プライバシーポリシー

GitMD

最終更新日: 2026-06-10

← GitMD に戻る

1. 収集する情報

GitMD が収集・保存する情報は以下のみです。すべてお使いの端末内にのみ保存されます。

情報用途保存場所
GitHub / GitLab OAuth アクセストークンリポジトリへの読み書き認証端末内(Android Keystore で暗号化)
個人アクセストークン(PAT)カスタム Git ホストへの認証端末内(Android Keystore で暗号化)
Google Drive / Dropbox / Box OAuth アクセストークン(各サービスを保存先に設定した場合のみ)クラウドストレージへのノート同期の認証端末内(Android Keystore で暗号化)
AI API キー(Gemini / OpenAI / Anthropic。設定した場合のみ)AI インライン生成の認証端末内(Android Keystore で暗号化)。開発者のサーバーには送信されない
Pro 購入状態(エンタイトルメント)購入特典(3 つ目以降のリポジトリ)の有効化Google Play から取得し端末内に保持。決済情報(カード番号等)はアプリに渡らず Google Play が管理
リポジトリ URL・ブランチ名・認証種別クローン・同期先の特定端末内(DataStore)
Git コミット用の著者名・メールアドレスコミットメタデータへの記録端末内(DataStore)
Markdown ファイルノートの表示・編集端末内(アプリ専用ストレージ)
ノート暗号化キー(設定で有効にした場合のみ)ノートの End-to-End 暗号化端末内(Android Keystore で保護)。ノートはリモートに暗号文のみ保存、平文は端末外に出ない
お気に入り / 最近開いたノートのパスUI 状態の保持端末内(DataStore)

2. 使用状況・クラッシュ情報の収集

アプリの品質向上を目的として、以下を送信します。

情報送信先用途
アプリの起動・主要操作(ノート作成・保存・Push 成功)のイベント名Firebase Analytics(Google)機能の利用状況の把握、不具合の検知
クラッシュレポート(スタックトレース・端末モデル・OS バージョン・アプリバージョン)Firebase Crashlytics(Google)/ Sentry(Functional Software, Inc.)クラッシュ原因の特定
国名(おおまかな地域)Firebase Analytics(Google)言語ローカライズの優先度判断

クラッシュレポートにユーザー識別子・ノート本文は含まれません。

収集しない情報(明示的に無効化済み):

  • 広告 ID(Android Advertising ID, AAID)
  • SSAID(Settings.Secure.ANDROID_ID)
  • 個人を特定できる情報(メールアドレス、電話番号、氏名、ノート本文など)
  • 位置情報
  • 連絡先・カメラ・マイクなどのセンサーデータ
  • Google Signals(他の Google サービスでの行動との紐付け)

本ウェブサイトのアクセス解析について

本ウェブサイト(ymatsuzatech.com)では、訪問状況の把握のため Google Analytics 4(GA4)を使用します。GA4 は Cookie(_ga 等)を用いて、閲覧ページ・参照元・おおまかな地域などの情報を収集します(個人を特定する情報は含みません。IP アドレスは GA4 側で匿名化されます)。これは GitMD アプリ内の計測(Firebase Analytics)とは別のものです。収集を望まない場合は、ブラウザの Cookie 設定、または Google アナリティクス オプトアウト アドオン で無効化できます。

3. 第三者への提供

GitMD はいかなる個人情報も第三者に提供・販売しません。

アプリが通信する外部サービスは以下のみです。

  • GitHub API / GitLab API: リポジトリ一覧の取得・認証
  • ユーザー自身の Git リポジトリ: ノートファイルの同期
  • Google Drive / Dropbox / Box API: 各サービスを保存先に設定した場合のみ、ノートファイルの同期
  • AI プロバイダ(Google Gemini / OpenAI / Anthropic): ユーザーが自分の API キーを設定し、エディタで AI 生成を実行したときのみ、生成に必要なテキスト(プロンプトと対象ノートの内容)を選択したプロバイダに直接送信。自動送信は行われない
  • Firebase Analytics / Crashlytics(Google)・Sentry: 上記「2. 使用状況・クラッシュ情報の収集」に書かれた情報のみ送信
  • Google Play: Pro 購入の決済処理(決済情報はアプリに渡らない)

これらの通信はすべて HTTPS / SSH で行われます。

4. データの管理・削除

  • アプリをアンインストールすると、端末に保存されたすべてのデータ(トークン・API キー・設定・クローン済みファイル)は削除されます。
  • GitHub / GitLab アカウントとの連携を解除するには、各サービスの設定画面(GitHub / GitLab)から GitMD のアクセス許可を取り消してください。
  • Google Drive / Dropbox / Box との連携を解除するには、各サービスの設定画面(Google / Dropbox / Box)から GitMD のアクセス許可を取り消してください。
  • AI API キーはアプリの設定画面からいつでも削除できます。
  • Firebase Analytics / Crashlytics・Sentry に送信済みのデータの削除をご希望の場合は、お問い合わせ先までご連絡ください。

5. お問い合わせ

プライバシーに関するご質問は、お問い合わせフォームまたはテスター向け Google グループまでご連絡ください。

© 2026 Yuta Matsuzaki. GitMD はクローズドソースソフトウェアです。本ページは公開ランディングの一部です。

ホーム · GitMD · FAQ · お問い合わせ

Privacy Policy

GitMD

Last updated: 2026-06-10

← Back to GitMD

1. Information We Collect

GitMD collects and stores only the following information. All of it is stored solely on your device.

