版本: v1.0
更新日期: 2026年6月16日
生效日期: 2026年6月16日
小N眼镜(NBGlass)APP(以下简称"我们")由 上海掌禅无线科技有限公司 提供。我们充分重视您的个人数据保护,并承诺我们的数据处理活动严格遵守业务所涉司法管辖区(包括但不限于欧盟的《通用数据保护条例》(GDPR)及中国的《个人信息保护法》(PIPL)、《数据安全法》、《网络安全法》)的数据保护法律法规。本隐私政策旨在向您清晰说明:我们收集哪些数据、出于何种目的处理数据、相关的法律依据、数据保存期限、与谁共享、您的权利、跨境数据保护措施等。
请您在使用本应用前,仔细阅读并充分理解本政策。当您点击"同意"或继续使用本应用,即视为您已阅读并同意本政策的全部内容。
数据控制者(Controller)信息
数据控制者: 上海掌禅无线科技有限公司
注册地址: 上海市静安区云欣路200弄亚龙东朔7号楼307
我们目前正在安排指定符合 GDPR 第 27 条要求的欧盟代表。欧盟代表信息确定后,我们将更新本隐私政策并以适当方式通知用户。
数据保护官(DPO)
鉴于我们处理的数据涉及音频、图像等特殊类别数据,我们已正式任命数据保护官。
DPO 联系方式: service@nebulabuds.com
目录
- 我们如何收集和使用您的个人信息
- 涉及的第三方 SDK 和服务
- 我们如何共享、转让、公开披露您的个人信息
- 我们如何保存和保护您的个人信息
- 您如何管理您的个人信息
- 未成年人的个人信息保护
- 本政策如何更新
- 如何联系我们
1. 我们如何收集和使用您的个人信息
我们仅会为了以下明确声明的目的,在遵循合法、正当、必要、诚信、数据最小化和透明度原则的前提下,收集为您提供相关服务所必需的数据。我们的数据处理活动严格遵守业务所涉司法管辖区(包括但不限于欧盟的《通用数据保护条例》(GDPR)及中国的《个人信息保护法》(PIPL))的数据保护法律法规。每一项数据处理均基于明确的合法性基础。
1.1 核心服务功能
此类数据处理活动对于履行我们与您之间的服务合同、向您提供并保障核心服务的正常运行是绝对必要的。如果您不提供这些信息,我们将无法为您提供核心服务。
(1)账户管理与安全认证
为创建并保护您的账户,我们需要收集您的账户名称(用于注册的电子邮件地址、手机号或 Apple 账号)、账户 ID、昵称以及用于验证身份的一次性验证码。这是实现服务所必需的身份认证。您还可以自愿设置头像以完善个人资料。
(2)设备连接与配对
为实现您的手机 APP 与智能眼镜设备之间的蓝牙配对和稳定连接,我们需要收集和处理您智能眼镜的蓝牙广播信息、蓝牙设备名称、设备序列号(SN)、设备识别码、固件版本、电量状态及设备能力信息。此处理对于建立安全连接、进行设备合法性鉴权(SN 鉴权)、开通翻译/对讲等功能以及提供售后服务是必不可少的。
(3)拍照、录像与媒体传输
当您通过本应用控制智能眼镜进行拍照或录像时,我们需要建立手机与眼镜之间的 Wi-Fi 数据传输通道。传输完成后,照片和视频将保存在本应用的本地媒体库中,并记录文件名称、创建时间、时长、文件大小等元数据。若您希望将媒体文件保存至手机相册,我们需要获取您的存储权限(相册写入权限)。您的照片和视频默认仅保存在本地设备中,除非您主动开启云存储同步功能,我们不会将其上传至我们的服务器。
(4)实时翻译与语音交互
当您使用本应用的"翻译"功能时,我们需要获取您的麦克风权限以采集语音信息。在此类功能开启期间,我们实时处理您通过麦克风或智能眼镜/耳机输入的语音数据,并将其发送至我们的服务器或第三方翻译服务提供商进行实时识别与翻译,返回文本及语音播报(TTS)。除非您主动选择保存翻译记录,否则原始音频数据不会在服务器上持久化存储。此权限仅用于实现您所选择的特定语音交互功能。我们不会在后台持续录音,也不会将此类数据用于用户画像分析等未获您授权的目的。
(5)对讲通信功能
当您使用"对讲"功能并加入频道或队伍时,我们会收集您的对讲账号信息(由后端根据设备 SN 分配)、在线状态、加入的频道/队伍信息。您在创建队伍时填写的队伍名称和简介将上传至我们的服务器以便其他用户查看。您的实时对讲语音数据通过网络传输,但我们不会在服务器端进行永久存储或监听。对讲频道设置中支持"清除语音缓存"功能,清除后语音缓存数据将无法找回。
(6)AI 助手(问答与识别)
当您使用"AI 助手"进行图像识别、场景分析或语音问答时,您主动输入的文本指令、语音指令或通过智能眼镜拍摄的图像/视频画面将被发送至云端 AI 引擎进行分析处理。处理完成后,服务器上的原始数据会立即删除,不会持久化保存。请注意,您应避免向 AI 助手输入包含个人敏感信息或他人隐私的图像与语音。
(7)音频录制、转写与总结
当您使用录音功能时,录音文件默认加密保存在您的本地设备中。当您使用"转写""总结""思维导图"等服务时,音频数据会加密传输至服务器进行即时处理。服务完成后,服务器上的原始音频数据会立即删除,不会持久化保存。转写文本、总结内容和思维导图结果将保存在您的本地设备或云存储中(取决于您的设置)。
(8)服务交付与服务器资源优化
为保障服务的稳定性和低延迟,我们需要为您分配合适的服务器资源。我们将遵循数据最小化原则,按 GPS > IP 地址(去标识化处理)> 设备时区的优先级自动尝试获取位置参考信息。若您拒绝提供精确位置权限,我们将无法采用最优策略,可能影响连接速度和稳定性,但您仍可继续使用基于 IP 地址或时区分配服务器的核心服务。
(9)服务稳定性与安全保障
为诊断和修复应用故障、防范安全风险,我们会自动收集必要的设备及应用信息(如设备识别符、操作系统版本)、移动网络信息(如 IP 地址)以及服务日志信息(如错误、崩溃报告)。此类处理对于保障服务的兼容性与稳定性是必需的。
1.2 支付服务
为向您提供安全、合规的支付服务,我们需要基于履行法律法规规定的义务和履行合同的合法性基础,处理您的相关信息。
为处理您的支付指令并完成交易,我们需要收集和处理您设定的支付方式、订单信息(如订单号 SV20260521001)、付费内容(如 SVIP·12个月)、订单金额、开通时间、到期时间、购买时间及累计消费金额等信息。您可以选择第三方支付机构(如 Apple Pay、Google Pay、微信支付、支付宝等支付通道)所提供的支付服务。支付行为本身并不收集您的银行卡号或密码等敏感支付信息,但我们需要将您的订单号与交易金额信息与这些支付机构共享以实现其确认您的支付指令并完成支付。
1.3 意见反馈与客户服务
当您向我们提交意见反馈时,我们需要收集您填写的联系方式、问题描述及您主动上传的图片或日志附件,以便我们联系您并解决您遇到的问题。此类数据仅用于问题定位、答复和服务改进,保存期限不超过解决问题后的 3 年。
1.4 权限说明
| 设备权限 |
业务功能 |
权限授权方式 |
可否关闭 |
| 蓝牙 |
设备添加、设备连接、设备设置 |
用户首次使用相关功能时弹窗询问 |
是 |
| 位置 |
附近蓝牙设备扫描与连接(部分 Android 系统要求开启定位权限);服务器资源优化 |
用户首次使用位置或蓝牙相关业务时弹窗询问 |
是 |
| 麦克风 |
翻译、对讲、AI 助手语音交互、录音 |
首次使用语音相关功能时弹窗询问 |
是 |
| Wi-Fi / 本地网络 |
媒体文件传输(照片、视频)、各项业务功能网络连接 |
用户首次打开 App 时弹窗询问 |
是 |
| 存储 / 相册 |
保存照片/视频至手机相册、导入外部文件、反馈附件上传 |
用户首次使用相关功能时弹窗询问 |
是 |
| 通知 |
设备断开提醒、传输完成通知、会员到期提醒 |
用户首次打开 App 时弹窗询问 |
是 |
| 相机(仅手机端) |
扫码绑定设备(如适用) |
首次使用相关功能时弹窗询问 |
是 |
2. 涉及的第三方 SDK 和服务(GDPR:Art. 28)
为向您提供应用稳定性监控、实时音视频、AI 语音交互、实时对讲、语音识别与翻译、云端录音处理和第三方账号登录等功能,我们的产品中集成了由合作方提供的软件开发工具包(SDK)。这些 SDK 仅会在实现对应功能所必需的场景中处理信息,其数据处理行为同时受相应第三方隐私政策约束。我们建议您仔细阅读以下说明及第三方政策。
| SDK 名称 |
SDK 包名 |
开发者 |
使用目的 |
使用场景 |
收集信息范围 |
收集及处理方式 |
隐私政策 |
| Bugly Android |
com.tencent.bugly |
深圳市腾讯计算机系统有限公司 |
监控应用崩溃、闪退和 ANR,分析异常原因,提升应用稳定性。 |
应用启动、运行或发生崩溃、卡顿及异常时。 |
手机型号、手机品牌、Android 系统版本、Android 系统 API 等级、厂商系统版本、CPU 架构类型、设备是否 Root、磁盘空间占用情况、SD 卡空间占用情况、内存空间占用情况、网络类型、应用当前运行的进程名称和 PID、应用包名、应用版本号、崩溃堆栈及异常日志。 |
SDK 自动采集并通过加密网络传输至服务端;进程名称和 PID 用于判断 ANR 状态。 |
Bugly SDK 隐私保护声明 |
| 全功能版视立方 SDK(Android) |
com.tencent.liteav |
深圳市腾讯计算机系统有限公司 |
提供实时音视频通信、语音通话、互动直播、视频播放、视频录制与编辑等底层能力;本应用主要用于 AI 语音交互和实时语音对讲。 |
用户主动进入 AI 语音或实时对讲等音视频功能时。 |
Wi-Fi 状态、系统属性、设备型号、操作系统信息、IP 地址、相机画面、录音或音频数据、相册中的图片和视频、加速度传感器信息。根据本应用当前功能,主要处理音频数据、网络状态、设备型号、操作系统和 IP 地址。 |
根据用户触发的功能由 SDK 采集;音视频和网络数据采用加密传输,部分设备适配和传感器信息仅在本地处理。 |
腾讯云视立方 SDK 个人信息保护规则 |
| 直播 SDK(Android) |
com.tencent.live2 |
深圳市腾讯计算机系统有限公司 |
提供音视频直播、推流、播放及网络质量优化能力。本应用未单独调用直播功能,该模块由全功能版视立方 SDK 捆绑引入。 |
仅在相关音视频能力被调用时;本应用当前无独立直播业务场景。 |
Wi-Fi 状态、系统属性、设备型号、操作系统信息、IP 地址、相机画面、录音或音频数据、加速度传感器信息。 |
在用户触发音视频功能时由 SDK 采集;设备和网络数据经去标识化、加密传输,部分传感器信息仅在本地处理。 |
腾讯云视立方 SDK 个人信息保护规则 |
| 直播 SDK(基础版)(Android) |
com.tencent.rtmp |
深圳市腾讯计算机系统有限公司 |
提供基础音视频直播、推流、拉流和播放能力。本应用未单独调用该功能,该模块由全功能版视立方 SDK 捆绑引入。 |
仅在相关音视频能力被调用时;本应用当前无独立直播推流业务场景。 |
Wi-Fi 状态、系统属性、设备型号、操作系统信息、IP 地址、相机画面、录音或音频数据、加速度传感器信息。 |
在用户触发相关功能时由 SDK 采集;网络数据经去标识化、加密传输,部分传感器信息仅在本地处理。 |
腾讯云视立方 SDK 个人信息保护规则 |
| 短视频 UGSV SDK Android 版本 |
com.tencent.ugc |
深圳市腾讯计算机系统有限公司 |
提供短视频拍摄、录音、编辑、合成、美颜和视频处理能力。本应用未单独调用短视频制作功能,该模块由全功能版视立方 SDK 捆绑引入。 |
仅在短视频拍摄或编辑功能被启用时;本应用当前无独立短视频制作业务场景。 |
Wi-Fi 状态、系统属性、设备型号、操作系统信息、IP 地址、连接的网络类型及 SSID、相机画面、录音或音频数据、相册中的图片和视频、人脸坐标信息、加速度传感器信息。 |
设备和网络数据可能经去标识化、加密传输;相机、录音、相册、人脸坐标和加速度传感器数据主要在本地处理。 |
腾讯云短视频 SDK 个人信息保护规则 |
| 音视频通话 TRTC SDK(Android) |
com.tencent.trtc |
深圳市腾讯计算机系统有限公司 |
提供实时语音和音视频通信能力,用于 AI 语音交互、实时语音对讲和房间通信。 |
用户主动使用 AI 语音、实时对讲或加入语音房间时。 |
Wi-Fi 状态、系统属性、设备型号、操作系统信息、IP 地址、CPU 信息、相机画面、录音或音频数据、加速度传感器信息。本应用当前主要使用录音或音频数据,不主动使用 TRTC 视频采集能力。 |
音频和网络数据采用加密传输;设备适配数据经去标识化处理;加速度传感器信息仅在本地处理。 |
腾讯云 TRTC SDK 个人信息保护规则 |
| 播放器 SDK |
com.tencent.thumbplayer、com.tencent.liteav.txcplayer、com.tencent.liteav.txcvodplayer |
深圳市腾讯计算机系统有限公司 |
提供直播、点播和音视频播放、解码、网络质量检测能力。该组件随全功能版视立方 SDK 进入应用,本应用未直接调用腾讯播放器接口。 |
音视频内容播放及全功能版 SDK 内部处理场景。 |
Wi-Fi 状态、设备型号、操作系统信息、IP 地址、连接的网络类型、传感器信息。 |
网络和设备适配信息经去标识化、加密传输;Wi-Fi 状态和部分传感器信息在本地处理。 |
腾讯云播放器 SDK 个人信息保护规则 |
| 腾讯云语音识别 SDK(Android) |
com.tencent.aai |
腾讯云计算(北京)有限责任公司 |
将用户语音转换为文字,用于 AI 语音输入和语音翻译。 |
用户主动点击语音输入、开启实时语音识别或实时翻译时。 |
用户提供的音频数据;为连接服务还会使用网络状态。使用手机麦克风输入时会通过录音权限采集音频;使用眼镜音频时处理由眼镜传入的 PCM 音频数据。 |
音频数据通过加密网络传输至腾讯云语音识别服务进行处理。 |
腾讯云语音识别 SDK 个人信息保护规则 |
| COS V5 Android SDK |
com.tencent.cos.xml、com.tencent.qcloud.core |
腾讯云计算(北京)有限责任公司 |
提供云端文件上传和对象存储服务,用于将用户主动生成的录音文件上传至腾讯云对象存储。 |
用户完成录音并主动发起录音处理、上传或云端分析时。 |
用户主动上传的录音文件、文件名称或对象标识、网络状态、IP 地址、系统属性;SDK 官方规则可能涉及 Android ID 等设备信息。 |
使用临时访问凭证,通过 HTTPS/SSL 加密传输录音文件和相关请求信息。 |
COS V5 Android SDK 隐私保护声明 |
| Microsoft Azure Speech SDK |
com.microsoft.cognitiveservices.speech |
Microsoft Corporation(微软公司) |
提供语音识别、实时语音翻译和文字转语音服务。 |
用户主动使用语音翻译、实时翻译、语音识别或播放翻译结果时。 |
