隐私政策
心灯 - 极简AI情绪日记应用
重要提示:我们深知您的隐私对您的重要性,也深知您对我们的信任对我们的重要性。我们将严格按照本隐私政策处理您的个人信息,并承诺保护您的隐私安全。
1. 我们收集的信息
1.1 您主动提供的信息
-
手机号码、短信验证码(输入型个人信息):
- 收集目的:用于账号注册、登录、绑定手机号、身份与安全校验、短信验证码、找回与重置凭据、重要服务通知、客服沟通及法律规定的场景。
- 收集方式:由您在「手机号登录/注册/绑定/注销验证」等页面主动输入;或在您选择「本机号码一键登录」且单独同意后,经运营商与认证服务方(如 DCloud UniVerify 等)完成号码认证,我们接收用于完成登录所必需的认证信息(不以功能无关方式擅自读取本机短信或通话记录作为替代)。
- 使用范围:仅用于账号体系与安全保障相关处理,不用于与本政策及您授权范围无关的目的。
- 情绪记录内容:您在应用中记录的文字、情绪标签、心情状态等个人日记内容
- 行为打卡数据:您记录的习惯行为、目标完成情况等数据
-
照片、图片及相关元数据:
- 收集目的:用于记录配图、反馈配图、预约说明图,以及选择或拍摄并上传个人头像等您主动使用的图片功能。
- 收集方式:仅在您点击「拍照」「从相册选择」「添加图片」等入口并确认权限用途说明后,通过系统相机、相册或媒体选择器获取您选择或拍摄的图片。
- 使用范围:用于裁剪、压缩、内容安全检测、上传、展示或保存对应功能所需图片,不用于与该功能无关的目的。
- 反馈信息:您向我们提供的意见建议、问题反馈等
1.2 自动收集的信息
- 设备信息:设备型号、操作系统版本、应用版本等技术信息
- 使用数据:功能使用频率、操作行为、崩溃日志等匿名统计信息
- 网络信息:IP地址、网络类型等连接信息
1.3 设备标识信息
为了实现消息推送、安全风控、统计分析等功能,我们及我们接入的第三方SDK可能会收集以下设备标识信息:
- GAID(Google广告标识符):
- 收集目的:用于消息推送服务的设备识别、推送通道建立、广告效果统计
- 收集方式:通过系统API自动获取
- 使用范围:仅用于推送服务和统计分析,不会用于其他目的
- Android ID:
- 收集目的:用于设备唯一标识、消息推送通道建立、安全风控识别
- 收集方式:通过系统API自动获取
- 使用范围:仅用于设备识别和推送服务,不会与其他信息关联追踪用户
- MAC地址:
- 收集目的:用于网络安全验证、设备识别、推送服务优化
- 收集方式:通过系统网络接口API获取
- 使用范围:仅用于安全验证和设备识别,数据经过加密处理
- 安装列表信息:
- 收集目的:用于推送通道的智能选择和优化、提升消息送达率
- 收集方式:通过系统PackageManager接口获取已安装应用列表
- 使用范围:仅用于判断可用的推送通道,不会上传完整列表,仅检测特定推送相关应用
- OAID(开放匿名设备标识符):
- 收集目的:用于设备唯一标识、消息推送服务、统计分析、应用性能监控
- 收集方式:通过移动安全联盟统一SDK接口获取,仅在用户同意隐私政策后收集
- 使用范围:用于设备识别、推送服务、统计分析和应用崩溃分析,不会用于广告投放或用户画像
- 处理方式:数据经过加密处理和去标识化处理,不与用户的真实身份关联
2. 信息使用目的
我们收集和使用您的个人信息仅用于以下目的:
- 核心功能提供:为您提供情绪记录、AI分析、数据统计等核心服务
- 头像和图片功能:在您主动选择拍照或从相册选择时,用于头像更新、图片记录、图片上传、图片预览和必要的内容安全检测
- 个性化体验:基于您的使用习惯提供个性化的功能推荐和内容
- AI智能分析:通过AI技术分析您的情绪模式,提供心理健康洞察
- 服务改进:分析使用数据以改进产品功能和用户体验
- 技术支持:为您提供客户服务和技术支持
- 安全保障:维护应用安全,防范恶意行为
3. 信息存储与安全
3.1 数据存储
- 您的个人数据主要存储在您的本地设备上
- 为实现云同步功能,部分数据会加密存储在我们的安全服务器中
- 我们采用行业标准的加密技术保护您的数据安全
3.2 安全措施
- 采用SSL/TLS加密传输协议
- 实施严格的数据访问控制
- 定期进行安全审计和漏洞检测
- 建立完善的数据备份和恢复机制
4. 信息共享与披露
我们承诺不会出售、出租或以其他方式向第三方披露您的个人信息,除非:
- 获得您的明确同意
- 法律法规要求或政府部门要求
- 为保护我们或其他用户的合法权益
- 与我们的服务提供商共享(仅限于提供服务所必需的信息)
5. 第三方服务及SDK
我们的应用集成以下第三方服务和SDK:
5.1 个推消息推送SDK
SDK名称:个推公共库SDK(Gtc)
服务提供商:每日互动股份有限公司
服务功能:消息推送服务,用于向用户推送通知消息
隐私政策:https://www.getui.com/privacy
收集信息类型及说明:
- Android ID:用于推送服务的设备识别和消息送达
- GAID(Google广告标识符):用于海外推送通道的设备识别
- MAC地址:用于设备识别和网络状态判断
- 安装列表:用于智能选择最优推送通道,提升消息送达率(仅检测推送相关应用,如小米推送、华为推送等)
信息用途:上述信息仅用于实现消息推送功能,不会用于其他目的
5.2 DCloud开发通用工具库
SDK名称:DCloud开发通用工具库(uni-app框架基础库)
服务提供商:数字天堂(北京)网络技术有限公司
服务功能:提供应用开发基础功能,包括设备信息获取、网络请求、存储管理等
隐私政策:https://ask.dcloud.net.cn/article/36937
收集信息类型及说明:
- OAID(开放匿名设备标识符):用于设备唯一标识和统计分析
- 设备信息:设备型号、操作系统版本、屏幕分辨率等,用于应用适配和性能优化
- 网络信息:网络类型、运营商信息,用于网络状态判断和优化
收集方式:通过系统API和移动安全联盟统一SDK接口自动获取,仅在用户同意隐私政策后收集
信息用途:用于设备识别、应用性能统计、崩溃分析和功能优化,不会用于广告推送或用户追踪
5.2.1 本机号码一键登录 / UniVerify 相关服务
服务名称:运营商认证与本机号码一键登录能力(DCloud UniVerify 等)
服务提供商/合作方:数字天堂(北京)网络技术有限公司、移动通信运营商、号码认证等第三方,具体以该功能内展示与运营商协议为准
服务功能:在您选择一键登录、避免手动输入手机号的场景下,经您单独同意后,通过运营商/认证通道完成本机号码校验以完成注册或登录
相关说明:DCloud 一键登录与隐私政策说明(以官方最新说明为准)
可能涉及的个人信息与说明:
- 本机号码或认证过程返回的取号/认证结果信息:用于与您的账号进行绑定、登录成功判断
- 网络状态、取号/认证所需设备与运营商相关参数:用于与运营商/认证方建立安全通道、完成取号,范围限于完成本功能所必要的信息
收集方式与时机:仅当您主动点击本机号码一键登录并确认授权时触发;我们不会在未使用该功能、未经您同意时收集您的手机号码。
5.3 其他第三方服务
- AI分析服务:用于情绪识别和心理健康分析
- 云存储服务:用于数据同步和备份
- 统计分析服务:用于应用性能监控和用户行为分析
这些第三方服务提供商都有严格的隐私保护措施,我们会要求他们按照本隐私政策的要求处理您的信息。您可以访问各SDK提供商的隐私政策了解更多详情。
6. 自启动与关联启动说明
重要说明:为保障相关功能正常运行,本应用在下述场景中可能涉及自启动或关联启动行为。我们承诺:仅在您同意本隐私政策且主动使用相关功能后,才会依法产生下述行为;不存在与业务功能无关的频繁自启动或关联启动。
6.1 消息推送服务(关联启动)
- 场景:当您同意本隐私政策后,应用会初始化个推消息推送SDK。为建立和保持推送链路,推送SDK可能被系统推送通道(如小米、华为、OPPO、vivo等厂商推送服务)或其他集成了相同推送服务的应用关联唤醒。
- 目的:确保在应用未运行时,您仍能及时收到服务通知、心情记录提醒等推送消息。
