隐私政策
LivingTranslate(灵译)浏览器扩展 · 更新日期及生效日期:2026-08-11
摘要:LivingTranslate 会处理登录所需的账号信息,并在你主动使用翻译、总结或聊天功能时,将相关内容直接发送到你选择的 AI 服务。默认情况下,认证服务器不接收网页、PDF、聊天内容或 AI API Key;仅在你主动开启跨设备同步时,认证服务器会接收并加密保存 AI 配置。本政策详细说明各类数据的收集、处理、存储、共享和删除方式。
1. 适用范围与运营者
本政策适用于 Chrome / Edge 上的 LivingTranslate 扩展、官网 livingtranslate.easyclin.cn 以及扩展使用的认证服务 yiwenapi.statray.cn。本政策中的“开发者”是 LivingTranslate 的商店发布者(易科临科技 easyclin)。“AI 服务”是你在扩展中选择或自行配置的 DeepSeek、Kimi、通义千问、硅基流动、Claude、Ollama 或其他兼容接口。
2. 我们处理的数据
2.1 登录和账号数据
- 微信扫码登录:扩展从认证服务取得临时二维码和登录序列号,并轮询登录结果。你在微信确认后,认证服务会处理用于识别账号的微信 OpenID、显示名称、内部用户标识、来源渠道及二维码登录状态。
- 账号密码登录:你输入的账号名称或手机号及密码会通过 HTTPS 发送到
yiwenapi.statray.cn进行验证。密码不会保存在扩展本地;服务端使用密码哈希进行校验。账号记录可包含用户名、手机号、内部用户标识、来源渠道及密码哈希。 - 本地登录状态:登录成功后,扩展在
chrome.storage.local保存内部用户标识和显示名称,用于维持登录状态。退出登录会删除这两项本地数据。
上述数据仅用于创建或识别账号、提供登录和访问控制、保障服务安全及处理用户支持,不用于广告画像。
2.2 翻译、PDF、总结和聊天数据
仅当你点击翻译、测试连接、总结、发送聊天消息或使用相应快捷键时,扩展才会向你选择的 AI 服务发送完成请求所需的数据。这些数据可能包括:
- AI 服务的接口地址、模型名称和 API Key;
- 网页标题、网页正文、选中的文字、从本地 PDF 提取的文字;
- 你输入的聊天消息、引用内容、为保持上下文而发送的本轮对话历史;
- 扩展内置的系统提示词和连接测试文本。
这些请求从浏览器直接发往你选择的 AI 服务,不经过开发者的认证服务器。相应 AI 服务会按照其自身隐私政策处理收到的数据和 API Key。若你使用“自定义接口”,该接口的运营者和隐私做法由你确认。使用本地 Ollama 时,数据仅发送到你配置的本地地址。
2.3 保存在浏览器本地的数据
扩展使用 chrome.storage.local 保存 AI 接口设置和 API Key、目标语言和显示偏好、内部用户标识和显示名称、登录会话令牌、最近最多 60 条聊天记录,以及更新检查结果和已忽略版本。上述本地数据不会通过 Chrome 同步;但 API Key 和相关内容会在你发起 AI 请求时按第 2.2 节所述发送给所选 AI 服务。
2.4 可选的跨设备 AI 配置同步
默认不开启。只有你在设置中主动开启“跨设备同步 AI 配置”并点击保存时,扩展才会向 yiwenapi.statray.cn 发送 AI 服务商、接口类型和地址、API Key、模型名、目标语言及显示偏好。认证服务使用独立的短期访问令牌验证设备,并使用服务端密钥对该配置加密后保存。网页正文、PDF 文字、聊天内容、登录密码和浏览记录不进入同步服务。
首次在空白新设备登录已启用同步的账号时,扩展会自动恢复该账号的配置;你也可以在任一已登录设备手动恢复、关闭同步,或删除云端副本。删除云端副本不会删除该设备的本地配置;退出登录会撤销该设备的访问令牌。
2.5 服务请求和技术日志
扩展会从 livingtranslate.easyclin.cn/content.json 获取公告;仅开发者模式安装的版本会请求 version.json 检查更新。访问官网、认证服务或上述静态文件时,服务器及其托管/安全服务可能生成标准技术日志,包括 IP 地址、浏览器或 User-Agent、请求时间、请求路径、响应状态和安全事件。这些信息用于运行、排错、防滥用和保障服务安全,不用于广告。
2.6 用户反馈
当你主动提交“功能优化反馈”时,扩展会发送你填写的反馈类型、反馈内容、可选联系方式和扩展版本,用于评估、回复和改进产品。反馈不会包含网页正文、PDF 文字、聊天内容或 AI API Key。请不要在反馈中填写密码、API Key、身份证件或其他敏感信息。
3. 数据共享与披露
- 你选择的 AI 服务:接收第 2.2 节列出的 API Key 和内容,以执行你要求的翻译、总结或聊天。开发者不会替你选择接收方。
- 微信和认证服务:仅在扫码登录时处理二维码状态和微信账号标识;
yiwenapi.statray.cn用于两种登录方式的账号验证和账号记录。仅在你主动开启跨设备同步时,该服务还会接收并加密保存 AI 配置。 - 基础设施服务商:网站、认证接口和安全服务的托管方可能代表开发者处理必要的账号数据和技术日志,并仅可将其用于提供相关服务。
- 法律要求:在法律法规、司法程序或保护用户和服务安全确有要求时,开发者可能依法披露必要信息。
开发者不出售用户数据,不将用户数据用于个性化广告、信用评估或与本扩展核心功能无关的用途。
4. 保存期限与删除
- 本地设置和登录状态保存至你主动删除、退出登录或卸载扩展。侧边栏的“清空”会删除本地聊天记录。
- 若你开启跨设备同步,加密的云端 AI 配置会保留至你在扩展中删除云端副本或申请删除账号数据。退出登录只撤销当前设备令牌,不会自动删除云端配置。
- 密码不保存在扩展本地。服务端账号记录在账号有效期间保留,以便登录和防止滥用。
- 技术日志仅在运行、安全、排错和法律合规所需的期限内保留,之后删除或匿名化。
