简体中文English

隐私政策

生效日期:2026-09-29

倒计时321 是一款本地优先的效率应用,核心计划功能无需注册我们的账号。本地优先不等于完全离线:配置后的同步、挂件、语音输入、通知和 Apple 购买可能涉及外部服务,功能可用性因平台而异。

1. 本地存储与删除

计划、任务、笔记、专注记录、复盘、习惯、账单记录、目标和设置保存在 IndexedDB 等设备存储中,并有独立的本地自动备份。清除本地数据或卸载应用不会删除云端副本、导出文件、同步文件夹或服务商备份,卸载的清理范围也因平台而异。同步中的记录删除不等于远程彻底清除。删除远端副本需在服务商处管理文件、回收站和版本历史,并检查其他设备;后续同步可能恢复仍存在的副本。

2. 可选同步、备份与加密

配置受支持的连接后,应用会通过 OneDrive API、Dropbox、WebDAV 或原生 iCloud Drive 桥主动上传和下载数据库记录;iCloud 桥适用于 iOS/Mac Catalyst,不适用于 Electron。编辑后可能自动同步。记录包括任务和笔记内容、设置;设置可能含通知 token 及 SMTP 账号信息和密码。这些云同步路径排除同步配置,不传输独立附件文件,但记录内的附件引用或内嵌内容仍可能随记录传输。本地文件夹同步会单独写入附件,云客户端可能继续上传该文件夹。OneDrive/Dropbox 的 OAuth 访问与刷新 token 保存在设备上以持续访问;WebDAV 保存服务器地址、用户名及由设备本地密钥保护的密码,该密钥不是备份恢复密钥。停止访问需在 Microsoft 或 Dropbox 账号中撤销应用授权;WebDAV 需在服务商处撤销或更换应用密码。iCloud 访问和文件夹权限由系统或浏览器设置管理。清除本地凭据不等于撤销服务商授权。备份加密是可选的:只有启用并具备恢复密钥时,JSON 导出和同步分片才使用 AES-GCM;恢复密钥保存在本地,不包含在同步分片中。否则输出是可读的 JSON。此选项不加密本地数据库、本地自动备份、Markdown 导出、独立附件文件或文件名。请另行保管恢复密钥;启用加密不会抹除旧的明文副本。与结构化导出不同,原始数据库导出可能包含附件和同步凭据,分享前请检查内容。

3. 挂件与网络请求

挂件和远程图片在加载时会访问外部服务,请求可能暴露 IP 地址、请求元数据及地名、股票代码或 GitHub 用户名等输入。获取公开信息不等于没有数据传出。这些功能涉及的服务包括:

  • 天气 — Open-Meteo:实时天气与预报。
  • 地点解析 — Open-Meteo Geocoding、OpenStreetMap (Nominatim)、BigDataCloud:把地名或坐标转换为地点。
  • 公共节假日 — Nager.Date:按国家/地区的节假日日历。
  • 加密行情 — CoinGecko:加密货币市场报价。
  • 市场情绪 — CNN、Alternative.me:恐惧与贪婪指数。
  • 股票行情 — 新浪财经:A 股与港股指数报价。
  • 热搜榜 — 百度、微博、抖音:公开热搜榜单。
  • 影视 — 豆瓣:正在热映与高分影片。
  • 科技资讯 — Hacker News:热门文章。
  • 每日一言 — 一言 Hitokoto:随机短句。
  • 图片 — Unsplash、Lorem Picsum:壁纸与占位图片。
  • 贡献图 — ghchart:GitHub 风格的贡献热力图。

可用挂件因平台而异。部分网页或桌面请求经过应用代理,可能被缓存。服务商和托管方的日志或保留规则不由应用本地存储控制,请查阅相应服务政策。移除不需要的挂件可减少其请求。

