Chi tiết quyền riêng tư bằng ngôn ngữ dễ hiểu

Quyền riêng tư tại RingMatcher

Xem RingMatcher gửi gì để phân tích, chủ động lưu gì và thông tin nào có trong liên kết chia sẻ Ringprint.

Câu trả lời bạn gửi

Quy trình miễn phí xử lý các câu trả lời về phong cách và mua sắm bạn chọn cùng ghi chú tùy chọn. Chúng chỉ được gửi đến máy chủ RingMatcher khi bạn yêu cầu kết quả và được dùng để tạo, xác thực kết quả đó.

Hình ảnh tùy chọn và xử lý AI

Ảnh là tùy chọn và không bao giờ bắt buộc ảnh khuôn mặt. Tối đa ba ảnh được thu nhỏ trong trình duyệt và có thể đi qua máy chủ RingMatcher đến nhà cung cấp AI được cấu hình cho yêu cầu đó. RingMatcher không chủ ý lưu tệp ảnh đã tải lên. Chúng tôi yêu cầu thiết lập không lưu giữ và từ chối thu thập, nhưng hạ tầng, điều khoản và nghĩa vụ pháp lý của nhà cung cấp vẫn áp dụng.

Chỉ dẫn hình ảnh chỉ cho phép tín hiệu thiết kế thị giác, cấm nhận dạng hoặc suy luận đặc điểm nhạy cảm. Chữ hay chỉ dẫn bên trong ảnh bị bỏ qua.

Liên kết chia sẻ

Liên kết chia sẻ chứa kết quả hiển thị, lộ trình kim cương, khoảng ngân sách và ngôn ngữ nội dung trong đoạn URL. Tệp ảnh tải lên không bao giờ được đưa vào. Bất kỳ ai có liên kết đều có thể đọc thông tin mã hóa, vì vậy hãy xem lại trước khi gửi.

Một đoạn giới hạn có thể chuyển các trường hướng dẫn hiển thị sang công cụ nhà bán lẻ. Nó không được gửi cùng yêu cầu HTTP của trang và bị xóa khỏi thanh địa chỉ sau khi nhập, nhưng người có liên kết chưa nhập vẫn có thể đọc.

Native app data, purchases, and recovery (authoritative English disclosure)

This native-app section is the authoritative English disclosure. The surrounding translated text may not yet describe every native-app behavior.

A questions-only Ringprint in the native app is created on the device, so those answers do not leave the device for matching. If you add up to three photos, the app re-encodes them and sends the device-resized images, their context labels, the questionnaire answers, the content locale, and a random installation identifier through RingMatcher for that request. Cookies are omitted. RingMatcher then sends the answers and images to OpenRouter, the configured AI gateway, with zero-data-retention and data-collection-denial settings requested. RingMatcher does not intentionally persist the match request body or uploaded image files, and saved Ringprints never contain a photo file or image payload. OpenRouter, any routed model provider, and their infrastructure, terms, and legal obligations still apply.

The app stores saved Ringprints in AsyncStorage, including the questionnaire answers, optional note, generated result, locale, source, timestamps, and image-analysis counts. Paid-plan snapshots, generated guidance, setup inputs, and tool activity are also stored in AsyncStorage; source snapshots omit the free-form Ringprint note. These records are app-local but are not encrypted by AsyncStorage. Photo files are excluded. A random installation UUID and purchase capabilities—including draft and access tokens, obfuscated purchase-binding identifiers, and a Google Play purchase token after billing—are stored separately with device-only SecureStore settings.

On Android, RingMatcher disables app backup and excludes its app files, databases, preferences, and device-to-device transfer domains from backup rules. This is intended to keep local Ringprints, plans, and purchase capabilities off Android backup and migration services. Other operating-system, device-administration, forensic, or user-initiated copying behavior is outside RingMatcher's control.

If you choose Report this result, the app sends RingMatcher the result identifier, visible result title, summary and rationale, the selected report reason, an optional note, the content locale, and the random installation identifier in a request header. The service uses the installation identifier and network address to enforce an hourly report limit. It writes the report content, reason, optional note, locale, a generated report identifier, and the receipt time to structured deployment logs so the report can be reviewed. Those report logs do not intentionally include the raw installation identifier or network address; their retention follows the deployment logging configuration. Reporting is optional and does not affect saved Ringprints or paid access.

Starting a Google Play checkout sends RingMatcher the selected pack, random installation UUID, local Ringprint identifier, and a SHA-256 digest of the Ringprint—not the questionnaire answers, uploaded photos, or generated plan. The server persists a digest of the installation identifier, the Ringprint identifier and digest, generated draft/access identifiers, product and pack identifiers, obfuscated Google Play binding identifiers, capability hashes, and timestamps. Claiming a purchase sends the raw Google Play purchase token to RingMatcher so it can be verified with Google Play. The server persists a digest of that token, and may persist an order-ID digest and purchase-completion timestamp; it does not write the raw purchase or order token to its purchase-state file.

The protected Google Play app-review path sends the reviewer access code and random installation UUID to RingMatcher. The server compares a one-way code digest, enforces network and installation limits, and persists only the code digest, installation digest, synthetic draft/claim/access identifiers, pack and product identifiers, and timestamps—not the plaintext review code. It returns signed, expiring plan capabilities to device-only SecureStore. This review path does not open billing or create a charge.

