ZUZUZU プライバシーポリシー
最終更新: 2026-09-19
すすり音は、あなたの端末に残ります。同時に、録るたびに私たちのサーバーへ送られます。 送られた音を誰かが聴ける場所に出すことはありません。 あなたが「公開する」を選んだときだけ、その一杯の音が誰にでも聴ける場所に出ます。
これはアプリの中でも同じ言葉でお伝えしている約束です。以下は、その約束が具体的に どういう実装になっているかを書いたものです。
⚠️ これまでの改定で変わったことを、隠さず並べておきます。
- すすり音を、録るたびにお預かりするようになりました(第2節)。 それ以前の版には「公開していない録音は端末から出ません」と書いてありました。 これはアプリを使う条件で、初回起動のときに同意をいただいています。 ⚠️ お預かりした音は、あとから消すことができません。
- すすり音を公開する機能を追加しました(第3節)。 公開はあなたが毎回その操作をしたときだけ起きます。
- 🔴 2026-09-19 の改定: 公開するときに SLURP TRACK の動画も一緒に出るようになりました(第3節)。 それ以前の版には「動画は端末から出ません」と書いてありました。 ⚠️ SLURP TRACK には、あなたが撮った丼の写真が焼き込まれています。 つまりこの改定は、あなたが撮った写真が端末の外へ出る道を初めて作ったということです。 出るのはあなたが「公開する」を選んだときだけで、お預かり(第2節)には入りません。 公開をやめれば動画も消えます(第8節)。
約束の内容が変わった箇所なので、隠さずここに書きます。
1. 端末の中だけに置くもの
次のものは、あなたの端末から出ません。私たちのサーバーにも、ほかのどこにも送られません。
- 丼の写真そのもの(写真のファイルを単体で送ることはありません)
⚠️ すすり音の録音はこの一覧から外れました(2026-08-22 の改定)。 録音は端末にも残りますが、同時に私たちのサーバーへ送られます。詳しくは第2節に書きます。
⚠️ 🔴 SLURP TRACK の動画もこの一覧から外れました(2026-09-19 の改定)。 あなたが「公開する」を選んだときだけ、動画が私たちのサーバーへ送られます(第3節)。 その動画には丼の写真が焼き込まれています。 ですから「写真は端末から出ません」とは、もう言い切れません—— 写真のファイルを単体で送ることはありませんが、公開すれば写真は動画の中に入って出ていきます。 ⚠️ 言い方を弱めたのは事実を誤魔化さないためです。公開しない限り、動画も写真も端末の中にあります。
録音と動画は、iOS では Library/Caches の下に置きます。ここは iCloud
バックアップの対象外です。Android ではアプリのバックアップ自体を無効にしています。
つまり、あなたの録音が私たち以外の場所(iCloud など)へ知らないうちに複製されることはありません。
⚠️ お預かり(第2節)の対象は音だけです。 写真と動画は、録るたびの自動送信には一切入りません。 🔴 動画が出ていくのは公開の操作をしたときだけで、そのときは第3節のとおりです。
2. 一杯を記録したときにサーバーへ送るもの
あなたが一杯を記録したとき、サーバーに送るのは次のものだけです。
- 🔴 すすり音の録音そのもの(下記)
- 選んだ店と、記録した日時
- 判定された型名とビート名
- 音の特徴を表す小数2桁に丸めた数値(十数個)
- 端末が作った匿名ID(第4節)
🔴 すすり音のお預かりについて
あなたが一杯を記録するたびに、その録音が私たちのサーバーへ送られます。 これはこのアプリを使う条件で、初回起動のときに同意をいただいています。 同意されない場合、このアプリはお使いいただけません。
何に使うのか: すすりの型を判定する仕組みを良くするためです。 実際のすすり音を集めないと、判定が外れている場面を見つけて直すことができません。 圧縮せずそのままの音でお預かりするのも同じ理由です(圧縮すると判定が見ている高い音の質感が失われます)。
誰が聴けるのか: ⚠️ お預かりした音は、誰にも聴ける状態になりません。 アプリにも、ほかの利用者にも、この音を再生する経路はありません。 ほかの人に聴かせるには、あなたが「公開する」を選ぶ必要があります(第3節)。
