Privacy Policy
XDL Chat operator (hereinafter "we") understands the importance of your personal information. We will protect your personal information and privacy in accordance with applicable laws and regulations. We have formulated this Privacy Policy and kindly remind you to read and understand it carefully before using XDL Chat and related services.
1. Information We Collect
When you use XDL Chat, we may collect the following information:
1) Account information: username, nickname, avatar and other basic profile information you provide during registration.
2) Communication information: text messages, images, voice messages, files and other chat content you send and receive, as well as audio/video call records (excluding the call content itself).
3) Device information: device model, OS version, unique device identifier, network type, etc., used to ensure normal operation and security of the service.
4) Log information: access time, operation records, etc., used to troubleshoot issues and improve service quality.
2. Use of Information
The information we collect will be used for the following purposes:
1) To provide core services such as instant messaging and audio/video calls.
2) To ensure account security, and to identify and prevent security risks.
3) To improve and optimize our service experience.
4) To comply with applicable laws and regulations or respond to lawful requests from judicial authorities.
3. Storage and Protection
1) We use industry-standard encryption technologies (including transmission encryption and storage encryption) to protect your personal information.
2) Your chat records are stored on secure servers with strict data access controls.
3) We will retain your personal information for the minimum period necessary to fulfill the service purpose. After the retention period, we will delete or anonymize your personal information.
4. Third-Party Services
To provide a complete service experience, XDL Chat integrates the following third-party services. These services may access corresponding device capabilities or data when you use the related features:
1) Agora (audio/video calls): When you initiate or answer an audio/video call, Agora will access your microphone, camera, audio/video stream data, and network information to establish and transmit the real-time call. Privacy policy: www.agora.io/en/privacy-policy
2) image_picker (photo library access): When you send image messages, set an avatar, or upload a merchant logo, we will request access to your photo library and camera.
3) mobile_scanner (QR code scanning): When you use the scan feature, we will request access to your camera to recognize QR codes. The scanned content is processed locally only.
4) record / just_audio (voice messages): When you record and play voice messages, we will request access to your microphone and speaker. Voice message files are stored on our servers.
5) gal (save to photo library): When you choose to save an image or QR code to your photo library, we will request write access to your photo library.
6) webview_flutter (in-app browsing): When you tap a web link within the app, the link will be loaded in an in-app browser. This browser is isolated from your device's system browser and does not share cookies or login state.
7) permission_handler (permission management): Used to uniformly request system permissions such as camera, microphone, and photo library. It does not collect any data on its own.
The data processing by the above third-party services is subject to their respective privacy policies. We only invoke these services within the scope necessary to deliver the corresponding features.
5. Your Rights
You have the following rights regarding your personal information:
1) View and modify: You can view and modify your personal profile (nickname, avatar, gender, etc.) at any time within the app.
2) Delete data: You can delete chat records, leave groups, clear local cache ("Me — Cache Management"), and perform other operations to delete related data.
3) Account deletion: You can apply to delete your account via "Me — Settings — Delete Account". After deletion, we will permanently delete your personal information, and this operation is irreversible.
4) Withdraw consent: For information collected based on your consent, you may withdraw consent by disabling the corresponding system permission (such as camera, microphone, or photo library) or by ceasing to use the related feature. After withdrawal, the related feature will no longer be available, but the withdrawal does not affect processing based on your consent prior to the withdrawal.
5) Data export: If you need a copy of the personal information we hold about you, you may submit a request to the contact email at the end of this policy. We will respond within 15 business days.
6) Complaints: If you have any questions or complaints about our data processing, you may contact us via the email at the end of this policy and we will handle the matter promptly.
6. Protection of Minors
XDL Chat is primarily intended for adult users. If you are a minor under 18 years of age, please read this Privacy Policy under the guidance of your guardian and use our services only with their consent. We do not knowingly collect personal information from children under the age of 13. If we become aware that a child under 13 has provided us with personal information, we will take steps to delete such information.
7. Data Sharing and Cross-Border Transfers
1) We will not sell your personal information to any third party.
2) We will only share your personal information in the following circumstances:
· With your explicit consent;
· When necessary to provide a service you have actively requested (for example, using Agora for audio/video calls);
· When required by laws and regulations, or by lawful requests from judicial or administrative authorities;
· When necessary to protect the legitimate rights and interests of XDL Chat, other users, or the public.
3) Our servers are located in mainland China. If you use this service from outside mainland China, your data will be transferred to and stored and processed in mainland China. We will take measures consistent with applicable laws to safeguard the security of data during cross-border transfer.
8. Data Security Incident Notification
1) We have established a dedicated security incident response mechanism.
2) In the event of a data security incident that may affect your legitimate rights and interests, we will, within the time required by applicable laws and regulations, inform you through in-app notifications, email, or other reasonable means of the basic nature of the incident, its potential impact, the remediation measures we have taken, the precautions you may take, and available channels for redress.
3) Where individual notification is impracticable, we will publish a notice in a reasonable and effective manner.
9. Updates to Privacy Policy
We may revise this Privacy Policy from time to time. When significant changes are made, we will notify you through in-app notifications and provide reasonable time before the changes take effect for you to review and decide whether to continue using this service.
