隐私政策Privacy Policy
最后更新日期Last updated:2026 年 9 月 15 日September 15, 2026
欢迎使用 ArtBorder(以下简称「本应用」)。本应用由个人开发者 LIMUL 提供。本政策说明我们如何处理与本应用及官网(support.limul.cn)相关的信息。请在使用本应用或访问官网前阅读。Welcome to ArtBorder (the "App"). The App is provided by independent developer LIMUL. This policy explains how we handle information related to the App and the website at support.limul.cn. Please read it before using the App or visiting the site.
一、政策范围1. Scope
本政策适用于 ArtBorder iOS 应用,以及 ArtBorder 官网。Apple App Store 的账号、支付、退款与订阅由 Apple 按其自身政策处理;本应用不会另行收集银行卡号或 Apple ID。This policy covers the ArtBorder iOS app and the ArtBorder website. Apple ID, payments, refunds, and subscriptions on the App Store are handled by Apple under Apple's own policies. The App does not separately collect bank card numbers or Apple IDs.
二、我们不收集的信息2. Information We Do Not Collect
我们不会上传、也不会在开发者服务器上保存下列信息:We do not upload or store any of the following on the developer's servers:
- 您的照片、编辑结果、水印、签名、背景或样式预设Your photos, edited results, watermarks, signatures, backgrounds, or style presets
- 姓名、电子邮箱、电话号码或邮寄地址Name, email address, phone number, or mailing address
- Apple IDApple ID
- 银行卡号、支付账号、实付金额或 App Store 订单号Bank card numbers, payment account numbers, amounts charged, or App Store order numbers
- 广告标识符(IDFA)、设备硬件序列号;我们也不会读取浏览器或设备特征来识别您的设备The advertising identifier (IDFA) or hardware serial numbers; we also do not fingerprint the device or browser
- 精确地理位置Precise location
三、仅在设备本地处理的信息3. Information Processed Only on Your Device
装裱编辑在您的设备上完成。具体而言:Framing and editing happen on your device. Specifically:
- 照片访问:本应用需要访问相册以导入照片。照片仅在本地处理,不会上传。Photo access: The App needs library access to import photos. Photos are processed locally and are never uploaded.
- 照片保存:仅在您主动导出时,把成品写入相册。Photo saving: Finished images are written to your library only when you export.
- 本地存储:编辑设置、样式预设、自定义背景和水印只保存在本机,不会同步到云端或其他设备。Local storage: Edit settings, style presets, custom backgrounds, and watermarks stay on this device. They are not synced to the cloud or other devices.
- 本机权益:7 天体验、分享奖励和 StoreKit 会员状态写在本机。这些权益先在本地生效,不依赖下文统计是否发送成功。Local entitlements: The 7-day experience, sharing rewards, and StoreKit membership are stored on the device. Access is granted locally and does not depend on whether the analytics described below succeed.
四、发送到开发者服务器的匿名活动数据4. Anonymous Activity Data Sent to Our Server
为了解免费体验、分享奖励、年费会员和终身开通的整体效果,本应用会向开发者自己的服务器发送有限事件。这是第一方统计:不经过第三方分析 SDK、广告 SDK 或数据经纪商。To understand aggregate use of the free experience, sharing rewards, annual membership, and lifetime access, the App sends limited events to the developer's own server. This is first-party analytics: it does not go through a third-party analytics SDK, advertising SDK, or data broker.
