Privacy Policy
- Last updated: August 31, 2026
- First published: December 6, 2023
This Privacy Policy applies to GoalMap and related services provided by Hangzhou North Gate Co., Ltd. (“North Gate”, “we”, “us”, or “our”).
Your privacy matters to us. We collect and use Personal Information only for legitimate, specific, and necessary purposes, and we use reasonable technical and organizational measures to protect it. Please read this Privacy Policy before using GoalMap. By accessing or using GoalMap, you acknowledge the practices described in this Policy.
A quick overview
- You can use GoalMap in local mode without registering an account. Account registration is needed for cross-device synchronization.
- We process information you provide, the GoalMap data you choose to synchronize, device and log information, transaction information, and information needed for reminders, support, security, and analytics.
- We do not sell or rent your Personal Information for money. We share information only as described in this Policy, such as with service providers that help us provide the Service, or when required by law.
- Data collected and generated in our operations in mainland China is stored in mainland China, subject to the exceptions described below. If you access GoalMap from another country or region, your information may be transferred to and processed in China.
- You can manage much of your information in GoalMap, withdraw permissions through your device settings, request deletion, or contact us at help@happydogteam.work.
Definitions
To make this Policy easier to understand:
- Personal Information means information recorded electronically or otherwise that identifies, or can be used with other information to identify, an individual. It may include a name, date of birth, government-issued ID number, biometric information, address, or telephone number.
- Sensitive Personal Information means Personal Information that, if disclosed, unlawfully provided, or misused, could materially harm a person’s dignity, physical or financial safety, or lead to discrimination. Examples may include an ID number, biometric information, bank account information, communications, or health information.
- De-identified Information means information processed so that it cannot identify an individual without additional information.
- Anonymized Information means information processed so that an individual cannot be identified and the processed information cannot be restored to an identifiable form.
- Cookies are small text files that a website stores on your computer, phone, or other device so that the website can recognize your browser and remember preferences.
- Log Information is automatically collected information about how a service is accessed, such as an IP address, browser type, internet service provider, referring or exit pages, operating system, timestamps, and clickstream data.
1. Information we collect and how we use it
We collect and use information that you provide or that is generated when you use GoalMap for the purposes described below.
1.1 How we collect information
We collect information:
- Directly from you when you register for, sign in to, or use GoalMap;
- From content or information that you choose to share with other people through GoalMap; and
- Automatically from your device, browser, or use of the Service, where permitted by your device settings and applicable law.
1.2 Account registration and sign-in
To provide a complete account-based experience, you may need to provide a mobile phone number or email address and create an account, username, and password.
For a particular feature or where required by applicable law, we may ask for additional information, such as your name, government-issued ID information, facial features, or other identity information. If you do not provide information required for a particular feature, we may not be able to provide that feature.
GoalMap also offers a local mode that does not require account registration. In local mode, your task data cannot be synchronized across devices and may be lost if you uninstall the app. If you no longer use GoalMap, you may contact us to close your account where permitted by the Terms of Service and applicable law. After an account is closed or deleted, related Service data will be deleted or anonymized unless retention is required by law.
1.3 Providing and improving the Service
The following information may be processed to provide GoalMap’s core features:
- User-created and shared content. When you upload or publish information, or interact with content in GoalMap, we process the information you choose to provide, such as files, projects, lists, company names, descriptions, comments, images, emoji, and attachments. If you choose to share content, we may display your nickname, avatar, and shared content as directed by you.
- Data synchronization. If you register an account and create goals or tasks, we process goal titles, goal colors, goal dates, task titles and dates, recurrence settings, quantitative settings, task timer information, task check-in information, quantitative task records, and goal review data so that your data can be synchronized across devices. This information is used for synchronization, and we do not otherwise read the content of your goals or tasks.
- Task reminders. If you set a reminder, we process the task title, task content, due date or time period, and reminder time so that the reminder can be delivered. To make reminders work reliably, you may need to enable notifications, background auto-start or associated-start permissions on Android, and permission to ignore battery optimization on Android.
