G KanbanNo One Needs Another Kanban, OK?

Privacy Policy

Effective date: July 19, 2026 · Last updated: July 19, 2026

The short version
Do I need an account?
No. G Kanban is local-first — it works fully on your device with no account and no network connection.
Where does my data live?
On your device by default. It only goes to our cloud if you sign in and turn on sync — and then it's stored in the EU (Frankfurt, Germany).
Do you sell my data or show ads?
No. We don't sell or share your data for advertising, and there are no ads.
Do you track me?
No third-party analytics or tracking cookies as of the effective date.
What do you get when I sign in with Google or GitHub?
Your email address, name, and avatar image, plus a provider account ID — used only to create and secure your account.
Can I delete everything?
Yes. Delete account removes your account and all cloud data; Delete local data wipes this device. You can also export first, then clear.
Can I take my data with me?
Yes — one-click JSON export of everything.

1. Who we are

G Kanban (the “Service”) is operated by Benri.tech, a trade name (DBA) of The Technical Initiative, LLC, a company registered in the United States (“we”, “us”), the data controller for personal data processed through the Service. Contact: support@gkanban.com.

2. Our approach

G Kanban is local-first: your boards are stored in your browser and never leave your device unless you choose to sign in and enable cloud sync. We collect the minimum needed to provide the Service.

3. What data we process

a. Local data (on your device)

Your boards, columns, cards, labels, and preferences are stored in your browser's local storage. This stays on your device and is not transmitted to us unless you enable sync.

b. Account data (only if you sign in)

If you sign in with Google or GitHub, we receive from that provider your email address, display name, avatar URL, and a provider account identifier. Authentication is handled by our processor Supabase. We use this only to create, identify, and secure your account.

c. Cloud sync data (only if you enable it)

If you turn on sync, your board content and app settings are stored in our database so they back up and sync across your devices. Access is restricted by row-level security so that only your account can read or write your data.

d. Billing data (only if you subscribe)

Paid plans are sold by our Merchant of Record, Polar, who acts as the seller of record and processes your payment. Card details are entered on Polar's checkout and we never receive or store them. We store only a subscription record (plan, status, and the provider's customer and subscription identifiers) so we can grant you the features you paid for.

e. Technical data

Our hosting and database providers process standard technical information (e.g., IP address, browser type, timestamps) in server and security logs to operate and protect the Service.

4. What we do NOT do

We do not sell or rent your personal data, serve advertising, use advertising or cross-site tracking cookies, or run third-party behavioral analytics (as of the effective date). We do not train AI models on your content, and we do not infer or correlate your behavior across devices or accounts.

5. Cookies & local storage

We use only essential browser storage: your boards and preferences, and — if you sign in — an authentication session token to keep you signed in. We do not use tracking or advertising cookies.

6. Where your data is stored & international transfers

Cloud data is stored in the European Union (Frankfurt, Germany). The application itself is delivered via a global content-delivery network. If you sign in with Google or GitHub, those providers may process data outside the EU (e.g., the United States) under their own safeguards (such as Standard Contractual Clauses).

7. Sub-processors

ProviderPurposeLocation
SupabaseDatabase & authentication (cloud sync, sign-in)EU (Frankfurt)
CloudflareApplication hosting & content deliveryGlobal CDN
PolarPayments & Merchant of Record (paid plans) — only if you subscribeUS / global
GoogleSign-in (OAuth) — only if you choose itUS / global
GitHubSign-in (OAuth) — only if you choose itUS / global

8. Legal bases (GDPR)

We process personal data on the bases of: your consent (signing in and enabling sync); performance of a contract (providing the Service to account holders); and our legitimate interests (operating, securing, and improving the Service). You may withdraw consent at any time by signing out and deleting your account.

9. Your rights

Subject to applicable law (including the EU/UK GDPR and Japan's Act on the Protection of Personal Information), you have the right to access, correct, delete, export, restrict, or object to the processing of your personal data, and to lodge a complaint with a supervisory authority. To exercise these:

10. Data retention

Cloud data is kept until you delete it or your account. When you delete your account, your data is removed from our active systems immediately and from backups within 30 days. Local data remains on your device until you clear it.

11. Children

The Service is not directed to children under 16, and we do not knowingly collect their personal data.

12. Security

We protect data with encryption in transit (HTTPS), row-level access controls, and EU hosting. No method of transmission or storage is completely secure, but we work to protect your information.

13. Planned features

The following are not yet active; we will update this policy before they launch: AI features, additional sign-in providers, privacy-respecting (cookieless) analytics, and an optional end-to-end-encrypted local vault. The commitments in Section 4 — including no AI training on your content — will continue to apply once AI features ship.

14. Changes

We may update this policy; we will revise the effective date above and surface material changes in the app.

15. Contact

support@gkanban.com · Benri.tech (The Technical Initiative, LLC), the United States

プライバシーポリシー

施行日:2026年7月19日 ・ 最終更新:2026年7月19日

要約
アカウントは必要ですか?
いいえ。G Kanbanはローカルファーストで、アカウントもネット接続もなしに、お使いのデバイス上で完全に動作します。
データはどこに保存されますか?
既定ではお使いのデバイス上です。サインインして同期をオンにした場合にのみクラウド(EU・ドイツ・フランクフルト)に保存されます。
データを販売したり広告を表示しますか?
いいえ。広告目的でのデータ販売・共有は行わず、広告も表示しません。
追跡(トラッキング)しますか?
施行日時点で、第三者による分析や追跡Cookieは使用していません。
Google/GitHubでサインインすると何を取得しますか?
メールアドレス、名前、アバター画像、プロバイダのアカウントID。アカウントの作成と保護のためだけに使用します。
すべて削除できますか?
はい。「アカウントを削除」でアカウントと全クラウドデータを削除、「ローカルデータを削除」でこのデバイスのデータを消去できます。先にエクスポートも可能です。
データを持ち出せますか?
はい。ワンクリックで全データをJSONエクスポートできます。

1. 事業者情報

G Kanban(以下「本サービス」)は、the United Statesで登記されたThe Technical Initiative, LLCの屋号(DBA)であるBenri.tech(以下「当社」)が運営し、本サービスで処理される個人データの管理者です。連絡先:support@gkanban.com

2. 基本方針

G Kanbanはローカルファーストです。ボードはブラウザに保存され、サインインしてクラウド同期を有効にしない限りデバイスから送信されません。サービス提供に必要最小限のデータのみを取得します。

3. 取得・処理するデータ

a. ローカルデータ(デバイス上)

ボード・列・カード・ラベル・設定はブラウザのローカルストレージに保存されます。同期を有効にしない限り当社に送信されません。

b. アカウントデータ(サインインした場合のみ)

Google/GitHubでサインインすると、プロバイダからメールアドレス、表示名、アバターURL、アカウント識別子を受け取ります。認証は処理者であるSupabaseが行います。アカウントの作成・識別・保護のためにのみ使用します。

c. クラウド同期データ(有効にした場合のみ)

同期を有効にすると、ボードの内容とアプリ設定が当社のデータベースに保存され、デバイス間でバックアップ・同期されます。行レベルセキュリティにより、ご自身のアカウントのみが読み書きできます。

d. 課金データ(ご契約の場合のみ)

有料プランは当社のMerchant of RecordであるPolarが販売者として販売し、決済を処理します。カード情報はPolarの決済画面で入力され、当社が受け取る・保存することはありません。当社は、ご購入いただいた機能を提供するために必要な契約情報(プラン、ステータス、Polar側の顧客ID・契約ID)のみを保存します。

e. 技術データ

ホスティング及びデータベースのプロバイダが、サービスの運用と保護のため、標準的な技術情報(IPアドレス、ブラウザ種別、タイムスタンプ等)をサーバー・セキュリティログとして処理します。

4. 行わないこと

個人データの販売・貸与、広告配信、広告・クロスサイト追跡Cookieの使用、第三者による行動分析は行いません(施行日時点)。また、お客様のコンテンツを用いたAIモデルの学習、デバイスやアカウントをまたいだ行動の推測・関連付けも行いません。

5. Cookie・ローカルストレージ

必須のブラウザストレージのみを使用します:ボードと設定、及び(サインイン時)サインイン状態を保持する認証セッショントークン。追跡・広告Cookieは使用しません。

6. データの保存場所と国際移転

クラウドデータは欧州連合(ドイツ・フランクフルト)に保存されます。アプリ本体はグローバルなコンテンツ配信網で配信されます。Google/GitHubでサインインした場合、これらのプロバイダがEU域外(米国等)で各社のセーフガード(標準契約条項等)の下にデータを処理することがあります。

7. 委託先(サブプロセッサー)

提供者目的所在
Supabaseデータベース・認証(クラウド同期、サインイン)EU(フランクフルト)
Cloudflareアプリのホスティング・配信グローバルCDN
Polar決済・Merchant of Record(有料プラン・ご契約時のみ)米国/グローバル
Googleサインイン(OAuth・選択時のみ)米国/グローバル
GitHubサインイン(OAuth・選択時のみ)米国/グローバル

8. 処理の法的根拠(GDPR)

当社は次の根拠で個人データを処理します:同意(サインイン及び同期の有効化)、契約の履行(アカウント保有者へのサービス提供)、正当な利益(サービスの運用・保護・改善)。サインアウトしアカウントを削除することで、いつでも同意を撤回できます。

9. お客様の権利

適用法(EU/英国GDPR、日本の個人情報保護法を含む)に従い、個人データへのアクセス・訂正・削除・エクスポート・処理の制限・異議申立てを行う権利、及び監督機関へ苦情を申し立てる権利があります。行使方法:

10. データの保持期間

クラウドデータは、お客様が削除するかアカウントを削除するまで保持されます。アカウント削除時、データは稼働システムから直ちに、バックアップからは30日以内に削除されます。ローカルデータは、お客様が消去するまでデバイスに残ります。

11. お子様について

本サービスは16歳未満のお子様を対象としておらず、その個人データを故意に取得することはありません。

12. セキュリティ

通信の暗号化(HTTPS)、行レベルのアクセス制御、EUでのホスティングによりデータを保護します。完全に安全な手段は存在しませんが、お客様の情報の保護に努めます。

13. 今後の機能

以下は現時点で未提供であり、提供開始前に本ポリシーを更新します:AI機能、追加のサインイン手段、プライバシーに配慮した(Cookie不使用の)分析、任意のエンドツーエンド暗号化ローカル保管庫。第4条の約束(お客様のコンテンツを用いたAI学習を行わないこと等)は、AI機能の提供開始後も引き続き適用されます。

14. 変更

本ポリシーは更新されることがあります。その場合、上記の施行日を改定し、重要な変更はアプリ内でお知らせします。

15. お問い合わせ

support@gkanban.com ・ Benri.tech(The Technical Initiative, LLC、the United States)