デバイス証明書、接続状態、デバイスとアカウントの関連情報
  • IPアドレス、ブラウザおよびOS情報、タイムスタンプ、ウェブサイト上の操作、機能利用状況、利用上限、性能、エラー、セキュリティおよび診断情報
  • サポート依頼、フィードバック、関連する連絡先情報、ならびに関連するアカウントまたはチャネル識別子
  • メッセージ、ファイル、画像、音声、動画、指示およびそれらから得られる情報(お客様が当該コンテンツを機能に送信した場合)

当社は、アカウント認証、デバイス登録および接続、サブスクリプションおよび利用量の管理、クラウドストレージ、セキュリティならびに関連する運用サービスにAWSを利用します。Stripeは決済を処理し、顧客、サブスクリプション、請求書および取引の識別子を当社へ提供することがあります。フィードバックまたはお問い合わせを送信した場合、当社のAWSサービスは、お問い合わせ内容、アカウントID、メールアドレス、プラン、関連するLINE識別子およびタイムスタンプを処理し、Resendがお問い合わせを当社サポートチームへ配信することがあります。

くらちゃんは、ユーザーファイル、会話状態、メモリ、検索インデックスおよび構造化レコードもMeCloudデバイス上に保存します。派生レコードには、名刺から抽出された連絡先情報など、送信されたコンテンツから抽出した情報が含まれる場合があります。派生レコードは、元の画像またはファイルとは別にデバイス上へ残ることがあり、製品に個別の削除機能がある場合は別途削除する必要があります。

3. コミュニケーションチャネルでの処理

お客様は、LINE、Slack、TelegramまたはWeChat/Weixinなどのサービスを通じてくらちゃんとやり取りできます。チャネル事業者は、お客様のメッセージおよびファイルがくらちゃんへ届く前にそれらを処理し、くらちゃんからの返信がお客様へ届く前にもその返信を処理します。

チャネルごとの処理方法は次のとおりです。

  • LINE:くらちゃんは、LINE Messaging APIを使用したLINE公式アカウントを通じてお客様とやり取りします。受信および送信されるメッセージとファイルはInitial SのAWS基盤を経由します。この中継処理では、メッセージ内容およびメタデータ、LINEのユーザーおよび会話識別子、デバイスおよびアカウント識別子、返信および引用情報、配信状態ならびにファイル参照情報が処理されます。LINEとMeCloudデバイスの間で転送される間、ファイルがAmazon S3に一時保存されることがあります。
  • Slack、TelegramおよびWeChat/Weixin:くらちゃんは通常、MeCloudデバイスからチャネル事業者へ直接接続します。ただし、該当するクラウド機能またはAI機能を利用した場合、コンテンツがInitial SのAWS環境またはAIプロバイダーへ送信されることがあります。
  • その他のチャネル:処理経路は連携方法によって異なります。新しいチャネルによって当社のデータ取扱いが重要な変更を受ける場合、当社は本ポリシーを更新します。

お客様自身のAIプロバイダーを利用しても、チャネルの処理経路を迂回することにはなりません。特にLINEのメッセージおよびファイルは、通常のAIプロバイダーの選択が適用される前に、引き続きInitial SのAWS中継を経由します。

Initial Sの担当者が、お客様のLINEチャット履歴を日常的に閲覧することはありません。メッセージ履歴に関する調査またはサポートをお客様から明示的に依頼された場合に限り、権限を付与された担当者が、その依頼を遂行するために合理的に必要な範囲の履歴へ手動でアクセスし、処理することがあります。また、法令により求められる場合、またはセキュリティインシデントの調査もしくは対応に合理的に必要な場合には、限定的なアクセスを認めることがあります。

チャネルの利用には、各事業者のプライバシーポリシーおよび利用規約も適用されます。勤務先、学校またはその他の組織から提供されたチャネルでは、その所有者または管理者が、独自のポリシーに基づいてメッセージを管理、閲覧、エクスポートまたは保存できる場合があります。お客様は、ご自身のアカウントまたはワークスペースに適用される規則を確認する責任を負います。

詳細は、LINEプライバシーポリシー、Slackプライバシーポリシー、TelegramプライバシーポリシーおよびTencentのプライバシーポリシーをご確認ください。

