English · 简体中文 · 繁體中文

Record Everything — Privacy Policy

Effective: September 5th, 2026 · Last updated: September 30th, 2026

Record Everything is a local-first journalling app. Without an account, nothing you record ever leaves your device. Cloud sync is optional and only starts once you create an account.

This page covers what information we collect and how it's used. What the app provides and what you agree to is covered in the Terms of Use.

1. What we collect

1.1 Without an account

Nothing. Your stamps, notes, journal titles, paper styles and coins stay on your device. We neither know who you are nor see what you record.

1.2 With an account and sync enabled

CategoryWhat it coversWhy
Account data Email address and encrypted password credentials Signing in and password recovery
Your records Stamps and their timestamps, notes, journals and pages, custom papers and palettes, cover stickers, coin history, avatar So you can continue on a new or second device
Health-related records within them Period, medication, vitamin and exercise stamps, plus the cycle estimates derived from them Same as above. Listed separately so you know they are part of what syncs
Membership status Which plan is active and when the current period ends — never your payment method or card number So your membership follows your account across devices, and between iPhone and Android

This data is stored in a database provided by Supabase with row-level security enabled: at the database level, an account can only read and write its own row. That is enforced by the database, not merely promised.

1.3 Usage analytics

To understand what isn't working, the app records usage and uploads it periodically:

None of your writing is included. Not a single word of your notes, journal titles or page content. Your email address is not included either.

Health and fitness stamps are not reported by name. Placing a "period" or "medication" stamp appears in analytics only as a generic label meaning "a health-category stamp was used". Which stamp it was never leaves your device.

You can turn this off at any time in Me → Preferences → Usage analytics. Nothing is collected after that, and anything not yet uploaded is deleted. Turning it off does not affect any feature of the app.

Analytics logs are retained for 90 days and then deleted automatically.

On the Android version distributed through app stores in mainland China, the app asks for your consent to this policy on first launch, and records no analytics and reads no device information until you agree.

1.4 Android permissions

PermissionWhy
InternetSigning in, cloud sync, uploading usage analytics
Network stateChecking whether you're on a metered connection with Data Saver on — if so, analytics are not uploaded
VibrationHaptic feedback when stamping and turning pages

The Android app requests no camera, storage, location, contacts, microphone or notification permissions. Choosing an avatar uses the system photo picker, which only hands the app the one picture you select. The app contains no third-party analytics, advertising, push or crash-reporting SDKs.

2. What allows us to process this

Different information rests on different grounds. This is here so you can see where you have a choice:

InformationGroundYour choice
Account details (email, password credential)Performing our agreement with you — accounts and sync are impossible without itDon't create an account; the app works fully without one
Your records (the synced ones)Your consent, given by turning sync on, and performance of our agreementStay signed out and no cloud data exists; sign out or delete your account at any time
Health records among themYour explicit consent — see the next sectionDon't use those stamps; or stay signed out and they never leave the device
Usage analyticsOur legitimate interest in improving the app, with an opt-out providedTurn it off in Me → Preferences
Membership statusPerforming our agreement — it decides whether member features are unlockedDon't subscribe. We never touch payment details, see below

If you are in the EEA or UK, the grounds above map to Article 6 GDPR (health records additionally to Article 9). If you are in Canada, we process on a consent basis under PIPEDA.

3. Health records

Period, medication, vitamin and exercise stamps — and the cycle estimates derived from them — are health information. Most jurisdictions treat this as a category needing stronger protection (GDPR calls it "special category data"). So, stated separately:

4. What we don't do

5. Who we share with

We don't share your information with anyone other than the service providers below, who process data solely on our instructions:

ProviderWhat they handle
SupabaseStorage of account and sync data
BrevoSending verification and confirmation emails
CloudflareReceiving and storing usage analytics

We may also disclose information where required by law or where necessary to protect the safety of our users or the public.

6. Where data lives and how long we keep it

7. Your rights

If you think we've got it wrong, tell me first and I'll take it seriously. You also have the right to complain directly: in Canada to the Office of the Privacy Commissioner of Canada; in the EEA or UK to your national data protection authority.

8. Security

Data is encrypted in transit with HTTPS. Access to account data is constrained by database row-level security. Passwords are stored irreversibly by the authentication service; we cannot see your plaintext password. No method of transmission or storage is completely secure.

