Ongil ("we") operates Gullimi, a cycling ride-tracking app (the "Service"). This policy explains what we collect, why, how long we keep it, and what you can ask us to do.
1. You can use Gullimi without an account
Riding solo, recording rides, and the maintenance guide all work without an account. In that case your rides are stored only on your device and are never sent to our servers. Deleting the app deletes them.
You only need to sign in to carry rides across devices or to use features that involve other riders — group rides and rankings. When you sign in, the rides already on your device are moved to that account.
2. What we collect
2-1. Account information (when signed in)
| Item | Source | Purpose |
|---|---|---|
| Social account identifier | Kakao / Apple / Google | Identifying the same user |
| Nickname | Social account or generated | Shown in rankings and group rides |
| Social account | Account verification, support | |
| Profile image URL | Social account | Display |
We never store passwords — sign-in is handled entirely by the social provider. If you choose "Hide My Email" with Apple, we receive only Apple's relay address.
2-2. Location
While a ride is being recorded we collect GPS location. Recording must continue with the screen off, so we request background location permission.
- Location is used to compute your route, distance, speed, and elevation gain.
- We collect it only during a ride — not before you press start or after you finish.
- If you are signed in, rides are stored on our servers; otherwise they stay on your device.
- During a group ride, live location is shared among participants of that session. Sharing ends when the session ends.
2-3. Device and usage data
- App version, OS, device model — troubleshooting
- Crash and error reports — stability
- Advertising identifier — see section 4
2-4. What you enter yourself
Bicycle name, type, odometer, and part replacement history.
3. How we use it
- Storing rides and syncing them across your devices
- Calculating when bicycle parts are due for replacement
- Sharing live location and drop-off alerts during group rides
- Providing period rankings
- Diagnosing errors and improving the Service
- Serving ads
4. Advertising
The Service shows ads through Google AdMob, which may use an advertising identifier for interest-based ads.
- iOS: we ask for tracking permission on first launch (App Tracking Transparency). If you decline, your identifier is not used for personalized ads. You can change this any time in Settings.
- Android: you can reset your advertising ID or opt out of personalized ads in Settings → Google → Ads.
See Google's advertising policies.
5. Sharing and processors
We do not sell your personal information. We use the following providers to run the Service.
| Provider | Purpose | Location |
|---|---|---|
| Amazon Web Services | Servers and database | Republic of Korea |
| Google (Firebase) | Auth sessions, live location sharing, analytics, crash reporting, remote config | United States and others |
| Google (AdMob) | Advertising | United States and others |
| Kakao / Apple / Google | Social sign-in | Per each provider's policy |
| NAVER Cloud Platform | Maps | Republic of Korea |
6. Retention
- Account data: until you delete your account
- Rides: until you delete them or delete your account
- Live group-ride location: deleted when the session ends
- Error reports: up to 90 days
Where the law requires a different retention period, that period applies.
7. Your rights
At any time you may:
- Delete individual rides, bicycles, or parts in the app
- Revoke location permission in system settings (ride recording will stop working)
- Delete your account — from
Profile → Delete accountin the app, applied immediately. Your account and every ride, bicycle, and part on our servers are removed, along with the rides on your device. This cannot be undone. If you have already removed the app, follow the account deletion request steps. - Request access, correction, deletion, or restriction of processing
Contact us at the address below and we will act without undue delay.
8. Children
The Service is not directed to children under 14, and we do not knowingly collect their personal information. If you are a guardian and believe we have, contact us and we will delete it promptly.
9. Security
- Encrypted transport (HTTPS)
- Authentication tokens kept in the device's secure storage
- Least-privilege access to servers
10. Changes
If this policy changes we will post a notice in the app or on this page. Material changes are announced 7 days before they take effect.
11. Contact
- Service: Gullimi
- Operator: Ongil
- Email: support@ongil.me