- Task activity. We may process task check-in dates and counts, quantitative record dates and values, and task timer dates and durations so that GoalMap can record your progress.
- Statistics and activity history. When you view task statistics, task activity, or goal activity, we may process goal and task creation and edit timestamps so that we can show statistics and change history.
- Feedback. When you submit feedback, we may process the app version, device model, and operating system version so that we can understand and investigate the issue.
- Auto-start and associated start. When GoalMap is closed or running in the background, certain Android devices may require the app to be started by a system broadcast so that it can receive server-side push information and provide reminders or other necessary functions.
- Payments. If you make a payment, you may use a payment service provided by a GoalMap affiliate or a third-party payment provider. You may provide payment account information, such as a bank card number. To confirm and complete a payment, we may share an order number and transaction amount with the relevant payment provider.
- Orders and subscriptions. We process order information, transaction and purchase records, and virtual property information to display your orders and protect your after-sales rights.
- Customer support and after-sales service. When you contact us, we may retain your communications, call records and content, and contact details to respond to you, resolve an issue, and record the outcome. We may obtain transaction, payment, or logistics information from the transaction counterparty, payment provider, or logistics provider you selected, or share transaction information with those providers, to confirm transaction status and provide after-sales or dispute-resolution support.
- Log Information. We may automatically collect details about your use of the Service, such as your sign-in account, search queries, IP address, browser type, telecommunications carrier, network environment, language, access date and time, pages viewed, push-notification open events, time spent, refresh events, publication records, and sharing activity.
- Device Information. Depending on the permissions you grant, we may collect device information such as IMEI, MAC address, serial number, SIM/IMSI identifier, device model, operating system and version, client version, screen resolution, app package name, device settings, process and software lists, unique device identifiers, and hardware or software characteristics. We may also process information associated with a device’s network or location, such as an IP address, GPS information, Wi-Fi access points, Bluetooth information, and cellular-base-station or sensor information, when a relevant feature or SDK requires it and the applicable permission is available.
Device and Log Information by itself may not identify a specific person. If we combine it with other information to identify a person, or use it together with Personal Information, we will treat it as Personal Information during that combined use and apply the safeguards described in this Policy.
1.4 User research and online interactions
From time to time, we may conduct surveys to improve features and services. If you participate, we may collect information such as age, gender, industry, occupation, device information, and interests.
We may also run interactive activities through social media, such as WeChat or Sina Weibo. To administer the activity and deliver a prize, we may collect your name, telephone number, and mailing address. This information will be used only for the relevant activity. You may decline to participate in a survey or activity if you do not want to provide this information.
1.5 Security and fraud prevention
To protect the security of GoalMap and services provided by our partners, protect users and the public from harm, prevent phishing, fraud, vulnerabilities, viruses, network attacks, and unauthorized access, and detect violations of applicable law or our rules, we may collect, use, and combine account, transaction, device, and Log Information. We may also use information that our affiliates or partners provide with your authorization or as permitted by law to assess account or transaction risks, authenticate users, detect and prevent security incidents, and carry out necessary recording, auditing, analysis, and response activities.
After collecting Personal Information, we may use technical measures to de-identify it. When information cannot identify you, we may use it to analyze our user database and for other lawful business purposes, including commercial use of aggregated or de-identified insights.
1.6 Other purposes and legal exceptions
If we need to use your information for a purpose not described in this Policy, or use information collected for one purpose for another purpose, we will notify you and obtain your consent where required by applicable law.
We may collect or use information without obtaining prior authorization or consent where permitted or required by applicable law, including when it is:
- Related to national security or defense;
- Related to public safety, public health, or a significant public interest;
- Related to criminal investigation, prosecution, trial, or enforcement of a judgment;
- Necessary to protect your or another person’s life, property, or other significant lawful interests when consent is difficult to obtain;
- Publicly disclosed by you;
- Obtained from a lawful public disclosure, such as lawful news reporting or government information disclosure;
- Necessary to enter into or perform a contract at your request;
- Necessary to keep the Service safe and stable, such as finding and resolving product or service failures;
- Necessary for lawful news reporting;
- Necessary for statistical or academic research conducted in the public interest, where the results provided externally are de-identified; or
- Permitted by another applicable legal exception.
