LEGAL
プライバシーポリシー
Privacy Policy
第1条(適用)
本ポリシーは、ファイル送達サービス「TrueSend」に関する個人情報の取り扱いを定めます。
This Policy describes how personal information relating to the TrueSend file-delivery service is handled.
第2条(取得する情報)
TrueSendは、本サービスの提供にあたり、次の情報を取得します。
- お申し込み時にご登録いただくメールアドレス・会社名・住所・電話番号
- 送信者および受取人のメールアドレス、送信者が入力するメッセージ、アップロードされたファイル、ファイル名・容量・ハッシュ値その他のファイル情報
- IPアドレス、IPアドレスから推定した国・地域・都市、ブラウザおよび端末に関する情報、ブラウザが報告するIANAタイムゾーン、ブラウザの言語設定(優先順)、HTTPのAccept-Language、Cookieおよびセッション情報
- 共有ページへのアクセス、メール認証、アクセスリンクの使用、ダウンロードの開始・進行・完了・中断に関する日時、操作内容および送信バイト数
- 確認メールその他のメールについて、送信日時、Message-ID、送信処理、宛先メールサーバーによる受領その他の配送状況
- お問い合わせフォームに入力された氏名、所属先、連絡先、法域・裁判所、事件等の参照情報、TrueSend証明書番号、希望期限およびお問い合わせ内容
TrueSend collects member registration and billing details; sender and recipient email addresses; sender messages; uploaded files and file metadata; IP addresses and approximate IP-derived location; browser and device information; the browser-reported IANA timezone; ordered browser language preferences; the HTTP Accept-Language value; cookie and session information; timestamps and activity relating to share-page access, email verification, access-link use and downloads; transferred byte counts; email submission and delivery-status information; and information submitted through inquiry forms, including contact, organization, jurisdiction, case-reference, certificate-number, deadline and inquiry details.
タイムゾーンおよびブラウザの言語設定は、利用規約および本ポリシーへの同意を伴う既存の操作後に取得します。同意前は、IPアドレスから判定したアクセス元の国がEU、EEAまたは英国である場合は取得せず、それ以外の判定済みの国では取得します。国を判定できない場合も取得しません。これらの設定はブラウザによる申告値であり、IPアドレスから推定した地域および登録利用者がTrueSendで選択した表示言語とは別の情報です。取得値は同一サイトのセッションCookieを通じてTrueSendに送信され、第三者には送信されません。現在、これらの取得値は帳票、送達証明書、メール、CSV、署名付きJSONまたは送信者向け画面には表示しません。
The timezone and browser language settings are collected after an existing action that records agreement to the Terms and this Policy. Before agreement, TrueSend does not collect them when the IP-derived origin country is in the EU, EEA or UK; it collects them for other countries whose origin can be determined. It does not collect them when the country cannot be determined. These are browser-reported settings, distinct from IP-derived location and from a registered member's selected TrueSend display language. The values are sent to TrueSend through same-site session cookies and are not sent to a third party. They are not currently displayed in reports, delivery certificates, emails, CSV, signed JSON, or sender-facing pages.
第3条(利用目的)
取得した情報は、本サービスの提供、宛先メールアドレスの確認、不正利用の防止、セキュリティの確保、操作に関連するブラウザ環境の記録、ファイルおよびメールの送達状況の記録、送達記録・通知・証明書の作成、お問い合わせへの対応、法的証言・専門家サービスに関する利益相反・対応可能性・対象範囲の確認および連絡、法令上の義務の履行ならびに本サービスの維持・改善のために利用します。
TrueSend uses this information to provide the service, verify recipient email addresses, prevent abuse, maintain security, record the browser environment associated with an action, record file and email delivery activity, create delivery records, notifications and certificates, respond to inquiries, assess conflicts, availability and scope for legal-testimony and expert services, communicate about those services, comply with law, and maintain and improve the service.
第4条(送信者への提供)
TrueSendは、受取人のメールアドレス、IPアドレス、IPアドレスから推定した地域、アクセス日時、メールの配送状況、アクセスリンクの使用およびダウンロード状況を、送信者の管理画面、通知、送達記録または送達証明書を通じて送信者に提供する場合があります。
TrueSend may provide the sender with the recipient’s email address, IP address, approximate IP-derived location, access times, email delivery status, access-link use and download activity through the sender dashboard, notifications, delivery records or delivery certificates.
