i'm in
EN 日本語 中文
Home →
Privacy Policy

i'm in Privacy Policy

This Policy explains how NomadResort Inc. (the “Company”) handles user information in “i'm in” (the “Service”).

Effective
October 1, 2026
Version
2026-10-01
Operator
NomadResort Inc.
Terms of Service Commercial Transactions Act Company profile Contact

This English text is a reference translation. In case of any discrepancy, the Japanese version prevails.

1. Information We Collect

The Company may collect the following information to the extent necessary to provide the Service.

  • Account information such as name, display name, profile image, email address, and authentication ID
  • Information on profiles, friendships, blocks, invitations, RSVPs, and plan creation, editing, viewing, and check-in
  • Transaction-related information such as ticket purchases, free ticket acquisition, refunds, payment status, and Stripe account connection status
  • Information related to location, region, map display, and nearby-plan discovery
  • Delivery-related information such as notification settings, email settings, unsubscribes, and opens/clicks of notifications
  • Inquiries, surveys, feedback, and communications with us
  • Technical information such as device, browser, IP address, cookies, access logs, error information, and usage

2. Purposes of Use

The Company uses collected information for the following purposes.

  • Account registration, identity verification, login, and user management
  • Providing plan creation, publication, search, participation management, ticketing, and check-in
  • Providing features such as friendships, plan sharing, feed, map, and notifications
  • Payments, refunds, revenue management, fraud prevention, and inquiry handling
  • Delivering important announcements, plan-related notifications, service information, and campaigns
  • Analyzing and improving the safety, quality, and convenience of the Service
  • Compiling plan views, inbound channels, and similar data and providing them to organizers as statistics
  • Responding as necessary for law, terms, disputes, audits, and security

3. Information Visible to Other Users & Organizers

Given the nature of the Service, information such as display name, profile image, RSVPs, plan participation status, check-in status, and plans you create may be visible to other users, plan organizers, co-organizers, and staff. The scope of display follows each plan’s visibility settings, friendships, user settings, and the specifications of each feature.

4. Location Information

To provide the map, nearby-plan display, the Now feature, and similar functions, the Company may obtain location information based on the user’s consent or device settings. Location is used, to the extent necessary, for region names, cities, and display of nearby plans. Users may restrict the use of location via device settings or in-app settings.

5. Payment Information

Payments, revenue, refunds, and identity verification for paid plans are processed through services provided by Stripe, Inc. and its affiliates. Payment instrument information such as credit card numbers is, in principle, managed by Stripe; the Company obtains information necessary to operate the Service, such as payment status, transaction identifiers, and ticket information.

6. AI Features

To support plan creation, text extraction, announcement generation, and similar tasks, the Company may use text, images, URLs, and other content that users enter or upload for AI processing. AI processing may use external services such as Google Vertex AI. If there are material changes to what is sent, retention periods, whether data is used for training, the processing region, or similar matters, we will notify you as needed via this Policy or in-app display.

7. External Services, Subcontractors & Overseas Transfer

The Company may use external services or subcontractors — such as Firebase, Google, Supabase, Stripe, email delivery infrastructure, and analytics infrastructure — for providing the Service, authentication, data storage, notifications, email delivery, payments, analytics, AI processing, and incident investigation. The Company exercises necessary and appropriate supervision over subcontractors.

These external services or subcontractors include entities located outside Japan (chiefly in the United States). When providing personal data to a third party in a foreign country, the Company, in accordance with law, either obtains the individual’s prior consent or confirms that the third party has established a system conforming to the standards of Japan’s Act on the Protection of Personal Information. Information about the destination country, that country’s personal-information protection regime, and the safeguards taken by the recipient is available through the contact desk below. For the transmission of user information from your device to Google LLC, see Section 8.

8. External Transmission of User Information (Google Analytics)

To analyze how the Service is used, the Company uses Google Analytics 4 provided by Google LLC (including Google Analytics for Firebase; “GA4”). When you open a screen of the Service’s website or app, and when you view a plan, GA4’s program causes your device to send the information below to Google LLC. This section publishes the content of the information sent, the name of the recipient, and the purposes of use, as required by Article 27-12 of Japan’s Telecommunications Business Act.

