xnamec

隐私政策 · Privacy Policy

生效日期 / Effective date: 2026-07-17

隐私政策(中文)

1. 概述

xnamec(下称"本应用"或"我们")是由个人开发者运营的数字名片应用,包括移动应用与网页名片查看页(xnamec-1371f.web.app)。本政策说明我们收集哪些信息、如何使用与保护这些信息,以及你拥有的选择。

简单说:我们不投放广告、不出售你的个人数据、不使用任何第三方分析或追踪 SDK。

2. 我们收集的信息

账号信息。本应用使用 Google 账号登录(Firebase Authentication)。登录后我们获得你的邮箱地址、Google 显示名称与账号标识符。显示名称仅在首次登录时用于初始化一个可编辑的"姓名"条目;我们不使用你的 Google 头像,也无法获取你的 Google 密码。

你主动提供的内容。

自动收集的信息。本应用不包含广告、分析或崩溃收集 SDK,不收集广告标识符。名片分享页会在访客浏览器中保存一项本地设置(背景音乐静音偏好),仅用于记住开关状态,不用于追踪。我们使用的 Google 基础设施(托管、数据库、云函数、登录)会按行业惯例记录服务器日志(如 IP 地址与请求时间),用于安全与运维,遵循 Google 的保留策略。

我们不收集:精确位置(应用不请求定位权限)、通讯录、短信、财务信息、政府证件号码、浏览历史。

3. 我们如何使用信息

仅用于:提供核心功能(创建、保存、同步与展示名片)、账号管理与登录、保障服务安全与防止滥用。我们不出售个人数据,不进行广告投放或用户画像。

4. 公开分享(请务必阅读)

名片的意义在于分享。当你分享一张名片(复制链接、二维码或分享按钮)后:

  • 任何拿到链接的人无需登录即可查看该名片上的全部内容,包括照片与你选择放上去的任何信息(如出生日期、血型等敏感信息——是否放上名片完全由你决定);
  • 链接可能被转发、截图或被搜索引擎收录,请只把你愿意公开的内容放上名片;
  • 名片内容经 CDN 缓存分发:修改或取消公开后,访客最长可能在约 15 分钟内仍看到旧版本;
  • 若你在名片或 Card Box 中填写了他人的信息(如紧急联系人),请确保已获得对方同意。

未分享的草稿名片与你的资料库内容保持私密,仅你本人可见。

5. 第三方服务

我们使用 Google Firebase / Google Cloud 提供登录、数据库、文件存储、云函数与网页托管。你的数据存储在 Google Cloud 美国区域(数据库:nam5 多区域;存储与云函数:us-central1)。名片分享页从 Google Fonts 加载字体,加载时访客的 IP 地址会发送给 Google。除上述服务外,我们不与任何第三方共享你的个人数据。

6. 保存期限与删除

7. 安全

全程使用 HTTPS 加密传输;数据库与存储通过安全规则限制访问——私有数据仅你本人可读写,公开的只有你主动分享的名片。没有任何系统能保证绝对安全,但我们持续采取合理的技术措施保护你的数据。

8. 未成年人

本应用面向 13 岁及以上用户。首次登录需确认出生年份,未满 13 岁将无法使用。如我们发现误收集了 13 岁以下儿童的信息,会尽快删除。家长或监护人可通过下方邮箱联系我们。

9. 你的权利

你可以随时在应用内查看与更正你的资料,删除任意内容或整个账号。如你位于马来西亚,你依据《2010 年个人数据保护法》(PDPA)享有查阅与更正等权利。任何请求或疑问,请通过下方邮箱联系我们。

10. 政策更新

我们可能不时更新本政策。更新后会修改页首的生效日期;重大变更会在应用内提示。

11. 联系方式

邮箱:chuitheen@gmail.com

Privacy Policy (English)

1. Overview

xnamec ("the app", "we") is a digital namecard app operated by an independent developer, consisting of the mobile app and the web card viewer (xnamec-1371f.web.app). This policy explains what we collect, how we use and protect it, and the choices you have.

In short: we show no ads, we do not sell your personal data, and we use no third-party analytics or tracking SDKs.

2. Information we collect

Account information. You sign in with your Google account (Firebase Authentication). We receive your email address, Google display name, and an account identifier. The display name is used once to seed an editable "Name" entry; we do not use your Google profile photo, and we never see your Google password.

Content you provide.

Automatic collection. The app contains no advertising, analytics, or crash-reporting SDKs and collects no advertising identifiers. The public card page stores one local setting in the visitor's browser (the background-music mute preference), used only to remember the toggle — not for tracking. The Google infrastructure we run on (hosting, database, cloud functions, sign-in) keeps standard server logs (such as IP address and request time) for security and operations, under Google's retention policies.

We do not collect: precise location (the app requests no location permission), contacts, SMS, financial information, government ID numbers, or browsing history.

3. How we use information

Only to: provide the core features (creating, saving, syncing, and displaying cards), manage your account and sign-in, and keep the service secure and abuse-free. We do not sell personal data, serve ads, or build user profiles.

4. Public sharing (please read)

Namecards exist to be shared. Once you share a card (copy link, QR code, or the share button):

  • Anyone with the link can view everything on that card without signing in — including photos and any information you chose to put on it (such as birth date or blood type; whether to include sensitive details is entirely your choice);
  • Links can be forwarded, screenshotted, or indexed by search engines — only put on a card what you are comfortable making public;
  • Card content is delivered through a CDN cache: after you edit or unshare, visitors may still see the previous version for up to about 15 minutes;
  • If you add other people's information to a card or Card Box (such as an emergency contact), make sure you have their consent.

Unshared draft cards and your profile library remain private and visible only to you.

5. Third-party services

We use Google Firebase / Google Cloud for sign-in, database, file storage, cloud functions, and web hosting. Your data is stored in Google Cloud's United States region (database: nam5 multi-region; storage and functions: us-central1). The public card page loads fonts from Google Fonts, which sends the visitor's IP address to Google. Beyond these services, we share your personal data with no third parties.

6. Retention and deletion

7. Security

All traffic is encrypted with HTTPS; database and storage access is restricted by security rules — your private data is readable and writable only by you, and the only public data is the cards you choose to share. No system is perfectly secure, but we maintain reasonable technical measures to protect your data.

8. Children

The app is intended for users aged 13 and above. First sign-in requires confirming your birth year; users under 13 cannot proceed. If we learn that we have collected information from a child under 13, we will delete it promptly. Parents or guardians can reach us at the email below.

9. Your rights

You can view and correct your information in the app at any time, and delete any content or your whole account. If you are in Malaysia, you have rights of access and correction under the Personal Data Protection Act 2010 (PDPA). For any request or question, contact us at the email below.

10. Changes to this policy

We may update this policy from time to time. We will revise the effective date above, and notify you in the app of material changes.

11. Contact

Email: chuitheen@gmail.com