- 🔴 お預かりした音は、あとから消すことができません。 端末の中のすすり音はいつでも消せますが、送られたものは残ります(第8節)。 公開した投稿を取り消しても、お預かりした音は消えません。
- 🔴 お店で録ると、店員さんの声や隣の席の会話が入ることがあります。 公開のときと違い、お預かりはあなたが中身を確かめる前に行われます。 入れたくない場面では、録らないという選択をしてください。
- ⚠️ サンプルの音(アプリに同梱している見本)はお預かりしません。 あなたが録ったものではないからです。
マップに出るピンが持っている情報も、この範囲です。サムネイルに見えている写真は、 あなたの端末の中の写真をその場で読んで表示しているだけで、送信していません。
送らないもの
- 🚫 声や話し方からあなたを特定するための特徴(MFCC・ピッチ・フォルマントなど)
- 🚫 位置情報の生データ(緯度経度そのもの)
- 🚫 写真・動画ファイル
- 🚫 ミリ秒まで刻んだ時刻(記録の照合に使えてしまうため、精度を落としています)
⚠️ お預かりする音そのものには、当然あなたの声の特徴も含まれています。 私たちはそれを話者の特定には使いません。上の禁止は「特定のための特徴量を 別途計算して送る経路を作らない」という約束として、これまでどおり守ります。
3. すすり音を公開したとき — 何が起きるか
アプリの中であなたが「公開する」を選んだときだけ、その一杯のすすり音が 私たちのサーバーに送られ、マップ上のその店から、ほかの人が聴ける状態になります。 自動で公開されることは一切ありません。公開しない限り、音は第1節のとおり端末の中にあります。
公開されるもの
- すすり音そのもの — 録った音がそのまま出ます。 加工していない、録音されたとおりの音です
- 🔴 SLURP TRACK の動画(2026-09-19 から) — あなたが撮った丼の写真が焼き込まれた 15 秒の動画です。 写真に写っているもの(店内・同席の方・手元など)も一緒に出ます。 ⚠️ 動画が作られていない一杯では、音だけが出ます
- すすった店(この店から聴かれます)
- 公開した日時(分まで)
- 判定されたすすりの型
⚠️ 以前この節には「すすりだけ」「ビートと重ねたもの」も選べると書いていましたが、 いま公開できるのは「録った音そのまま」の1つだけです。 ほかの形を出せるようになったら、そのときにここへ書き足します。
🚫 再生回数・人気順・順位は作りません。並び順は新しいものから、だけです。 これはこのアプリが最初から守っている約束(店に点数を付けない・人を並べない)の一部です。
聴ける人の範囲
アプリを使っている人は誰でも聴けます。知り合いだけに限る設定はありません。 音声ファイルは URL を知っていても直接は読めない場所に置き、配信は必ずアプリからの リクエストとして行います。⚠️ ただしこれは公開範囲を狭める仕組みではありません (置き場所を無防備にしないための措置です)。
⚠️ 正直にお伝えしておくこと
- 「そのままの録音」には、周りの人の声が入っていることがあります。 お店で録れば、店員の方の声や隣の席の会話が入り得ます。 公開する前に必ずご自身で聴いて確認してください。アプリも公開の直前に同じ確認をお願いします。
- 🔴 動画に焼き込まれた写真には、丼のほかのものが写っていることがあります。 店内の様子・同席の方・手元などです。 音は誰の声か分かりにくいですが、写真はそうではありません。 ⚠️ ですから、公開する前に撮った写真そのものも確かめてください。 アプリは公開の確認画面で「動画が出ること」と「写真が焼き込まれていること」を必ずお伝えします。 それでも、写っているものを判断できるのはあなただけです。
- 私たちは公開前に人の目で中身を確認していません。 機械的な確認(すすりが入っているか・短すぎないか・長すぎないか・音が小さすぎないか・音が割れていないか) だけを行い、それを通れば公開されます。 周りの人の声が入っているかどうかは、機械では判定できません。 公開後に通報を受けたものは私たちが聴いて対応します(「そのままの録音」は優先して確認します)。