4. 外部連携サービスでの処理

第三者サービスを連携するかどうか、およびどの権限を付与するかは、お客様が選択します。当社は、連携を維持し、お客様が依頼した操作を実行するために必要なアカウント、認証、権限範囲、サービスおよび接続状態に関する情報を処理します。

GoogleおよびMicrosoftとの連携では、Initial SのAWSサービスが更新トークンと関連する接続メタデータを保存し、有効期間の短いアクセストークンをお客様のデバイスへ提供します。GitHubでは、AWSサービスがインストールおよびアカウントのメタデータを保存し、有効期間の短いインストールトークンを生成します。通常、お客様のデバイスはこれらのトークンを使用し、認可されたコンテンツを連携先事業者から直接取得します。

取得したコンテンツは通常、MeCloudデバイス上で処理または保存されます。AI機能を使うタスクにお客様が選択したコンテンツは、第5条に従い、Kura AIまたはお客様が設定したAIプロバイダーへ送信されることもあります。

Google APIから取得した情報の利用および移転は、限定的利用(Limited Use)要件を含むGoogle API Services User Data Policyに従います。当社はGoogleユーザーデータを広告目的で利用しません。人によるアクセスは、同ポリシーで認められる場合に限定されます。

Microsoftの情報は、お客様が付与した権限および依頼した機能に従って処理されます。Microsoftプライバシーステートメントをご確認ください。

GitHubの情報は、お客様が付与した権限またはインストールアクセス、および依頼した機能に従って処理されます。GitHub一般プライバシーステートメントをご確認ください。

サービスの連携を解除すると、その後のアクセスは停止しますが、デバイスに保存済みのコピー、保存期間が適用される記録、または連携先事業者が独自に保有する情報が自動的に削除されるわけではありません。

5. AI処理とプロバイダーの選択

AIを利用する処理には、通常の会話およびツール利用、画像および文書の理解、構造化抽出、埋め込みおよびセマンティック検索、文字起こしおよび要約、ならびにナレッジ整理機能による文書およびメモリの整理が含まれます。処理されるコンテンツは機能によって異なり、プロンプト、会話履歴、システム指示、ツール定義、ツール呼び出しおよびその結果、画像、ファイル、音声、文字起こし結果、検索クエリ、タスク用に選択された外部連携サービスのコンテンツ、モデル設定、ならびにアカウントまたはデバイス識別子が含まれる場合があります。

Kura AI

「Kura AI」とは、AWS上で稼働するブローカーおよびAmazon Bedrockを通じて呼び出されるモデルを含め、Initial Sがクラウド基盤を通じて提供するAIサービスをいいます。Kura AIで通常の会話を行うと、リクエストに関係するコンテンツが当該ブローカーへ送信され、結果がお客様のデバイスへ返されます。Initial SのAWSアプリケーションは、第7条の記載に従い、リクエスト、レスポンス、利用状況および診断記録を保存することがあります。

通常の会話に使用するAIプロバイダーを別のものに設定している場合でも、機能固有の一部処理にはKura AIが使用されます。

お客様自身のAPIキー

お客様自身のAIプロバイダーの認証情報を設定した場合、通常のAIリクエストは原則としてMeCloudデバイスからお客様が設定したプロバイダーのエンドポイントまたはプロキシエンドポイントへ直接送信され、Kura AIブローカーを経由しません。くらちゃんは、その認証情報をデバイス設定に保存します。

リクエストの内容に応じて、お客様のプロバイダーは、プロンプト、会話履歴、システム指示、ツール定義、ツール呼び出しおよびその結果、画像、ファイル、その他お客様が選択したコンテンツを受信する場合があります。当該プロバイダーにおけるログ、保存期間、モデル学習、セキュリティおよび国際移転の取扱いには、その利用規約、プライバシーポリシー、契約、アカウント設定、およびお客様が設定したプロキシが適用されます。お客様は、認証情報を保護および失効させること、ならびに選択したコンテンツを送信する権限があることを確認する責任を負います。