在您领取 7 天免费体验、领取分享奖励,或本机出现已验证的年费或终身会员权益时,可能发送:When you claim the 7-day free experience, claim a sharing reward, or when verified annual or lifetime access appears on the device, the App may send:
- 活动类型:例如 7 天免费体验、30 天分享奖励、年费开通、终身开通Activity type: for example the 7-day free experience, a 30-day sharing reward, annual access, or lifetime access
- 开通来源分类:年费记为付费订阅(若 Apple 提供介绍优惠且您符合资格,介绍优惠期间也记为付费订阅)。终身记为普通购买或兑换码。这只是活动分类,不含金额、卡号、Apple ID 或订单号。当前没有年费兑换码;即使将来有人兑到年费,本应用也不会上报年费兑换码事件Access source category: annual access is recorded as a paid subscription (including Apple's introductory offer when you are eligible). Lifetime access is recorded as a regular purchase or an offer-code redemption. This is only a category. It does not include price, card numbers, Apple ID, or order numbers. There is currently no annual offer code; if someone later redeems an annual code, the App will not report an annual offer-code event
- 时间:事件发生时间和到期时间。年费和终身开通的发生时间取自设备上 StoreKit 交易的原始购买时间,而不是「本次打开 App」的本地时钟Timestamps: when the event occurred and when it expires. For annual and lifetime access, the occurrence time is the original purchase date on the StoreKit transaction, not the local clock for this app launch
- 应用信息:App 版本、构建版本,以及运行环境(例如正式版、TestFlight 或开发构建)App information: version, build number, and runtime environment (for example production, TestFlight, or a development build)
- 随机安装标识:本机生成的随机标识。服务器只保存它的 SHA-256 单向摘要,用于去重,并把同一安装上的试用与开通对应起来。我们不能从摘要反推原始标识,也不会把它和姓名、邮箱或 Apple ID 放在一起Random install identifier: a random ID created on the device. The server stores only a one-way SHA-256 digest of it, used to deduplicate events and to match a trial with later access on the same install. We cannot reverse the digest, and we do not store it with your name, email, or Apple ID
五、这些数据如何使用5. How We Use This Data
匿名活动数据只用于:汇总领取数量和当前仍有效的数量;了解试用期间或试用之后有多少安装开通了年费或终身(终身再区分付费购买与兑换码);防止重复计数;改进活动和产品。Anonymous activity data is used only to: count claims and how many are still active; understand how many installs obtained annual or lifetime access during or after the trial (and, for lifetime, whether that was a paid purchase or an offer code); prevent double-counting; and improve the promotions and the product.
我们不会把这些数据用于广告、跨 App 或跨网站追踪、营销画像,也不会用来撤销或限制已经发放的使用权益。我们不会把它与其他公司的数据合并,也不会出售。We do not use this data for advertising, cross-app or cross-site tracking, or marketing profiles, and we do not use it to revoke or restrict access already granted. We do not combine it with other companies' data, and we do not sell it.
因此,本应用不通过 App Tracking Transparency 征求「跨 App 追踪」许可——我们不做 Apple 所定义的这类追踪。统计失败不影响导入、编辑、导出或已经获得的会员。The App therefore does not request App Tracking Transparency permission for "tracking across apps" — we do not do tracking as Apple defines it. A failed analytics request does not affect import, editing, export, or membership you already have.
六、应用内购买6. In-App Purchases
购买、恢复购买和兑换码都通过 Apple 的 StoreKit / App Store 完成。支付信息由 Apple 按其隐私政策处理,开发者收不到银行卡号或 Apple 账号密码。Purchases, restore, and offer-code redemption are completed through Apple's StoreKit / App Store. Payment details are handled by Apple under Apple's privacy policy. The developer does not receive bank card numbers or Apple account passwords.
本应用只根据设备上已验证的交易,判断本机能否使用相应功能;若向自有服务器发送上一节所述事件,仅包含活动分类与时间,不包含支付凭证。The App uses verified on-device transactions only to decide whether this device may use the corresponding features. If it sends the events in the previous section to our server, those events contain only the activity category and timestamps, not payment credentials.
七、官网分析7. Website Analytics
ArtBorder 官网使用 EventLoom 了解页面访问、性能和基础交互(例如 App Store 按钮点击、作品查看)的总体情况,用于改进官网。该服务不分析本应用内的照片、编辑内容或购买信息,也不会用来把网页访客和 App 安装对上。The ArtBorder website uses EventLoom to understand aggregate visits, performance, and basic interactions (for example App Store button clicks and viewing works) so we can improve the site. That service does not analyze photos, edits, or purchases inside the App, and it is not used to match website visitors with App installs.
我们仅发送页面地址、页面性能、浏览器错误,以及不含可识别个人信息的站内交互事件;不发送照片、姓名、邮箱、账号标识、密码、令牌或支付信息。浏览器启用 Do Not Track 或 Global Privacy Control 时,官网不会加载该分析服务。We only send page addresses, page performance, browser errors, and on-site interaction events that do not contain personally identifiable information. We do not send photos, names, email addresses, account identifiers, passwords, tokens, or payment information. The website does not load this analytics service when Do Not Track or Global Privacy Control is enabled in the browser.
八、第三方8. Third Parties
本应用不集成任何第三方分析、广告或数据收集 SDK。The App does not integrate any third-party analytics, advertising, or data collection SDKs.