- 规则:该行为仅用于推送链路的建立与保持,不会因此收集额外的个人信息;在您同意本隐私政策前,推送SDK不会初始化,也不会产生关联启动行为。
- 必要性:受Android系统机制限制,若无该机制,部分机型在应用退出后将无法收到任何推送消息。
6.2 蓝牙设备连接保活(自启动)
- 场景:当您绑定智能指环等蓝牙设备并主动开启「连接保活/自动同步」功能后,手机重启开机或应用版本更新时,应用会自动恢复蓝牙连接前台服务。
- 目的:保证心率、血氧等健康数据监测的连续性,避免因手机重启导致监测中断和数据缺失。
- 规则:仅在您明确开启该功能后才会发生;恢复的服务以系统前台服务形式运行并显示常驻通知栏提示,确保您可随时感知;您关闭保活功能或解绑设备后,该行为立即停止,且不再发生。
- 必要性:蓝牙连接依赖应用进程存活,若无开机恢复机制,手机重启后健康监测将静默中断,影响健康数据完整性。
6.3 您的控制方式
- 您可以在应用内「设备管理」中关闭蓝牙连接保活功能,或解绑蓝牙设备,关闭后不再产生对应的自启动行为;
- 您可以通过手机系统设置(如「应用管理 - 自启动管理」「电池 - 后台运行管理」「通知管理」等路径,具体以您的机型为准)随时限制或关闭本应用的自启动、关联启动及推送权限;
- 关闭上述权限不影响应用核心功能(心情记录、冥想等)的正常使用,但可能导致推送消息无法送达或蓝牙健康数据同步中断。
7. 您的权利
根据相关法律法规,您享有以下权利:
- 访问权:您有权了解我们收集、使用您个人信息的情况
- 更正权:您有权要求我们更正或补充您的个人信息
- 删除权:您有权要求我们删除您的个人信息
- 撤回同意:您有权撤回对个人信息处理的同意
- 数据导出:您有权要求我们提供您的个人信息副本
- 账号注销:您有权注销您的账号
7.1 账号注销
您可以通过以下方式注销您的账号:
- 在应用内进入"我的"-"设置"-"注销账号",通过手机验证码验证身份后即可直接注销
- 如无法通过应用操作,可联系我们的客服邮箱协助注销
注销须知:
- 注销方式:系统将通过短信验证码验证您的身份,确认后立即执行注销操作
- 注销后果:账号注销后,您将无法再使用该账号登录和使用我们的服务,账号下的所有信息将被永久删除且无法恢复
- 数据处理:包括但不限于您的情绪记录、行为打卡数据、AI分析报告、上传的图片等所有个人数据
- 注销条件:
- 账号处于安全状态(无被盗、封禁等风险)
- 账号内无未完成的订单或服务
- 账号无未解决的纠纷或投诉
- 已充值但未消费的虚拟物品将无法退还
- 法律保留:根据法律法规要求,我们可能需要保留部分信息用于履行法律义务、解决争议、防止欺诈等目的
温馨提示:账号注销是不可恢复的操作,请在注销前仔细考虑并备份重要数据。
8. 儿童隐私保护
我们非常重视儿童的隐私保护。如果您是14周岁以下的儿童,请在监护人的陪同下阅读本隐私政策,并在监护人同意后使用我们的服务。
9. 隐私政策更新
我们可能会不时更新本隐私政策。当我们对隐私政策进行重大变更时,我们会通过应用内通知、邮件或其他方式告知您。请您定期查看本隐私政策以了解最新信息。
10. 联系我们
11. 适用法律
本隐私政策的解释和执行适用中华人民共和国法律。如发生争议,双方应友好协商解决;协商不成的,任何一方均可向有管辖权的人民法院提起诉讼。
本隐私政策最后更新日期:2026年7月19日
生效日期:2026年7月19日
Privacy Policy
Heart Lamp - Minimal AI Mood Journal
Important: We understand how important your privacy is and how important your trust is to us. We will process your personal information strictly in accordance with this Privacy Policy and are committed to protecting your privacy and security.
