生效日期:
公開前審閱草案
Swellz 營運者(以下稱「本公司」)透過本 Policy 說明提供 Swellz 時對 personal information 的處理。請一併參閱適用之 Regional Addendum、AI / Speech Data Policy、feature notice 及 provider list。
1. Scope
本 Policy 適用於 Swellz app、官方網站上的 privacy/account deletion route、Member account、Learner/Educator profile、Feed、ClipDeck、Pocket、Studio、Educator Commons、Swellz Now、Recent People、Friends Now、Compact Profile、Follow、Individual/Friends Now Shaka、Subscription、Recommendation/search、publication/rights/safety processing、support、privacy request 及 audit。
2. Data categories
依使用功能,本公司可能處理 authentication identifier/email/phone、profile/role/language/settings、DOB/age band/age assurance、view/repeat/Like/Save/Follow/Share/Pocket/search/recommendation event、accepted app-open current state/recency、viewer-safe social-presence/profile response、Follow relationship/presentation、Individual Shaka sender/recipient/action/source-context/policy/idempotency evidence、Friends Now group Shaka accepted-recipient count/restricted snapshot-or-reference/activity-local-date evidence、recipient-scoped short-lived Shaka presentation signal、如有啟用之 Notification opportunity/delivery evidence、block/visibility/restriction/safety/rate-limit/abuse evidence、uploaded text/image/audio/video/Clip/caption/translation/rights declaration/AI-TTS declaration、transcript/embedding/quality-safety observation、Subscription/provider transaction、Educator allocation/payout/KYC-KYB/tax readiness、report/moderation/takedown/appeal/support/privacy request、device/app/network/security signal,以及 LegalDocument/consent/PolicyDecision/audit evidence。
3. Purposes
本公司在提供 Account/authentication/profile/support、age/capability/market/policy gate、Clip/Studio、Swellz Now/social presence、viewer-safe profile discovery、Follow relationship function、Shaka interaction/recipient delivery、Block/visibility/safety control、rate-limit/abuse prevention/idempotency、如有啟用之 Notification opportunity、search/Recommendation personalization、media/caption/translation/quality/safety/rights/publication、Subscription/allowance/refund/fraud prevention、Educator per-user allocation/payout readiness/tax/provider operation、report/takedown/appeal、security/fraud/incident、Privacy Request/account deletion,以及 law/accounting/tax/dispute/legal hold/audit 所必要之範圍內使用資料。
4. AI、Recommendation 與 automated processing
本 Section 與 Provider/Cross-border Section 提供一般 AI、Recommendation 與 automated-processing transparency baseline。AI / Speech Data Policy 是需要額外 purpose-specific action 的 Educator feature 文件,不是一般 Learner viewing 或 Privacy acknowledgement 的先決條件。
本公司可能為 caption/translation、content processing、classification、search representation、Recommendation、quality/safety observation 等明示 purpose 使用 AI/statistical model。
Recommendation personalization 是一般 Swellz function,可依適用 policy 使用 view/Save/Follow/search 等 interaction 與 content/profile attribute 進行 candidate search/reorder。Applicable law 要求時,提供相應 setting、objection、explanation 或 human review route。
Model output 不會單獨作為 consent、age、rights、重大 moderation、publication、account ban、monetization removal 或 payout hold 的唯一 final authority。
5. Current P0 不進行 model training
Current P0 不使用使用者 personal data、voice、video、Clip、Studio source media、caption、translation 或其他 user content,進行本公司或 third-party provider 的 model training、fine-tuning 或 model improvement。Current P0 也不提供此 purpose 的 optional opt-in。
未來若新增該目的,不會從現有 purpose 自動擴張;必須先完成新 Product Decision、Privacy purpose、data/provider/retention/control 及必要 consent/legal basis。Current P0 不提供 voice clone、face clone 或 persona replication。
6. Learning voice 與 Studio source media
Learner 一般 learning 過程取得之 raw learning voice 不作為 Swellz persistent source artifact 保存。若 feature delivery 需要 transient processing,僅在 approved route 必要範圍內處理;provider 端如有 retention,將依實際條件於 provider list、AI / Speech Data Policy 或 feature notice 說明。OS microphone permission 不是 legal consent。
Current P0 不將 direct Learner external generative-AI conversation 作為必須功能。未來若直接將 Learner audio 傳送至外部 AI,需重新 review provider condition、retention 及 purpose-specific action。
Educator 主動上傳至 Studio 的 video/audio/image/script 等 source media,可能為 requested creation/editing/caption-translation/publication/rights/safety/support/audit 所需而保存;此類資料與 raw learning voice 的 non-persistent processing 不同。
7. Swellz Now、Follow 與 Shaka
Current P0 的 Recent People 以 Backend 所持有之 accepted app-open recency 作為 bounded ordering input。精確 lastAppOpenedAt 不會作為另一使用者可見之欄位提供。Friends Now 以 explicit Follow source truth 與 accepted app-open recency 組合 viewer-safe list;mutual_follow/viewer_follows 等 presentation 不建立第二個 Friend graph。