お客様自身のAPIキーを使用してもAWSを利用する機能

お客様自身のAPIキーが置き換えるのは、該当する通常のAIモデルへのリクエストのみです。次の処理経路は別途維持されます。

機能引き続き行われる処理
写真のインデックス化およびセマンティック検索を含む、画像またはテキストの埋め込み処理用に準備された画像のコピー、検索クエリまたは選択されたテキストがInitial SのAWS埋め込みサービスへ送信され、同サービスがAmazon Bedrockを通じて埋め込みモデルを呼び出します。返されたベクトルおよびインデックスはお客様のデバイスに保存されます。
ナレッジ整理機能による整理選択された文書、メモリまたはWikiのテキスト、および整理指示がKura AIブローカーを経由してAmazon Bedrockへ送信されます。
写真内文書の認識処理用に準備された文書画像および認識指示がKura AIブローカーを経由してAmazon Bedrockへ送信されます。
構造化レコードの抽出レシートや名刺などのレコード作成に使用する画像または抽出済みテキストがKura AIブローカーを経由してAmazon Bedrockへ送信されます。
音声または動画の文字起こし元のメディアがAmazon S3へ一時的にアップロードされ、AssemblyAIが利用できる状態になります。結果はInitial SのAWSサービスを経由して返されます。
文字起こし結果の要約文字起こしテキストおよび要約指示がKura AIブローカーを経由してAmazon Bedrockへ送信されます。

LINE音声メッセージの場合、Initial SのAWSサービスがLINEから音声を取得し、AssemblyAIへ送信して文字起こし結果を受け取り、その結果をお客様のデバイスへ転送することがあります。AssemblyAIにおける学習利用および保存期間は、適用される契約およびアカウント設定によって異なります。同社のプライバシーポリシーおよびデータ保存とモデル学習に関する文書をご確認ください。

当社は、お客様のコンテンツを、Initial Sが開発または運用するAIモデルの学習には使用しません。

Initial Sは、プロファイリング、広告、適格性判断、またはお客様が依頼した機能と無関係なその他の目的のために、お客様のコンテンツからセンシティブな個人情報をAIで推測または導出しません。お客様が、センシティブな個人情報を含むコンテンツの認識、抽出、文字起こし、要約、整理またはその他の処理をKuraに明示的に依頼した場合、AI処理は、その依頼を実行するために必要な範囲でのみ、当該情報を識別または導出することがあります。

第三者のAIおよび文字起こし事業者は、それぞれの利用規約、契約、アカウント設定およびプライバシー慣行に基づいてコンテンツを処理します。学習利用および保存期間の取扱いは事業者ごとに異なる場合があります。

6. 情報の利用目的

当社は、次の目的で情報を利用します。

  • アカウント、サブスクリプション、接続デバイス、チャネルおよび外部連携サービスの作成および管理
  • メッセージ、ファイルおよび依頼された結果の受信、転送、処理および配信
  • 本ポリシーに記載するAI機能およびクラウド支援機能の実行
  • 決済処理ならびに機能または利用上限の適用
  • サポートの提供およびフィードバックへの対応
  • エラーの診断、本サービスの保護、不正利用の防止および信頼性の維持
  • 利用状況を集計して把握し、本サービスを改善すること
  • 法令遵守および当社契約の履行・執行

Initial Sは、お客様の個人情報を販売しません。

7. 保存場所と保存期間

以下の期間は、現在の製品の動作を示すものです。期限切れや削除の完了には追加の時間を要する場合があります。また、セキュリティ、不正防止、紛争解決、法令遵守、または法的請求の立証もしくは防御のために合理的に必要な場合、当社は情報をより長期間保存することがあります。