用户输入的音频或语音数据、识别产生的文本、需要翻译的文本、需要转换为语音的文本、服务请求所需的网络和 IP 信息。 |
音频和文本通过加密网络传输至 Microsoft Azure Speech 服务进行实时处理。实时语音识别和语音翻译默认不保留客户提供的数据。 |
Microsoft 隐私声明 |
| Google Sign-In SDK |
com.google.android.gms.auth |
Google LLC |
提供 Google 账号登录和身份认证服务。 |
用户主动点击“使用 Google 登录”时。 |
Google 账号标识、电子邮箱地址、基本账号资料、姓名、头像地址、Google ID Token,以及服务运行所需的网络和设备信息;实际返回内容取决于用户授权和 Google 账号设置。 |
用户主动授权后,由 Google 登录页面和 Google Play 服务处理,并将身份认证结果及 ID Token 返回给应用。 |
Google 隐私权政策 |
注: 上述清单将随产品迭代更新。如有新增或变更,我们将在本政策中同步更新并以适当方式通知您。
3. 我们如何共享、转让、公开披露您的个人信息
我们深知您个人信息的重要性,并承诺不会与任何公司、组织和个人分享您的信息,除非征得您的明确同意。
3.1 信息的共享
我们不会与任何公司、组织和个人共享您的个人信息,但以下情况除外:
(1)获得您的明确同意后共享: 在向第三方共享您的信息前,我们会事先获得您对共享行为的单独同意,并告知您第三方的身份、联系方式、处理目的、处理方式和个人信息的种类。
(2)与授权合作伙伴的共享: 仅为实现本政策声明的目的,我们的某些服务会由授权合作伙伴提供。我们只会出于合法、正当、必要、特定、明确的目的共享您的信息,并且只会共享提供服务所必需的信息。我们的授权合作伙伴包括以下几类:
- 品牌合作方与硬件生产商: 为提供设备联动、售后服务、硬件技术支持等功能,我们可能会与指定的合作方共享必要的设备标识符、服务日志等信息。
- 广告与分析服务商: 为评估广告效果、分析产品使用情况、了解用户画像以改进服务,我们可能会与此类合作伙伴共享经去标识化或匿名化处理的设备信息和使用数据。这些信息将无法直接识别您的身份。
- 其他服务提供商: 包括提供语音识别、翻译、AI 分析、对讲通信、数据存储等服务的合作方。我们会与这些合作伙伴签署严格的数据处理协议,要求他们按照我们的指示、本政策以及其他任何相关的保密和安全措施来处理您的信息。
(3)基于法定事由的共享: 根据法律法规规定、诉讼争议解决需要,或行政、司法机关依法提出的要求,我们可能需要共享您的个人信息。
3.2 信息的转让
我们不会将您的个人信息转让给任何公司、组织和个人,但以下情况除外:如果我们发生合并、收购或破产清算,导致您的个人信息控制权发生变更,我们将会要求新的持有您个人信息的公司、组织继续受本政策的约束。否则,我们将要求该公司、组织重新向您征求授权同意。
3.3 信息的公开披露
我们严格限制公开披露您的个人信息,仅在法律、法律程序、诉讼或政府主管部门强制性要求的情况下,且采取符合法律和业界标准的安全防护措施后,才会考虑公开披露。
4. 我们如何保存和保护您的个人信息
4.1 数据存储地点及期限
我们通过严格的加密技术和管理措施保护您的个人信息。通常情况下,我们从您处收集的个人信息将存储于您所在国家/地区的境内服务器。
我们仅在实现本政策所述目的所必需的时间内保留您的个人信息,并在超出下述保留期限后删除或进行匿名化处理,除非法律法规另有规定。具体规定如下:
(1)账号信息: 为保障您的账户安全,您的账号信息将被加密保存在服务器,直到您注销账号,数据会立刻删除。
(2)设备标识符与连接信息: 当您使用智能眼镜时,为建立并维护设备与服务的连接,您的设备标识符会加密传输并保存在服务器中,直至您在已绑定设备的详情页中选择"解绑",相关数据将被立即删除。此外,为进行匿名的、宏观的统计分析以优化产品和服务,经去标识化处理后的设备标识符及粗略位置信息可能会在服务器保存 3 年,到期后将立即删除。
(3)媒体文件(照片、视频、录音)的存储模式: 我们采用以下模式处理您的媒体数据,您对此拥有完全的控制权:
- 本地存储模式(默认): 您通过智能眼镜拍摄的照片、视频及 APP 录制的音频文件默认优先加密保存在您的本地设备中。当您使用转写、总结、翻译等核心服务时,这些数据会加密传输至服务器进行即时处理。服务完成后,服务器上的原始数据会立即删除,不会持久化保存。
- 云存储模式(需主动开启): 若您购买了云存储服务并主动开启同步,您选择的文件将加密上传至云端服务器。您可以随时在媒体库中删除云端文件。
(4)翻译与对讲数据: 实时翻译和对讲功能产生的临时音频缓存会在处理完成后自动销毁,通常不超过数分钟。翻译记录文本默认保存在本地。
(5)消费记录: 您的购买记录(订单号、金额、开通/到期时间等)将保存至您注销账号或法律法规要求的最短保存期限届满(以较晚者为准)。
4.2 数据跨境传输
(1)中国境内用户: 一期服务中,我们在中华人民共和国境内运营中收集和产生的个人信息,将存储在中国境内。我们不会在未获您明确同意或未满足法定条件的情况下进行数据的跨境传输。
(2)欧盟境内数据本地化存储: 对于欧盟(EU)及欧洲经济区(EEA)的用户,我们承诺遵循"数据本地化"原则。您的个人数据将默认存储于欧盟境内的服务器。我们不会将您的核心服务数据主动传输至欧盟境外。
(3)第三方服务商的区域限制: 我们使用的全球性云服务提供商或第三方 SDK,均已配置为优先使用其位于用户所在区域的数据节点进行处理。
(4)跨境传输的例外情形与保障机制: 原则上,您的数据不会跨境传输。仅在极少数必要情况下,若数据必须传输至您所在国家/地区以外,我们将确保该传输符合适用法律的要求,采取以下至少一项严格保障措施:
- 充分性认定: 接收方位于欧盟委员会认定具有"充分保护水平"的国家或地区;
- 标准合同条款(SCCs): 与接收方签署欧盟委员会批准的标准合同条款,并辅以必要的补充安全措施(如加密传输、访问控制);
- 中国标准合同备案: 按照中国《个人信息出境标准合同办法》完成备案;
- 减损情形(Derogations): 在偶发且必要的情况下,依据 GDPR 第 49 条获得您的明确同意或为了履行合同所必需。
4.3 数据安全措施
为保障音视频数据、账号信息等敏感数据的安全,我们实施了具体且严格的技术与组织安全措施:
(1)数据加密保护: 所有音频、照片和视频文件在传输和存储过程中均使用 AES-256 加密。加密密钥通过独立的密钥管理系统(KMS)管理,并定期轮换和权限分级管控。
(2)严格的加密传输: 采用 SSL/TLS 及 AES-256 加密方式对传输数据进行加密处理,确保媒体上传、设备绑定、翻译请求等数据在传输过程中保持机密性与完整性。
(3)本地设备安全控制: 默认采用"本地存储模式",媒体文件仅保存在您的设备本地沙盒中,除非您主动执行上传或启动云同步。实时翻译、对讲等功能产生的临时音频缓存会在处理完成后自动销毁。
(4)访问控制与最小权限原则: 后台系统采用基于角色的访问控制(RBAC),不同岗位仅可访问必要的数据范围。日志记录所有访问行为,未经授权的访问将被自动阻断并上报安全系统。
(5)安全审计与日志: 对数据导出、账号管理、权限变更、媒体文件访问等敏感操作进行不可篡改的日志记录。安全团队定期审查审计日志并监控可疑活动。
(6)入侵检测与应用防护: 使用入侵检测系统(IDS)实时监测异常流量、暴力破解、可疑请求等风险行为。
