Privacy Policy
ShuR 隐私政策
ShuR 以设备本地文件管理为核心。当前版本不包含广告、行为分析、开发者账户或开发者运营的云端文件库。
1. 我们是否收集数据
当前版本没有开发者账户、广告 SDK、行为分析、自动崩溃上报或开发者运营的云端文件库。ShuR 不会默认把你的文件、文件名、下载记录、诊断信息、相册内容或联系人发送给 ShuR 开发者。按照当前版本的实际实现,开发者不收集 App Store 隐私标签所列的数据。
当你主动使用下载、系统分享、邮件反馈、Wi-Fi/WebDAV 共享、外部网站或系统备份时,数据会发送给你选择的接收方、服务器、局域网客户端、邮件服务商或备份服务。这些由用户发起的传输受相应第三方的政策约束,不属于 ShuR 开发者的默认数据收集。
2. 本地文件与外部挂载
导入、下载、解压、编辑和转换结果保存在 ShuR 的应用沙盒中。工作区是 ShuR 文件的真实位置;ShuR 分类页是索引,共享页是挂载关系,不会自动为同一文件复制多份副本。
通过系统文件选择器挂载文件夹时,ShuR 会保存安全作用域书签,以便在 iOS 授权范围内再次访问。根据你的设置,ShuR 可以读取、预览、分享、重命名、新建、处理或删除该位置的原文件。移除挂载只删除书签;直接删除会作用于外部原文件,并且不会进入 ShuR 垃圾桶。
3. 系统权限
- 照片:浏览、播放、整理、导入、处理、分享或删除你选择的照片、视频和 Live Photo。删除项目会由系统移入“最近删除”。仅在你开启写回偏好时,处理产物才会另存到系统相册。
- 通讯录:将你选择的联系人导出为 VCF。
- 相机:扫描用于创建下载任务的二维码。
- 局域网:在你手动开启后提供 Wi-Fi 和 WebDAV 文件共享。
- 文件与文件夹:仅访问你通过系统选择器明确授权的位置或项目。
拒绝或撤销权限只会停用相应功能,并可在系统设置中更改。如果相册或 iCloud 云盘中的资源尚未下载到设备,iOS 可能联网获取该资源。
4. 下载与局域网共享
创建下载任务时,ShuR 会直接连接你指定的服务器。该服务器可能收到你的 IP 地址、请求头和常规网络信息。链接、文件名、请求头(可能包含 Cookie、令牌或 Referer)、任务状态和响应头保存在本机,用于恢复和管理下载,直到你清空任务记录。
Wi-Fi/WebDAV 只在你手动开启后监听局域网。访问范围取决于共享设置。用户名和密码保存在设备钥匙串中,但 Basic Authentication 和未加密 HTTP 不提供传输加密。请仅在可信局域网使用,并在完成后关闭共享。
5. 密码、诊断与临时文件
压缩包密码不写入 ShuR 文件库或普通设置。为了恢复中断的创建或解压任务,对应任务的密码会按任务保存在本机钥匙串中,并在任务完成或被放弃时删除;仅预览任务不会持久保存密码。操作期间,字符串和文件处理内核仍可能在进程内存中保留临时副本。
ShuR 不会自动上传诊断信息。应用内诊断报告排除文件名、本机路径、下载链接、请求头、内部 UUID、密码和共享访问码。只有当你主动发送反馈时,邮件服务商和接收方才会处理邮件正文与附件。
用于外部媒体处理、压缩、解压、转换和预览的临时文件会在成功、失败或取消后清理。可恢复任务可能保留继续执行所必需的输入,直到任务最终结束。过期残留会在后续启动时清理。
6. 保存、删除与用户控制
本地文件由你保留到删除、卸载 App 或 iOS 清除 App 数据。ShuR 本地文件普通删除先进入垃圾桶;在垃圾桶内再次删除会立即永久删除。未还原项目满 30 天后,会在 App 下次维护时永久删除。清空缓存不会删除用户文件。文件系统删除不等同于对存储介质安全擦除,已有系统备份可能保留副本。
当前版本没有开发者账户或云端文件库,因此访问、导出、更正和删除主要由你在设备上完成。无法在设备上完成的隐私请求,请发送邮件至 wudi000888@gmail.com。
7. 儿童与政策变更
ShuR 不以儿童为定向用户,不提供广告、公开社交功能或开发者账户,也没有年龄验证机制。未成年人应在监护人指导下导入文件、保存下载凭据并开启局域网共享。
当功能、远程服务、分析 SDK、账号系统、运营主体或法律要求发生变化时,本政策会更新并标注日期。不同发布地区可能适用不同法律。本政策描述当前软件行为,不构成针对特定司法辖区的法律意见。
English
ShuR Privacy Policy
1. Data Collection
This version has no developer account, advertising SDK, behavioral analytics, automatic crash reporting, or developer-operated cloud file library. ShuR does not send your files, filenames, download history, diagnostics, Photos content, or contacts to the ShuR developer by default. Based on the current implementation, the developer does not collect data listed in the App Store privacy taxonomy.