GoalMap may ask you to enable device permissions, such as location, camera, photo library, microphone, contacts, and/or calendar access, if a feature needs them. You can manage permissions through your device settings. Enabling a permission authorizes us to process the related information for the corresponding feature; disabling it stops future collection based on that permission, but does not affect processing that already occurred with your authorization. Disabling a permission may prevent us from providing the related feature.
Some information described in this Policy may be Sensitive Personal Information, including transaction and purchase records, virtual property information, system account information, email addresses and associated passwords, telephone numbers, browsing records, and location information. Please provide Sensitive Personal Information only when necessary and consider carefully how you share it. We will process it only for the purposes and in the manner described in this Policy or otherwise permitted by law.
2. Cookies and similar technologies
Our website may use Cookies and similar technologies to remember preferences, improve your experience, understand how the website is used, and improve the quality of our Service. Cookies can help us understand which pages and content you access, how long you spend on a page, and which GoalMap services you choose.
Cookies are read only by the server that set them and cannot execute code or transmit a virus. You can control whether and how your browser accepts Cookies by changing your browser settings. If you reject Cookies, you may not be able to sign in or use features that depend on Cookies. Please consult your browser’s documentation for more information.
3. When we share, transfer, or disclose Personal Information
3.1 Sharing
Except as described below, we do not share your Personal Information with third parties outside North Gate and its affiliates without your consent. We may share information:
- To provide the Service. For example, we may share a relevant mobile phone number with an SMS provider, or other information with a partner that provides a core feature you requested.
- To maintain and improve the Service. For example, we may use providers that send emails or push notifications on our behalf.
- For the purposes described in Section 1 of this Policy.
- To perform our obligations and exercise our rights under this Policy, the Terms of Service, or another agreement with you.
- For security, legal compliance, and risk prevention. To comply with law and protect North Gate, our affiliates, partners, you, other GoalMap users, or the public, including to prevent fraud and reduce credit or transaction risk. This does not include selling, renting, or sharing Personal Information for profit in breach of our commitments in this Policy.
- At your lawful request, such as to help resolve a dispute between you and another person.
- At a lawful request from your guardian.
- As required by a separate service agreement, online agreement, platform rule, or other legal document.
- For academic research or a lawful public-interest purpose, where applicable safeguards are used.
We share Personal Information only for lawful, legitimate, necessary, specific, and clear purposes. We require companies, organizations, and individuals that receive Personal Information from us to follow our instructions, this Policy, and applicable confidentiality and security requirements.
3.2 Transfers
Personal Information may be transferred as part of a merger, acquisition, asset transfer, restructuring, or similar transaction. We will require the new holder of the information to remain subject to this Policy or to obtain your authorization again where required.
We may also transfer Personal Information to another party with your explicit consent.
3.3 Disclosure
We disclose Personal Information only with appropriate security measures:
- At your request, in the manner and to the recipients you specify; or
- When disclosure is required by law or by a mandatory administrative or judicial request. Where lawful, we will ask the requesting party to provide appropriate legal documentation, such as a subpoena or investigation notice. We review requests carefully to confirm their legal basis and limit disclosure to the information lawfully requested for the relevant investigation or proceeding.
3.4 Exceptions to prior consent
Where permitted by applicable law, we may share, transfer, or disclose Personal Information without prior consent when the information is:
- Related to national security or defense;
- Related to public safety, public health, or a significant public interest;
- Related to judicial or administrative enforcement, including criminal investigation, prosecution, trial, or enforcement of a judgment;
- Necessary to protect your or another person’s life, property, or other significant lawful interests when consent is difficult to obtain;
- Publicly disclosed by you; or
- Obtained from a lawful public disclosure, such as lawful news reporting or government information disclosure.
Sharing or transferring information that has been de-identified so that the recipient cannot restore it or re-identify an individual is not treated as sharing or transferring Personal Information under applicable law. We may retain and process such information without additional notice or consent.