(7)云端数据安全控制: 云端数据采用多可用区(Multi-AZ)冗余存储,并具备定期备份和自动灾备机制。
4.4 组织管理措施
(1)数据生命周期管理: 我们对数据从生成、传输、使用、存储、共享到删除的每个环节实施严格控制。删除媒体文件后,其关联的转写文本与索引会同时删除。云端文件删除后立即进入"不可恢复"状态。临时缓存在任务完成后立即销毁。
(2)员工隐私与安全培训: 所有可能接触到个人数据的员工需完成年度数据保护与安全培训。数据访问权限需经过审批流程并进行全程记录。
(3)隐私保护设计: 所有新功能在上线前需进行安全评估;如涉及音视频文件等,会开展数据保护影响评估(DPIA)。
4.5 个人信息安全事件响应
尽管我们采取了多层级安全措施,但无法确保完全无风险。一旦发现可能危及您数据安全的事件,我们将:
- 立即启动应急响应机制,隔离受影响系统、封堵攻击源并展开安全分析;
- 在发现后 72 小时内向主管监管机构报告(除非事件不太可能影响您的权利与自由);
- 若事件可能对您造成较高风险(如音视频内容外泄),我们会尽快主动通知您,包括:事件类型与受影响的数据类别、我们已采取和建议您采取的措施、联系我们的方式。
5. 您如何管理您的个人信息
我们重视您对个人信息的控制权。根据相关法律法规,您有权管理您的个人信息。以下是您行使权利的具体方式。
5.1 访问、更正与删除
(1)访问: 您有权通过 App 内的"我的 - 个人主页"访问您的账号信息(如绑定的手机号、邮箱、昵称),以及在"媒体库"中访问您的照片、视频、录音和翻译记录。如需获取您的数据完整副本,您可联系我们申请数据导出。
(2)更正: 您可以在"我的 - 个人主页"中修改您的昵称、头像等信息。
(3)删除: 您有权删除您的特定信息。例如,您可以直接在 App 内的"媒体库"中删除您的照片、视频和录音文件;在"对讲 - 频道设置"中清除语音缓存;在"消费记录"中查看但不可自行删除交易记录(受法律法规要求保留)。若您希望注销账号,请参见第 5.4 条。
5.2 账号与安全设置
您可以随时在"我的 - 设置"中通过接收验证码的方式,绑定或更换备用邮箱/手机号。
安全提示: 您的账号需至少保留一种有效联系方式(手机号或邮箱)作为登录凭证。
5.3 撤回授权
您可在设备的系统设置中关闭本 App 已获得的权限(如麦克风、位置、蓝牙、存储等)。撤回授权不会影响此前基于授权已进行的处理,但您可能无法继续使用依赖该权限的功能。
5.4 注销账号
您可以通过"我的 - 设置 - 注销账号"申请注销您的 NBGlass 账号。为防止您错误注销,APP 会通过清晰、明确的弹窗提示您阅读并确认注销后果,您需要主动再次确认方可继续流程。注销后,我们会删除或匿名化您的个人信息并删除数据。注销账号是不可逆的,一旦完成,您将无法继续使用相关服务,您的所有数据(包括但不限于购买记录、云存储文件、设备绑定关系、翻译记录)将被永久清除且无法恢复。
5.5 其他权利
(1)限制处理权: 当数据准确性受到争议时,您可请求暂停处理。
(2)数据可携权: 您可申请以机器可读格式(如 JSON、CSV、ZIP)获取:录音文件、转写内容、翻译记录、账号基础信息、设备绑定信息等数据。
(3)反对处理权: 您可反对我们基于合法利益进行的非核心数据分析(如匿名统计)。我们将尊重您的选择,除非我们有强制性合法理由继续处理。
(4)不受自动化决策约束的权利: 我们不会使用您的数据进行可能影响您权利的自动化决策。
若您对上述权利有任何疑问或需要协助,请发送邮件至 service@nebulabuds.com 联系我们。我们将在验证您的身份后,于 15 个工作日内予以回复。
6. 未成年人的个人信息保护
我们高度重视未成年人的个人信息保护。本应用及智能眼镜主要面向成年人,我们不会主动向 16 岁以下的欧盟用户或 14 周岁以下的中国用户提供服务。
(1)年龄识别与监护人同意: 我们的服务不面向未满 16 周岁(或您所在国家/地区规定的最低年龄)的未成年人。如果我们发现自己在未获得可验证的监护人同意的情况下收集了未成年人的个人信息,我们将尽快删除相关数据。
(2)特殊保护措施:
- 透明度: 我们将以清晰、浅显的语言向未成年人说明其个人信息的收集与使用方式。
- 目的限制: 我们不会将未成年人的个人信息用于用户画像或基于完全自动化决策的营销活动。
- 权利保障: 监护人有权代表未成年人行使访问、更正、删除等法定权利。
若您身为监护人并对您所监护的未成年人的个人信息有任何疑问,请通过 service@nebulabuds.com 联系我们。
7. 本政策如何更新
我们保留不时更新或修改本政策的权利。隐私政策如有更新,我们会发布修订版本及生效日期,您可进行查看。对于涉及本政策条款的重大变更(如收集新类型个人信息、变更处理目的、变更数据共享方式等),我们还会提供更为显著的通知(如应用内弹窗)。内容变更后,我们将会以页面提示、重新签署协议等方式提醒您最新的版本及变更要点,请您在使用前仔细阅读,并重新授权。
8. 如何联系我们
我们设立了个人信息保护专职部门,如果您对您个人信息相关事宜有任何问题、意见或者建议,您可以通过以下方式联系我们:
我们将在 15 个工作日内回复。
如果您对我们的回复不满意,特别是当我们的个人信息处理行为损害了您的合法权益时,您还可以通过以下途径寻求救济:
- 中国用户: 向有管辖权的人民法院提起诉讼,或向网信部门、工信部门投诉举报。
- 中国大陆以外的其他国家/地区用户: 向您所在成员国的数据保护监管机构投诉。您也可以联系我们了解可能适用的相关投诉途径的信息。
Version: v1.0
Update Date: June 16, 2026
Effective Date: June 16, 2026
The NBGlass APP (hereinafter referred to as "we" or "us") is provided by Shanghai Zhangchan Wireless Technology Co., Ltd.. We attach great importance to the protection of your personal data and promise that our data processing activities strictly comply with the data protection laws and regulations of the jurisdictions involved in our business (including but not limited to the General Data Protection Regulation (GDPR) of the European Union and the Personal Information Protection Law (PIPL), Data Security Law, and Cybersecurity Law of China). This Privacy Policy aims to clearly explain to you: what data we collect, for what purposes we process the data, the relevant legal basis, the data retention period, with whom we share it, your rights, cross-border data protection measures, etc.