When you initiate a download, system share, feedback email, Wi-Fi/WebDAV transfer, external website connection, or system backup, data goes to the recipient, server, local-network client, mail provider, or backup service you choose. Those user-directed transfers are governed by the relevant third party and are not default collection by the ShuR developer.
2. Local Files and External Mounts
Imported, downloaded, extracted, edited, and converted files are stored in ShuR's app sandbox. Workspace is the physical location of ShuR files. ShuR categories are indexes and Share uses mounts, so the app does not automatically duplicate the same file.
When you mount a folder through the system document picker, ShuR stores a security-scoped bookmark so it can regain access within the authorization provided by iOS. Depending on your settings, ShuR can read, preview, share, rename, create, process, or delete original items there. Removing a mount deletes only the bookmark. Direct deletion affects the external original and does not use ShuR Trash.
3. System Permissions
- Photos: Browse, play, organize, import, process, share, or delete selected photos, videos, and Live Photos. Deleted items move to Recently Deleted. Processed output is added to Photos only when you enable that preference.
- Contacts: Export contacts you select as VCF files.
- Camera: Scan QR codes used to create download tasks.
- Local Network: Provide Wi-Fi and WebDAV sharing after you start it.
- Files and Folders: Access only locations or items that you explicitly authorize through the system picker.
Denying or revoking a permission disables only the related feature and can be changed in System Settings. iOS may download a Photos or iCloud Drive item that is not yet stored on the device.
4. Downloads and Local Sharing
When you create a download, ShuR connects directly to the server you specify. That server may receive your IP address, request headers, and ordinary network information. URLs, filenames, request headers (which may include cookies, tokens, or a Referer), task status, and response headers remain on device to resume and manage downloads until you clear the task records.
Wi-Fi/WebDAV listens on the local network only after you start it. Access depends on your sharing settings. The username and password are stored in the device keychain, but Basic Authentication over unencrypted HTTP does not encrypt traffic. Use it only on a trusted local network and stop sharing when finished.
5. Passwords, Diagnostics, and Temporary Files
Archive passwords are not written to the ShuR file library or ordinary settings. To resume an interrupted create or extract task, the password for that task is stored in the on-device keychain and deleted when the task finishes or is abandoned. Preview-only passwords are not persisted. Strings and file-processing engines may still retain temporary copies in process memory.
ShuR does not automatically upload diagnostics. The in-app diagnostic report excludes filenames, device paths, download URLs, request headers, internal UUIDs, passwords, and sharing access codes. Your mail provider and recipient process feedback content and attachments only when you send them.
Temporary files used for external-media processing, archiving, extraction, conversion, and preview are removed after success, failure, or cancellation. A recoverable task may retain input required to continue until the task finally ends. Expired residue is cleaned on a later launch.
6. Retention, Deletion, and User Control
Local files remain until you delete them, uninstall the app, or iOS clears app data. Normal deletion of ShuR-local files moves them to Trash. Deleting them again from Trash is permanent. Unrestored items are permanently removed after 30 days when the app next performs maintenance. Clearing cache does not delete user files. Filesystem deletion is not secure erasure of storage media, and existing system backups may retain copies.
This version has no developer account or cloud file library, so access, export, correction, and deletion are primarily performed directly on your device. For privacy requests you cannot complete on device, email wudi000888@gmail.com.
7. Children and Policy Changes
ShuR is not directed to children and provides no advertising, public social features, or developer accounts. It has no age-verification mechanism. Minors should import files, store download credentials, and enable local-network sharing only with guardian supervision.
This policy will be updated and dated when features, remote services, analytics SDKs, accounts, operator details, or legal requirements change. Different laws may apply in different storefronts. This policy describes current software behavior and is not jurisdiction-specific legal advice.