- 用户反馈最长保留 24 个月,或在处理完成且不再需要后提前删除或匿名化;可选联系方式仅用于回复相关反馈。
- 你可以通过第 8 节的联系方式申请访问、更正或删除服务端账号数据。收到并核实请求后,开发者会删除或匿名化不再需要的数据;法律要求保留的除外。
5. 你的选择
- 你可以选择使用微信扫码或账号密码登录,也可以选择完全不启用跨设备 AI 配置同步。
- 只有在你主动触发功能时,扩展才读取并发送相关网页、PDF 或聊天内容。
- 你可以选择本地 Ollama,或选择并自行评估任何云端/自定义 AI 服务。
- 你可以清空聊天记录、退出登录、清除扩展存储或卸载扩展以删除本地数据。
6. 数据安全
开发者认证和内容服务使用 HTTPS。预设的云端 AI 服务使用 HTTPS;若你配置 HTTP 或其他自定义接口,传输安全由该接口和你的网络环境决定。API Key 默认保存在扩展本地存储中;若你主动开启同步,认证服务使用服务端密钥加密保存该配置,并以独立设备令牌限制访问。任何网络和存储系统都无法保证绝对安全。
7. 政策更新
如果数据处理方式发生实质变化,开发者会更新本页的日期和内容,并在适用时通过扩展或商店页面提示。继续使用前,你可以查看最新政策。
8. 联系方式
如对本政策有疑问,或希望访问、更正、删除账号数据,请通过 LivingTranslate 官网或 Chrome Web Store 商品详情页中发布者提供的支持渠道联系开发者。申请删除时请提供足以定位账号的信息,但不要发送密码或 API Key。
Privacy Policy
LivingTranslate browser extension · Updated and effective: August 11, 2026
Summary: LivingTranslate processes account information needed for sign-in. When you actively use translation, summarization, or chat, the extension sends the relevant content directly to the AI service you select. By default, the authentication server does not receive webpage text, PDF text, chat content, or AI API keys. It receives and encrypts AI configuration only when you opt in to cross-device sync.
1. Scope and operator
This policy applies to the LivingTranslate Chrome/Edge extension, livingtranslate.easyclin.cn, and the authentication service at yiwenapi.statray.cn. “Developer” means the LivingTranslate store publisher (易科临科技 easyclin). “AI service” means DeepSeek, Kimi, Qwen, SiliconFlow, Claude, Ollama, or another compatible endpoint you select or configure.
2. Data we process
2.1 Sign-in and account data
- WeChat QR sign-in: The extension obtains a temporary QR code and login serial number and polls for confirmation. After you confirm in WeChat, the authentication service processes the WeChat OpenID, display name, internal user identifier, source channel, and QR login status needed to create or recognize your account.
- Account/password sign-in: The account name or phone number and password you enter are sent over HTTPS to
yiwenapi.statray.cnfor verification. The extension does not store the password locally. The server verifies a password hash; an account record may include username, phone number, internal user identifier, source channel, and password hash. - Local sign-in state: After a successful sign-in, the extension stores an internal user identifier and display name in
chrome.storage.local. Signing out removes both local values.
This data is used only to create or identify an account, provide sign-in and access control, protect the service, and handle support. It is not used for advertising profiles.