10. Contact Us
If you have any questions, comments or suggestions about this Privacy Policy, you can contact us at:
Email: support@xdl.world
隐私政策
兄弟聊运营方(以下简称"我们")深知个人信息对您的重要性,我们将按照法律法规的规定, 保护您的个人信息及隐私安全。我们制定本"隐私政策"并特别提示:希望您在使用兄弟聊及 相关服务前仔细阅读并理解本隐私政策,以便做出适当的选择。
一、我们收集的信息
在您使用兄弟聊的过程中,我们可能会收集以下信息:
1. 账号信息:您注册时提供的用户名、昵称、头像等基本资料。
2. 通讯信息:您发送和接收的文字消息、图片、语音消息、文件等聊天内容,以及音视频通话记录(不包括通话内容本身)。
3. 设备信息:设备型号、操作系统版本、唯一设备标识符、网络类型等,用于保障服务的正常运行和安全。
4. 日志信息:访问时间、操作记录等,用于排查问题和改善服务质量。
二、信息的使用
我们收集的信息将用于以下目的:
1. 为您提供即时通讯、音视频通话等核心服务。
2. 保障账号安全,识别并防范安全风险。
3. 改善和优化我们的服务体验。
4. 遵守适用的法律法规或响应司法机关的合法要求。
三、信息的存储与保护
1. 我们采用业界通行的加密技术(包括传输加密和存储加密)来保护您的个人信息。
2. 您的聊天记录存储在安全的服务器上,我们采取严格的数据访问权限控制,仅授权人员可访问。
3. 我们将在实现服务目的所必需的最短时间内保留您的个人信息。当超出保留期限后,我们将对您的个人信息进行删除或匿名化处理。
四、第三方服务
为向您提供完整的服务体验,兄弟聊接入了以下第三方服务。这些服务可能在您使用相关功能时访问对应的设备能力或数据:
1. 声网 Agora(音视频通话):当您发起或接听音视频通话时,Agora 将访问您的麦克风、摄像头、音视频流数据及网络信息,用于建立和传输实时通话。隐私政策详见 www.agora.io/cn/privacy-policy
2. image_picker(相册访问):当您发送图片消息、设置头像或上传商家头像时,将请求访问您的相册和摄像头。
3. mobile_scanner(二维码扫描):当您使用扫一扫功能时,将请求访问您的摄像头,用于识别二维码。所识别的二维码内容仅在本地处理。
4. record / just_audio(语音消息):当您录制和播放语音消息时,将请求访问您的麦克风、扬声器。语音消息文件存储于我们的服务器。
5. gal(保存到相册):当您选择保存图片或二维码到相册时,将请求访问您的相册写入权限。
6. webview_flutter(应用内浏览):当您点击应用内出现的网页链接时,将在内置浏览器中加载该链接。该浏览器与您设备的系统浏览器隔离,不共享 Cookie 或登录态。
7. permission_handler(权限管理):用于统一向您请求摄像头、麦克风、相册等系统权限。本身不收集任何数据。
上述第三方服务对您数据的处理受其各自隐私政策约束。我们仅在为实现对应功能所必需的范围内调用这些服务。
五、您的权利
您对您的个人信息享有以下权利:
1. 查看和修改:您可以随时在应用内查看和修改您的个人资料(昵称、头像、性别等)。
2. 删除数据:您可以删除聊天记录、退出群聊、清除本地缓存("我的—缓存管理")等操作来删除相关数据。
3. 注销账号:您可以通过"我的—设置—账号注销"申请注销您的账号。账号注销后,我们将永久删除您的个人信息,该操作不可恢复。
4. 撤回同意:对于基于您同意而收集的信息,您可通过关闭对应系统权限(如摄像头、麦克风、相册)或停止使用相关功能撤回同意。撤回后,相关功能将无法继续使用,但不影响撤回前基于您同意已进行的处理。
5. 数据导出:如您需要获取我们持有的与您相关的个人信息副本,可通过本协议末尾的联系邮箱向我们申请,我们将在 15 个工作日内回复。
6. 投诉举报:如您对我们的数据处理行为有任何疑问或投诉,可通过本协议末尾的联系邮箱反馈,我们将及时处理。
六、未成年人保护
兄弟聊主要面向成年用户。如果您是未满 18 周岁的未成年人,请在您的监护人指导下阅读本隐私政策,并在取得监护人的同意后使用我们的服务。我们不会有意收集 13 周岁以下儿童的个人信息;如发现 13 周岁以下儿童使用本服务,我们将立即终止其账号并删除相关数据。
七、数据共享与跨境传输
1. 我们不会将您的个人信息出售给任何第三方。
2. 我们仅在下列情形下共享您的个人信息:
· 在您明确同意的前提下与第三方共享;
· 为提供您主动请求的服务所必需(例如使用 Agora 进行音视频通话);
· 法律法规要求、司法或行政机关基于法定权限要求时;
· 为维护兄弟聊、其他用户或公众的合法权益所必需时。
3. 我们的服务器位于中国大陆地区。如您在中国大陆以外的地区使用本服务,您的数据将被传输至中国大陆并在境内存储和处理。我们会采取符合适用法律要求的措施保障跨境传输过程中的数据安全。
八、数据安全事件通知
1. 我们已建立专项的安全事件应急响应机制。
2. 一旦发生可能影响您合法权益的数据安全事件,我们将在适用法律法规要求的时限内,通过应用内通知、电子邮件或其他合理方式告知您事件基本情况、可能产生的影响、我们已采取的处置措施、您可自主防范的建议及救济途径。
3. 如难以逐一告知,我们将采取合理、有效的方式发布公告。
九、隐私政策的更新
我们可能会适时修订本隐私政策。当隐私政策发生重大变更时,我们会通过应用内通知的方式告知您,并在变更生效前给予您合理的时间审阅和决定是否继续使用本服务。
十、联系我们
如果您对本隐私政策有任何疑问、意见或建议,可通过以下方式联系我们: