PRIVACY PROTOCOL · 01
隐私政策Privacy Policy
月记尊重并保护你的周期与健康记录。我们以本地存储为默认方式,只有在你主动注册并使用同步功能时,才会将相关数据传输至云端。
中文版
适用范围与重要说明
本政策适用于涵淼科技(HanMiao Studio,以下简称“我们”)提供的月记(MoonNote,以下简称“本应用”)。使用本应用即表示你已阅读本政策。
本应用用于个人周期与健康记录,不提供诊断、治疗或专业医疗建议。周期、排卵期及相关预测仅供参考,不应作为避孕、受孕或医疗决策的唯一依据。如有健康疑问,请咨询合格的医疗专业人员。
我们处理的数据
根据你实际使用的功能,本应用会处理你主动输入的以下数据:
- 周期与健康记录:经期开始和结束日期、经量、症状、心情、体重、基础体温、同房记录、排卵试纸结果及备注。
- 备孕与孕期记录:备孕信息、孕期记录、胎动次数及产检记录。
- 账号信息:你为同步功能提供的邮箱标识和认证凭据。我们不要求邮箱验证,因此该标识不一定能证明你的真实身份,但仍会按电子邮箱信息进行保护。
- 服务与安全信息:Firebase、Supabase 等服务商可能为认证、安全、防滥用和服务运行处理 IP 地址、设备信息及必要的服务日志。
我们不会出售你的个人信息或健康数据,也不使用这些数据投放广告。
处理目的与法律依据
- 记录、展示和统计周期及相关健康变化;
- 计算并提示预计经期、排卵期等时间信息;
- 提供备孕、孕期、胎动、产检和通知提醒功能;
- 在你主动选择时备份、恢复、导出数据及进行多设备同步;
- 维护账号认证、数据安全、故障排查及防止滥用。
对于健康等敏感数据,我们以你主动输入、主动启用云同步及相关同意作为处理基础。你可以随时停止同步、删除记录或注销账号。
本地存储与可选云同步
默认本地存储:未注册账号或未使用同步功能时,你的健康记录保存在当前设备本地。卸载应用或清除应用数据可能导致本地记录永久丢失,请在操作前导出备份。
可选云同步:当你主动注册并使用同步功能时,账号标识以及你选择同步的全部健康记录会经加密连接传输至云端,用于备份、恢复和不同设备之间的数据切换。
海外用户的账号与同步服务由 Google Firebase 提供;中国大陆用户的账号与同步服务由 Supabase 提供。实际使用的服务取决于你使用的版本、所在区域及所选择的同步入口。
第三方服务商
我们仅在提供账号认证、云端存储和同步所必需的范围内使用以下服务商:
- Google Firebase:用于海外用户的账号认证及云同步服务。其数据处理受 Google Firebase 条款和隐私规则约束。
- Supabase:用于中国大陆用户的账号认证及云同步服务。其数据处理受 Supabase 条款和隐私规则约束。
第三方服务可能在其基础设施所在国家或地区处理数据。我们不会允许这些服务商将你的健康数据用于广告营销。
权限与通知
- 通知权限:用于经期、排卵期、打卡、孕期或产检提醒。你可以随时在系统设置中关闭。
- 网络访问:仅在账号认证、云同步、备份和恢复等联网功能中使用。
我们不会请求与核心功能无关的健康权限。若未来接入 Health Connect 或新增权限,我们会在使用前更新说明并依法获取授权。
数据安全与保留
我们采取合理的技术和组织措施保护数据,包括使用 HTTPS/TLS 加密传输、限制服务访问权限,并避免在普通健康记录数据库中保存明文密码。认证凭据由相应认证服务处理。
本地记录会保留至你主动删除、清除应用数据或卸载应用。云端记录会保留至你删除云端数据或注销账号。因灾难恢复需要,服务商备份中的残留副本可能在有限周期内延迟删除,并在备份轮换后清除。
由于本应用不提供忘记密码或密码重置功能,请妥善保存登录凭据;凭据遗失后,你可能无法恢复原账号及其同步数据。
你的权利与选择
你可以在应用内查看、更正、导出和删除记录,也可以清空本地数据、删除云端记录或注销账号。注销账号时,与该账号关联的云端健康记录将一并进入删除流程。
详细步骤见 《月记账号与数据删除说明》。如果无法使用应用内入口,可以发送邮件至 hello@hanmiao.me 提交请求。
未成年人
本应用不面向 13 岁以下儿童,也不会故意收集其个人信息。若你认为儿童在未经监护人同意的情况下提供了信息,请联系我们核实并删除。
政策更新与联系我们
功能、服务商或法律要求变化时,我们可能更新本政策。重大变更会通过本页面或应用内提示告知,并更新生效日期。
隐私、数据导出或删除问题请联系:hello@hanmiao.me。
English Version
Scope and medical disclaimer
This policy applies to MoonNote, provided by HanMiao Studio (“we,” “us,” or “our”). MoonNote is a personal period and health-tracking tool. It does not provide diagnosis, treatment, or professional medical advice. Cycle and ovulation estimates are for reference only and must not be used as the sole basis for contraception, conception, or medical decisions.
Data we process
Depending on the features you use, MoonNote processes data you choose to enter, including period dates and flow, symptoms, mood, weight, basal body temperature, sexual activity records, ovulation test results, notes, fertility planning, pregnancy records, fetal movement, and prenatal checkup records.
If you choose cloud sync, we also process the email identifier and authentication credentials you provide. Email ownership is not verified, but the identifier is still protected as email information. Firebase and Supabase may process IP addresses, device information, and necessary service logs for authentication, security, abuse prevention, and service operation.
We do not sell personal or health data and do not use it for advertising.
How and why we use data
We use data to provide cycle and health records, estimates and statistics, reminders, fertility and pregnancy features, data export, optional backup and restoration, multi-device sync, account security, and troubleshooting.
Local storage and optional sync
Without an account or sync, health records remain on your device. Removing the app or clearing app data may permanently erase local records.
When you voluntarily create an account and use sync, your account identifier and the health records selected for synchronization are transmitted over an encrypted connection for backup, restoration, and use across devices. Firebase provides authentication and sync services for users outside mainland China; Supabase provides those services for users in mainland China.
Service providers and international processing
Google Firebase and Supabase act as service providers for authentication, cloud storage, and synchronization. Data may be processed in countries or regions where their infrastructure operates, subject to their applicable terms and privacy practices. We do not authorize them to use your health data for advertising.
Permissions, security, and retention
Notification permission is used for period, ovulation, check-in, pregnancy, and prenatal reminders. Network access is used for authentication and optional cloud functions. You can disable notifications in system settings.
We use reasonable safeguards, including HTTPS/TLS in transit and restricted service access. Authentication credentials are handled by the relevant authentication provider; we do not intentionally store plaintext passwords in the health-record database.
Local data remains until you delete it, clear app data, or uninstall the app. Cloud data remains until you delete cloud records or delete your account. Residual copies in disaster-recovery backups may remain for a limited backup rotation period. MoonNote does not currently offer password recovery or reset, so losing your credentials may prevent account and synced-data recovery.
Your choices and rights
You can view, correct, export, and delete records in the app; clear local data; delete cloud records; and delete your account together with associated cloud data. See our Account and Data Deletion Guide, or contact hello@hanmiao.me.
Children, updates, and contact
MoonNote is not directed to children under 13, and we do not knowingly collect their personal data. We may update this policy as features, providers, or legal requirements change. Questions and privacy requests can be sent to hello@hanmiao.me.