LoveYou 隐私政策

最后更新:2026 年 9 月 20 日 · 当前 iPhone 两人空间版本

1. 适用范围与数据

本政策适用于当前 iPhone 两人空间版本。你使用自己的 Apple iCloud 账号,通过系统邀请与另一位成员配对。App 处理随机空间/成员/设备标识、按钮信号次数与时间、接收回执、配对状态,以及完成连接所需的安全凭据。Apple 账号密码和验证码由 Apple 处理,App 不收集这些密码或验证码。

2. iCloud 与设备存储

空间与信号存储在创建者的 CloudKit 私有数据库,并通过 CKShare 向受邀成员共享;个人推送恢复信息位于各自的私有数据库,不随空间共享。空间密钥和恢复密钥使用 CloudKit 加密字段。本地保存配对状态、待发送队列、去重记录和同步状态;敏感推送凭据保存在钥匙串,队列文件受系统数据保护。新版 iPhone 不使用四位暗号或公共数据库配对。

3. 自建推送服务

我们使用部署在腾讯云的推送网关,通过 HTTPS 接收空间/成员/设备随机标识、推送地址(APNs token)、验证凭据、事件标识、事件提交时间和 App/系统版本,并向 Apple APNs 请求通知。网关不接收按钮信号的次数;该次数通过 CloudKit 同步。推送地址在服务端加密保存,身份验证秘密以派生验证值保存,服务运行也会处理必要的请求/错误元数据。开发者维护该服务,不作“没有自建服务器或无法处理任何数据”的承诺。

4. 用途与服务提供方

这些信息仅用于配对授权、发送与接收红心、回执、重试恢复、安全限流和维护服务。另一位被授权成员可以访问共享空间内容;Apple 提供 iCloud/APNs,腾讯云提供服务器基础设施。我们不出售数据,不使用广告、跨 App 跟踪或第三方行为分析 SDK。关闭通知会影响提醒,但不等同于删除空间数据。

5. 保留与删除

信号/回执按 7 天和每个空间最多 100 条事件的策略在 App 同步时清理;离线或 App 未运行时,远端清理可能延后。本地尚未完成的发送项保留用于重试,退出/关闭空间时取消。推送投递任务有效期最多 6 小时,这不表示网关所有注册、安全和备份数据都在 6 小时内删除。服务器清理与加密备份有独立周期,备份采用按日/周保留策略,不承诺操作后立即从所有备份抹除。

6. 你的控制与请求

受邀成员可在 App 中退出空间;创建者可关闭空间并撤销共享。操作需要网络成功完成;退出不等于删除对方仍持有的所有记录,关闭也不等于清空所有设备历史或服务器备份。你可在系统设置管理 iCloud 与通知权限。卸载 App 不保证钥匙串、iCloud 和服务器记录立即全部删除。如需数据处理说明或删除协助,请联系我们;不需要发送密码、验证码、完整邀请或安全密钥。

7. 儿童与政策更新

本 App 不面向 13 岁以下儿童。若发现不适当的数据收集,请联系我们核实处理。数据处理方式改变时会更新本政策;新的公开政策网址准备好后,会在 App 与商店资料中提供。

8. 联系

隐私与数据请求邮箱:xixikitchens@gmail.com。请只提供处理请求所必需的信息,不要发送账号密码、验证码或其他密钥。


LoveYou Privacy Policy

Updated September 20, 2026 · Current iPhone version

1. Information and purpose

LoveYou uses iCloud system invitations to connect two people. It processes random space/member/device identifiers, tap counts, timestamps, receipts, pairing state and security credentials for authorization, signaling, recovery and service maintenance. Apple handles your Apple Account password and verification codes; LoveYou does not collect them.

2. Storage and sharing

Space and signal records reside in the owner's private CloudKit database and are shared with the invited member using CKShare. Personal push-recovery records remain in each user's private database. Secrets use encrypted CloudKit fields. Local queues and pairing/sync state use system file protection; sensitive push credentials use Keychain. The current iPhone version no longer pairs using four-digit codes or public CloudKit records.

3. Developer-operated push service

Our gateway is hosted on Tencent Cloud. It receives random identifiers, APNs tokens, authentication credentials, event IDs, submission timestamps and app/OS versions over HTTPS and requests notifications through Apple APNs. Tap counts travel through CloudKit, not the gateway. Tokens are encrypted at rest; authentication secrets are stored as derived verification values. Necessary request/error metadata supports service operation. We do maintain our own server.

4. Service providers and tracking

The invited member accesses shared-space data, Apple provides CloudKit/APNs and Tencent Cloud provides hosting. We do not sell data or use advertising, cross-app tracking or third-party behavioral analytics SDKs. Disabling notifications does not delete space data.

5. Retention

Signals/receipts are cleaned during synchronization under a seven-day and 100-events-per-space policy. Offline or inactive apps may delay cleanup. Pending outgoing signals remain for retry and are cancelled on exit/closure. Push delivery jobs expire within six hours; this is not a six-hour deletion promise for all registration, security or backup data. Server cleanup and encrypted daily/weekly backups have separate retention cycles.

6. Controls and requests

Members can leave and owners can close a space and revoke sharing, subject to successful network operations. Leaving does not erase all partner-held data; closing does not instantly remove every device history or backup. Manage iCloud/notification permissions in Settings. Uninstalling does not guarantee immediate removal of Keychain, cloud and server data. Contact us for data information or deletion assistance. Do not send passwords, codes, full invitation URLs or security secrets.

7. Children and updates

The app is not directed to children under 13. Please report inappropriate data collection so we can investigate. This policy is updated when processing changes; the public policy URL will be supplied in the app and store once hosting is ready.

8. Contact

Privacy and data requests: xixikitchens@gmail.com. Provide only information necessary for your request, never passwords, verification codes or keys.

xixikitchens@gmail.com