- 投稿に、あなたを指す番号は付きません。通し番号(#登録者№)の仕組みは 2026-08-22 に廃止しました。したがって「同じ番号の投稿を並べて、その人の行き先をたどる」 ことはできません。 ⚠️ ただし公開した投稿は店と日時とともに出ますので、 その一杯について「その店にいたこと」は公開されます。 知られたくない場所での一杯は、公開しないという選択をしてください。
- 公開した音に保管期限は設けていません。私たちの側から消すことはしません。 消せるのはあなたです(次項)。
公開をやめる方法
- アプリから取り消す — 公開した投稿は、いつでもあなたが削除できます。 削除すると音声ファイルそのものを消します。
- 私たちに依頼する — 通報・削除の依頼はアプリ内のフォームから受け付けます。 アプリを消してしまった場合は、第11節のお問い合わせフォームからご連絡ください。
🔴 ここに大事な注意があります。あなたの投稿は端末が作った匿名ID(第4節)に 紐づいており、この ID は端末の中にしかありません。アプリを削除したり機種を変えると ID は失われ、どの投稿があなたのものかを、私たちにもあなたにも示せなくなります。 ご連絡はいただけますが、投稿を特定する手がかりが無くなります。
🔴 この ID を別の端末へ引き継ぐ方法は、いまのところありません。 引き継ぎ用のコードを設定画面に用意することを検討しましたが、実装していません。 用意していないものを「あります」とは書けないので、ここには起きることだけを書きます—— この端末を失えば、公開した音はあなた自身にも消せなくなります。 公開するかどうかは、そのことを承知したうえで選んでください。
4. アカウントを作りません
メールアドレスも電話番号もパスワードも尋ねません。代わりに、アプリを最初に開いたときに 端末がランダムな匿名ID(UUID)を1つ作り、記録をこれに紐づけます。 この ID から、あなたが誰かを知る方法はありません。公開した投稿の持ち主も、この ID で管理します。 🚫 この ID をほかの人に見せることはありません。 第3節で公開されるものにも、あなたを指す番号は含まれません。
⚠️ 匿名IDは端末の中にしかありません。アプリを削除したり機種を変えると新しい ID になり、 それまでの記録とはつながりません。
🔴 公開した投稿があるとき、これは「自分の投稿を自分で消せなくなる」ことに直結します。 引き継ぐ方法は用意していません(第3節「公開をやめる方法」に書いたとおりです)。 ⚠️ 私たちはこれを残っている穴として承知しています。塞げていないものを 塞げたかのようには書きません。公開する前に、この端末を失ったときのことをお考えください。
5. 位置情報の使い方
すすった店を確認する画面で、いまの位置を使って近くの店の候補を出します。 精度は「おおよその位置」で十分なので、番地レベルの精度は要求しません。
🔴 2026-09-19 の改定で用途を1つ足しました: マップを開いたときの中心です。 中心を決めるためだけに使い、現在地の点を出すことも、動きを追いかけることもしません。 許可しなくてもマップは開きます(記録のある店、無ければ東京駅から始まります)。
端末の外に出るのはあなたが選んだ店の情報だけです。位置そのものは送りません。 常時取得もバックグラウンド取得もしません。
⚠️ ただしマップは「いま見えている範囲に、他の人が公開したすすりのある店はあるか」を サーバーに尋ねます(第3節の青いピン)。送るのは見えている範囲の矩形——数キロ四方の枠——であって、 あなたの座標ではありません。地図を動かすたびに尋ね直します。
⚠️ 第3節で公開した投稿はその店に紐づいて表示されます。 つまり「その店にいた」ことは公開されます。位置の生データは送っていませんが、 店の情報は公開されるという点をはっきりお伝えしておきます。
6. カメラと写真
丼の写真は、あなたが撮ったときだけ端末に保存します。 写真のファイルを単体で送ることはありません。 できた SLURP TRACK を写真ライブラリに保存する操作をしたときだけ、あなたのライブラリに書き込みます。
⚠️ 🔴 2026-09-19 の改定で「公開もされません」を取り消しました。 写真は SLURP TRACK に焼き込まれ、あなたが「公開する」を選ぶと動画として出ていきます(第3節)。 録るたびのお預かり(第2節)には入りません。公開をやめれば動画も消えます(第8節)。
