念是自托管软件。你的聊天、记忆和设置只存在你自己的服务器上,App 只连接你自己的服务器;我们看不到、也不经手这些内容。我们自己只运营一个很小的账号与会员服务(登录、会员状态、安装凭证、你主动发送的错误报告),存的东西在下面列全了。我们不查看、不出售任何用户数据,也不接入任何第三方统计或广告。
念本身不接入任何第三方统计或广告。你在自己的后台里配置的 AI 模型服务(例如你自己申请的 API)由你与该服务商之间的协议约束,念不经手这些数据。
不存:你的聊天、记忆、设置、你服务器的 root 密码、你在后台里填的任何 API key。这些从不经过我们的服务器。
安装或使用中出错时,你可以点「把报错发给我们」。只有你点了确认,我们才会收到:当时屏幕上的报错内容、你的服务器地址、App 版本和手机型号,以及你在 App 里登录的账号邮箱(如果登录了)。这些只用于排查问题,不会收到密码、口令、聊天内容或记忆。不点就什么都不发。报告保留 180 天后删除。
删除你服务器上的数据目录即删除全部聊天、记忆和设置;从手机上删除 App 即删除手机上保存的地址和口令。要删除我们这边的账号和会员记录,用登录的邮箱联系我们,我们会删掉。
关于隐私的问题,请通过 App 内「设置」里的联系方式或分发页面上的邮箱联系我们。
Privacy Policy (English summary). Nian is self-hosted software. Your chats, memories and settings are stored only on your own server, and the app connects only to your own server; we never see or handle them. We run one small account-and-membership service that stores: your email, sign-in codes, a one-way password hash and sign-in sessions; a random per-phone ID and device model (to limit phones per account); your membership status and expiry, plus your backend's host name, domain, version and a short machine ID (to recognise your backend) and the time and IP of its daily membership check; Alipay payment records (payer name, account, amount, time) used to activate membership; and one-time install tokens (30 minutes). Error reports: only when you tap “send this error to us” and confirm, we receive the error shown on screen, your server address, the app version, the device model and (if signed in) your account email, kept for 180 days and used solely for troubleshooting. We never receive passwords, API keys, chats or memories. The app stores your server address and password in the device keychain; camera, health and location access (when granted) are used only to send data to your own server. No third-party analytics or ads. Delete the data directory on your server to delete all your data; contact us from your sign-in email to delete your account and membership records.