Privacy Policy
Last updated: 9 October 2026 · Version 1.0
Section 1 applies to this website today. Sections 2 onwards apply to the Hirome service from the start of the beta; they are being reviewed by a lawyer and may change before then. If the Japanese and English versions differ, the Japanese version prevails.
This policy explains what personal information Tokyo Techies Corp. ("we") handles for Hirome and this website, why, who we share it with, and the choices you have. We follow Japan's Act on the Protection of Personal Information (APPI) and, where they apply, other privacy laws such as the EU GDPR.
1. This website and early access requests
Today, the only personal information we collect is what you send through this website.
- What we collect: when you request early access or a conversation, your name, work email, company, website (if given), industry, and which of the two you asked for.
- Why: only to contact you about Hirome early access and to understand which industries are asking for it. We do not sell or share your data with third parties for marketing.
- Where it goes: your submission is stored in our lead pipeline, operated by Tokyo Techies. This site is hosted by Vercel (United States). If the lead pipeline cannot be reached, your submission is passed to our team through a private Discord channel (Discord, United States) instead.
- Email: we only email people who asked to hear from us, and every email includes a way to opt out, in line with Japan's Act on Regulation of Transmission of Specified Electronic Mail.
- Cookies: this website uses one cookie to remember your language (NEXT_LOCALE) and your browser's local storage to remember the light or dark theme. It uses no analytics or advertising tools.
2. Two kinds of personal information
- About you and your team (our customers): we decide how it is used. We are responsible for it.
- About other people on Platforms (for example people who reply to your posts, send you messages, or match the audience you chose): we handle it for you, only to run the Service for your business, as an entrusted party (委託先). You decide whom Hirome engages with and why.
3. What we collect
| Information | Examples | Where it comes from |
|---|---|---|
| Account details | Name, business name, email, role, login records | You |
| Billing details | Billing address, plan, invoices. Card numbers are handled by our payment provider, not stored by us | You, payment provider |
| Your Content | Brand documents, posts, images, videos, instructions, approvals, edits | You |
| Connected Account details | Platform user name, profile name, OAuth tokens (Official mode) | The Platform, with your permission |
| Activity on Platforms done by Hirome | Actions taken, time, result, screenshots of the controlled tab as proof of an Action | The Extension, the Platform API |
| Other people's public data | Public profile name, user name, bio, follower count, public posts and comments | Platforms, as seen by your account |
| Messages and replies to you | Direct messages and replies other people send to your Connected Account, and our drafted answers | Platforms, as seen by your account |
| Device and usage data | Browser type, Extension version, IP address, error logs, pages used in the dashboard, cookies | Your browser and device |
What we do not collect: your Platform passwords, your Platform login cookies, two-factor codes, or anything from websites other than the Platforms you connected. The Extension cannot read other websites.
4. Why we use it
- To provide the Service: write drafts, carry out the Actions you approved or allowed, show you results.
- To protect your Connected Accounts: apply limits, detect Platform warnings, and stop Hirome when needed.
- To keep the Service secure, prevent abuse and investigate problems.
- To bill you and to talk to you about your account, changes and support.
- To improve Hirome, using usage data and feedback. We use other people's Platform data only for the customer it was collected for, never to build lists for other customers.
- To follow the law and respond to lawful requests.
We do not sell personal information. We do not use Your Content or other people's Platform data to train AI models offered to other customers.
5. Chrome extension: Limited Use
Data the Extension handles is used only to provide and improve the features you see in Hirome. We do not transfer it to others except as needed to provide the Service, to follow the law, or as part of a merger with notice to you. We do not use it for advertising, and people at Hirome read it only with your permission, for security, or when the law requires.
6. Who we share it with
We share personal information only:
- with service providers that run parts of the Service for us, under contracts that limit their use (table below);
- with a Platform, when Hirome carries out an Action you asked for (for example, publishing your post or sending your approved reply);
- when the law requires it, or to protect someone's life, body or property where getting consent is difficult;
- with a buyer or successor in a merger or business transfer, under the same protections.
| Provider | What they do | Where data is stored |
|---|---|---|
| Vercel | Hosting this website | United States |
| Discord | Passing early access requests to our team when the lead pipeline cannot be reached | United States |
The providers for the Hirome service (cloud hosting, AI models, text-to-speech, payments, email) and their countries will be added to this table before the beta opens.
7. Information sent outside Japan
Some providers above store or process data outside Japan, including in the United States. Before such a transfer, we check that the provider takes measures equal to those required by APPI, or we ask for your consent. On request, we tell you the country, its privacy rules, and the measures the provider takes, as APPI requires.
8. How long we keep it
| Information | How long |
|---|---|
| Early access requests | Until Hirome early access onboarding ends, or until you ask us to delete it |
| Account and Your Content | While your account is active, then 30 days for export, then deleted |
| Other people's Platform data | While needed for your campaigns, and no longer than 90 days after it was last used, unless it became a lead you kept |
| Screenshots of Actions | 7 days, unless kept as proof of a disputed Action |
| Security and audit logs | 1 year |
| Billing records | As long as Japanese tax law requires (usually 7 years) |
Backups are overwritten on a rolling cycle within 30 days.
9. How we protect it
Our security measures (安全管理措置) include:
- Organisation: a named person responsible for personal data; rules for handling it; a process for incidents.
- People: confidentiality agreements and regular training for staff.
- Physical: data kept only in managed data centres; staff devices encrypted.
- Technical: encryption in transit and at rest; access only for staff who need it; logs of access; signed commands between our servers and the Extension; the Extension limited to the Platforms you connected.
If a data breach may harm you, we will tell you and the Personal Information Protection Commission (PPC) as the law requires.
10. Cookies and similar tools
The dashboard uses cookies needed to log you in and keep it secure. If we add an analytics tool, we will first list it here, with the data sent, the company it goes to and its purpose, as required by the external transmission rules of Japan's Telecommunications Business Act. You can block cookies in your browser, but the dashboard may not work.
11. Your rights
You can ask us to tell you the purpose of use, show you, correct, add to, delete, stop using, or stop sharing your personal information, and to show records of sharing with third parties. Write to info@tokyotechies.com. We will check your identity and answer without delay, as APPI requires.
If you are one of the people Hirome saw on a Platform (not our customer), you can also contact us. We will pass your request to the customer concerned and help them answer, and we can stop processing your data for all customers if you ask.
If GDPR applies to you, you also have the rights to data portability and to complain to your local data protection authority.
12. Children
Hirome is for businesses. We do not knowingly collect personal information from children under 16.
13. Changes to this policy
We will publish changes here and tell customers by email or in the dashboard before important changes take effect.
14. Contact
Tokyo Techies Corp., 4F Toa Bldg., 1-13-8 Higashi-Ueno, Taito-ku, Tokyo 110-0015, Japan. Representative: Duc DoBa, CEO. Person responsible for personal data: the representative. Email: info@tokyotechies.com.