可能涉及的外部方仅包括:Apple(App Store、StoreKit、系统相册权限);EventLoom(仅官网,且可被 DNT/GPC 关闭);以及托管官网与接口的基础设施。我们不会把匿名活动摘要提供给广告网络。External parties that may be involved are limited to: Apple (App Store, StoreKit, and system photo-library permission); EventLoom (website only, and it can be disabled by DNT/GPC); and the infrastructure that hosts the site and API. We do not provide anonymous activity digests to advertising networks.
九、保存期限9. Retention
匿名活动记录会保存在开发者服务器上,以便统计历史领取和转化情况。照片、编辑内容和预设只留在您的设备上,卸载应用或由您在系统中删除后,本机副本随之删除。Anonymous activity records are kept on the developer's server so we can measure historical claims and conversions. Photos, edits, and presets remain on your device and are removed when you delete them in the system or uninstall the App.
已经发送到服务器的安装摘要,不会仅仅因为您卸载应用而自动消失。官网 EventLoom 数据按其服务规则保留,并与 App 内统计分开存放。Digests already sent to the server are not automatically deleted merely because you uninstall the App. EventLoom data on the website is retained under that service's rules and is stored separately from in-app analytics.
十、您的选择、撤回与删除10. Your Choices, Withdrawal, and Deletion
使用本应用即表示您同意按本政策发送上述匿名活动数据。高级功能、试用和导出都不要求统计成功。By using the App, you agree that we may send the anonymous activity data described in this policy. Premium features, the trial, and export do not require analytics to succeed.
如您不同意这项统计,请停止使用或卸载本应用。卸载会清除本机待发送队列。随机安装标识存在系统钥匙串中,卸载后不一定会被清除;重新安装时有可能沿用同一标识。If you do not agree to this analytics, stop using the App or uninstall it. Uninstalling clears the on-device send queue. The random install identifier is stored in the system Keychain and may survive uninstall; reinstalling may reuse the same identifier.
我们无法用姓名、邮箱或 Apple ID 查找某条活动记录,因为从未保存这些信息。若您希望删除已存储的摘要,请发送邮件说明;如果您能提供该设备上的随机安装标识,我们将删除对应摘要的记录。即使无法定位具体记录,我们也可以书面确认:服务器活动库中没有与您的姓名、邮箱或 Apple ID 关联的档案。We cannot look up an activity record by name, email, or Apple ID, because we never store those. To request deletion of a stored digest, email us. If you can provide the random install identifier from that device, we will delete the matching digest records. Even if we cannot locate a specific record, we can confirm in writing that the activity database has no profile tied to your name, email, or Apple ID.
对本政策、官网分析或数据请求有疑问,请使用下方邮箱联系。我们会在合理期限内回复。For questions about this policy, website analytics, or a data request, use the email below. We will respond within a reasonable time.
十一、数据安全11. Security
照片、编辑内容和预设由设备自身的安全措施保护(例如锁定屏幕、Face ID、Touch ID)。匿名活动数据通过加密连接传输,安装标识在服务器上仅保存单向摘要。Photos, edits, and presets are protected by the device's own safeguards (such as a lock screen, Face ID, or Touch ID). Anonymous activity data is sent over an encrypted connection. The install identifier is stored on the server only as a one-way digest.
匿名活动接口不会把 IP 地址当作统计字段写入活动记录。为保障服务安全,基础设施仍可能产生常规访问日志;我们不会把这类日志与安装摘要合并,用来识别您的身份。The anonymous activity API does not write IP addresses into activity records as a statistics field. Infrastructure may still keep ordinary access logs for security. We do not combine those logs with install digests to identify you.
十二、儿童隐私12. Children's Privacy
本应用不针对 13 岁以下儿童,也不会故意收集儿童的个人信息。如果您认为我们无意中收到了儿童相关信息,请联系我们,我们会尽快删除能够定位的数据。The App is not directed at children under 13 and does not knowingly collect children's personal information. If you believe we have received such information, contact us and we will delete any data we can locate.
十三、政策变更13. Changes
我们可能更新本政策,并在本页面公布,必要时也会在应用内提示。页面顶部的日期为最近更新日期。继续使用本应用或官网,即表示您了解更新后的政策。We may update this policy and will publish the new version on this page, and in the App when appropriate. The date at the top is the latest update. Continued use of the App or website means you understand the updated policy.
十四、联系方式14. Contact
开发者:LIMULDeveloper: LIMUL
邮箱:limul@foxmail.comEmail: limul@foxmail.com
官网:https://support.limul.cnWebsite: https://support.limul.cn