Please read this Policy carefully and fully understand it before using this application. When you click "Agree" or continue to use this application, it is deemed that you have read and agreed to the entire content of this Policy.
Data Controller Information
Data Controller: Shanghai Zhangchan Wireless Technology Co., Ltd.
Registered Address: Room 307, Building 7, Yalong Dongshuo, Lane 200, Yunxin Road, Jing'an District, Shanghai
We are currently arranging to appoint an EU representative in compliance with the requirements of Article 27 of the GDPR. Once the EU representative's information is confirmed, we will update this Privacy Policy and notify users in an appropriate manner.
Data Protection Officer (DPO)
Given that the data we process involves special categories of data such as audio and images, we have formally appointed a Data Protection Officer.
DPO Contact Information: service@nebulabuds.com
Table of Contents
- How We Collect and Use Your Personal Information
- Third-Party SDKs and Services Involved
- How We Share, Transfer, and Publicly Disclose Your Personal Information
- How We Store and Protect Your Personal Information
- How You Manage Your Personal Information
- Protection of Minors' Personal Information
- How This Policy is Updated
- How to Contact Us
1. How We Collect and Use Your Personal Information
We will only collect the data necessary to provide you with the relevant services for the explicitly stated purposes below, subject to the principles of lawfulness, fairness, necessity, good faith, data minimization, and transparency. Our data processing activities strictly comply with the data protection laws and regulations of the jurisdictions involved in our business (including but not limited to the General Data Protection Regulation (GDPR) of the European Union and the Personal Information Protection Law (PIPL) of China). Every data processing activity is based on a clear legal basis.
1.1 Core Service Functions
Such data processing activities are absolutely necessary for the performance of the service contract between us and you, and to provide and ensure the normal operation of the core services. If you do not provide this information, we will not be able to provide you with the core services.
(1) Account Management and Security Authentication
To create and protect your account, we need to collect your account name (email address, mobile phone number, or Apple ID used for registration), account ID, nickname, and the one-time verification code used to verify your identity. This is the identity authentication necessary to realize the service. You may also voluntarily set an avatar to complete your profile.
(2) Device Connection and Pairing
To achieve Bluetooth pairing and a stable connection between your mobile APP and the smart glasses device, we need to collect and process your smart glasses' Bluetooth broadcast information, Bluetooth device name, device serial number (SN), device identifier, firmware version, battery status, and device capability information. This processing is essential for establishing a secure connection, performing device legitimacy authentication (SN authentication), activating functions such as translation/intercom, and providing after-sales service.
(3) Photography, Video Recording, and Media Transmission
When you control the smart glasses through this application to take photos or record videos, we need to establish a Wi-Fi data transmission channel between the mobile phone and the glasses. After the transmission is completed, the photos and videos will be saved in the local media library of this application, and metadata such as file name, creation time, duration, and file size will be recorded. If you wish to save the media files to your mobile phone album, we need to obtain your storage permission (album write permission). Your photos and videos are saved only on the local device by default; unless you actively enable the cloud storage synchronization function, we will not upload them to our servers.
(4) Real-time Translation and Voice Interaction
When you use the "Translation" function of this application, we need to obtain your microphone permission to collect voice information. While such functions are enabled, we process the voice data you input through the microphone or smart glasses/earphones in real time, and send it to our servers or third-party translation service providers for real-time recognition and translation, returning text and voice broadcast (TTS). Unless you actively choose to save the translation records, the original audio data will not be persistently stored on the server. This permission is only used to implement the specific voice interaction functions you have selected. We will not continuously record in the background, nor will we use such data for unauthorized purposes such as user profiling.
(5) Intercom Communication Function
When you use the "Intercom" function and join a channel or team, we will collect your intercom account information (assigned by the backend based on the device SN), online status, and the channel/team information you joined. The team name and introduction you fill in when creating a team will be uploaded to our servers for other users to view. Your real-time intercom voice data is transmitted over the network, but we will not permanently store or monitor it on the server side. The intercom channel settings support the "Clear Voice Cache" function; once cleared, the voice cache data cannot be recovered.
(6) AI Assistant (Q&A and Recognition)
When you use the "AI Assistant" for image recognition, scene analysis, or voice Q&A, the text commands, voice commands you actively input, or the image/video footage captured through the smart glasses will be sent to the cloud AI engine for analysis and processing. After the processing is completed, the original data on the server will be immediately deleted and will not be persistently saved. Please note that you should avoid inputting images and voice containing personal sensitive information or the privacy of others to the AI Assistant.
(7) Audio Recording, Transcription, and Summarization
When you use the recording function, the recording files are encrypted and saved on your local device by default. When you use services such as "Transcription", "Summarization", and "Mind Map", the audio data will be encrypted and transmitted to the server for real-time processing. After the service is completed, the original audio data on the server will be immediately deleted and will not be persistently saved. The transcribed text, summarized content, and mind map results will be saved on your local device or cloud storage (depending on your settings).
(8) Service Delivery and Server Resource Optimization
To ensure the stability and low latency of the service, we need to allocate appropriate server resources for you. We will follow the principle of data minimization and automatically attempt to obtain location reference information in the priority order of GPS > IP address (de-identified) > device time zone. If you refuse to provide precise location permission, we will not be able to adopt the optimal strategy, which may affect the connection speed and stability, but you can still continue to use the core services based on the server allocated by IP address or time zone.
(9) Service Stability and Security Assurance
To diagnose and repair application faults and prevent security risks, we will automatically collect necessary device and application information (such as device identifiers, operating system versions), mobile network information (such as IP addresses), and service log information (such as error and crash reports). Such processing is necessary to ensure the compatibility and stability of the service.
1.2 Payment Services
To provide you with secure and compliant payment services, we need to process your relevant information based on the legal basis of fulfilling obligations stipulated by laws and regulations and performing the contract.
To process your payment instructions and complete the transaction, we need to collect and process your set payment method, order information (such as order number SV20260521001), paid content (such as SVIP·12 months), order amount, activation time, expiration time, purchase time, and cumulative consumption amount. You can choose the payment services provided by third-party payment institutions (such as Apple Pay, Google Pay, WeChat Pay, Alipay, and other payment channels). The payment behavior itself does not collect your sensitive payment information such as bank card numbers or passwords, but we need to share your order number and transaction amount information with these payment institutions so that they can confirm your payment instructions and complete the payment.
1.3 Feedback and Customer Service
When you submit feedback to us, we need to collect the contact information you filled in, the problem description, and the pictures or log attachments you actively uploaded, so that we can contact you and solve the problems you encountered. Such data is only used for problem location, reply, and service improvement, and the retention period shall not exceed 3 years after the problem is solved.
