PRIVACY · 개인정보

개인정보처리방침

TxtSays는 문서를 브라우저 안에서 처리하며, 선택적으로 로그인한 경우에도 화면 설정과 읽기 위치만 동기화합니다. 아래에는 서비스가 실제로 처리하는 정보와 사용자가 통제하는 방법을 설명합니다.

시행일: 2026년 7월 15일 · Effective date: July 15, 2026

1. 적용 범위 / Scope

이 방침은 txtsays.kr에서 제공하는 PDF·TXT·MD 텍스트 추출, 음성 읽기, 읽기 위치 저장, 한·영 단어 뜻 찾기 및 선택적 Google 로그인·동기화 기능에 적용됩니다. 로그인 없이도 서비스를 이용할 수 있으며, 로그인하더라도 PDF·TXT·MD 원본, 파일명, 추출한 문서 텍스트 및 합성 음성은 계정 저장소로 전송하거나 저장하지 않습니다.

This policy applies to PDF, TXT, and MD extraction, text-to-speech playback, saved reading positions, Korean–English word lookup, and optional Google sign-in and synchronization on txtsays.kr. You can use the service without signing in. Even when signed in, document files, file names, extracted document text, and generated audio are not uploaded to or stored in your account.

2. 문서와 브라우저 저장 정보 / Documents and browser storage

항목 / Item처리 목적 / Purpose보관 / Retention
PDF·TXT·MD 내용브라우저 메모리에서 텍스트 추출·표시·재생TxtSays 서버에 전송하거나 저장하지 않으며 탭을 닫거나 새로고침하면 메모리에서 사라집니다.
읽기 위치와 화면 설정마지막 문장 복원 및 화면 테마 설정·언어 유지로그아웃 상태에서는 브라우저 localStorage에 저장합니다. 로그인 상태에서는 계정별로 다시 해시한 문서 식별값, 마지막 문장 번호, 문장 수, 갱신 시각, 화면 테마 및 언어를 Firebase Cloud Firestore에 계정 삭제 시까지 저장합니다.
Google 로그인 정보(선택)계정 인증, 로그인 상태 유지 및 동기화 데이터 구분Firebase Authentication이 Firebase 사용자 ID와 Google 계정 식별자, 이메일 주소, 표시 이름 및 제공되는 경우 프로필 이미지를 계정 삭제 시까지 처리합니다.
로컬 TTS 모델과 실행 파일로컬 음성 합성과 반복 다운로드 최소화지원되는 브라우저에서는 Cache Storage에 저장될 수 있으며, 브라우저가 정리하거나 사용자가 txtsays.kr의 사이트 데이터를 삭제할 때 제거됩니다.
진단 이벤트파일 읽기 오류와 로컬 음성 재생 성능 확인파일명·문서 내용·기기 식별값 없이 브라우저 메모리에만 기록하며 자동 전송하지 않습니다. 로컬 재생은 제공자와 RTF·언더런·예약 시간의 구간값만 포함하며, 사용자가 오류 화면에서 진단 정보를 직접 복사할 때만 공유됩니다. 정상 화면에는 별도의 성능 정보 패널이 없습니다.

Document text stays in browser memory and is not sent to or stored by TxtSays. When signed out, reading positions, interface language, and display theme remain in localStorage. When signed in, Firebase Cloud Firestore stores only an account-specific hashed identifier, the last sentence number, sentence count, update time, interface language, and display theme. Firebase Authentication processes the Firebase user ID, Google account identifier, email address, display name, and profile image if supplied. Document files, file names, extracted text, and generated audio are not stored with the account. In supported browsers, versioned local TTS and runtime files may be stored in Cache Storage to reduce repeated downloads. Sanitized diagnostic events remain in memory and are shared only if the user deliberately copies them from an error screen. There is no performance panel on the normal screen. Local playback diagnostics contain only bucketed provider, RTF, underrun, and queued-duration values, never document text, file names, or device identifiers.

3. 선택적 로그인, 접속 정보와 보안 / Optional sign-in, connection data, and security

사용자가 Google 로그인 버튼을 누르면 Google 로그인과 Firebase Authentication이 계정을 인증합니다. TxtSays는 인증 결과를 로그인 상태 유지와 동기화 데이터 구분에만 사용합니다. Firebase Cloud Firestore에는 화면 테마, 화면 언어, 계정별로 다시 해시한 문서 식별값, 읽기 위치, 문장 수와 갱신 시각만 저장하며 파일명, 문서 내용 및 음성은 저장하지 않습니다. 보안 규칙은 로그인한 사용자가 자신의 Firebase 사용자 ID에 속한 데이터만 읽고 수정하도록 제한합니다.