  • Recipient: Google LLC (United States)
  • Information sent:
    • If you are logged in, the user ID the Company assigns to your account (it does not include your name, email address, or similar)
    • An identifier GA4 assigns to each device or browser (a cookie or app-instance ID)
    • Identifiers of the plans you view, whether you were logged in at the time, how you arrived (e.g. the type of shared link or the in-app screen you came from), and the platform (web, iOS, or Android)
    • Usage information such as the URL and title of pages viewed, the referring URL, the date and time of viewing, and session and engagement time
    • Device and connection information such as OS, browser, app version, language settings, screen size, and IP address
  • Purposes of use:
    • For the Company to compile plan view counts, viewer counts, inbound channels, and conversion to I’m in, ticket acquisition, and check-in, and to provide them to organizers as statistics
    • For the Company to analyze and improve how the Service is used
    • For Google LLC to provide the above analytics service to the Company (Google LLC handles the information in accordance with Google’s policies linked below)
  • Handling by the Company: The Company may match information obtained through GA4 with the account information and plan participation it holds in order to compile statistics. This includes linking information you viewed on the same device before logging in to your account after you log in. Organizers receive aggregated statistics only, never in a form that identifies individual users. The Company does not use GA4’s advertising features (such as Google Signals or ad personalization).
  • How to stop the transmission:
    • On devices whose region setting or time zone indicates Europe (the EU, the European Economic Area, the United Kingdom, or Switzerland), you are asked for your consent in the app's settings before measurement begins, and measurement takes place only if you consent; you may withdraw consent at any time.
    • Elsewhere, you may limit this transmission through your device's advertising/analytics tracking controls (e.g. iOS “Allow Tracking” settings, Android Ads settings).
    • On the web, you can also stop the transmission by installing the Google Analytics Opt-out Browser Add-on provided by Google.
    • While measurement is stopped, or until you consent, no identifier is stored via cookies or similar technologies and plan views are not measured (Google’s consent mode may still send limited requests that contain no identifiers). Stopping measurement does not limit your use of the Service’s features.
  • Google’s policies: Google Privacy Policy, How Google uses information from sites or apps that use our services, Privacy and Security in Firebase

9. Provision to Third Parties

The Company does not provide personal data to third parties except where the individual consents, where required by law, where necessary for payments, plan operation, or inquiry handling, or where necessary to protect a person’s life, body, or property.

10. Notifications & Email Delivery

The Company may send operationally necessary notifications (transactional messages) regarding plans, tickets, accounts, and security.

Email intended for advertising or promotion — such as plan recommendations, service information, and campaigns — is sent only to users who have opted in in advance (opt-in under the Act on Regulation of Transmission of Specified Electronic Mail). Such email displays the sender’s name and a method to unsubscribe, and users may unsubscribe at any time.

11. Cookies, etc.

The Company may use cookies, local storage, and similar technologies to keep you logged in, remember language settings, understand usage, improve quality, and ensure security. You can restrict cookies via browser settings, but some features may become unavailable. For usage measurement by Google Analytics, see Section 8.

12. Security Measures

To prevent leakage, loss, damage, unauthorized access, and similar risks to personal data, the Company implements necessary and appropriate security measures, including access control, privilege management, log management, protection of communications, and subcontractor management.

13. Disclosure, Correction & Deletion

In accordance with law, users may request disclosure, correction, addition, deletion, suspension of use, or suspension of provision to third parties of their own retained personal data. We may ask you to verify your identity, and we may charge a fee to the extent permitted by law.

14. Retention Period

The Company retains user information for the period necessary to achieve the purposes of use, or for the period necessary for law, payments, audits, fraud prevention, and dispute resolution. Information that is no longer needed is deleted or anonymized within a reasonable period.

15. Revisions

The Company may revise this Policy as necessary. For material changes, the Company will provide notice by displaying it within the Service or by other appropriate means, and will seek renewed consent where necessary.

16. Minors

The Service is intended for users aged 13 or older. Where a minor uses the Service, they must first obtain the consent of a parent or other legal guardian. The Company does not intentionally collect the personal information of anyone under 13. If we learn that we have collected the personal information of a person under 13, we will promptly delete it to a reasonable extent.

17. Business Operator Information

The operator of the Service is NomadResort Inc. Company information, including our name, address, and representative’s name, is published on our corporate site (company profile). Business-operator information relating to retained personal data is also available on that page or through the contact desk below.

18. Contact

For inquiries about the handling of personal information, please contact the NomadResort Inc. contact desk.