1.4 Permission Description
| Device Permission |
Business Function |
Permission Authorization Method |
Can be Disabled |
| Bluetooth |
Device addition, device connection, device settings |
Pop-up inquiry when the user first uses the relevant function |
Yes |
| Location |
Scanning and connecting to nearby Bluetooth devices (some Android systems require location permission to be enabled); server resource optimization |
Pop-up inquiry when the user first uses location or Bluetooth-related business |
Yes |
| Microphone |
Translation, intercom, AI Assistant voice interaction, recording |
Pop-up inquiry when first using voice-related functions |
Yes |
| Wi-Fi / Local Network |
Media file transmission (photos, videos), network connection for various business functions |
Pop-up inquiry when the user first opens the App |
Yes |
| Storage / Album |
Saving photos/videos to the mobile phone album, importing external files, uploading feedback attachments |
Pop-up inquiry when the user first uses the relevant function |
Yes |
| Notification |
Device disconnection reminder, transmission completion notification, membership expiration reminder |
Pop-up inquiry when the user first opens the App |
Yes |
| Camera (Mobile phone only) |
Scanning QR code to bind device (if applicable) |
Pop-up inquiry when first using the relevant function |
Yes |
2. Third-Party SDKs and Services Involved (GDPR: Art. 28)
To provide application stability monitoring, real-time audio and video, AI voice interaction, real-time intercom, speech recognition and translation, cloud recording processing, and third-party account sign-in, our product integrates Software Development Kits (SDKs) provided by our partners. These SDKs process information only when necessary to provide the corresponding functions, and their processing is also governed by the applicable third-party privacy policies. We recommend that you carefully read the following disclosures and third-party policies.
| SDK Name |
SDK Package |
Developer |
Purpose |
Use Scenario |
Information Collected |
Processing Method |
Privacy Policy |
| Bugly Android |
com.tencent.bugly |
Shenzhen Tencent Computer Systems Co., Ltd. |
Monitor application crashes, unexpected exits, and ANRs, analyze causes, and improve application stability. |
When the application starts or runs, or when a crash, freeze, or other exception occurs. |
Phone model and brand, Android version and API level, vendor OS version, CPU architecture, root status, disk/SD card/memory usage, network type, current process name and PID, application package name and version, crash stack, and exception logs. |
Automatically collected by the SDK and encrypted in transit to the server; process name and PID are used to determine ANR status. |
Bugly SDK Privacy Protection Statement |
| Tencent Cloud All-in-One LiteAV SDK (Android) |
com.tencent.liteav |
Shenzhen Tencent Computer Systems Co., Ltd. |
Provide underlying capabilities for real-time audio/video communication, voice calls, interactive live streaming, video playback, recording, and editing. This application primarily uses it for AI voice interaction and real-time voice intercom. |
When the user actively enters AI voice, real-time intercom, or another audio/video function. |
Wi-Fi status, system properties, device model, operating system information, IP address, camera footage, recordings or audio data, photos and videos in the album, and accelerometer information. Under the application's current features, it primarily processes audio data, network status, device model, operating system, and IP address. |
Collected according to the function triggered by the user; audio/video and network data are encrypted in transit, while some device adaptation and sensor information is processed only locally. |
Tencent Cloud LiteAV SDK Personal Information Protection Rules |
| Live Streaming SDK (Android) |
com.tencent.live2 |
Shenzhen Tencent Computer Systems Co., Ltd. |
Provide audio/video live streaming, publishing, playback, and network quality optimization. The application does not independently invoke live streaming; this module is bundled with the All-in-One LiteAV SDK. |
Only when related audio/video capabilities are invoked; the application currently has no independent live streaming scenario. |
Wi-Fi status, system properties, device model, operating system information, IP address, camera footage, recordings or audio data, and accelerometer information. |
Collected when the user triggers an audio/video function; device and network data are de-identified and encrypted in transit, while some sensor information is processed only locally. |
Tencent Cloud LiteAV SDK Personal Information Protection Rules |
| Live Streaming SDK (Basic) (Android) |
com.tencent.rtmp |
Shenzhen Tencent Computer Systems Co., Ltd. |
Provide basic audio/video streaming, publishing, pulling, and playback. The application does not independently invoke this function; this module is bundled with the All-in-One LiteAV SDK. |
Only when related audio/video capabilities are invoked; the application currently has no independent live publishing scenario. |
Wi-Fi status, system properties, device model, operating system information, IP address, camera footage, recordings or audio data, and accelerometer information. |
Collected when the user triggers the relevant function; network data are de-identified and encrypted in transit, while some sensor information is processed only locally. |
Tencent Cloud LiteAV SDK Personal Information Protection Rules |
| Short Video UGSV SDK for Android |
com.tencent.ugc |
Shenzhen Tencent Computer Systems Co., Ltd. |
Provide short-video capture, audio recording, editing, composition, beautification, and video processing. The application does not independently invoke short-video production; this module is bundled with the All-in-One LiteAV SDK. |
Only when short-video capture or editing is enabled; the application currently has no independent short-video production scenario. |
Wi-Fi status, system properties, device model, operating system information, IP address, connected network type and SSID, camera footage, recordings or audio data, photos and videos in the album, facial coordinate information, and accelerometer information. |
Device and network data may be de-identified and encrypted in transit; camera, recording, album, facial coordinate, and accelerometer data are mainly processed locally. |
Tencent Cloud UGSV SDK Personal Information Protection Rules |
| TRTC Audio/Video Call SDK (Android) |
com.tencent.trtc |
Shenzhen Tencent Computer Systems Co., Ltd. |
Provide real-time voice and audio/video communication for AI voice interaction, real-time voice intercom, and room communication. |
When the user actively uses AI voice, real-time intercom, or joins a voice room. |
Wi-Fi status, system properties, device model, operating system information, IP address, CPU information, camera footage, recordings or audio data, and accelerometer information. The application currently mainly uses recordings or audio data and does not actively use TRTC video capture. |
Audio and network data are encrypted in transit; device adaptation data are de-identified; accelerometer information is processed only locally. |
Tencent Cloud TRTC SDK Personal Information Protection Rules |
| Player SDK |
com.tencent.thumbplayer, com.tencent.liteav.txcplayer, com.tencent.liteav.txcvodplayer |
Shenzhen Tencent Computer Systems Co., Ltd. |
Provide live/on-demand audio and video playback, decoding, and network quality detection. This component is included through the All-in-One LiteAV SDK, and the application does not directly invoke Tencent Player APIs. |
Audio/video content playback and internal processing by the All-in-One SDK. |
Wi-Fi status, device model, operating system information, IP address, connected network type, and sensor information. |
Network and device adaptation information is de-identified and encrypted in transit; Wi-Fi status and some sensor information are processed locally. |
Tencent Cloud Player SDK Personal Information Protection Rules |
| Tencent Cloud Speech Recognition SDK (Android) |
com.tencent.aai |
Tencent Cloud Computing (Beijing) Co., Ltd. |
Convert user speech to text for AI voice input and voice translation. |
When the user actively taps voice input or enables real-time speech recognition or translation. |
Audio data provided by the user and network status required to connect to the service. Audio is collected through microphone permission when the phone microphone is used; when glasses audio is used, PCM audio transmitted by the glasses is processed. |
Audio data are encrypted in transit to Tencent Cloud Speech Recognition for processing. |
Tencent Cloud Speech Recognition SDK Personal Information Protection Rules |
| COS V5 Android SDK |
com.tencent.cos.xml, com.tencent.qcloud.core |
Tencent Cloud Computing (Beijing) Co., Ltd. |
Provide cloud file upload and object storage for recording files that users actively choose to upload to Tencent Cloud Object Storage. |
When the user completes a recording and actively initiates recording processing, upload, or cloud analysis. |
Recording files actively uploaded by the user, file name or object identifier, network status, IP address, and system properties; the SDK's official rules may also cover device information such as Android ID. |
Temporary access credentials are used, and recording files and request information are encrypted in transit using HTTPS/SSL. |
COS V5 Android SDK Privacy Protection Statement |
| Microsoft Azure Speech SDK |
com.microsoft.cognitiveservices.speech |
Microsoft Corporation |
Provide speech recognition, real-time speech translation, and text-to-speech services. |
When the user actively uses voice translation, real-time translation, speech recognition, or playback of translated results. |
Audio or voice data entered by the user, recognition text, text to be translated, text to be converted to speech, and network and IP information required for service requests. |
Audio and text are encrypted in transit to Microsoft Azure Speech for real-time processing. Customer-provided data are not retained by default for real-time speech recognition and translation. |
Microsoft Privacy Statement |
| Google Sign-In SDK |
com.google.android.gms.auth |
Google LLC |
Provide Google Account sign-in and identity authentication. |
When the user actively taps “Sign in with Google.” |
Google Account identifier, email address, basic account profile, name, avatar URL, Google ID token, and network and device information required to operate the service. The actual data returned depends on user authorization and Google Account settings. |
After the user authorizes access, the Google sign-in page and Google Play services process the request and return the authentication result and ID token to the application. |
Google Privacy Policy |
Note: The above list will be updated with product iterations. If there are any additions or changes, we will update them simultaneously in this policy and notify you in an appropriate manner.
3. How We Share, Transfer, and Publicly Disclose Your Personal Information
We fully understand the importance of your personal information and promise not to share your information with any company, organization, or individual, unless we have obtained your explicit consent.
3.1 Sharing of Information
We will not share your personal information with any company, organization, or individual, except in the following circumstances:
(1) Sharing with your explicit consent: Before sharing your information with a third party, we will obtain your separate consent for the sharing behavior in advance, and inform you of the third party's identity, contact information, processing purpose, processing method, and the types of personal information.
(2) Sharing with authorized partners: Solely for the purposes stated in this Policy, some of our services will be provided by authorized partners. We will only share your information for lawful, legitimate, necessary, specific, and explicit purposes, and will only share the information necessary to provide the services. Our authorized partners include the following categories:
- Brand partners and hardware manufacturers: To provide functions such as device linkage, after-sales service, and hardware technical support, we may share necessary device identifiers, service logs, and other information with designated partners.
- Advertising and analytics service providers: To evaluate advertising effectiveness, analyze product usage, and understand user profiles to improve services, we may share de-identified or anonymized device information and usage data with such partners. This information will not directly identify you.
- Other service providers: Including partners providing services such as voice recognition, translation, AI analysis, intercom communication, and data storage. We will sign strict data processing agreements with these partners, requiring them to process your information in accordance with our instructions, this Policy, and any other relevant confidentiality and security measures.
(3) Sharing based on statutory reasons: We may need to share your personal information in accordance with laws and regulations, the need for litigation and dispute resolution, or the requirements put forward by administrative and judicial authorities in accordance with the law.
3.2 Transfer of Information
We will not transfer your personal information to any company, organization, or individual, except in the following circumstances: If we undergo a merger, acquisition, or bankruptcy liquidation, resulting in a change in the control of your personal information, we will require the new company or organization holding your personal information to continue to be bound by this Policy. Otherwise, we will require the company or organization to seek your authorized consent again.
3.3 Public Disclosure of Information
We strictly limit the public disclosure of your personal information, and will only consider public disclosure under mandatory requirements of laws, legal proceedings, litigation, or competent government authorities, and after taking security protection measures that comply with laws and industry standards.
4. How We Store and Protect Your Personal Information
4.1 Data Storage Location and Retention Period
We protect your personal information through strict encryption technologies and management measures. Generally, the personal information we collect from you will be stored on servers located within your country/region.
We retain your personal information only for the time necessary to achieve the purposes described in this policy, and will delete or anonymize it after exceeding the retention periods specified below, unless otherwise required by laws and regulations. The specific provisions are as follows:
(1) Account Information: To ensure the security of your account, your account information will be encrypted and stored on the server until you delete/deactivate your account, at which point the data will be immediately deleted.
(2) Device Identifiers and Connection Information: When you use the smart glasses, to establish and maintain the connection between the device and the services, your device identifiers will be encrypted during transmission and stored on the server until you select "Unbind" on the details page of the bound device, at which point the relevant data will be immediately deleted. In addition, for anonymous, macroscopic statistical analysis to optimize products and services, de-identified device identifiers and coarse location information may be stored on the server for 3 years, and will be immediately deleted upon expiration.
(3) Storage Modes for Media Files (Photos, Videos, Audio Recordings): We adopt the following modes to process your media data, over which you have full control:
- Local Storage Mode (Default): Photos and videos taken through the smart glasses and audio files recorded by the APP are prioritized to be encrypted and stored locally on your device by default. When you use core services such as transcription, summarization, and translation, these data will be encrypted and transmitted to the server for real-time processing. After the service is completed, the original data on the server will be immediately deleted and will not be persistently stored.
- Cloud Storage Mode (Requires Active Enablement): If you have purchased cloud storage services and actively enabled synchronization, the files you select will be encrypted and uploaded to the cloud server. You can delete cloud files in the media library at any time.
(4) Translation and Intercom Data: Temporary audio caches generated by real-time translation and intercom functions will be automatically destroyed after processing is completed, usually within a few minutes. Translation record texts are stored locally by default.
(5) Consumption Records: Your purchase records (order number, amount, activation/expiration time, etc.) will be retained until you delete/deactivate your account or the minimum retention period required by laws and regulations expires (whichever is later).
4.2 Cross-Border Transfer of Data
(1) Users in Mainland China: In the first phase of services, personal information collected and generated during our operations within the People's Republic of China will be stored within mainland China. We will not conduct cross-border transfer of data without your explicit consent or without meeting statutory conditions.
(2) Data Localization Storage in the EU: For users in the European Union (EU) and the European Economic Area (EEA), we commit to adhering to the principle of "data localization". Your personal data will be stored on servers within the EU by default. We will not actively transfer your core service data outside the EU.
(3) Regional Restrictions of Third-Party Service Providers: The global cloud service providers or third-party SDKs we use are all configured to prioritize processing using their data nodes located in the user's region.
(4) Exceptions and Safeguard Mechanisms for Cross-Border Transfer: In principle, your data will not be transferred across borders. Only in extremely rare and necessary circumstances, if data must be transferred outside your country/region, we will ensure that the transfer complies with the requirements of applicable laws by adopting at least one of the following strict safeguard measures:
- Adequacy Decision: The recipient is located in a country or region recognized by the European Commission as providing an "adequate level of protection";
- Standard Contractual Clauses (SCCs): Signing Standard Contractual Clauses approved by the European Commission with the recipient, supplemented by necessary additional security measures (such as encrypted transmission and access control);
- Filing of Chinese Standard Contract: Completing the filing in accordance with China's "Measures for the Standard Contract for the Outbound Transfer of Personal Information";
- Derogations: In occasional and necessary circumstances, obtaining your explicit consent in accordance with GDPR: Art. 49 or as necessary for the performance of a contract.
4.3 Data Security Measures
To ensure the security of sensitive data such as audio and video data and account information, we have implemented specific and strict technical and organizational security measures:
(1) Data Encryption Protection: All audio, photo, and video files are encrypted using AES-256 during transmission and storage. Encryption keys are managed through an independent Key Management System (KMS), with regular rotation and hierarchical access control.