4. 位置与语音输入

天气功能把选定或经授权获取的设备坐标发送给 Open-Meteo,反向地理编码会访问 BigDataCloud;地名搜索访问 Open-Meteo Geocoding 或 OpenStreetMap。设备坐标可能是精确位置,保存的地点可能随设置同步。语音输入在你主动启动并授予麦克风和语音识别权限后工作。Apple 原生端使用 Apple 语音识别,未强制仅在设备上识别,音频可能发送给 Apple 处理;Web Speech 的处理取决于浏览器,也可能使用其服务商的服务器。应用把音频流交给识别服务,不保存录音文件;这不代表服务商的保留方式。识别文字返回编辑器,保存后成为任务或笔记内容,也可能被同步。可在系统或浏览器设置中撤销位置、麦克风和语音识别权限。

5. 可选通知

本地提醒使用设备通知系统。配置 PushPlus 后会向其发送 token、提醒标题和内容;支持邮件的 Electron 版本会向所选 SMTP 服务器认证,并发送发件人、收件人地址和消息。通知配置保存在设置中,可能进入同步或导出(见第 2 节)。请关闭不用的渠道,并在服务商处撤销对应 token 或应用密码。

6. Apple 购买与其他数据处理

  • 在支持 Apple 购买的平台上,StoreKit 与 Apple 处理购买和恢复。应用接收交易结果、标识及已验证权益;该桥不会向应用传入支付卡资料。
  • 本地会员缓存包含 Pro 状态、商品 ID、到期时间和刷新时间。缓存不等于我们的自有账号,云服务登录也是另一套授权。清除数据不会取消 Apple 订阅或删除 Apple 的购买记录;订阅需通过 Apple 管理。
  • 当前应用未接入广告或跨应用追踪 SDK,但这不代表连接的服务不会收到数据。
  • 诊断日志留在本地,可由你导出。若通过邮件发送日志、内容或支持请求,收件方与邮件服务会收到你发送的信息。
  • 云同步、语音、通知、挂件和购买服务商按各自政策处理功能所需数据,使用前请查阅其政策。

7. 儿童隐私

本应用是通用效率工具,并非为 13 岁以下儿童设计的服务。家长或监护人应留意输入内容、开启的权限及外部服务。儿童使用时也适用上述数据流说明。

8. 政策变更

此版本描述当前实现。功能或数据流变化后,需复核应用内与公网政策副本并更新日期。本地存在此文档不代表公网站点已部署。

9. 联系我们

隐私问题可联系下方邮箱。你的邮件内容和回信地址会经邮件服务传送给我们;请勿发送密码、恢复密钥或完整数据库导出。

90mulinux@gmail.com

Privacy Policy

Effective date: 2026-09-29

DJS321 is a local-first productivity app. Core planning works without an account with us. Local-first does not mean offline-only: configured sync, widgets, voice input, notifications and Apple purchases can involve external services. Availability depends on the platform.

1. Local storage and deletion

Plans, tasks, notes, focus records, reviews, habits, tracked bills, goals and settings are stored in IndexedDB and other device storage, with separate local automatic backups. Clearing local data or uninstalling does not delete cloud copies, exported files, synced folders or provider backups, and uninstall behavior varies by platform. Record deletion during sync is not a remote wipe. To remove remote copies, manage files, trash and version history with the provider and check other devices; existing copies may be restored by later sync.

2. Optional sync, backups and encryption

After you configure a supported connection, the app actively uploads and downloads database records through OneDrive API, Dropbox, WebDAV or the native iCloud Drive bridge (iOS/Mac Catalyst, not Electron). Sync may run automatically after edits. Records include task/note content and settings, which may contain notification tokens and SMTP account details/passwords. These cloud paths exclude sync configuration and do not transfer the separate attachment files; attachment references or content embedded in records can still travel with the records. Local folder sync writes attachments separately; a cloud client may upload that folder. OneDrive/Dropbox OAuth access and refresh tokens are stored on the device for continued access; WebDAV saves the server URL, username and a password protected with a device-local key, not the backup recovery key. To stop access, revoke the app's authorization in your Microsoft or Dropbox account; for WebDAV, revoke or change the application password at the provider. Manage iCloud access and folder permissions in system/browser settings. Clearing local credentials does not revoke provider authorization. Backup encryption is optional: JSON exports and sync shards use AES-GCM only when enabled with a recovery key, stored locally and not included in sync shards. Without it, they are readable JSON. Local databases, automatic local backups, Markdown exports, separate attachment files and filenames are not encrypted by this backup option. Keep the recovery key separately; enabling encryption does not erase older plaintext copies. The raw database export can include attachments and sync credentials, unlike the structured export; review any export before sharing.