1. Information We Collect
1.1 Information You Provide
-
Mobile phone number and SMS verification code (information you enter):
- Purpose: Account registration, login, phone-number binding, identity and security verification, SMS verification, credential recovery and reset, important service notices, customer support, and legally required purposes.
- How collected: You enter this information on screens for phone login, registration, binding, or account deletion verification. If you choose one-tap login with the number on your device and provide separate consent, the carrier and authentication provider, such as DCloud UniVerify, authenticate the number and provide us only the authentication information needed to complete login. We do not access your SMS messages or call history for unrelated purposes as an alternative.
- Use: Only for account management and security. It is not used for purposes unrelated to this Policy or outside the scope of your authorization.
- Mood entries: Journal text, emotion labels, mood states, and other personal journal content you record in the application.
- Habit check-in data: Habits, goal completion, and other data you record.
-
Photos, images, and related metadata:
- Purpose: Images you choose to use for journal entries, feedback, appointment descriptions, and profile photos that you select, take, and upload.
- How collected: Only after you tap an entry such as “Take Photo,” “Choose from Photos,” or “Add Image” and confirm the permission explanation, using the system camera, photo library, or media picker to obtain the image you select or take.
- Use: Cropping, compression, content safety checks, upload, display, or storage as required by the selected feature. Images are not used for unrelated purposes.
- Feedback: Suggestions, issue reports, and other information you submit to us.
1.2 Information Collected Automatically
- Device information: Device model, operating system version, application version, and similar technical information.
- Usage data: Anonymous statistics such as feature usage frequency, interactions, and crash logs.
- Network information: IP address, network type, and other connection information.
1.3 Device Identifiers
To provide push notifications, security risk control, analytics, and related features, we and integrated third-party SDKs may collect the following device identifiers:
- GAID (Google Advertising ID):
- Purpose: Device recognition for push services, establishing push channels, and measuring advertising effectiveness.
- How collected: Automatically through system APIs.
- Use: Only for push services and analytics, not for other purposes.
- Android ID:
- Purpose: Unique device identification, establishing push channels, and security risk recognition.
- How collected: Automatically through system APIs.
- Use: Only for device recognition and push services. It is not combined with other information to track users.
- MAC address:
- Purpose: Network security verification, device recognition, and push-service optimization.
- How collected: Through system network-interface APIs.
- Use: Only for security verification and device recognition, with the data encrypted.
- Installed application information:
- Purpose: Intelligent push-channel selection and optimization to improve message delivery.
- How collected: Through the system PackageManager interface.
- Use: Only to determine available push channels. We do not upload a complete application list and only check for specific push-related applications.
- OAID (Open Anonymous Device Identifier):
- Purpose: Unique device identification, push notifications, analytics, and application performance monitoring.
- How collected: Through the Mobile Security Alliance SDK only after you consent to this Privacy Policy.
- Use: Device recognition, push services, analytics, and crash analysis. It is not used for advertising or user profiling.
- Processing: The data is encrypted and de-identified and is not linked to your real-world identity.
2. How We Use Information
We collect and use your personal information only for the following purposes:
- Core features: To provide mood tracking, AI analysis, statistics, and other core services.
- Profile photo and image features: When you choose to take a photo or select one from your library, to update your profile photo, add images to entries, upload or preview images, and perform necessary content safety checks.