InformationPurposeStorage location
GitHub / GitLab OAuth access tokenAuthenticating repository read/writeOn device (encrypted with Android Keystore)
Personal Access Token (PAT)Authenticating with custom Git hostsOn device (encrypted with Android Keystore)
Google Drive / Dropbox / Box OAuth access token (only if you set that service as a storage backend)Authenticating note sync to cloud storageOn device (encrypted with Android Keystore)
AI API key (Gemini / OpenAI / Anthropic; only if you set one)Authenticating AI inline generationOn device (encrypted with Android Keystore). Never sent to the developer's servers
Pro purchase state (entitlement)Unlocking the paid feature (a 3rd repository and beyond)Fetched from Google Play and kept on device. Payment details (card numbers, etc.) never reach the app — Google Play handles them
Repository URL, branch name, auth typeIdentifying the clone / sync targetOn device (DataStore)
Author name & email for Git commitsRecording commit metadataOn device (DataStore)
Markdown filesDisplaying and editing notesOn device (app-private storage)
Note encryption key (only when enabled in settings)End-to-end encryption of note contentOn device (protected by Android Keystore). Only ciphertext is stored remotely — plaintext never leaves the device
Favorite / recently opened note pathsPreserving UI stateOn device (DataStore)

2. Usage Data & Crash Reporting

To improve the quality of the app, the following is sent.

InformationSent toPurpose
Event names for app launch and key actions (creating a note, saving, a successful push)Firebase Analytics (Google)Understanding feature usage and detecting problems
Crash reports (stack trace, device model, OS version, app version)Firebase Crashlytics (Google) / Sentry (Functional Software, Inc.)Identifying the cause of crashes
Country (approximate region)Firebase Analytics (Google)Prioritizing language localization

Crash reports contain no user identifier and no note content.

Information we do NOT collect (explicitly disabled):

  • Advertising ID (Android Advertising ID, AAID)
  • SSAID (Settings.Secure.ANDROID_ID)
  • Personally identifiable information (email address, phone number, name, note contents, etc.)
  • Location
  • Sensor data such as contacts, camera, or microphone
  • Google Signals (linking with your activity across other Google services)

Analytics on this website

This website (ymatsuzatech.com) uses Google Analytics 4 (GA4) to understand visitor activity. GA4 uses cookies (such as _ga) to collect information like pages viewed, referrer, and approximate region (no personally identifying information; IP addresses are anonymized by GA4). This is separate from the in-app analytics (Firebase Analytics) of the GitMD app. To opt out, adjust your browser's cookie settings or install the Google Analytics opt-out browser add-on.

3. Disclosure to Third Parties

GitMD does not provide or sell any personal information to third parties.

The only external services the app communicates with are:

  • GitHub API / GitLab API: Fetching the repository list and authentication
  • Your own Git repository: Syncing note files
  • Google Drive / Dropbox / Box API: Syncing note files, only if you set that service as a storage backend
  • AI providers (Google Gemini / OpenAI / Anthropic): Only when you set your own API key and explicitly run AI generation in the editor, the text needed for generation (the prompt and the target note content) is sent directly to the provider you selected. Nothing is sent automatically
  • Firebase Analytics / Crashlytics (Google) and Sentry: Only the information described in section 2 (Usage Data & Crash Reporting) above
  • Google Play: Processing the Pro purchase (payment details never reach the app)

All such communication is performed over HTTPS / SSH.

4. Managing and Deleting Data

  • Uninstalling the app deletes all data stored on the device (tokens, API keys, settings, cloned files).
  • To disconnect your GitHub / GitLab account, revoke GitMD's access from each service's settings page (GitHub / GitLab).
  • To disconnect Google Drive / Dropbox / Box, revoke GitMD's access from each service's settings page (Google / Dropbox / Box).
  • You can delete your AI API key at any time from the app's settings screen.
  • If you would like data already sent to Firebase Analytics / Crashlytics or Sentry to be deleted, please contact us using the details below.

5. Contact

For privacy-related questions, use the contact form or the tester Google Group.

© 2026 Yuta Matsuzaki. GitMD is closed-source software; this page is part of the public landing.

Home · GitMD · FAQ · Contact