If you choose Google sign-in, Google sign-in and Firebase Authentication authenticate the account. TxtSays uses the result only to maintain the signed-in session and associate synchronized settings with the correct account. Firebase Cloud Firestore stores only the display theme, interface language, an account-specific hashed document identifier, reading position, sentence count, and update time—not file names, document text, or audio. Security rules restrict each signed-in user to data belonging to their own Firebase user ID.

Firebase 계정 기능의 무단 사용과 자동화된 악용을 방지하기 위해 txtsays.kr 접속 시 Firebase App Check와 reCAPTCHA Enterprise가 브라우저·기기 및 네트워크 신호를 처리하고 필수 보안 쿠키인 _GRECAPTCHA를 설정할 수 있습니다. 이 보안 검증에는 사용자가 연 문서의 파일명·내용이나 합성 음성이 포함되지 않습니다.

To protect Firebase account features from unauthorized and automated abuse, Firebase App Check and reCAPTCHA Enterprise may process browser, device, and network signals when txtsays.kr is visited and may set the essential _GRECAPTCHA security cookie. This verification does not include document names, document contents, or generated audio.

자세한 내용은 Google 개인정보처리방침 Firebase 개인정보 및 보안 안내를 확인하세요.

웹사이트에 접속하면 호스팅·CDN·보안 제공자가 일반적인 웹 요청 정보(예: IP 주소, 요청 URL, 브라우저 정보, 요청 시각)를 서비스 제공, 장애 대응, 보안 및 악용 방지를 위해 처리할 수 있습니다. 보안 제공자는 악성 자동 요청을 구분하기 위해 __cf_bm 같은 필수 보안 쿠키를 설정할 수 있습니다.

Hosting, CDN, and security providers may process ordinary request data such as IP address, requested URL, browser information, and timestamps to deliver and protect the site. Security providers may set essential cookies such as __cf_bm to distinguish malicious automated traffic.

AWS 운영 미러는 장애·오류율과 전송량을 확인하기 위해 요청 시각, CDN 위치, HTTP 방식, 호스트와 경로, 응답 상태·크기·처리 시간, 국가 코드 및 캐시 처리 결과만 접근 로그에 남기며 30일 뒤 자동 삭제합니다. IP 주소, 쿼리 문자열, 쿠키, 참조 페이지 및 User-Agent는 이 로그에서 제외합니다.

The AWS production mirror keeps a minimal access log for 30 days to diagnose availability, error rates, and transfer volume. It contains request time, CDN location, HTTP method, host and path, response status, size and duration, country code, and cache result. IP addresses, query strings, cookies, referrers, and User-Agent values are excluded.

4. 음성·사전·기기 번역 / Speech, dictionary, and on-device translation

  • 사용자가 첫 화면에서 동의하면 동의 여부를 브라우저의 로컬 저장소에 기록합니다. 이후 방문에는 Supertonic 3 FP16 모델을 고정된 Hugging Face Git 저장소에서 직접 받고, 실행 파일을 포함한 전체 약 217MB를 브라우저의 Cache Storage에 저장합니다. TxtSays 서버는 모델 파일을 중계하지 않습니다. 저장된 동의가 있으면 첫 화면에서 캐시 확인, 필요한 다운로드와 음성 엔진 초기화를 시작합니다. 파일 선택과 문서 추출은 다운로드를 기다리지 않으며, 저장과 문서 준비가 끝나면 브라우저 워커 안에서 첫 문장을 준비합니다. Cache Storage를 사용할 수 없으면 현재 방문에서만 모델을 사용하고 다음 방문에는 다시 동의가 필요합니다. 로컬 음성을 사용할 때 문장 텍스트와 합성 음성은 TxtSays 서버로 전송되지 않습니다. Google TTS 또는 Microsoft TTS를 선택하면 브라우저의 Web Speech API를 통해 운영체제, 브라우저 또는 해당 음성 제공자가 문장을 처리할 수 있으며, 이 경우에도 TxtSays는 그 문장을 수신하지 않습니다.
  • 앱 내 사전은 첫 글자나 초성별 정적 데이터 조각을 txtsays.kr에서 내려받은 뒤 정확한 단어 검색을 브라우저에서 수행합니다.
  • 사용자가 명시적으로 선택한 경우에만 지원되는 Chrome의 Translator API를 호출합니다. TxtSays는 별도 번역 서버로 검색어를 보내지 않지만, 언어팩 다운로드와 브라우저 기능의 데이터 처리는 해당 브라우저 제공자의 정책을 따릅니다.

With your consent, the browser records that choice in local storage. On later visits it downloads the pinned Supertonic 3 FP16 model directly from its Hugging Face Git repository and saves about 217 MB of model and runtime files in Cache Storage. TxtSays does not proxy the model files. When saved consent is present, cache checking, any required download, and speech-engine initialization begin on the first screen without blocking file opening. Once storage and the document are ready, a browser worker prepares the first sentence. Cache Storage can reuse those versioned files. If it is unavailable, the model is used only for the current visit and consent is requested again later. When the local voice is used, document sentences and generated audio are not sent to TxtSays. If you choose Google TTS or Microsoft TTS, the operating system, browser, or relevant voice provider may process the sentence through the browser's Web Speech API, but TxtSays still does not receive it. Dictionary shards are downloaded from this site and exact matching happens in the browser. Chrome's Translator API is invoked only after an explicit user action.

5. Google AdSense와 쿠키 / Google AdSense and cookies

TxtSays는 사이트 검토 및 광고 제공을 위해 Google AdSense 코드를 사용할 수 있습니다. Google을 포함한 제3자는 광고로 인해 브라우저에 쿠키를 삽입하거나 기존 쿠키를 읽을 수 있고, 웹 비콘으로 정보를 수집할 수 있습니다. 이 과정에서 현재 페이지 URL, IP 주소, 기기·브라우저 정보, 광고 상호작용 정보가 광고 제공, 측정, 맞춤설정, 사기 방지 목적으로 처리될 수 있습니다.

TxtSays may use Google AdSense code for site review and ad delivery. Third parties, including Google, may place or read cookies in the browser and collect information through web beacons. The page URL, IP address, device and browser information, and ad interactions may be processed for ad delivery, measurement, personalization, and fraud prevention.

자세한 내용은 Google이 파트너 사이트의 정보를 사용하는 방식 Google 광고 설정을 확인하세요. 관련 법률이 요구하는 지역에는 Google이 지원하는 동의 관리 절차가 적용될 수 있습니다.

6. 보관 기간과 사용자의 선택 / Retention and your choices

로그인하지 않으면 읽기 위치, 화면 언어 및 테마는 현재 브라우저에만 남습니다. 로그인하면 인증 계정과 동기화 설정은 사용자가 우측 상단 계정 메뉴에서 계정을 삭제할 때까지 Firebase에 보관됩니다. 계정 삭제는 TxtSays 로그인 계정과 서버의 동기화 데이터를 제거하지만 사용자의 Google 계정 자체를 삭제하지 않습니다. 브라우저의 localStorage와 캐시된 TTS 모델은 계정 삭제 후에도 남을 수 있으므로, 함께 제거하려면 txtsays.kr의 사이트 데이터를 삭제해야 합니다. 광고 쿠키는 브라우저와 Google 광고 설정에서 관리할 수 있으며, 제공자가 법률·보안 목적으로 보관하는 기록에는 각 제공자의 보관 정책이 적용됩니다.

When signed out, reading positions, interface language, and display theme remain only in the current browser. When signed in, the authentication account and synchronized settings remain in Firebase until you delete the account from the account menu in the upper-right corner. Account deletion removes the TxtSays sign-in account and server-side synchronization data; it does not delete your Google account. LocalStorage and cached TTS files may remain after account deletion, so clear the site data for txtsays.kr if you also want to remove local data. Advertising cookies can be managed through browser controls and Google Ad Settings. Records retained by providers for legal or security purposes remain subject to their respective retention policies.

7. 변경 및 문의 / Changes and contact

기능이나 외부 제공자가 바뀌면 이 방침을 업데이트하고 시행일을 표시합니다. 개인정보 및 데이터 처리 문의는 wjdxogh4020@gmail.com으로 보내주세요.

We will update this policy and its effective date when features or providers materially change. Questions about privacy or data use can be sent to wjdxogh4020@gmail.com.