9. Children

Record Everything is not directed at children under 13, and we do not knowingly collect their personal information. If you believe we have, please contact us and we will delete it promptly.

10. Changes to this policy

If this policy changes, we'll update the date at the top of this page. For material changes to what we collect or why, we'll say so prominently in the app.

11. Contact

The controller of the personal information described in this policy is:

Any question about privacy, or to exercise any of the rights above, just email me. There is no separate data protection officer — this is a one-person app, and the mail comes straight to me.


戳戳!隐私政策

生效日期:2026年9月5日 · 最近更新:2026年9月30日

戳戳!是一个本地优先的记录应用。不登录账号的话,你记的任何东西都不会离开这台设备。云端同步是可选的,只有你自己开了账号才会启用。

这一份讲「我们拿了你哪些信息、怎么用」。「这个应用给你什么、你不能做什么」是另一份,见用户协议。

一、我们收集什么

1. 不登录的情况

不收集任何个人信息。印记、备注、日记名字、纸样、鸥币,全部只存在你的设备上。这种情况下我们既不知道你是谁,也看不到你记了什么。

2. 注册账号并开启同步之后

类型具体内容为什么要
账号信息 邮箱地址、加密后的密码凭据 登录、找回密码
你的记录 印记及其时间、备注文字、日记与页面、自定义纸样与配色、封面贴纸、鸥币流水、头像 让你换设备、多设备时能接着记
其中的健康类记录 生理期、吃药、维生素、运动这些图章,以及据此算出的周期与预测 同上。它们是记录的一部分,我们在这里单独列出,是为了让你清楚地知道它们也在同步范围内
会员状态 现在生效的是哪一档、这一期什么时候到期——不包含付款方式和卡号 让会员跟着账号走:换设备、以及 iPhone 和安卓之间都认同一份

这些数据存放在 Supabase 提供的数据库中,并启用了行级安全策略:每个账号在数据库层面只能读写属于自己的那一行。这不是一句承诺,是数据库强制执行的规则。

3. 使用情况统计

为了判断产品哪里做得不好,应用会记录使用行为并定期回传:

这份统计里没有你写的任何文字。备注、日记名字、页面内容,一个字都不会进入统计。也不包含你的邮箱地址。

健康与运动类的图章不上报具体名称。盖下「生理期」「吃药」这类图章时,统计里只会出现一个笼统标签,表示"使用了一枚健康类图章",具体是哪一枚不会离开你的设备。

你可以随时关掉它:「我的 → 偏好 → 使用情况统计」。关掉之后不再收集,还没上传的记录也会一并删除。关掉不影响应用的任何功能。

统计日志保留 90 天,到期自动删除。

在中国大陆应用商店分发的安卓版本,首次启动时会先请你阅读并同意本政策;你同意之前,应用不记录任何使用情况,也不读取任何设备信息。

4. 安卓版申请的权限

权限用途
网络访问登录、云端同步、上传使用情况统计
网络状态判断当前是否为按流量计费的网络、是否开启了省流量模式——开启时不上传统计
振动盖章、翻页时的触感反馈

安卓版不申请相机、存储、位置、通讯录、麦克风、通知等权限。设置头像使用系统照片选择器,应用只拿到你选中的那一张图片。应用内没有接入任何第三方统计、广告、推送或崩溃上报 SDK。

二、我们凭什么处理这些信息

不同的信息,处理它的依据不一样。写在这里是为了让你知道自己在哪些地方有选择权:

信息依据你的选择
账号信息(邮箱、密码凭据)履行与你之间的协议——没有它就无法提供账号和同步不注册即可,应用不登录也能完整使用
你的记录(同步部分)你主动开启同步这一行为构成的同意,以及履行协议不登录就不产生云端数据;随时可退出登录或删除账号
其中的健康类记录你的明示同意——见下一节可以不记这类图章;不登录则完全不出设备
使用情况统计改进产品的合理利益,并提供了退出方式「我的 → 偏好」里随时关掉
会员订阅状态履行协议——用来判断你能不能用会员功能不开通即可。支付信息我们不接触,见下文

如果你在欧洲经济区或英国,上表中的「依据」对应 GDPR 第 6 条(健康类记录另适用第 9 条);如果你在加拿大,我们按《个人信息保护和电子文件法》(PIPEDA)以同意为基础处理。