(2) Strict Encrypted Transmission: SSL/TLS and AES-256 encryption methods are adopted to encrypt transmitted data, ensuring the confidentiality and integrity of data such as media uploads, device binding, and translation requests during transmission.
(3) Local Device Security Control: The "Local Storage Mode" is adopted by default, and media files are only stored in the local sandbox of your device, unless you actively execute an upload or initiate cloud synchronization. Temporary audio caches generated by functions such as real-time translation and intercom will be automatically destroyed after processing is completed.
(4) Access Control and Principle of Least Privilege: The backend system adopts Role-Based Access Control (RBAC), and different positions can only access the necessary scope of data. Logs record all access behaviors, and unauthorized access will be automatically blocked and reported to the security system.
(5) Security Audits and Logs: Tamper-proof logging is conducted for sensitive operations such as data export, account management, permission changes, and media file access. The security team regularly reviews audit logs and monitors suspicious activities.
(6) Intrusion Detection and Application Protection: An Intrusion Detection System (IDS) is used to monitor risk behaviors such as abnormal traffic, brute-force attacks, and suspicious requests in real time.
(7) Cloud Data Security Control: Cloud data adopts Multi-Availability Zone (Multi-AZ) redundant storage, and is equipped with regular backup and automatic disaster recovery mechanisms.
4.4 Organizational Management Measures
(1) Data Lifecycle Management: We implement strict control over every stage of data from generation, transmission, use, storage, and sharing to deletion. After deleting a media file, its associated transcription text and index will be deleted simultaneously. Cloud files enter an "unrecoverable" state immediately after deletion. Temporary caches are destroyed immediately after the task is completed.
(2) Employee Privacy and Security Training: All employees who may have access to personal data are required to complete annual data protection and security training. Data access permissions require an approval process and are recorded throughout.
(3) Privacy by Design: All new features must undergo a security assessment before launch; if audio and video files are involved, a Data Protection Impact Assessment (DPIA) will be conducted.
4.5 Personal Information Security Incident Response
Although we have taken multi-level security measures, we cannot guarantee complete absence of risk. Once an incident that may compromise your data security is discovered, we will:
- Immediately activate the emergency response mechanism, isolate affected systems, block attack sources, and conduct security analysis;
- Report to the competent supervisory authority within 72 hours of discovery (unless the incident is unlikely to affect your rights and freedoms);
- If the incident may pose a high risk to you (such as the leakage of audio and video content), we will proactively notify you as soon as possible, including: the type of incident and the categories of affected data, the measures we have taken and recommend you take, and how to contact us.
5. How You Manage Your Personal Information
We value your control over your personal information. In accordance with relevant laws and regulations, you have the right to manage your personal information. The following are the specific ways you can exercise your rights.
5.1 Access, Correction, and Deletion
(1) Access: You have the right to access your account information (such as the bound mobile phone number, email address, and nickname) through "Me - Personal Homepage" in the App, as well as access your photos, videos, audio recordings, and translation records in the "Media Library". If you need to obtain a complete copy of your data, you can contact us to request a data export.
(2) Correction: You can modify your nickname, avatar, and other information in "Me - Personal Homepage".
(3) Deletion: You have the right to delete your specific information. For example, you can directly delete your photos, videos, and audio recording files in the "Media Library" within the App; clear the voice cache in "Intercom - Channel Settings"; and view but not independently delete transaction records in "Consumption Records" (retained as required by laws and regulations). If you wish to delete/deactivate your account, please refer to Article 5.4.
5.2 Account and Security Settings
You can bind or change your backup email address/mobile phone number at any time in "Me - Settings" by receiving a verification code.
Security Tip: Your account must retain at least one valid contact method (mobile phone number or email address) as a login credential.
5.3 Withdraw Consent
You can turn off the permissions obtained by this App (such as microphone, location, Bluetooth, storage, etc.) in your device's system settings. Withdrawing consent will not affect the processing previously conducted based on your consent, but you may not be able to continue using the functions that rely on such permissions.
5.4 Delete/Deactivate Your Account
You can apply to delete/deactivate your NBGlass account through "Me - Settings - Delete/Deactivate Account". To prevent you from deleting/deactivating by mistake, the APP will prompt you to read and confirm the consequences of deletion/deactivation through a clear and explicit pop-up window, and you need to actively confirm again before continuing the process. After deletion/deactivation, we will delete or anonymize your personal information and delete the data. Deleting/deactivating your account is irreversible; once completed, you will be unable to continue using the relevant services, and all your data (including but not limited to purchase records, cloud storage files, device binding relationships, and translation records) will be permanently cleared and cannot be recovered.
5.5 Other Rights
(1) Right to Restriction of Processing: When the accuracy of the data is contested, you may request to suspend the processing.
(2) Right to Data Portability: You may apply to obtain data in a machine-readable format (such as JSON, CSV, ZIP): audio recording files, transcription content, translation records, basic account information, device binding information, and other data.
(3) Right to Object to Processing: You may object to our non-core data analysis (such as anonymous statistics) based on legitimate interests. We will respect your choice unless we have compelling legitimate grounds to continue processing.
(4) Right Not to be Subject to Automated Decision-Making: We will not use your data to make automated decisions that may affect your rights.
If you have any questions about the above rights or need assistance, please contact us by sending an email to service@nebulabuds.com. We will reply within 15 working days after verifying your identity.
6. Protection of Minors' Personal Information
We attach great importance to the protection of minors' personal information. This application and the smart glasses are primarily intended for adults. We do not actively provide services to EU users under the age of 16 or Chinese users under the age of 14.
(1) Age Identification and Guardian Consent: Our services are not directed to minors under the age of 16 (or the minimum age required in your country/region). If we discover that we have collected personal information from a minor without verifiable guardian consent, we will delete the relevant data as soon as possible.
(2) Special Protection Measures:
- Transparency: We will explain the collection and use of personal information to minors in clear and plain language.
- Purpose Limitation: We will not use minors' personal information for user profiling or marketing activities based solely on automated decision-making.
- Rights Protection: Guardians have the right to exercise statutory rights such as access, correction, and deletion on behalf of minors.
If you are a guardian and have any questions regarding the personal information of the minor under your guardianship, please contact us at service@nebulabuds.com.
7. How This Policy is Updated
We reserve the right to update or modify this Policy from time to time. If there are updates to the Privacy Policy, we will publish the revised version and its effective date for your review. For material changes involving the terms of this Policy (such as collecting new types of personal information, changing the purposes of processing, changing the methods of data sharing, etc.), we will also provide more prominent notices (such as in-app pop-ups). After the content is changed, we will remind you of the latest version and the key points of the changes through page prompts, re-signing agreements, or other methods. Please read them carefully before use and renew your consent.
8. How to Contact Us
We have established a dedicated personal information protection department. If you have any questions, comments, or suggestions regarding your personal information, you may contact us through the following methods:
- Customer Service Email / DPO Email: service@nebulabuds.com
- Company Name: Shanghai Zhangchan Wireless Technology Co., Ltd.
- Company Address: Room 307, Building 7, Yalong Dongshuo, Lane 200, Yunxin Road, Jing'an District, Shanghai
We will respond within 15 working days.
If you are not satisfied with our response, especially if our personal information processing activities have impaired your legitimate rights and interests, you may also seek remedies through the following channels:
- Users in China: File a lawsuit with a competent people's court, or file a complaint or report with the cyberspace administration or the industry and information technology department.
- Users in other countries/regions outside mainland China: File a complaint with the data protection supervisory authority in your member state. You may also contact us for information on relevant complaint channels that may be applicable.