Privacy Policy
Effective: 2026-02-01 · Updated: 2026-09-21
Contents
1. Information We Process
- Account & identity information: such as email, login method, basic account profile.
- Project configuration data: such as recipient information, trigger schedules, decryption hints and notes.
- Encrypted clue files: we only store encrypted file copies you upload; we do not store decryption passwords or answers.
- Operation & security logs: such as key access records, operation audit records, and anomaly detection information.
- Subscription & payment status: such as subscription status, plan, and expiration time.
- WeCom message activity data: after explicit archiving consent, we process supported messages you send directly to your bound support contact, including proactive messages without a reminder. Activity is recorded only with an active subscription, an inactivity policy, a valid binding and the other eligibility conditions. For deduplication and audit, we retain the message identifier digest, type, associated account/binding/delivery, rule version, message and processing times, and outcome, never the message body.
2. How We Use Information
- Provide core features: account login, project management, trigger confirmation, and delivery process.
- Ensure system security: identify abnormal activity, block abuse, and conduct audit trails.
- Fulfill service obligations: process subscription benefits, run notification processes, and handle user support requests.
- Improve product experience: analyze feature stability and usability; we do not sell user data.
- WeCom activity confirmation: no prior reminder or 7-day reply window is required. With an active subscription and inactivity policy, a valid binding and archiving consent, and archiving and automatic recognition available for the assigned contact, supported types such as non-empty text, images, voice, video, files and emojis refresh activity. Messages must meet current identity, consent and activation time boundaries; old messages are not credited retroactively. Group chats, recalls, system notices, whitespace-only text and unsupported types do not count. Without consent or available archiving, automatic confirmation is unavailable; contact support for manual verification. No external confirmation link is required.
3. Processing Basis
We process your information based on legitimate grounds including contract performance (providing services you requested), legal obligations, and platform security maintenance.
When your authorization is needed, we will provide clear prompts before collection; you can adjust authorization in settings or the corresponding entry.
5. Cross-Region Transfer
To ensure service availability, data may be processed or backed up in data centers across different regions.
For cross-region transfers, we adopt contractual constraints, access controls, and encryption measures to protect data security.
6. Retention Period
- We only retain information for the period necessary to achieve service purposes.
- After you delete your account, related data will be deleted or anonymized according to system processes, unless otherwise required by law.
- Security and audit logs are cleaned according to policy after meeting security analysis and compliance requirements.
- WeCom messages are checked in memory only for type and required structure, without semantic analysis or media downloads. Message bodies are never written to the database or logs. Minimized message events are deleted after 180 days.
7. Security Measures
- Data isolation: different users' and projects' data are logically isolated.
- Least privilege: critical operations use short-term authorization and access verification.
- Audit trail: critical access and high-risk operations are traceable.
- Zero-knowledge boundary: the platform does not store your decryption password and cannot directly decrypt file contents.
8. Your Rights
- Access & correction: you can view and update personal information in account settings.
- Deletion & withdrawal: you can initiate account deletion to terminate subsequent service use.
- Processing restriction & objection: you can submit related requests within applicable law.
- You can contact us through the in-app support entry; we will process within a reasonable period.
10. Minors
If you do not have full civil capacity, please use this service under guardian consent and guidance.
If we discover use without required guardian consent, we may restrict or terminate the relevant account.
11. Policy Updates & Contact
We will update this policy based on product iterations, laws and regulations, or operational requirements, and mark the most recent update date on the page.
If updates involve significant changes, we will remind you through appropriate means.
For questions about this policy, please contact us through the in-app help center or account support entry.