隐私政策
Privacy Policy
生效日期:2026年3月20日 · Effective date: March 20, 2026
SubtextAI(话外音)是一款 AI 对话分析工具,帮助您理解沟通中的言外之意。我们非常重视您的隐私,承诺以清晰、诚实的方式说明我们如何处理您的数据。
SubtextAI is an AI-powered conversation analysis tool. We take your privacy seriously and are committed to being transparent about how we handle your data.
1. 我们收集的数据
1. Data We Collect
我们仅收集提供服务所必需的最少量数据。
We collect only the minimum data needed to provide the service.
- 对话文本:您提交用于分析的聊天记录或消息片段。这些内容仅在当次分析请求期间处理,不会永久存储。Conversation text: Chat logs or message excerpts you submit for analysis. These are processed only for the duration of the analysis request and are not permanently stored.
- 账户信息:通过 Google 或 GitHub OAuth 登录时,我们获取您的电子邮件地址和公开的个人资料信息(姓名、头像)用于创建账户。Account information: When you sign in via Google or GitHub OAuth, we receive your email address and public profile data (name, avatar) to create your account.
- 使用数据:匿名的功能使用统计,用于改进产品体验(例如哪些功能最常用)。Usage data: Anonymous, aggregated feature usage statistics to improve the product experience (e.g., which features are used most).
- 支付信息:通过 Creem.io 处理,我们不接触也不存储您的银行卡或支付凭据。Payment information: Processed via Creem.io. We do not access or store your card or payment credentials.
2. 数据的使用方式
2. How We Use Your Data
- 仅用于分析:您提交的对话文本仅用于即时的 AI 分析,响应生成后即丢弃,不会写入数据库。Analysis only: Conversation text you submit is used solely for real-time AI analysis. It is discarded after the response is generated and never written to a database.
- 不用于训练:我们不会将您的对话内容用于训练任何 AI 模型,也不会出售给第三方。No training use: We do not use your conversation content to train any AI models, nor sell it to third parties.
- 账户管理:电子邮件地址用于账户验证、重要服务通知和(可选的)产品更新。Account management: Your email is used for account verification, important service notices, and optional product updates.
- 服务改善:匿名使用统计用于识别功能改进方向,不包含任何可识别个人身份的信息。Service improvement: Anonymous usage statistics are used to identify areas for improvement and contain no personally identifiable information.
3. Cookie 与本地存储
3. Cookies & localStorage
我们使用少量本地存储项,均服务于核心功能,不用于跨站追踪。
We use a small number of local storage items, all serving core functionality — none for cross-site tracking.
- JWT 认证令牌(localStorage):登录后存储在您的浏览器本地,用于保持登录状态。关闭账户或手动清除后失效。JWT auth token (localStorage): Stored locally in your browser after login to maintain your session. Invalidated when you close your account or clear it manually.
- 语言偏好(localStorage):记录您选择的界面语言(中文 / English),下次访问时自动应用。Locale preference (localStorage): Records your chosen interface language (Chinese / English) for automatic application on your next visit.
我们不使用广告 Cookie 或第三方追踪 Cookie。
We do not use advertising cookies or third-party tracking cookies.
4. 第三方服务
4. Third-Party Services
我们使用以下第三方服务,各自适用其隐私政策。
We use the following third-party services, each governed by their own privacy policies.
- Google OAuth:用于社交登录。Google 可能依据其隐私政策记录相关数据。Google OAuth: Used for social sign-in. Google may log data per their own privacy policy.
- GitHub OAuth:用于社交登录。GitHub 可能依据其隐私政策记录相关数据。GitHub OAuth: Used for social sign-in. GitHub may log data per their own privacy policy.
- Creem.io:订阅与支付处理平台。您的支付信息由 Creem.io 直接处理,受其 PCI DSS 合规保护。我们仅收到支付成功/失败的结果通知。Creem.io: Subscription and payment processing platform. Your payment details are handled directly by Creem.io under their PCI DSS compliance. We receive only success/failure notifications.
5. 数据安全
5. Data Security
- 所有客户端与服务器之间的通信均通过 HTTPS/TLS 加密传输。All communication between client and server is encrypted in transit via HTTPS/TLS.
- 对话文本不写入持久化存储,分析完成后即从内存中清除。Conversation text is never written to persistent storage and is cleared from memory after analysis completes.
- 账户密码从未明文存储;我们优先推荐使用 OAuth 登录,避免密码管理风险。Account passwords are never stored in plain text; we recommend OAuth sign-in to avoid password management risks.
- 我们定期审查访问权限,仅限有必要的团队成员访问生产数据库。We regularly review access controls, restricting production database access to only team members who require it.
尽管我们采取了合理的安全措施,互联网上不存在百分之百安全的传输方式。如发现安全漏洞,请联系我们。
While we take reasonable measures, no transmission over the internet is 100% secure. If you discover a security vulnerability, please contact us.
6. 您的权利
6. Your Rights
您对自己的数据拥有以下权利,可随时行使:
You have the following rights over your data, exercisable at any time:
- 访问权:查看我们持有的关于您账户的信息。Access: Request to view the account information we hold about you.
- 更正权:更新或纠正您的账户信息(可在账户设置中直接操作)。Correction: Update or correct your account information (directly available in account settings).
- 删除权(被遗忘权):申请删除您的账户及所有相关数据。请发送邮件至 support@getsubtextai.com,我们将在 30 天内完成处理。Deletion (right to be forgotten): Request deletion of your account and all associated data. Email support@getsubtextai.com — we will process it within 30 days.
- 数据导出:申请导出您的账户数据(分析历史记录等)为机器可读格式。Data export: Request an export of your account data (analysis history, etc.) in a machine-readable format.
- 退订通知:随时通过邮件底部的退订链接取消营销邮件订阅,但服务类通知不受影响。Opt out of marketing: Unsubscribe from marketing emails at any time via the unsubscribe link; transactional service notices are unaffected.
7. 未成年人
7. Children
SubtextAI 不面向 13 岁以下的儿童。我们不会故意收集儿童的个人信息。如果您认为儿童向我们提供了个人数据,请通过以下联系方式告知我们,我们将立即删除。
SubtextAI is not directed to children under the age of 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.
8. 政策变更
8. Changes to This Policy
我们可能会不时更新本隐私政策。重大变更将通过电子邮件或应用内通知提前告知您。继续使用服务即视为接受更新后的政策。历史版本可通过邮件向我们索取。
We may update this Privacy Policy from time to time. Material changes will be communicated via email or an in-app notice before they take effect. Continued use of the service constitutes acceptance of the updated policy. Historical versions are available upon request.
9. 联系我们
9. Contact Us
如对本隐私政策有任何疑问、意见或数据请求,请通过以下方式联系我们:
For any questions, concerns, or data requests regarding this Privacy Policy, please reach out to us at:
运营方:SubtextAI · Operated by: SubtextAI
网站:getsubtextai.com