An unclaimed purchase draft expires after 7 days. After a successful claim, its draft and replay-claim record become eligible for pruning when that same 7-day draft capability expires. Paid access expires after 30 days for Shortlist or Complete Plan and after 90 days for Together Plan. Expired eligible rows are pruned atomically during later purchase-state maintenance, such as a subsequent draft creation or purchase grant; there is no background deletion timer. Unexpired drafts and access records are not evicted to make room for newer records.

Saved Ringprints and completed paid plans remain on the device until you remove them, the bounded local history replaces older Ringprints, app storage is cleared, or the operating system removes the app data. Removing a completed paid plan also asks SecureStore to delete its associated capability. A plan with an unfinished purchase is protected from ordinary removal because the local draft may still be needed for Google Play recovery. RingMatcher has no user account or cross-device plan library: clearing local app data, removing protected credentials, changing devices, or uninstalling can make a consumed one-time purchase or its generated plan impossible to recover. Contact contact@ringmatcher.com for privacy or server-record deletion questions.

Giới hạn yêu cầu, đo lường bên thứ nhất và nhật ký kỹ thuật

Máy chủ có thể tạo từ địa chỉ mạng một khóa giới hạn yêu cầu tạm thời chỉ được giữ trong bộ nhớ. RingMatcher ghi nhận các mốc phễu bên thứ nhất trên trang đích, khi tạo Ringprint, chia sẻ và tải xuống, trong quy trình thanh toán tùy chọn và gói trả phí, cũng như trong công cụ tìm nhà bán lẻ. Hợp đồng sự kiện chỉ cho phép tên sự kiện, các giá trị nguồn, kênh, gói, trạng thái, đích CTA, vị trí CTA hoặc ngôn ngữ khu vực cố định, giá trị boolean và số lượng hoặc điểm số có giới hạn. Câu trả lời bảng hỏi, ngân sách, ghi chú, văn bản định hướng được tạo, URL hoặc đường dẫn trang tùy ý, đích đến dạng văn bản tự do, mã thanh toán, thông báo hoặc ngăn xếp lỗi, dữ liệu cá nhân và văn bản tùy ý đều bị loại trừ.

Sự kiện của công cụ tìm nhà bán lẻ cũng có thể gồm loại giao dịch cố định và mã nhà bán lẻ trong danh mục đã được RingMatcher rà soát.

Sau khi nhấp từ hướng dẫn sang bài trắc nghiệm, bộ nhớ phiên của trình duyệt có thể chỉ giữ các giá trị ghi nhận nguồn sau: slug hướng dẫn nằm trong danh sách cho phép, ngôn ngữ khu vực và vị trí CTA, cùng siêu dữ liệu kỹ thuật về phiên bản và thời hạn. Thông tin ghi nhận nguồn được chấp nhận trong tối đa 30 phút và dùng một lần cho yêu cầu Ringprint có ghi nhận nguồn. Bản ghi hết hạn bị bỏ qua và xóa ở lần truy cập tiếp theo; bộ nhớ phiên cũng kết thúc cùng thẻ hoặc phiên trình duyệt. Dữ liệu không chứa câu trả lời bảng hỏi, ngân sách, ảnh, thông tin liên hệ hay mã tài khoản hoặc người dùng.

Sự kiện được chấp nhận chỉ được ghi vào nhật ký triển khai máy chủ có cấu trúc. RingMatcher không gửi chúng đến dịch vụ phân tích của bên thứ ba hoặc lưu trong cơ sở dữ liệu phân tích riêng; thời gian lưu phụ thuộc vào cấu hình nhật ký triển khai. Sự kiện không chứa mã tài khoản hoặc người dùng. Việc sử dụng AI về mặt kỹ thuật cũng có thể được ghi lại mà không kèm câu trả lời bảng hỏi hay ảnh đã tải lên.

Gói trả phí và Stripe

Các gói trả phí tùy chọn dùng Stripe để xử lý khoản thanh toán một lần. RingMatcher gửi cho Stripe email nhận biên lai, gói đã chọn, số tiền và đơn vị tiền tệ do máy chủ đặt, cùng các mã yêu cầu và PaymentIntent được tạo. Payment Element của Stripe thu thập thông tin thanh toán; RingMatcher không nhận hoặc lưu toàn bộ số thẻ hay mã bảo mật.

Siêu dữ liệu Stripe chỉ gồm các mã được tạo, trạng thái thanh toán và thực hiện, cùng hàm băm một chiều gắn với quyền truy cập của trình duyệt—không gồm câu trả lời bảng hỏi, ảnh, ghi chú riêng tư hoặc nội dung báo cáo. Cookie HttpOnly và SameSite theo từng gói có thể tồn tại tối đa 100 ngày, còn bản ghi thanh toán chờ xử lý có thể nằm trong bộ nhớ cục bộ của trình duyệt đó tối đa 30 ngày. Điều khoản và chính sách quyền riêng tư của Stripe được áp dụng.

Trên trang web production, các phiên báo cáo trả phí được lưu trên ổ đĩa máy chủ được bảo vệ và khôi phục sau những lần khởi động lại hoặc triển khai thông thường. Phiên Shortlist và Complete Plan hết hạn sau 30 ngày; phiên Couple’s Edition sau 90 ngày. RingMatcher có thể xóa phiên sớm hơn khi hoàn tất yêu cầu xóa.

Những gì RingMatcher không bán

RingMatcher không bán nhẫn hoặc dữ liệu cá nhân. Nếu tài khoản, thanh toán, phân tích, lưu trữ hoặc nhà cung cấp mô hình thay đổi, trang này phải được xem lại trước khi dịch vụ thay đổi được cung cấp công khai. Gửi câu hỏi về quyền riêng tư đến contact@ringmatcher.com.