データ保存場所通常の保存期間
くらちゃんが保存するユーザーファイル、外部連携サービスのコンテンツ、会話状態、メモリ、インデックスおよび派生した構造化レコードMeCloudデバイスお客様が該当データを削除、デバイスをリセット、または該当機能のデータを削除するまで。元ファイルを削除しても、別途保存された派生レコードが必ずしも削除されるとは限りません。
送受信ペイロードを含むローカルのチャネル診断ログMeCloudデバイス約30日間
転送、返信先の解決およびサポートに使用されるLINEメッセージログAWS約7日間
LINEで返信先を一時管理するデータAWS約30分間。一部の音声転送コンテキストは約1時間
LINE中継ファイルおよび配信用にアップロードされたファイルAmazon S3約1日後にライフサイクル期限切れ
文字起こし処理用にアップロードされたメディアAmazon S3約1日後にライフサイクル期限切れ
文字起こしジョブのメタデータAWS約7日間
通常のサイズのリクエストおよびレスポンス内容、利用状況、診断項目を含むKura AIリクエスト台帳AWS約90日間
ユーザーが設定したAIプロバイダーの認証情報MeCloudデバイス設定削除、置換、または該当するデバイス設定が削除されるまで
OAuth接続の認証情報およびメタデータAWS連携を解除するか、当社へ削除を依頼するまで。ただしバックアップ、セキュリティおよび法的要件が適用されます。
アカウント、デバイス、サブスクリプション、請求、サポート、セキュリティおよび運用に関する記録AWSおよび関連するサービスプロバイダー本サービスの提供に必要な期間、およびその後も本ポリシー記載の目的に合理的に必要な期間

運用ログには、識別子、エラー、リクエストまたはレスポンスに関する情報が含まれる場合があります。当社は、運用、セキュリティまたはサポートのために必要とする担当者およびサービスプロバイダーにアクセスを限定します。

チャネル事業者、外部連携サービス、決済事業者、AIプロバイダーおよびその他の第三者が保有するデータには、各事業者のポリシーおよびお客様の設定に基づく保存期間が適用されます。

8. 情報の開示

当社は、次の場合に情報を開示することがあります。

  • 当社のために情報を処理するAWSおよび各事業者(決済を行うStripe、文字起こしを行うAssemblyAI、サポートメールを配信するResendを含みます)への開示
  • お客様のメッセージを受信または配信するためのコミュニケーションチャネル事業者への開示
  • お客様の依頼を実行するために必要な場合に、お客様が選択したAIプロバイダーへの開示
  • くらちゃんにアクセスまたは更新を指示した外部連携サービスへの開示
  • チャネルまたは外部連携サービスが組織によって管理されている場合に、ワークスペースの所有者または管理者への開示
  • 法令で義務付けられる場合、または権利、安全、セキュリティおよび本サービスの完全性を保護するために合理的に必要な場合
  • 適切な通知および保護措置を条件として、合併、資金調達、買収、組織再編、破産または資産売却に関連する開示
  • お客様の指示または同意に基づく開示

当社は、お客様の個人情報を販売または貸与しません。

9. 国際的なデータ移転

Initial Sは日本に所在します。当社のサービスプロバイダーならびにコミュニケーション、AI、文字起こし、決済および外部連携サービスの各事業者は、日本、米国およびその他の国で情報を処理することがあります。これらの国では、お客様の居住地とは異なるプライバシー法が適用される場合があります。必要な場合、当社は国際移転について適切な契約上またはその他の保護措置を講じます。

10. セキュリティ

当社は、アクセス制御、暗号化されたネットワーク通信、非公開クラウドストレージ、対応している場合の有効期間の短いアクセストークン、およびAWS IoT接続用のデバイス認証情報など、情報を保護するために設計された技術的および組織的な安全管理措置を講じます。ただし、完全に安全な通信または保存システムは存在せず、絶対的な安全性を保証することはできません。

お客様は、MeCloudデバイス、チャネルおよび外部連携サービスのアカウント、認証情報、ネットワークならびにワークスペース権限を保護する責任を負います。ソフトウェアを最新の状態に保ち、強固で固有のパスワードを使用し、利用可能な場合は多要素認証を有効にしてください。

11. お客様の選択肢と権利

お客様の居住地によっては、個人情報へのアクセス、訂正、削除、処理制限、異議申立てまたはデータポータビリティを求める権利、および処理が同意に基づく場合に同意を撤回する権利を有することがあります。

お客様は、次の操作を行えます。

  • MeCloudデバイスにローカル保存された情報の管理または削除
  • 対応するチャネルまたは外部連携サービスとの連携解除
  • 利用可能なAIプロバイダーの設定
  • 当社クラウドシステムが保有する情報へのアクセスまたは削除の依頼

クラウドアカウントを削除しても、MeCloudデバイスに保存されたデータ、またはチャネル事業者、外部連携サービスもしくはその他の第三者が独自に保有する情報は、それだけでは削除されません。一部のクラウド上の記録は、予定された保存期限まで、または第7条に記載する法的、セキュリティ上および運用上の理由により残る場合があります。

プライバシーに関する権利を行使するには、info@mykura.aiまでメールでご連絡ください。当社は本人確認をお願いする場合があり、法令で認められる範囲でご依頼をお断りまたは制限することがあります。

12. 子どものプライバシー

本サービスは13歳未満の子どもを対象としておらず、当社は13歳未満の子どもから個人情報を故意に収集しません。お客様の国およびご利用になるコミュニケーションチャネルによっては、年齢または保護者同意に関する追加要件が適用される場合があります。子どもが適用要件に反して個人情報を提供したと思われる場合は、当社が調査し適切に対応できるようご連絡ください。

13. 本ポリシーの変更

当社は、本サービスまたは適用法令の変更に応じて本ポリシーを更新することがあります。改定後のポリシーを掲載し、更新日を変更します。個人情報の利用方法に重大な影響を与える変更の場合、必要または適切なときは追加の通知を行います。

14. お問い合わせ

プライバシーに関するご質問またはご依頼は、以下までお問い合わせください。

Initial S株式会社(mykura)

メール:info@mykura.ai

所在地:〒101-0041 東京都千代田区神田須田町2-19-23 Daiwa秋葉原ビル

mykura

Privacy Policy

Last updated: July 29, 2026

This Privacy Policy explains how Initial S, Inc. (“Initial S,” “we,” “us,” or “our”) collects, uses, discloses, stores, and protects information when you use mykura, Kura-chan, a MeCloud device, our websites, and related services (collectively, the “Service”).

Contents

  1. Scope and Processing Overview
  2. Core Service Processing
  3. Communication-Channel Processing
  4. Connected-Service Processing
  5. AI Processing and Provider Choice
  6. How We Use Information
  7. Storage and Retention
  8. How We Disclose Information
  9. International Data Transfers
  10. Security
  11. Your Choices and Rights
  12. Children's Privacy
  13. Changes to This Policy
  14. Contact Us

1. Scope and Processing Overview

The Service combines software running on your MeCloud device with cloud services and third-party services. Some information remains on your device, while other information is transmitted to cloud infrastructure or a service provider when needed for the feature you use.

This Policy groups processing by the function that causes it:

Processing categoryWhen it appliesPrincipal destinations
Core Service processingWhen you register, connect a device, maintain a subscription, use cloud infrastructure, request support, or operate the ServiceMeCloud, Initial S, AWS, Stripe, Resend, and other operational providers
Communication-channel processingWhen you communicate with Kura-chan through LINE, Slack, Telegram, WeChat/Weixin, or another channelThe channel provider, MeCloud, and, for LINE, Initial S’s AWS environment
Connected-service processingWhen you authorize Google, Microsoft, GitHub, or another supported serviceThe connected service, MeCloud, and Initial S’s AWS authorization infrastructure
AI processingWhen you use conversations, search, recognition, extraction, transcription, summarization, or knowledge-organization featuresKura AI, your selected AI provider, or a feature-specific AWS or third-party service

Choosing your own AI provider changes the route for ordinary AI requests. It does not disable Core Service processing, communication-channel processing, connected-service authorization, or AWS-hosted processing separately required by a feature.

2. Core Service Processing

Core Service processing supports accounts, devices, subscriptions, security, support, and operation of the Service. Depending on the parts of the Service you use, we process:

  • account details, such as your name, email address, account identifier, authentication information, and account status;
  • subscription, plan, billing, invoice, transaction, and payment-related identifiers, with payment-card details processed by our payment provider;
  • device identifiers and names, software versions, device certificates, connection state, and device-to-account relationships;
  • IP address, browser and operating-system information, timestamps, website activity, feature usage, quotas, performance, error, security, and diagnostic information;
  • support requests, feedback, related contact information, and relevant account or channel identifiers; and
  • messages, files, images, audio, video, instructions, and information derived from them when you submit that content to a feature.

We use AWS to operate account authentication, device registration and connectivity, subscription and usage controls, cloud storage, security, and related operational services. Stripe processes payments and may provide us with customer, subscription, invoice, and transaction identifiers. When you submit feedback or an inquiry, our AWS service may process the inquiry, account ID, email address, plan, relevant LINE identifiers, and timestamps, and Resend may deliver the inquiry to our support team.

Kura-chan also stores user files, conversation state, memories, search indexes, and structured records on your MeCloud device. Derived records may contain information extracted from submitted content, such as contact information extracted from a business card. A derived record can remain on the device independently of the source image or file and must be deleted separately where the product provides separate deletion controls.

3. Communication-Channel Processing

You may communicate with Kura-chan through services such as LINE, Slack, Telegram, or WeChat/Weixin. The channel provider processes your messages and files before they reach Kura-chan and processes Kura-chan’s replies before they reach you.

Channel handling differs:

  • LINE: Kura-chan communicates with you through a LINE Official Account using the LINE Messaging API. Incoming and outgoing messages and files are relayed through Initial S’s AWS infrastructure. The relay processes message content and metadata, LINE user and conversation identifiers, device and account identifiers, reply and quote information, delivery status, and file references. Files may be stored temporarily in Amazon S3 while being transferred between LINE and your MeCloud device.
  • Slack, Telegram, and WeChat/Weixin: Kura-chan generally connects from your MeCloud device directly to the channel provider. Content can still be sent to Initial S’s AWS environment or an AI provider when you invoke an applicable cloud or AI feature.
  • Other channels: the path depends on the integration. We will update this Policy if a new channel materially changes our data practices.

Using your own AI provider does not bypass the channel path. In particular, LINE messages and files continue to pass through Initial S’s AWS relay before any ordinary AI-provider selection is applied.

Initial S personnel do not routinely review your LINE chat history. If you expressly ask us to investigate or provide support concerning your message history, only authorized personnel may manually access and process the portion of that history reasonably necessary to fulfill your request. We may also permit limited access where required by law or reasonably necessary to investigate or respond to a security incident.

Your use of a channel remains subject to that provider’s privacy policy and terms. If an employer, school, or other organization provides the channel, its owner or administrator may control, access, export, or retain messages under its own policies. You are responsible for reviewing the rules that apply to your account or workspace.

For more information, review the LINE Privacy Policy, Slack Privacy Policy, Telegram Privacy Policy, and Tencent privacy policies.

4. Connected-Service Processing

You choose whether to connect a third-party service and which permissions to grant. We process the account, authorization, scope, service, and connection-status information needed to maintain the connection and perform the operations you request.

For Google and Microsoft connections, Initial S’s AWS service stores refresh tokens and related connection metadata and provides short-lived access tokens to your device. For GitHub, the AWS service stores installation and account metadata and creates short-lived installation tokens. Your device generally uses those tokens to request authorized content directly from the connected provider.

Retrieved content is generally processed or stored on your MeCloud device. Content that you select for an AI-powered task may also be sent to Kura AI or to the AI provider you configure, according to Section 5.

Our use and transfer of information received from Google APIs will comply with the Google API Services User Data Policy, including its Limited Use requirements. We do not use Google user data for advertising. Human access is limited to cases permitted by that policy.

Microsoft information is processed according to the permissions you grant and the features you request. Review the Microsoft Privacy Statement.

GitHub information is processed according to the permissions or installation access you grant and the features you request. Review the GitHub Privacy Statement.

Disconnecting a service stops future access but does not automatically delete copies already stored on your device, records subject to a retention period, or information retained independently by the connected provider.

5. AI Processing and Provider Choice

AI-powered processing includes ordinary conversations and tool use, image and document understanding, structured extraction, embeddings and semantic search, transcription and summarization, and knowledge organization of documents and memories. The content processed depends on the feature and may include prompts, conversation history, system instructions, tool definitions, tool calls and results, images, files, audio, transcripts, search queries, connected-service content selected for the task, model settings, and account or device identifiers.