7. 通知
同じ型の人が増えたことをお知らせする通知を、週に1回まで送ります。 配信には OneSignal を使い、渡すのは通知を届けるための識別子と型名だけです。 通知は端末の設定からいつでも止められます。
8. 消し方
- 公開した投稿を削除 — 公開をやめられます。 音声ファイルと SLURP TRACK の動画の両方を消します(第3節)。 🔴 動画の側を先に消します——写真が焼き込まれているほうが重いためです。
- すすり音をすべて削除 — 設定画面から、端末に残っている録音を全部消せます。型名・店・日付の記録は残ります。
- この記録のすすり音を削除 — 履歴から1件ずつ消せます。記録そのものは残ります。
- 自動削除 — 空き容量が少なくなると、古い録音から自動的に消えます。
⚠️ 端末の録音を消しても、すでに公開した投稿は消えません(別の場所にあります)。 公開をやめたいときは、上の「公開した投稿を削除」を使ってください。
🔴 そして、お預かりした音(第2節)も消えません。 上の4つが消すのはあなたの端末の中だけです。 ⚠️ 消せないものと消せるものを、はっきり分けて書いておきます。
- ✅ 消せる: 端末の中のすすり音・写真・動画/公開した投稿 (音も動画も消え、誰にも聴けず観られなくなります)
- 🚫 消せない: お預かりしたすすり音/マップのピン/匿名の数値(第2節)
🔴 公開した写真(動画に焼き込まれたもの)は「消せる」側です。 お預かりの対象ではないので、公開をやめれば残りません。 ⚠️ ただし、公開されている間に誰かが端末で録画・保存したものは、私たちの手の届く範囲にありません。
9. 通報とブロック
公開されている音について、聴いた人が私たちに通報できます。 通報が一定数に達したものは自動で聴けない状態にし、私たちが確認します。
特定の投稿者の音を今後表示しない(ブロック)こともできます。 ⚠️ ブロックはあなたの画面から見えなくする機能です。匿名IDは作り直せるため、 投稿する側を恒久的に締め出す仕組みは持っていません。 そのため私たちの側でも、問題のある投稿を個別に非公開にする手段を持っています。
10. 使っている外部サービス
- Cloudflare — API とデータベースの動作基盤(第2節のデータの保管先)。 お預かりしたすすり音(第2節)と、公開したすすり音(第3節)の保管もここです。 配信されるのは公開したものだけです
- OpenStreetMap / OpenFreeMap — 地図のデータとタイル配信
- OneSignal — 通知の配信
- RevenueCat — 課金の管理(購入したときだけ)
- Apple — アプリの配布と TestFlight のテスト配信
これらに第1節のもの(写真・動画)を渡すことはありません。 お預かりしたすすり音と、公開したすすり音は Cloudflare に保管します。 ほかのサービスには渡しません。
11. 提供者とお問い合わせ
このアプリの提供者は ZUZUZU Inc. です。 このポリシーの中の「私たち」は、この法人を指します。 お預かりしたすすり音を持っているのも、この法人です。
このポリシーやデータの扱いについてのご連絡は、 お問い合わせフォームからお願いします。 アプリをお使いの方は、アプリ内のフォームからも通報・削除の依頼ができます。
🔴 利用規約も併せてお読みください。 規約とポリシーは必ずセットで読むもので、規約の側にも同じ約束が書いてあります。
地図データは © OpenStreetMap contributors、ODbL の条件で利用しています。
ZUZUZU Privacy Policy
Last updated: 2026-09-19
Your slurp stays on your device. A copy is also sent to us every time you record. Nothing we keep is ever put where anyone can hear it. Only when you choose to publish does one of your slurps become audible to other people.
