隱私權政策
生效與更新日期:2026 年 10 月 7 日
AniNote 由 Chuang Shih chieh 提供。隱私、資料與支援問題請聯絡 pikflyer.app@gmail.com。本政策說明 App 及這個支援網站的資料處理;功能供應依平台與版本而異。
1. 筆記先保存在本機
筆記、手寫、文字、圖片、PDF、匯入文件、編輯紀錄與搜尋索引預設保存在裝置的 App 專用儲存空間。AniNote 沒有提供保存筆記或解密金鑰的自有伺服器,也不需要建立 AniNote 帳號。你選擇匯出或透過系統分享時,檔案會交給你指定的目的地或 App。
2. 你選擇的雲端服務
只有你主動連接支援的雲端服務後,App 才會將同步變更與附件加密,再寫入你自己的 Dropbox App Folder 或 Google Drive App Data 專用資料區。Google Drive 僅在該版本已完成配置時可用。雲端服務會依其政策處理帳號、授權請求、網路與必要的服務 metadata。
同步金鑰也備份在同一帳號的專用資料區,供其他裝置登入相同帳號後還原。取得該雲端資料區權限的人或服務可能解密筆記;這不是防止雲端服務解密的端對端加密。請保護你的雲端帳號與裝置。
3. 授權與帳號資訊
Dropbox refresh token 存於本機 Keychain/Keystore secure storage;Google 授權由平台 SDK 管理。帳號名稱與 email 用於顯示目前連接的帳號及完成授權。AniNote 不將你的密碼保存到筆記,也不把授權 token 放入同步筆記或支援網站。
4. 文字辨識與第三方 SDK
Apple 平台的 OCR 使用 Apple Vision,Android 使用 Google ML Kit。辨識影像與結果在裝置上處理,不送至 AniNote 伺服器。Google 說明 ML Kit 會處理裝置與 App 資訊、安裝識別碼、使用與效能指標、API 設定、輸入輸出大小及錯誤事件,用於診斷、維護與使用分析。
Google Sign-In SDK 的隱私宣告包含可能為功能與分析處理的名稱、email、電話、概略位置、使用者與裝置識別碼、使用及其他資料。這不表示 AniNote 會讀取你的筆記來做分析;第三方的實際處理以其 SDK、你使用的功能與政策為準。請參閱 ML Kit 隱私說明及 Google 隱私權政策。
5. 購買與診斷資料
付款由所使用的平台商店處理。AniNote 使用該平台的交易狀態與商品資訊確認是否已購買無限同步;我們不收取或保存信用卡資料。平台可能依其政策處理購買、帳號與診斷資訊。
AniNote 不整合廣告 SDK、不進行跨 App 追蹤,沒有由我們營運的分析或 crash 收集服務。匿名產品分析預設關閉,目前也沒有事件上傳端點。系統、平台商店及上述第三方 SDK 仍可能處理各自必要的診斷資料。
6. 你寄來的支援資料
你主動寄送的 email、錯誤訊息、附件與回覆會用於處理支援與資料權利請求,並由我們的 Gmail 信箱服務處理。請先移除非必要的私人內容;我們不要求你的密碼或雲端授權 token。支援資料保留於處理請求及必要的後續期間,你可聯絡我們要求刪除;依法需保存的資料除外。
7. 保留、刪除與控制
本機資料由你使用 App 管理;刪除筆記先移入可復原的垃圾桶。目前跨裝置不可逆的 remote purge 尚未開放。撤銷授權或刪除 App 不代表雲端服務上的加密歷史已永久移除。你可在雲端服務中管理 App 專用資料及授權;移除資料可能令其他裝置無法同步或復原,請先匯出重要筆記。
你可隨時不連接雲端、撤銷授權、管理本機筆記與匯出資料。若要查詢、更正或刪除你提供給我們的支援資料,請使用上方 email 聯絡。沒有 AniNote 伺服器帳號需要刪除;你的 Apple、Google 或 Dropbox 帳號須由相應服務管理。
8. 這個網站
網站由 Cloudflare 提供 HTTPS 與靜態網頁服務,沒有筆記上傳、登入表單、廣告或自訂追蹤程式。Cloudflare 可能為提供網站與防護處理 IP、請求及必要的技術資訊,詳見 Cloudflare 隱私權政策。
9. 政策變更
資料處理有變更時會更新本頁日期與政策;若變更需要新的同意,我們會在相應功能中取得同意。請勿透過支援信箱傳送你無權提供的第三人個人資料。
Privacy Policy
Effective and updated: October 7, 2026
AniNote is provided by Chuang Shih chieh. Contact: pikflyer.app@gmail.com. Feature availability varies by platform and version.
Local notes and optional cloud sync
Notes, handwriting, text, images, documents, edit history and search indexes are stored in app-private device storage by default. We do not operate a note-storage server or require an AniNote account. Exported or shared files go to the destination you choose.
When you connect a supported cloud account, the app encrypts sync changes and attachments on the device and stores them in your Dropbox App Folder or Google Drive App Data area. Google Drive is available only in configured versions. The workspace key is backed up in that same cloud area so devices signed into the same account can restore it. Anyone with access to that area, including the provider, may be able to decrypt the notes; this is not provider-blind end-to-end encryption. Cloud providers process account, authorization, network and service metadata under their own policies.
Authorization, OCR and SDKs
Dropbox refresh tokens are held in local OS secure storage; Google authorization is managed by its platform SDK. Account names and email addresses identify the connected account. We do not store your password in notes or sync authorization tokens as note content.
Apple Vision and Android ML Kit process OCR inputs and results on the device. ML Kit also processes app/device information, installation identifiers, usage, performance and diagnostic metrics. Google Sign-In privacy declarations include contact information, approximate location, identifiers, usage and other data for functionality and analytics, depending on the SDK and features used. See the ML Kit privacy information and Google Privacy Policy.
Purchases, diagnostics and support
Platform stores process payments. AniNote checks product and transaction status to determine the unlimited-sync entitlement; we do not receive payment-card details. We do not use advertising SDKs or cross-app tracking, and do not operate analytics or crash-collection services. Optional product analytics is off by default and currently has no upload endpoint. Operating systems, stores and SDKs may process their own diagnostic data.
If you email support, your email, message and voluntarily supplied files are used to handle the request through our Gmail service. Please redact private information and never send passwords or authorization tokens. Support data is retained for the request and necessary follow-up; you may request deletion, subject to legal retention requirements.
Your control and deletion
You can use local notes without cloud sync, export data and revoke cloud authorization. Notes in Trash can be restored. Irreversible cross-device remote purge is not currently offered. Disconnecting a provider or deleting the app does not erase all cloud history. You can manage the dedicated app data and authorization in your provider account; deleting cloud data can affect sync and recovery, so export important notes first. Contact us to access, correct or delete support data you supplied. There is no AniNote server account to delete.
This website and updates
Cloudflare hosts this static HTTPS site. It has no note upload, login form, advertising or custom tracking script. Cloudflare may process request, IP and technical information to deliver and protect the site under its Privacy Policy. We update this page when processing changes and obtain new consent where needed.