2.2 Translation, PDF, summarization, and chat data
Only when you invoke a related feature does the extension send data required for the request to your selected AI service. This may include:
- the AI endpoint, model name, and API key;
- page title, webpage text, selected text, and text extracted from a local PDF;
- chat messages, quoted content, and conversation history sent for context;
- built-in system prompts and connection-test text.
These requests go directly from your browser to the selected AI service and do not pass through the developer's authentication server. The selected service handles the content and API key under its own privacy policy. You are responsible for evaluating a custom endpoint. With local Ollama, data is sent only to your configured local address.
2.3 Data stored locally
The extension uses chrome.storage.local to store AI settings and API key, language and display preferences, internal user identifier and display name, sign-in session token, up to 60 recent chat messages, and update status. Chrome sync is not used. The API key and relevant content are nevertheless transmitted to the selected AI service when you make an AI request, as described in Section 2.2.
2.4 Optional cross-device AI configuration sync
Sync is off by default. Only after you turn on “Cross-device AI configuration sync” and save does the extension send the AI provider, endpoint type and address, API key, model name, target language, and display preferences to yiwenapi.statray.cn. The authentication service verifies each device with a separate short-lived access token and encrypts the configuration at rest with a server-side key. Webpage text, PDF text, chat content, sign-in password, and browsing history are not sent to the sync service.
When you first sign in to a blank new device with an account that already has sync enabled, the extension restores that account's configuration automatically. You may also restore it manually from any signed-in device, turn sync off, or delete the cloud copy. Deleting the cloud copy does not remove local configuration. Signing out revokes the current device token but does not automatically delete the cloud copy.
2.5 Service requests and technical logs
The extension fetches announcements from livingtranslate.easyclin.cn/content.json. Development-mode installations also fetch version.json for update checks. When you access the website, authentication service, or these files, the servers and their hosting/security providers may generate standard logs containing IP address, browser or User-Agent, request time, requested path, response status, and security events. Logs are used for operations, troubleshooting, abuse prevention, and security, not advertising.
2.6 User feedback
When you submit feature feedback, the extension sends the category, message, optional contact information, and extension version that you provide. This is used to evaluate, respond to, and improve the product. Feedback does not include webpage text, PDF text, chat content, or AI API keys. Do not include passwords, API keys, identity documents, or other sensitive information in feedback.
3. Sharing and disclosure
- Your selected AI service receives the API key and content in Section 2.2 to perform the requested feature.
- WeChat and the authentication service process QR status and a WeChat account identifier for QR sign-in.
yiwenapi.statray.cnverifies both sign-in methods and maintains account records. When you opt in to cross-device sync, it also receives and stores your encrypted AI configuration. - Infrastructure providers may process necessary account data and technical logs on the developer's behalf solely to host and secure the services.
- Legal requirements: necessary information may be disclosed where required by law, legal process, or protection of users and the service.
The developer does not sell user data or use it for personalized advertising, credit decisions, or purposes unrelated to the extension's core functionality.
4. Retention and deletion
- Local settings and sign-in state remain until you remove them, sign out, or uninstall. “Clear” in the side panel removes local chat history.
- If you enable cross-device sync, the encrypted cloud AI configuration remains until you delete the cloud copy in the extension or request deletion of account data. Signing out revokes the current device token but does not automatically delete the cloud configuration.
- The extension does not store your password locally. Server account records are retained while the account remains active for sign-in and abuse prevention.
- Technical logs are kept only as long as reasonably needed for operations, security, troubleshooting, and legal compliance, then deleted or anonymized.
- User feedback is retained for no more than 24 months, or deleted or anonymized earlier when it is no longer needed. Optional contact information is used only to respond to the related feedback.
- You may request access, correction, or deletion of server-side account data using Section 8. After verification, data that is no longer needed will be deleted or anonymized unless retention is legally required.
5. Your choices
You may choose either sign-in method and your AI provider, including local Ollama, and may leave cross-device AI configuration sync disabled. Content is read and sent only after you invoke a feature. You may clear chat history, sign out, clear extension storage, uninstall, or delete the cloud configuration to remove data.
6. Security
Developer authentication and content services use HTTPS. Preset cloud AI services use HTTPS. If you configure an HTTP or other custom endpoint, transport security depends on that endpoint and your network. API keys are local by default; when you opt in to sync, the authentication service encrypts the configuration at rest with a server-side key and limits access with a separate device token. No network or storage system can be guaranteed completely secure.
7. Changes
If data handling changes materially, the developer will update this page and its date and, where appropriate, provide notice through the extension or store listing.
8. Contact
For privacy questions or account-data access, correction, or deletion requests, contact the developer through the LivingTranslate website or the publisher support channel on the Chrome Web Store listing. Provide enough information to locate the account, but never send a password or API key.