Privacy and Security Policy

Effective Date: August 2025 Edition Scope: All scenarios of using our network acceleration service
This policy is established by the service provider (hereinafter referred to as "we") to explain how we collect, use, store, share, transfer, publicly disclose, and protect your information and data during your use of the acceleration service. Please read it carefully and ensure full understanding before using our service. By continuing to access or use our service, you are deemed to have agreed to all contents of this policy.

I. Core Principles

Minimal Necessity

Only collect technical data essential for establishing acceleration channels.

Local First

Information that can remain on your device is never transmitted back.

Instant Encryption

Transport layer always uses TLS 1.3 + AES-256 or higher standards.

No Sale, No Profiling, No Push

Data will not be used for advertising, marketing, or user profiling.

Transparent and Controllable

You can query, export, correct, or delete data retained on our side at any time.

II. Types of Information We Collect

2.1 Connection Essential Data (Automatically collected, cannot be disabled)

  • Connection timestamps, session duration, upstream/downstream traffic summary (for billing statistics and route optimization)
  • Protocol type and version (for compatibility judgment)

2.2 Runtime Environment Data (For fault diagnosis only, can be disabled)

  • Operating system version, device model, system language
  • Accelerator client version, crash logs, stuttering bitrate
  • Local network type (Wi-Fi / Cellular / Wired)

2.3 Active Feedback Data (Voluntarily submitted by you)

  • Online customer service records
  • Speed test screenshots or log files you actively upload

2.4 Information We Do Not Collect

  • Specific content you transmit through the acceleration tunnel (web pages, files, chat messages, game data packets, etc.)
  • Your real name, address, phone number, ID number, device identifiers (IMEI/UDID)
  • Payment account information (processed directly by Apple Pay platform, we only receive "success/failure" results)

III. Purpose of Information Use

  • Establish, maintain, and disconnect acceleration tunnels
  • Calculate traffic consumption, generate usage charts
  • Monitor line quality, automatically switch to better nodes
  • Troubleshoot abnormalities or crashes, improve client compatibility

IV. Local Storage and Cloud Storage

Customer service communications: To continuously follow up on service quality, customer service records are kept for no more than two years, or immediately cleared when you request deletion.

V. Personal Information Processing Statement

5.1 We do not collect any data that can identify your personal identity alone or in combination with other information, including but not limited to name, address, phone number, email, ID number, device serial number, browsing history, communication content, etc.

5.2 Since no personal information exists, we will not share, transfer, or publicly disclose your personal information with any third party or individual in any form.

5.3 This service only processes necessary network parameters (such as source IP, target node IP, connection timestamps, total traffic) within the minimal technical scope for establishing encrypted tunnels. Such data is automatically deleted within 24 hours after the session ends and cannot be associated with your personal identity.

VI. Information Security Management

Security Measures Specific Implementation
Transmission Encryption Full-process TLS 1.3 with Perfect Forward Secrecy; Control plane and data plane separation
Storage Encryption Server disks use AES-256 full-disk encryption; Keys hosted in Hardware Security Modules (HSM)
Least Privilege Internal hierarchical authorization and multi-factor authentication, secondary review of operations, trace auditing
Regular Audits External penetration testing and vulnerability scanning at least once a year

VII. Your Rights

  • Right to Access: Obtain whether we hold your personal data and its copies
  • Right to Rectification: Request correction of inaccurate information
  • Right to Erasure: Request deletion of data within the scope permitted by laws and regulations

We generally do not charge fees for your reasonable requests; however, for multiple repeated requests beyond reasonable limits, we may charge appropriate fees based on costs.

VIII. Protection of Minors' Information

This service is primarily intended for adults. If you are under 18 years old, please read this policy with your guardian and decide whether to use our service. We only collect necessary technical data with explicit guardian consent and strictly protect it in accordance with laws and regulations. If we discover that we have collected children's personal information without consent, we will delete it as soon as possible.

IX. Policy Updates

We may modify this policy from time to time. After changes, we will post update notifications through in-app pop-ups, official website announcements, or other appropriate channels. If modifications involve significant rights changes (such as processing purposes, sharing objects, user rights, etc.), we will seek your explicit consent again. Your continued use of the service indicates acceptance of the revised policy.

X. Contact Us

If you have any questions, comments, or complaints about this privacy policy, or need to exercise the above data rights, you can contact us through the following methods:

Contact Information

  • Email: PapperShareWorld@yeah.net
  • Online Customer Service: In-app [Personal Center → Online Customer Service]