Be Your Eyes

隐私政策 / Privacy Policy

生效日期 / Effective date: 2026-08-08

发布前请将 PUBLISHER_NAME 与 SUPPORT_EMAIL 替换为真实信息。

中文

本政策说明 PUBLISHER_NAME(“我们”)如何在 Be Your Eyes Android 应用中处理数据。应用以本地处理为默认;账号与多设备同步为可选功能。

1. 本地处理的数据

2. 可选账号与云端同步

用户选择注册或登录后,我们会处理邮箱、账号标识、设备标识、FCM 推送 token、任务摘要、结构化事件和送达状态,用于登录、同账号设备同步和用户主动开启的事件通知。云端事件不包含图片、视频或音频。Event payload 自服务端收到之时起保留 30 天;账号删除时删除关联的云端账号、设备、任务、事件和投递记录。

3. 权限

4. 服务提供商

我们使用 Supabase 提供账号与数据库,Cloudflare R2 分发签名模型包,Firebase Cloud Messaging 提供用户可选的推送。首发版本不包含 Google ML Kit Translation,也不提供纯文字描述目标入口。上述提供商按各自条款与隐私说明处理数据。

5. 安全与选择

网络请求使用 HTTPS;账号 session 以 Android Keystore 保护的加密密文存放且不进入系统备份。用户可以不登录而使用本地功能,可以分别关闭本机和其他设备事件通知,可以删除单条任务及其本地素材,也可以在 App 内删除云端账号。

6. 联系与变更

隐私问题请联系 SUPPORT_EMAIL。政策有实质变化时,我们会更新本页的生效日期,并按适用要求在 App 或商店页面提示。

删除账号 / Delete account

已登录用户可在 App 的“账号与其他手机”页面选择“删除云端账号”,并再次确认。无法访问 App 的用户可直接发送邮件至 SUPPORT_EMAIL,主题写明“Be Your Eyes account deletion”,并使用注册邮箱发送请求。我们可能只要求完成必要的账号归属验证,不要求重新安装 App。

删除完成后,云端账号及其设备、任务摘要、结构化事件、回执和推送记录会删除。本机数据独立保存在设备上;如需一并删除,请在 App 内删除任务或卸载 App。

Signed-in users can choose “Delete cloud account” from “Account and other phones” in the app and confirm the action. If the app is unavailable, email SUPPORT_EMAIL from the registered address with the subject “Be Your Eyes account deletion.” We may perform only the verification needed to confirm ownership; reinstalling the app is not required.

English

This policy explains how PUBLISHER_NAME (“we”) handles data in the Be Your Eyes Android app. On-device processing is the default. An account and multi-device sync are optional.

1. Data processed on the device

2. Optional account and cloud sync

If the user registers or signs in, we process an email address, account identifier, device identifier, FCM push token, task summaries, structured events, and delivery status to provide authentication, same-account device sync, and notifications explicitly enabled by the user. Cloud events do not contain photos, video, or audio. Event payloads are retained for 30 days from server receipt. Deleting the account removes the associated cloud account, device, task, event, receipt, and delivery records.

3. Permissions

4. Service providers

We use Supabase for accounts and database services, Cloudflare R2 to distribute signed model packages, and Firebase Cloud Messaging for optional push notifications. The first release does not include Google ML Kit Translation or a text-prompt target entry. These providers process data under their respective terms and privacy notices.

5. Security and choices

Network requests use HTTPS. Account sessions are stored as encrypted ciphertext protected by Android Keystore and are excluded from system backup. Users may use local features without signing in, turn local or remote-device notifications off independently, delete a task and its local material, and delete the cloud account from within the app.

6. Contact and changes

For privacy questions, contact SUPPORT_EMAIL. If this policy changes materially, we will update the effective date and provide any notice required in the app or store listing.