第5条(外部サービスおよび委託先)
TrueSendは、自ら運用する計算チャレンジによって自動アクセスを抑制します。
TrueSendは、暗号化されたファイルの保管にAkamai/Linodeの東京リージョンのオブジェクトストレージを利用します。同社には、暗号化されたファイル本体、内容を示さない識別子、暗号文の容量、通信・ダイジェスト情報、リクエスト時刻、TrueSendサーバーのIPアドレスおよび認証済みリクエスト情報が送信されます。ファイルの平文、元のファイル名、送信者・受取人のメールアドレス、メッセージ、共有URLおよび暗号化キーを、オブジェクトの内容またはメタデータとして送信しません。
利用者がパスキーの同期またはブラウザが提供するQRコードによる端末間認証を使用する場合、Apple、GoogleまたはMicrosoftのうち利用者のブラウザ・端末が選択する基盤が処理に関与することがあります。各提供者は、IPアドレス、ブラウザ・OS・端末情報、処理時刻、暗号化されたパスキー同期情報、端末間認証に必要な暗号化済みの接続・中継情報を受け取る場合があります。TrueSendはパスキーの秘密鍵を受け取りません。
TrueSend uses its self-hosted computational challenge to deter automated access.
When a user uses passkey synchronization or browser-provided cross-device QR authentication, infrastructure selected by the user's browser or device from Apple, Google or Microsoft may participate. A provider may receive IP address, browser, operating-system and device information, request timing, encrypted passkey-sync material, and encrypted connection or relay information required for cross-device authentication. TrueSend never receives the passkey private key.
TrueSend uses Akamai/Linode Object Storage in Tokyo to store encrypted files. Akamai/Linode receives encrypted file bytes, an opaque identifier, ciphertext size, protocol and digest information, request timing, the TrueSend server IP address, and authenticated request information. TrueSend does not send file plaintext, original filenames, sender or recipient addresses, messages, share URLs, or encryption keys as object content or metadata.
第6条(その他の第三者提供)
第4条および第5条に定める場合、本人の同意がある場合、業務委託先に必要な範囲で取り扱いを委託する場合、事業承継の場合または法令に基づく場合を除き、TrueSendは個人データを第三者に提供しません。
Except as described in Articles 4 and 5, with the individual’s consent, through necessary processing by service providers, in connection with a business succession, or as required by law, TrueSend does not provide personal data to third parties.
第7条(保存期間)
アップロードされたファイルおよび共有リンクは原則として作成から1年間保持し、削除または有効期間の経過後に順次削除します。送達記録および送達証明書は原則として12ヶ月保持します。お問い合わせ情報は、回答、依頼の検討、業務管理または法令対応に必要な期間保持します。法令上の義務、セキュリティ、紛争対応またはバックアップのため合理的に必要な範囲で、これより長く保持する場合があります。
Uploaded files and share links are generally retained for one year and then removed after deletion or expiry. Delivery records and delivery certificates are generally retained for 12 months. Inquiry information is retained as needed to respond, assess an engagement, administer the matter, or comply with law. Information may be retained longer where reasonably necessary for legal obligations, security, disputes or backups.
第8条(安全管理)
TrueSendに保存されるファイルは、すべてAES-256-GCMで暗号化されます。標準保護では、TrueSendが復号に必要なファイルごとのキーを暗号化して保持します。ユーザー保管キーを選択した場合、TrueSendはそのキーを保持せず、キーを失った場合もファイルを復元できません。TrueSendはこのほか、アクセス制御、通信の保護、操作記録その他の適切な安全管理措置を講じ、従業者および委託先を適切に監督します。
Every file stored by TrueSend is encrypted with AES-256-GCM. With standard protection, TrueSend retains an encrypted copy of the per-file key required for decryption. With a user-held key, TrueSend does not retain the key and cannot recover the file if the key is lost. TrueSend also applies access controls, protection in transit, operational logging, and appropriate supervision of personnel and service providers.
第9条(開示・訂正・削除等)
ご本人からの保有個人データの利用目的の通知、開示、訂正、追加、削除、利用停止、消去または第三者提供の停止のご請求には、ご本人確認のうえ法令に従って対応します。
Subject to applicable law and identity verification, individuals may request notice of purpose, access, correction, supplementation, deletion, restriction, erasure or cessation of third-party provision concerning retained personal data.
第10条(お問い合わせおよび改定)
本ポリシーに関するお問い合わせおよび請求は、お問い合わせフォームまたは contact@truesend.jp までご連絡ください。TrueSendは、必要に応じて本ポリシーを改定し、重要な変更は本サービス上でお知らせします。
Use the contact form or email contact@truesend.jp with questions or requests. TrueSend may revise this Policy and will announce material changes through the service.
制定・最終改定日:2026年8月18日
Effective and last updated: August 18, 2026