- Personalized experience: To recommend features and content based on how you use the application.
- AI analysis: To analyze emotional patterns with AI and provide mental wellness insights.
- Service improvement: To analyze usage data and improve features and user experience.
- Technical support: To provide customer service and technical assistance.
- Security: To protect the application and prevent malicious activity.
3. Storage and Security
3.1 Data Storage
- Your personal data is primarily stored on your local device.
- To provide cloud synchronization, some data is encrypted and stored on our secure servers.
- We use industry-standard encryption to protect your data.
3.2 Security Measures
- SSL/TLS encrypted transmission.
- Strict data access controls.
- Regular security audits and vulnerability testing.
- Established data backup and recovery mechanisms.
4. Sharing and Disclosure
We will not sell, rent, or otherwise disclose your personal information to third parties unless:
- You provide explicit consent.
- Disclosure is required by law, regulation, or a government authority.
- It is necessary to protect our lawful rights or those of other users.
- Information is shared with service providers only to the extent necessary to provide the services.
5. Third-Party Services and SDKs
Our application integrates the following third-party services and SDKs:
5.1 Getui Push Notification SDK
SDK: Getui Common Library SDK (Gtc)
Provider: Zhejiang Merit Interactive Network Technology Co., Ltd.
Function: Push notifications used to deliver service messages to users.
Privacy policy: https://www.getui.com/privacy
Information collected:
- Android ID: Device recognition and message delivery for push services.
- GAID (Google Advertising ID): Device recognition for overseas push channels.
- MAC address: Device recognition and network-status detection.
- Installed application list: Intelligent selection of the best push channel to improve delivery. Only push-related applications, such as Xiaomi Push and Huawei Push, are checked.
Use: This information is used only to provide push notifications and not for other purposes.
5.2 DCloud General Development Library
SDK: DCloud General Development Library (uni-app framework library)
Provider: Digital Heaven (Beijing) Network Technology Co., Ltd.
Function: Core application-development capabilities, including device information, network requests, and storage management.
Privacy policy: https://ask.dcloud.net.cn/article/36937
Information collected:
- OAID: Unique device identification and analytics.
- Device information: Device model, operating system version, screen resolution, and similar information for compatibility and performance optimization.
- Network information: Network type and carrier information for network-status detection and optimization.
How collected: Automatically through system APIs and the Mobile Security Alliance SDK, only after you consent to this Privacy Policy.
Use: Device recognition, performance statistics, crash analysis, and feature optimization. It is not used for advertising or user tracking.
5.2.1 One-Tap Login with Your Device Number / UniVerify
Service: Carrier authentication and one-tap login with the mobile number on your device, including DCloud UniVerify.
Providers and partners: Digital Heaven (Beijing) Network Technology Co., Ltd., mobile network carriers, number-authentication providers, and other third parties identified in the feature and carrier terms.
Function: If you choose one-tap login to avoid entering your phone number manually, carrier and authentication channels verify the number after your separate consent so registration or login can be completed.
More information: DCloud one-tap login and privacy information (subject to the provider's latest official information).
Personal information that may be involved:
- Your device's phone number or number-retrieval and authentication result: Used to link the number to your account and determine whether login succeeds.
- Network status and device or carrier parameters required for authentication: Used to establish a secure connection with the carrier or authentication provider and retrieve the number, limited to information necessary for this feature.
Timing: Collection is triggered only when you actively select one-tap login and confirm authorization. We do not collect your phone number when you have not used this feature or have not consented.
5.3 Other Third-Party Services
- AI analysis services: Emotion recognition and mental wellness analysis.
- Cloud storage services: Data synchronization and backup.
- Analytics services: Application performance monitoring and usage analysis.
These third-party providers maintain privacy safeguards, and we require them to process your information in accordance with this Privacy Policy. Visit each SDK provider's privacy policy for further details.