Kura AI

“Kura AI” means the AI service provided by Initial S through its cloud infrastructure, including its AWS-hosted broker and models invoked through Amazon Bedrock. When you use Kura AI for an ordinary conversation, relevant request content is sent to that broker, and the result is returned to your device. Initial S’s AWS application may retain request, response, usage, and diagnostic records as described in Section 7.

Kura AI is also used for certain feature-specific operations even when your ordinary conversational AI provider is configured differently.

Your own API key

If you configure credentials for your own AI provider, ordinary AI requests are generally sent directly from your MeCloud device to the provider endpoint or proxy endpoint you configure and are not routed through the Kura AI broker. Kura-chan stores those credentials in your device configuration.

Depending on the request, your provider may receive prompts, conversation history, system instructions, tool definitions, tool calls and results, images, files, and other selected content. Its logging, retention, model-training, security, and international-transfer practices are governed by its terms, privacy policy, contractual arrangements, account settings, and any proxy you configure. You are responsible for protecting and revoking your credentials and for ensuring that you are authorized to submit the selected content.

Features that still use AWS when you use your own API key

Your own API key replaces only the applicable ordinary AI-model request. The following processing paths remain separate:

FeatureProcessing that still occurs
Image or text embeddings, including photo indexing and semantic searchPrepared image copies, search queries, or selected text are sent to Initial S’s AWS embedding service, which invokes an embedding model through Amazon Bedrock; returned vectors and indexes are stored on your device
Knowledge organization and curationSelected documents, memory or wiki text, and curation instructions are sent through the Kura AI broker to Amazon Bedrock
Photo-document recognitionPrepared document images and recognition instructions are sent through the Kura AI broker to Amazon Bedrock
Structured record extractionImages or extracted text used to create records such as receipts or business cards are sent through the Kura AI broker to Amazon Bedrock
Audio or video transcriptionSource media is uploaded temporarily to Amazon S3 and made available to AssemblyAI; results return through Initial S’s AWS service
Transcript summarizationTranscript text and summarization instructions are sent through the Kura AI broker to Amazon Bedrock

For LINE voice messages, Initial S’s AWS service may obtain the audio from LINE, submit it to AssemblyAI, receive the transcript, and route the transcript to your device. AssemblyAI’s training and retention practices depend on the applicable contract and account settings. See its Privacy Policy and data retention and model training documentation.

We do not use your content to train AI models developed or operated by Initial S.

Initial S does not use AI to infer or derive sensitive personal information from your content for profiling, advertising, eligibility decisions, or other purposes unrelated to the feature you request. If you expressly ask Kura to recognize, extract, transcribe, summarize, organize, or otherwise process content that contains sensitive personal information, AI processing may identify or derive that information only as necessary to fulfill your request.

Third-party AI and transcription providers process content under their own service terms, contractual arrangements, account settings, and privacy practices. Their training and retention practices may differ.

6. How We Use Information

We use information to:

  • create and administer accounts, subscriptions, connected devices, channels, and connected services;
  • receive, route, process, and deliver messages, files, and requested results;
  • perform the AI and cloud-assisted features described in this Policy;
  • process payments and enforce feature or usage limits;
  • provide support and respond to feedback;
  • diagnose errors, secure the Service, prevent abuse, and maintain reliability;
  • understand aggregate usage and improve the Service; and
  • comply with law and enforce our agreements.

Initial S does not sell your personal information.

7. Storage and Retention

The following periods reflect current product behavior. Expiration and deletion may take additional time to complete, and we may retain information longer when reasonably necessary for security, fraud prevention, dispute resolution, legal compliance, or the establishment or defense of legal claims.