三、健康类记录

生理期、吃药、维生素、运动这些图章,以及据此算出的周期与预测,属于健康信息。多数国家和地区把它归为需要更高保护的类别(GDPR 称「特殊类别数据」,PIPL 称「敏感个人信息」)。所以单独说清楚:

四、我们不做什么

五、我们与谁共享

除下列为我们提供基础服务的供应商外,不向任何第三方共享你的信息。他们仅按我们的委托处理数据,不得用于自身目的:

供应商处理什么
Supabase账号与同步数据的存储
Brevo发送验证码与确认邮件
Cloudflare接收并存储使用情况统计

跨境传输:上述供应商的服务器可能位于加拿大境外(包括美国和欧盟)。当你的信息离开你所在的国家或地区时,我们通过与供应商签订的数据处理协议(对欧洲经济区用户,包含欧盟标准合同条款)来提供保护。无论数据存放在哪里,本政策对你的承诺都同样适用。

另外,在法律要求或为保护用户与公众安全所必需的情况下,我们可能依法披露相关信息。

六、数据存放在哪里,保留多久

七、你的权利

如果你觉得我们没处理好,先联系我,我会认真对待。你也有权直接投诉:加拿大用户可向加拿大隐私专员公署(OPC)投诉;欧洲经济区或英国用户可向你所在国的数据保护监管机构投诉。

八、安全

数据在传输过程中使用 HTTPS 加密;账号数据的访问由数据库的行级安全策略限制;密码由认证服务以不可逆的方式存储,我们无法看到你的原始密码。请注意,没有任何一种传输或存储方式是绝对安全的。

九、儿童

本应用不面向 13 周岁以下的儿童,我们不会有意收集其个人信息。如你认为我们无意中收集了此类信息,请联系我们,我们会尽快删除。

十、政策变更

本政策如有修改,我们会更新本页顶部的日期。若涉及收集范围或用途的实质性变化,我们会在应用内以显著方式告知。

十一、联系我们

本政策所述个人信息的处理者(GDPR 意义上的「数据控制者」)是:

有任何关于隐私的问题,或者要行使上面那些权利,发邮件给我就行。我没有设专职的数据保护官——这是一个人做的应用,邮件直接到我这里。


戳戳!隱私權政策

生效日期:2026年9月5日 · 最近更新:2026年9月30日

戳戳!是一個本地優先的記錄應用。不登入帳號的話,你記的任何東西都不會離開這臺裝置。雲端同步是可選的,只有你自己開了帳號才會啟用。

這一份講「我們拿了你哪些資訊、怎麼用」。「這個應用給你什麼、你不能做什麼」是另一份,見使用條款。

一、我們收集什麼

1. 不登入的情況

不收集任何個人資訊。印記、備註、日記名字、紙樣、鷗幣,全部只存在你的裝置上。這種情況下我們既不知道你是誰,也看不到你記了什麼。

2. 註冊帳號並開啟同步之後

型別具體內容為什麼要
帳號資訊 郵箱地址、加密後的密碼憑據 登入、找回密碼
你的記錄 印記及其時間、備註文字、日記與頁面、自定義紙樣與配色、封面貼紙、鷗幣流水、頭像 讓你換裝置、多裝置時能接著記
其中的健康類記錄 生理期、吃藥、維生素、運動這些圖章,以及據此算出的週期與預測 同上。它們是記錄的一部分,我們在這裡單獨列出,是為了讓你清楚地知道它們也在同步範圍內
會員狀態 現在生效的是哪一檔、這一期什麼時候到期——不包含付款方式和卡號 讓會員跟著帳號走:換裝置、以及 iPhone 和安卓之間都認同一份

這些資料存放在 Supabase 提供的資料庫中,並啟用了行級安全策略:每個帳號在資料庫層面只能讀寫屬於自己的那一行。這不是一句承諾,是資料庫強制執行的規則。

3. 使用情況統計

為了判斷產品哪裡做得不好,應用會記錄使用行為並定期回傳:

這份統計裡沒有你寫的任何文字。備註、日記名字、頁面內容,一個字都不會進入統計。也不包含你的郵箱地址。

健康與運動類的圖章不上報具體名稱。蓋下「生理期」「吃藥」這類圖章時,統計裡只會出現一個籠統標籤,表示"使用了一枚健康類圖章",具體是哪一枚不會離開你的裝置。

你可以隨時關掉它:「我的 → 偏好 → 使用情況統計」。關掉之後不再收集,還沒上傳的記錄也會一併刪除。關掉不影響應用的任何功能。

統計日誌保留 90 天,到期自動刪除。

在中國大陸應用商店發佈的安卓版本,首次啟動時會先請你閱讀並同意本政策;你同意之前,應用不記錄任何使用情況,也不讀取任何裝置資訊。

4. 安卓版申請的權限

權限用途
網路存取登入、雲端同步、上傳使用情況統計
網路狀態判斷目前是否為計量付費的網路、是否開啟了數據節省模式——開啟時不上傳統計
震動蓋章、翻頁時的觸感回饋

安卓版不申請相機、儲存空間、位置、通訊錄、麥克風、通知等權限。設定頭像使用系統相片挑選器,應用只拿到你選中的那一張圖片。應用內沒有接入任何第三方統計、廣告、推播或當機回報 SDK。

二、我們憑什麼處理這些資訊

不同的資訊,處理它的依據不一樣。寫在這裡是為了讓你知道自己在哪些地方有選擇權:

資訊依據你的選擇
帳號資訊(郵箱、密碼憑據)履行與你之間的協議——沒有它就無法提供帳號和同步不註冊即可,應用不登入也能完整使用
你的記錄(同步部分)你主動開啟同步這一行為構成的同意,以及履行協議不登入就不產生雲端資料;隨時可退出登入或刪除帳號
其中的健康類記錄你的明示同意——見下一節可以不記這類圖章;不登入則完全不出裝置
使用情況統計改進產品的合理利益,並提供了退出方式「我的 → 偏好」裡隨時關掉
會員訂閱狀態履行協議——用來判斷你能不能用會員功能不開通即可。支付資訊我們不接觸,見下文

如果你在歐洲經濟區或英國,上表中的「依據」對應 GDPR 第 6 條(健康類記錄另適用第 9 條);如果你在加拿大,我們按《個人資訊保護和電子檔案法》(PIPEDA)以同意為基礎處理。

三、健康類記錄

生理期、吃藥、維生素、運動這些圖章,以及據此算出的週期與預測,屬於健康資訊。多數國家和地區把它歸為需要更高保護的類別(GDPR 稱「特殊類別資料」,PIPL 稱「敏感個人資訊」)。所以單獨說清楚:

四、我們不做什麼

五、我們與誰共享

除下列為我們提供基礎服務的供應商外,不向任何第三方共享你的資訊。他們僅按我們的委託處理資料,不得用於自身目的:

供應商處理什麼
Supabase帳號與同步資料的儲存
Brevo傳送驗證碼與確認郵件
Cloudflare接收並儲存使用情況統計

跨境傳輸:上述供應商的伺服器可能位於加拿大境外(包括美國和歐盟)。當你的資訊離開你所在的國家或地區時,我們透過與供應商簽訂的資料處理協議(對歐洲經濟區使用者,包含歐盟標準合同條款)來提供保護。無論資料存放在哪裡,本政策對你的承諾都同樣適用。

另外,在法律要求或為保護使用者與公眾安全所必需的情況下,我們可能依法披露相關資訊。

六、資料存放在哪裡,保留多久

七、你的權利

如果你覺得我們沒處理好,先聯絡我,我會認真對待。你也有權直接投訴:加拿大使用者可向加拿大隱私專員公署(OPC)投訴;歐洲經濟區或英國使用者可向你所在國的資料保護監管機構投訴。

八、安全

資料在傳輸過程中使用 HTTPS 加密;帳號資料的訪問由資料庫的行級安全策略限制;密碼由認證服務以不可逆的方式儲存,我們無法看到你的原始密碼。請注意,沒有任何一種傳輸或儲存方式是絕對安全的。

九、兒童

本應用不面向 13 週歲以下的兒童,我們不會有意收集其個人資訊。如你認為我們無意中收集了此類資訊,請聯絡我們,我們會盡快刪除。

十、政策變更

本政策如有修改,我們會更新本頁頂部的日期。若涉及收集範圍或用途的實質性變化,我們會在應用內以顯著方式告知。

十一、聯絡我們

本政策所述個人資訊的處理者(GDPR 意義上的「資料控制者」)是:

有任何關於隱私的問題,或者要行使上面那些權利,發郵件給我就行。我沒有設專職的資料保護官——這是一個人做的應用,郵件直接到我這裡。