4. Retention, storage, and security
4.1 Retention and storage location
We retain Personal Information only for as long as necessary for the purposes described in this Policy and for the periods required by applicable law or regulatory requirements. If we discontinue the Service or our operations, we will stop collecting Personal Information, notify you as required, and delete or anonymize Personal Information after discontinuation unless law or a regulator requires otherwise.
Personal Information collected and generated in our operations in mainland China is stored in mainland China, except where:
- Applicable law expressly provides otherwise;
- You have authorized or consented to another arrangement; or
- You use a GoalMap service that requires an overseas transfer to complete a transaction or provide the requested service.
If you access GoalMap from outside mainland China, your Personal Information may be transferred to, stored in, and processed in mainland China. We will apply the protections required by this Policy and applicable law to those transfers.
4.2 Security measures
We use reasonable safeguards consistent with industry standards to protect Personal Information from unauthorized access, use, modification, damage, and loss. Depending on the service, these measures may include:
- Encryption in transit and at rest, including technologies such as SSL where appropriate;
- Isolation, de-identification, and data-masking technologies when Personal Information is displayed or used for related calculations;
- Strict access controls and multi-factor authentication;
- Routine backups, data classification, security management standards, and secure development practices;
- Confidentiality agreements, monitoring, and audit mechanisms for people who access Personal Information; and
- Access limited to employees, affiliates, and partners who need the information to perform their duties and who are subject to confidentiality obligations.
No internet transmission or storage system is completely secure. Email, instant messaging, social media, and other communications with users may not be fully encrypted. Use strong passwords and take care when sharing information. If our physical, technical, or organizational safeguards are compromised and your lawful rights are harmed, we will take responsibility as required by applicable law.
4.3 Security incidents
If a Personal Information security incident occurs, we will notify you as required by applicable law. The notice may describe the basic facts and possible impact of the incident, measures taken or planned, steps you can take to reduce risk, and available remedies. We may notify you by email, letter, SMS, telephone, or push notification; where individual notice is impracticable, we may use a reasonable and effective public notice. We will also report the incident to regulators where required.
Although we work hard to protect your information, no security measure can guarantee absolute security. The systems and communications networks you use to access GoalMap may experience problems outside our control.
5. Managing your Personal Information
We encourage you to keep your information accurate and up to date. Correcting, deleting, withdrawing consent, or stopping your use of GoalMap does not affect processing that occurred before your request. Where permitted by law, information may remain in backup systems until those systems are updated.
5.1 Access, correction, and deletion
You can access and manage much of your Personal Information through GoalMap. Where the app does not provide a self-service option, contact us and we will provide an appropriate way to request access, correction, supplementation, or deletion.
We may verify your identity before processing a request. For information collected through Cookies or similar technologies, please use the browser controls described in Section 2. For other information generated through the Service, we will respond within the scope and time required by this Policy and applicable law.
You may request deletion when:
- Our processing violates applicable law;
- We collected or used your information without the required authorization or consent;
- Our processing materially breaches an agreement with you; or
- We no longer provide the Service to you.
If we approve a deletion request, we will also make reasonable efforts to notify entities that received the information from us and ask them to delete it, unless law provides otherwise or they have obtained independent authorization.
5.2 Public sharing
Some features let you share information with your social network or with other GoalMap users, including information you upload or publish, your responses to other users’ content, information you post in an area visible to unspecified users, and related location or Log Information. Publicly shared information may remain public until you delete it. Even after deletion, other users or third parties outside our control may have cached, copied, or stored it, or may continue to display it. Consider carefully before making Personal Information public. We are not responsible for disclosure caused by your public sharing through these channels.
5.3 Withdrawing consent and changing permissions
You may choose whether to provide information that is not necessary for the Service. You can change the scope of your authorization or withdraw consent by deleting information, disabling a device permission, or using another control made available in GoalMap.
After you withdraw consent, we will stop processing the corresponding information and may no longer be able to provide the related feature. Withdrawal does not affect processing that occurred before withdrawal.