DataLocationTypical retention
User files, connected-service content, conversation state, memories, indexes, and derived structured records stored by Kura-chanMeCloud deviceUntil you delete the applicable data, reset the device, or remove the applicable feature data; deleting a source file does not necessarily delete a separately stored derived record
Local channel diagnostic logs containing inbound and outbound payloadsMeCloud deviceApproximately 30 days
LINE message log used for routing, reply resolution, and supportAWSApproximately 7 days
LINE pending reply-routing dataAWSApproximately 30 minutes; some voice-routing context approximately 1 hour
LINE relay files and files uploaded for deliveryAmazon S3Lifecycle expiration after approximately 1 day
Media uploaded for the transcription workflowAmazon S3Lifecycle expiration after approximately 1 day
Transcription job metadataAWSApproximately 7 days
Kura AI request ledger, including ordinarily sized request and response content, usage, and diagnostic fieldsAWSApproximately 90 days
User-configured AI provider credentialsMeCloud device configurationUntil removed, replaced, or the applicable device configuration is deleted
OAuth connection credentials and metadataAWSUntil you disconnect the integration or ask us to delete them, subject to backup, security, and legal requirements
Account, device, subscription, billing, support, security, and operational recordsAWS and relevant service providersWhile needed to provide the Service and afterward as reasonably necessary for the purposes described in this Policy

Operational logs may include identifiers, errors, and request or response information. We limit access to personnel and service providers who need it for operations, security, or support.

Data held by channel providers, connected services, payment providers, AI providers, and other third parties is retained under their own policies and your settings with them.

8. How We Disclose Information

We may disclose information:

  • to AWS and vendors that process information for us, including Stripe for payments, AssemblyAI for transcription, and Resend for support email delivery;
  • to communication-channel providers to receive or deliver your messages;
  • to an AI provider you select when necessary to perform your request;
  • to connected services you direct Kura-chan to access or update;
  • to a workspace owner or administrator where the channel or connected service is controlled by an organization;
  • when required by law or when reasonably necessary to protect rights, safety, security, and the integrity of the Service;
  • in connection with a merger, financing, acquisition, reorganization, bankruptcy, or sale of assets, subject to appropriate notice and safeguards; or
  • with your direction or consent.

We do not sell or rent your personal information.

9. International Data Transfers

Initial S is located in Japan. Our service providers and communication, AI, transcription, payment, and connected-service providers may process information in Japan, the United States, and other countries. Those countries may have privacy laws different from those where you live. Where required, we use appropriate contractual or other safeguards for international transfers.

10. Security

We use technical and organizational safeguards designed to protect information, including access controls, encrypted network transport, private cloud storage, short-lived access tokens where supported, and device credentials for AWS IoT connections. No transmission or storage system is completely secure, and we cannot guarantee absolute security.

You are responsible for securing your MeCloud device, channel and connected-service accounts, credentials, network, and workspace permissions. Keep software up to date, use strong and unique passwords, and enable multi-factor authentication where available.

11. Your Choices and Rights

Depending on where you live, you may have rights to request access, correction, deletion, restriction, objection, or portability of personal information, and to withdraw consent where processing is based on consent.

You may:

  • manage or delete locally stored information on your MeCloud device;
  • disconnect supported channel or connected-service integrations;
  • configure an available AI provider; and
  • contact us to request access to or deletion of information held in our cloud systems.

Deleting a cloud account does not itself erase data stored on your MeCloud device or information retained independently by a channel provider, connected service, or other third party. Some cloud records may remain until their scheduled expiration or for the legal, security, and operational reasons described in Section 7.

To exercise a privacy right, email info@mykura.ai. We may need to verify your identity and may deny or limit a request where permitted by law.

12. Children's Privacy

The Service is not directed to children under 13, and we do not knowingly collect personal information from children under 13. Additional age or parental-consent requirements may apply in your country and to the communication channel you use. If you believe a child has provided personal information in violation of applicable requirements, contact us so we can investigate and take appropriate action.

13. Changes to This Policy

We may update this Policy as the Service or applicable law changes. We will post the revised Policy and update its date. If a change materially affects how we use personal information, we will provide additional notice where appropriate or required.

14. Contact Us

For privacy questions or requests, contact:

Initial S, Inc. (mykura)

Email: info@mykura.ai

Address: Daiwa Akihabara Bldg, 2-19-23 Kanda Sudacho, Chiyoda-ku, Tokyo 101-0041, Japan

mykura
公式LINE 公式LINE
  • Top
  • MeCloud
  • くらちゃん
  • Use Cases
  • Store
  • About Us
  • News
  • Support
  • プライバシーポリシー
  • 利用規約