6. Auto-Start and Associated Start
Important: The application may auto-start or be started by an associated service in the circumstances described below so that relevant features can operate. These actions occur only after you consent to this Privacy Policy and actively use the relevant feature. The application does not frequently auto-start or trigger associated starts for purposes unrelated to its features.
6.1 Push Notifications (Associated Start)
- Scenario: After you consent to this Privacy Policy, the application initializes the Getui push SDK. To establish and maintain a push connection, the SDK may be awakened by a system push channel, such as Xiaomi, Huawei, OPPO, or vivo push services, or by another application using the same push service.
- Purpose: To deliver service notices, mood-entry reminders, and other notifications even when the application is not running.
- Rules: This activity is used only to establish and maintain the push connection and does not collect additional personal information. Before you consent to this Privacy Policy, the SDK is not initialized and does not trigger an associated start.
- Why needed: Because of Android system behavior, some devices cannot receive push messages after the application exits without this mechanism.
6.2 Persistent Bluetooth Connection (Auto-Start)
- Scenario: After you pair a smart ring or other Bluetooth device and enable “Keep Connected” or “Automatic Sync,” the application automatically restores the Bluetooth foreground service when the phone restarts or the application is updated.
- Purpose: To maintain continuous heart-rate, blood-oxygen, and other health monitoring and avoid missing data after the phone restarts.
- Rules: This occurs only after you explicitly enable the feature. The restored service runs as a system foreground service with a persistent notification so that you remain aware of it. It stops immediately and will not start again after you disable the feature or unpair the device.
- Why needed: A Bluetooth connection depends on the application process remaining active. Without restart recovery, health monitoring would stop silently after the phone restarts and health data could be incomplete.
6.3 Your Controls
- You can disable persistent Bluetooth connections or unpair a Bluetooth device in Device Management. The corresponding auto-start behavior stops after the feature is disabled.
- You can restrict or disable auto-start, associated start, and push permissions in your phone settings, such as App Management - Auto-Start Management, Battery - Background Activity, or Notification Management. Paths vary by device.
- Disabling these permissions does not affect core features such as mood tracking and meditation, but push messages may not arrive or Bluetooth health-data synchronization may stop.
7. Your Rights
Under applicable laws and regulations, you have the following rights:
- Access: Learn how we collect and use your personal information.
- Correction: Ask us to correct or supplement your personal information.
- Deletion: Ask us to delete your personal information.
- Withdrawal of consent: Withdraw consent to the processing of personal information.
- Data export: Request a copy of your personal information.
- Account deletion: Delete your account.
7.1 Account Deletion
You can delete your account in either of the following ways:
- In the application, go to Me - Settings - Delete Account and verify your identity using an SMS code.
- If you cannot complete the process in the application, contact our support email for assistance.
Before deleting your account:
- Method: The system verifies your identity by SMS code and deletes the account immediately after confirmation.
- Effect: You will no longer be able to sign in or use our services with the account. All information associated with it will be permanently deleted and cannot be recovered.
- Data affected: This includes mood entries, habit check-ins, AI analysis reports, uploaded images, and other personal data.
- Conditions:
- The account is secure and is not compromised or suspended.
- There are no incomplete orders or services.
- There are no unresolved disputes or complaints.
- Purchased but unused virtual items cannot be refunded.
- Legal retention: We may retain certain information as required by law to meet legal obligations, resolve disputes, prevent fraud, or for similar purposes.
Reminder: Account deletion cannot be reversed. Consider the consequences carefully and back up important data before proceeding.
8. Children's Privacy
We take children's privacy seriously. If you are under 14 years old, review this Privacy Policy with your guardian and use our services only with your guardian's consent.
9. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify you through an in-app notice, email, or another appropriate method. Review this Policy periodically for the latest information.
10. Contact Us
11. Governing Law
This Privacy Policy is interpreted and enforced under the laws of the People's Republic of China. If a dispute arises, both parties should first seek to resolve it through amicable consultation. If consultation fails, either party may bring an action before a court with jurisdiction.
Last updated: July 19, 2026
Effective date: July 19, 2026