5.4 Closing your account
To close your account, go to Settings > Account Information > Delete Account in GoalMap. If you are a GoalMap Pro subscriber, closing your account will also end your Pro membership. After the current membership period ends, no new automatic charge will be made.
After account closure, we will stop providing the Service and delete your Personal Information at your request, except where applicable law requires continued retention.
6. Third-party SDKs and services
GoalMap may integrate third-party SDKs or link to third-party social media and other services. These providers operate under their own terms and privacy policies. When you use a third-party service or provide information directly to a third party, that third party’s policies—not this Policy—apply to its processing. We are not responsible for a third party’s independent use of information you provide to it.
The following SDKs may be used in GoalMap. Their platform availability is listed explicitly below.
SDKs used only on Android
MSA OAID SDK (version 2.9.0)
- Provider: Telecommunication Terminal Laboratory of the China Academy of Information and Communications Technology and the Mobile Security Alliance (TAF).
- Platforms: Android only.
- Purpose: On supported Android devices, obtain the Open Anonymous Device Identifier (OAID) when needed for device recognition and app analytics. If GoalMap calls the relevant interfaces, the SDK may also support the Vendor Anonymous Device Identifier (VAID) and App Anonymous Device Identifier (AAID).
- Processing: The SDK is used only after you agree to this Policy and the Android app calls the relevant interface. According to MSA documentation, the SDK does not store data or directly transmit it to MSA. Some device manufacturer interfaces may need a network connection to obtain VAID or AAID. We do not use this SDK to collect contacts, SMS, call records, camera content, photo-library content, or precise location.
- Information: OAID, and, where the relevant interface is called, VAID, AAID, and status information about whether an anonymous device identifier is supported or restricted. The SDK may also process device brand, model, Android version, app package name, and app-signature verification information for device compatibility and signature verification.
- Your choices: You can disable or reset OAID through Android advertising-ID or ad-tracking settings, or reject an OAID authorization prompt on supported devices. Some features that depend on an anonymous identifier may not work, but GoalMap’s core features will remain available.
- Third-party policy: MSA privacy information
Alipay SDK
- Provider: Alipay (China) Network Technology Co., Ltd.
- Platforms: Android only.
- Website: open.alipay.com
- Purpose: Provide Alipay payment services.
- Information: Payment-related registration and account information, together with other information needed for the payment scenario, which may include IMEI, IMSI, MAC address, device and hardware serial numbers, SIM serial number, ICCID, Android ID, OAID, SSID, BSSID, system settings and properties, device model and brand, operating system, IP address, network type, carrier, Wi-Fi status and parameters, Wi-Fi list, and installed software list.
- Third-party policy: Alipay privacy policy
SDKs used on both Android and iOS
TalkingData Analytics SDK
- Provider: Beijing Tendcloud Tianxia Technology Co., Ltd.
- Platforms: Android and iOS.
- Purpose: App analytics, including new and active user counts, feature usage, version and distribution-channel performance, basic device distribution, and detection or removal of anomalous or fraudulent traffic, to help us improve the Service and its stability.
- Processing: After you agree to this Policy, we may initialize the SDK. The SDK may collect information directly or receive information from us to create de-identified user identifiers and aggregated reports.
- Information:
- Device identifiers such as OAID, VAID, AAID, and Android ID, and, where supported by the system and permissions, IMEI, MEID, and MAC address;
- Device and app basics such as brand, model, operating-system version, SDK/API version, package name, app version, distribution channel, app process information, session start and stop times, timestamps, language, time zone, CPU, battery, and storage information;
- Network basics such as IP address, network type, carrier, and connection status, used to understand the network environment, approximate region, and aggregated statistics; and
- De-identified usage statistics such as app launches, page views, feature clicks, and event triggers.
- Current configuration: In the current version, we have disabled collection of the app list, location information, and Wi-Fi hotspot information (SSID/BSSID) by the TalkingData SDK. We do not use it to collect contacts, SMS, call records, camera content, or photo-library content.
- Third-party policies: TalkingData SDK Privacy Policy and TalkingData Group Privacy Policy.