That is the same promise the app itself makes. This page explains what it means concretely.
⚠️ Here is everything our revisions have changed, stated plainly.
- We now keep a copy of every slurp you record (section 2). Earlier versions of this page said unpublished recordings never leave your device. This is a condition of using the app, and we ask for your consent the first time you open it. ⚠️ What we keep cannot be deleted afterwards.
- We added the ability to publish a slurp (section 3). Publishing only ever happens when you perform that action yourself.
- 🔴 Changed 2026-09-19: publishing now also publishes your SLURP TRACK video (section 3). Earlier versions of this page said videos never leave your device. ⚠️ A SLURP TRACK has the photo of your bowl burned into it. So this revision is the first time we have built a path for a photo you took to leave your device. It leaves only when you choose to publish, and it is never part of what we keep automatically (section 2). Un-publish and the video is deleted too (section 8).
The promise changed, so we state it here plainly rather than burying it.
1. What never leaves your device
- The photo file of your bowl (we never upload a photo on its own)
⚠️ Slurp recordings are no longer on this list (changed 2026-08-22). They stay on your device, and a copy is also sent to us — see section 2.
⚠️ 🔴 SLURP TRACK videos are no longer on this list either (changed 2026-09-19). Only when you choose to publish is the video sent to our server (section 3), and that video has the photo of your bowl burned into it. So we can no longer claim outright that "photos never leave your device" — we never upload a photo on its own, but if you publish, the photo goes out inside the video. ⚠️ We weakened the wording so as not to paper over the fact. Until you publish, both the video and the photo stay on your device.
On iOS these live under Library/Caches, which is excluded from iCloud backup.
On Android app backup is disabled entirely, so
your recordings are never silently copied anywhere other than to us.
⚠️ Photos and videos are never published and never collected. Section 3 covers sound only, and so does section 2.
2. What we send when you record a bowl
- 🔴 The slurp recording itself (below)
- The shop you picked and the date and time
- Your form name and beat name
- A handful of numbers describing the sound, rounded to two decimals
- An anonymous ID generated on your device (section 4)
🔴 About the recordings we keep
Every time you record a bowl, that recording is sent to our servers. This is a condition of using the app, and we ask for your consent the first time you open it. If you do not agree, the app cannot be used.
What we use it for: improving how slurps are classified. Without real recordings we cannot find and fix the cases where the classification is wrong. We keep the audio uncompressed for the same reason — compression destroys the high-frequency texture the classifier reads.
Who can hear it: ⚠️ nobody. There is no path — in the app or anywhere else — that plays back what we keep. For other people to hear a slurp, you have to choose to publish it (section 3).
- 🔴 What we keep cannot be deleted afterwards. You can delete the audio on your device at any time, but what has been sent stays with us (section 8). Taking a published post down does not delete it either.
- 🔴 Recording in a shop can pick up staff or the conversation at the next table. Unlike publishing, this happens before you check the content. Where you would rather not capture that, choose not to record.
- ⚠️ The bundled sample sound is never collected — it is not something you recorded.
Pins on the map carry only this. Thumbnails are read from your device's own photos at display time and are never uploaded.
What we never send
- 🚫 Features computed to identify you from your voice (MFCC, pitch, formants)
- 🚫 Raw location data (your actual coordinates)
- 🚫 Photos, and video files (⚠️ videos do go out when you publish — section 3. This list is about what we take automatically when you record)
- 🚫 Millisecond-precision timestamps (deliberately coarsened)
⚠️ The recordings we keep of course carry the characteristics of your voice. We do not use them to identify speakers. The prohibition above stands as the promise it has always been: we do not build a path that computes and uploads speaker-identifying features.