Individual Shaka 是一個 sender-to-recipient 的輕量互動 action;accepted source 可記錄 sender/recipient、accepted time、source context、policy/idempotency evidence。Friends Now group Shaka 是一個 Backend-resolved group source action,可記錄 accepted recipient count、restricted recipient snapshot/reference 與 activity-local-date evidence。Recipient-facing presentation 為 recipient-scoped、short-lived signal,且不得向 recipient 揭露完整 group recipient list。
Swellz Now / Shaka 不是 chat、direct message、Board RTC、Conversation 或 durable online-status service。這些資料僅用於 social-presence presentation、Follow/Shaka function、安全/Block/visibility、rate/abuse control、recipient delivery、如有啟用之 Notification opportunity 及相關 audit。不得僅因 social-presence processing 而向其他使用者揭露精確 private activity timestamp,或將其擴張為無關 advertising/employment-style monitoring purpose。
8. Provider、processor 與 third party
本公司可能將必要 processing 委託予 cloud、authentication、delivery、AI/content processing、security、analytics、App Store、Google Play、payout、support 或其他 provider。Swellz Now / Shaka 的 source/read/realtime delivery 如使用 Firebase/Google Cloud 或其他 infrastructure,同樣屬 provider inventory 與跨境/retention review 範圍。
Production provider 必須確認 provider entity、service/product、purpose、data category、processing country/region、subprocessor、retention/deletion、transfer safeguard 及 incident terms,並依市場要求透過 public provider list/Regional Addendum 告知。本公司不為與 Swellz 無關目的出售 personal data,也不允許 provider 違反 Current P0 no-training policy 進行 training/improvement。
9. Cross-border processing
Swellz/provider 可能在使用者所在國家或地區以外處理 information。依 applicable law,market-specific review 應確認 destination、legal framework、contract/safeguard、information provision 與 consent requirement。Device language、Storefront、IP region、declared residence、purchase market、payout country、tax residence、legal jurisdiction 及 cloud/provider processing region 不會被視為同一概念。
10. Retention
資料僅於 purpose、account、consent evidence、security、safety、rights、accounting、tax、Subscription、allocation、payout、refund、dispute、legal hold 及 law 所需期間保存;不再需要時 delete/anonymize/restrict。
Source media、AI artifact、public projection、social-presence current-state、Shaka accepted source action、restricted group-recipient evidence、recipient-scoped ephemeral signal、Notification evidence、backup、provider retention、financial record、rights/moderation evidence 與 Legal evidence 可有不同 retention class。Short-lived presentation 的 expiry 不代表 source action 必須同時刪除;Production 前應在 retention schedule/provider matrix 固定各 category 的具體期間或判斷標準。
11. Minor and age data
Minimum account age、minor-facing capability、adult-only capability、age assurance、guardian treatment 及 correction/challenge 依適用 Minor / Age Policy 與 Regional Addendum。Age data 不用於無關 marketing,也不公開在 profile。市場需要時提供 correction/challenge 與 stronger assurance。
12. Security
本公司依風險採取 authentication、App Check、access control、encryption、secret management、audit log、vulnerability response、data minimization、backup、incident response、rate/abuse control 與 provider management 等 security measures。
13. Privacy Request and account deletion
使用者可依 applicable law 行使 access/export、correction、deletion、restriction、objection、consent withdrawal 等 rights。可透過 Privacy & Consent 或官方網站 privacy route 免費提出 request。
Account deletion 可由 app 內啟動,Production 亦提供適用 Store policy 所要求之外部 official Web request route。處理 request 時可能確認 identity、scope、third-party rights 及 legal retention exception。
刪除後,仍可能為 law/accounting/tax、Subscription/refund、Educator allocation/payout、fraud/security、rights/takedown、dispute、consent evidence、legal hold 或 audit 必要目的,限制性保存資料;該資料不得重新用於 active profile、Swellz Now/social presence、Recommendation 或 marketing,除非另有合法且明示之目的與依據。
14. Store privacy disclosure
Apple App Privacy 與 Google Play Data Safety 應與 shipping app/backend actual practice 一致。Account/contact、age、user content、audio、search、app-open recency/social presence、Follow、Shaka source action、ephemeral recipient delivery、product interaction、personalization、purchase、diagnostics/support、provider transfer 或 account deletion 改變時,應同步 review Privacy Policy 與 Store disclosure。
15. Acknowledgement and consent
Privacy Policy acknowledgement 不等於所有 processing 的 blanket consent。Terms acceptance、Privacy acknowledgement、purpose-specific consent、OS permission 與 optional setting 應分別記錄。重大變更時,應說明 effective date、impact 與 required re-action。
16. Contact
Privacy Request、complaint 或 security issue 可透過 Swellz 或 official site 所示 privacy contact 聯絡。Regional Addendum 應記載適用市場之 controller/handler、address、contact 及必要 authority complaint route。