- Opt-out: You may use TalkingData’s opt-out page if you do not want to participate in TalkingData’s data analytics. If the SDK’s purpose, method, or scope changes, we will notify you and obtain required authorization before enabling the changed capability.
Firebase SDK
- Provider: Google.
- Platforms: Android and iOS.
- Purpose: Crash reporting, operational analytics, and analysis of in-app feature usage so that we can provide a more stable and useful Service.
- Information: Device information such as IMEI, MAC address, Android ID, IDFA, OpenUDID, GUID, SIM/IMSI, and location information where applicable; network type; the name and process ID of the app process currently running; device model; app version; feature-click counts; session start and stop times; and language and region.
- Third-party policy: Firebase privacy and security
7. Device permissions used by GoalMap
GoalMap asks for permissions only when a feature needs them. You can manage permissions in your device settings. Refusing a permission should not affect basic features such as creating a goal, but it may prevent the related feature from working.
Android
- Write to external storage: Save generated images to your device.
- Read external storage: Select and upload images when creating or editing content.
- Camera or photo access: Take a photo or add an image when creating or editing content.
- Auto-start or associated start: Keep daily task reminders updated when the app is closed or in the background.
- Network state: Save and synchronize newly created or edited content based on the network environment.
- Vibration: Provide haptic feedback while you type.
- Device identifier: After you agree to this Policy, support TalkingData’s analytics by generating a de-identified device identifier and aggregated statistics. This permission is not used to collect contacts, SMS, call records, camera content, or photo-library content.
- Notifications: Send local notifications when you enable task reminders or daily pushes.
- Ignore battery optimization: Improve the reliability of daily task reminders when you choose to enable the corresponding setting.
iOS
- Camera: Take photos to attach when creating or editing content.
- Photo library: Select photos to attach when creating or editing content.
- Add photos to the photo library: Save a shared image to your device.
- Notifications: Send local notifications when you enable task reminders or daily pushes.
- Network access: Save and synchronize newly created or edited content when using network features, or show an error when the network is unavailable.
Permission controls
- Data minimization: We request a permission only when the corresponding feature is used.
- Dynamic requests: Sensitive permissions are requested when you first use the relevant feature, and you can change them at any time in system settings.
- Security: Permission-related data is encrypted and used only to provide the relevant feature, not for user profiling or targeted advertising.
- Effect of withdrawal: Refusing a non-essential permission may limit a feature, but should not affect the basic Service.
If you are under 14, your parent or guardian should guide you through permission decisions and authorization. We will collect only the minimum information required for the relevant legally permitted purpose.
8. Children’s Personal Information
GoalMap is primarily intended for adults. If you are under 14, you and your parent or guardian must read the GoalMap Children’s Privacy Notice and obtain the guardian’s explicit consent before using GoalMap under the guardian’s guidance.
We will use or disclose Children’s Personal Information collected with a guardian’s consent only as permitted by law, with the guardian’s explicit authorization, or when necessary to protect the child’s lawful interests.
If we discover that we collected a child’s Personal Information without verifiable prior guardian consent, we will take reasonable steps to delete it as soon as practicable.
9. Changes to this Privacy Policy
We may update this Policy from time to time to reflect changes in the Service, applicable law, or our privacy practices. Please review the latest version periodically. Your continued use of GoalMap after an update takes effect constitutes acceptance of the updated Policy where permitted by law.
For a material change, we may provide a more prominent notice describing the change. Material changes may include:
- A material change to our service model, including the purposes, types, or methods of processing;
- A material change to our ownership or organizational structure, such as a business adjustment, bankruptcy, or acquisition;
- A material change to the primary recipients of shared, transferred, or publicly disclosed Personal Information;
- A material change to your rights or how you exercise them;
- A change to the department responsible for Personal Information security, contact method, or complaint channel; or
- A security impact assessment indicating a high risk.
10. Contact us
If you have questions, comments, suggestions, or requests about this Policy or your Personal Information, contact us through either channel:
- In the app: Settings > Feedback
- Email: help@happydogteam.work