3. What happens when you publish a slurp
Only when you choose to publish is that slurp sent to our server and made audible to other people from that shop on the map. Nothing is ever published automatically. Until you publish, section 1 holds: the sound stays on your device.
What becomes public
- The slurp itself — the raw recording, exactly as captured. Nothing is processed or removed
- 🔴 Your SLURP TRACK video (from 2026-09-19) — a 15-second video with the photo of your bowl burned into it. Whatever else that photo shows — the room, the people with you, your hands — goes out too. ⚠️ If no video was generated for that bowl, only the sound is published
- The shop you slurped at (people reach it from there)
- The date and time you published (to the minute)
- Your form
⚠️ This section used to say you could also publish "the slurp only" or a version layered with a beat. Today the raw recording is the only form that can be published. If the others become possible, we will say so here.
🚫 We never build play counts, popularity, or rankings. The only ordering is newest first. This is part of the promise this app has kept from the start: no scores for shops, no leaderboards for people.
Who can listen
Anyone using the app. There is no friends-only setting. The audio files sit in a location that cannot be read directly even with the URL, and delivery always goes through the app. ⚠️ That is not a way of narrowing the audience — it only keeps the storage itself from being wide open.
⚠️ Things we want to be straight with you about
- A raw recording may contain other people's voices. Recorded in a shop, it can pick up staff or the conversation at the next table. Please listen to it yourself before publishing. The app asks you to do the same right before it goes out.
- 🔴 The photo burned into the video may show more than your bowl — the room, the people with you, your hands. A voice is hard to attribute to a person; a photo is not. ⚠️ So before publishing, look at the photo you took as well. The app always tells you, on the confirmation screen, that the video goes out and that the photo is burned into it. Even so, you are the only one who can judge what is in it.
- We do not review content with human eyes before it is published. We run automatic checks only (is there a slurp in it, is it too short, too long, too quiet, clipped) and anything that passes goes live. Whether someone else's voice is in it cannot be determined automatically. We listen to anything that gets reported after the fact, and we prioritise reports about raw recordings.
- Nothing on a post identifies who published it. Member numbers were removed on 2026-08-22, so posts cannot be lined up to trace one person's movements. ⚠️ A published post still carries the shop and the time, so for that bowl the fact that you were at that shop is public. For a bowl at a place you would rather not disclose, choose not to publish.
- Published sound has no retention limit. We will not delete it from our side. You can (next).
How to un-publish
- Delete it from the app — you can remove a published post at any time. Deleting it removes the audio file itself.
- Ask us — reports and deletion requests go through the in-app form. If you have already removed the app, use the contact form in section 11.
🔴 One important caveat. Your posts are tied to the anonymous ID your device generated (section 4), and that ID exists only on your device. Delete the app or change phones and the ID is gone, which means neither we nor you can demonstrate which posts were yours. You can still reach us, but the link is gone.
🔴 There is currently no way to carry that ID to another device. We considered a restore code in Settings and did not build it. We will not describe something we have not made, so here is only what actually happens: lose this device and even you can no longer delete what you published. Please decide whether to publish with that in mind.
4. No accounts
We never ask for an email address, phone number, or password. Instead your device generates one random anonymous ID (a UUID) the first time you open the app, and records are tied to that. There is no way to get from that ID back to you. Published posts are owned through the same ID. 🚫 We never show that ID to anyone else, and nothing published in section 3 identifies you either.
⚠️ The ID exists only on your device. Deleting the app or changing phones produces a new one, and your previous records will not follow you.
🔴 If you have published anything, this directly means losing the ability to delete your own posts. No carry-over exists (see "How to un-publish" in section 3). ⚠️ We know this is a hole we have not closed, and we will not write as though we had. Think about losing this device before you publish.
5. How location is used
When you confirm which shop you slurped at, we use your current position to suggest nearby shops. Coarse accuracy is enough, so we do not request street-level precision.
🔴 Changed 2026-09-19: we now also use it for one more thing — where the map opens. It only decides the centre. We do not draw a dot for you, and we do not follow you. If you decline, the map still opens (at a shop you have recorded, or at Tokyo Station if you have none).
The only thing that leaves your device is the shop you chose. We never send the position itself, and we never track you in the background.
⚠️ The map does ask the server whether any shop inside the area you are looking at has slurps other people published (the blue pins in section 3). What we send is that rectangle — a frame a few kilometres across — not your coordinates. We ask again each time you move the map.
⚠️ A post you publish under section 3 appears attached to that shop. In other words, the fact that you were at that shop becomes public. We do not send raw coordinates, but we want to be explicit that the shop does become public.
6. Camera and photos
Bowl photos are stored on your device when you take them. We never upload a photo file on its own. We write to your photo library only when you explicitly save a SLURP TRACK to it.
⚠️ 🔴 The 2026-09-19 revision withdrew "and never published". The photo is burned into your SLURP TRACK, and if you choose to publish, it goes out as part of that video (section 3). It is never part of what we keep automatically when you record (section 2). Un-publish and the video is deleted too (section 8).
7. Notifications
We send at most one notification per week, to tell you when more people share your form. Delivery uses OneSignal, which receives only a delivery identifier and the form name. You can turn notifications off in your device settings at any time.
8. How to delete things
- Delete a published post — un-publishes it and removes both the audio file and the SLURP TRACK video (section 3). 🔴 The video goes first, because the one with a photo burned into it matters more.
- Delete all slurps — from Settings, removes every recording on the device. Form names, shops, and dates remain.
- Delete this slurp — from your history, one at a time. The record itself remains.
- Automatic deletion — when storage runs low, the oldest recordings are removed first.
⚠️ Deleting recordings on your device does not remove anything you already published — that lives elsewhere. To un-publish, use the first item above.
🔴 Nor does it remove the copies we keep (section 2). The four items above clear your device only. Here is the split, stated plainly:
- ✅ Can be deleted: audio, photos and videos on your device; published posts (both sound and video go, and nobody can hear or watch them afterwards)
- 🚫 Cannot be deleted: the slurps we keep; map pins; the anonymous numbers (section 2)
🔴 A published photo (the one burned into the video) is on the "can be deleted" side. It is not part of what we keep, so un-publishing leaves nothing behind. ⚠️ What someone else recorded or saved on their own device while it was public is beyond our reach.
9. Reporting and blocking
Anyone listening can report a published sound. Once reports reach a threshold the sound is hidden automatically and we review it.
You can also block a poster so their sounds no longer appear for you. ⚠️ Blocking hides them from your view. Because anonymous IDs can be regenerated, we have no way to permanently bar someone from posting. That is why we also keep the ability to take individual posts down ourselves.
10. Third-party services
- Cloudflare — hosts the API and database (where section 2 data lives). Both the slurps we keep (section 2) and the ones you publish (section 3) are stored here. Only published ones are ever served
- OpenStreetMap / OpenFreeMap — map data and tile delivery
- OneSignal — notification delivery
- RevenueCat — purchase management (only if you buy something)
- Apple — app distribution and TestFlight
None of them ever receive the items in section 1 (photos, videos). Slurps — both kept and published — are stored on Cloudflare. They go nowhere else.
11. Provider and contact
This app is provided by ZUZUZU Inc.. “We” throughout this policy means that company, and it is the company that holds the slurps we keep.
For questions about this policy or how your data is handled, please use our contact form. If you have the app installed, you can also report content or request deletion from the in-app form.
🔴 Please read the Terms of Use as well. The two belong together — the same promises are stated there.
Map data © OpenStreetMap contributors, used under the ODbL.