3. Widgets and network requests

Widgets and remote images contact services when loaded. Requests can expose an IP address, request metadata and selected inputs such as a place name, stock symbol or GitHub username. Fetching public information is not the same as sending no data. The providers used by these features include:

  • Weather — Open-Meteo: Current conditions and forecast.
  • Location lookup — Open-Meteo Geocoding, OpenStreetMap (Nominatim), BigDataCloud: Turning a place name or coordinates into a location.
  • Public holidays — Nager.Date: Holiday calendars by country.
  • Crypto prices — CoinGecko: Cryptocurrency market quotes.
  • Market sentiment — CNN, Alternative.me: Fear & Greed index.
  • Stock quotes — Sina Finance: A-share and Hong Kong index quotes.
  • Trending topics — Baidu, Weibo, Douyin: Public trending lists.
  • Movies — Douban: Now-playing and top-rated films.
  • Tech news — Hacker News: Top stories.
  • Daily quote — Hitokoto: A random short quote.
  • Images — Unsplash, Lorem Picsum: Wallpaper and placeholder images.
  • Contribution chart — ghchart: A GitHub-style contribution graph image.

Available widgets vary by platform. Some web/desktop requests pass through an app proxy and may be cached. Provider and hosting logs or retention are outside what the app's local storage controls; consult the relevant service's policy. Remove unwanted widgets to limit their requests.

4. Location and voice input

Weather sends selected or permission-granted device coordinates to Open-Meteo and, for reverse lookup, BigDataCloud; searches go to Open-Meteo Geocoding or OpenStreetMap. Device coordinates may be precise. Saved locations can be included in synced settings. Voice input starts when you activate it and grant microphone/speech permissions. On Apple native platforms the app uses Apple's speech recognition and does not require on-device recognition, so audio may be sent to Apple for processing. Web Speech recognition depends on the browser and may use its provider's servers. The app streams audio for recognition and does not save an audio recording file; this does not describe the provider's retention. Transcripts are returned to the editor; saved text becomes task/note content and can be synced. Revoke location, microphone or speech permissions in system/browser settings.

5. Optional notifications

Local reminders use the device notification system. Configured PushPlus sends its token and the reminder title/content to PushPlus. Email on supported Electron builds authenticates to your SMTP server and sends the sender/recipient addresses and message there. Notification configuration is stored in settings and may be included in sync or exports (section 2). Disable unused channels and revoke their tokens or application passwords with the provider.

6. Apple purchases and other data handling

  • Where Apple purchases are supported, StoreKit handles purchase and restore with Apple. The app receives transaction results/identifiers and verified entitlements; payment-card details are not passed to the app by this bridge.
  • The local membership cache contains Pro status, product ID, expiry and refresh time. This cache is not an account with us, and a cloud-provider login is also separate. Clearing data does not cancel an Apple subscription or erase Apple's purchase records; manage subscriptions through Apple.
  • The current app does not integrate advertising or cross-app tracking SDKs. This is not a claim that connected services receive no data.
  • Diagnostic logs are kept locally and can be exported by you. If you send logs, content or an email for support, the recipient and mail service receive what you send.
  • Cloud, speech, notification, widget and purchase providers process the data needed for their features under their own policies. Review those policies before using the connected features.

7. Children's privacy

This is a general-purpose productivity tool, not a service designed for children under 13. Parents or guardians should consider the content entered and the permissions and external services enabled. The data flows described above also apply when a child uses the app.

8. Changes to this policy

This version describes the current implementation. Changes to features or data flows require the app policy and public copy to be reviewed and their dates updated. A local copy of this document is not proof that a public site has been deployed.

9. Contact

For privacy questions, contact the address below. Your message and return address will be received through email; do not send passwords, recovery keys or full database exports.

90mulinux@gmail.com