nivrae
AboutFAQPrivacySupport
Privacy Policy · Version 2026-09-08.2

Your archive,
on your terms.

繁體中文

1. 營運者與聯絡方式

Nivrae 由 鄭玥 營運。隱私相關問題請聯絡:nivrae.support@gmail.com。

2. 我們處理哪些資料

Nivrae 使用 Email + Password 建立帳號。為了提供登入、驗證、雲端保存與同步,我們會處理你的 Email、帳號識別碼,以及你主動建立的夢境、片段、醒來感受、Afterthoughts 與相關紀錄欄位。

2A. 產品互動資料與意見回饋

為了了解 Nivrae 的核心功能是否正常運作並改善使用體驗,Nivrae 可能記錄有限的產品互動事件,例如 App 是否被開啟,以及 Capture、Daily Probe、Search、Dream Recall、Profile、提醒與 Share Card 等功能是否被使用。這類事件可與你的 Nivrae user ID 連結,並可能包含 App 版本與平台資訊。

產品互動事件不包含你的夢境正文、Hidden Dream 內容、Afterthought 文字、Search 查詢內容、Dream Recall 查詢內容或 Email 地址,也不會被用於廣告或跨 App 追蹤。

你也可以主動透過「提供意見」送出文字回饋。只有在你自行開啟「附上技術資訊」時,回饋才會一併包含有限的技術資訊,例如 App 版本、平台、作業系統版本與目前功能頁面名稱。Nivrae 不會自動把夢境內容、搜尋內容、Recall 內容、截圖、剪貼簿或完整技術日誌附加到回饋中。

3. 雲端儲存與帳號連結

帳號與雲端夢境紀錄目前使用 Supabase 儲存。這些資料與你的 Nivrae 帳號 / user ID 連結。Nivrae 的資料庫使用 Row Level Security 讓一般登入使用者只能存取自己的夢境資料。

4. Hidden Dreams

Hidden Dreams 提供六位數 PIN、裝置端安全儲存相關敏感狀態,以及 App 進入背景時重新上鎖。Hidden Dream 內容仍會同步到 Supabase;目前並非端對端加密(E2EE)。

5. Profile、Search、Patterns 與 Dream Recall

目前 Archive Search、Dream Profile、Gentle Pattern Insights 與 Dream Recall 使用本地/規則式處理。現行版本不會為了這些功能把夢境內容傳送給第三方大型語言模型。若未來加入第三方 AI,Nivrae 會在相關資料被傳送前更新揭露並在需要時取得額外同意。

6. 提醒與權限

夢境提醒目前設計為裝置端 local notifications。通知權限只會在你主動啟用提醒時請求。儲存 Share Card 到相簿所需的相簿權限,只應在你明確選擇 Save Image 時請求。

7. 帳號刪除

你可以從 Settings → Account → Delete Account 發起帳號刪除。伺服器確認成功後,Nivrae 會刪除該帳號的雲端夢境資料與 Auth 帳號,之後才清除與該帳號相關的本機資料。若遠端刪除失敗,App 不應聲稱刪除已完成。

8. 廣告與追蹤

目前 Nivrae 不使用廣告、不做跨 App 追蹤,也不以廣告目的使用第三方追蹤識別碼。若 production SDK 或資料流改變,本政策與 App Store Privacy Label 將同步更新。

9. 政策更新

當資料處理方式發生實質變化時,Nivrae 會更新本政策版本與內容。若未來新增需要額外同意的資料用途,會在適當流程中重新取得同意。

English

1. Operator and contact

Nivrae is operated by 鄭玥. For privacy questions, contact nivrae.support@gmail.com.

2. Data we process

Nivrae uses email-and-password accounts. To provide account verification, sign-in, cloud storage and synchronization, we process your email address, account identifier, and the dream entries, fragments, wake feelings, afterthoughts, and related record fields you choose to save.

2A. Product interaction data and feedback

To understand whether Nivrae’s core features are working and to improve the product experience, Nivrae may record limited product interaction events, such as whether the app was opened and whether features including Capture, Daily Probe, Search, Dream Recall, Profile, reminders, and Share Card were used. These events may be linked to your Nivrae user ID and may include app version and platform information.

Product interaction events do not include dream text, Hidden Dream content, Afterthought text, Search queries, Dream Recall queries, or email addresses. They are not used for advertising or cross-app tracking.

You may also voluntarily submit written feedback through Send Feedback. Limited technical information such as app version, platform, operating-system version, and the current non-content screen name is included only when you choose “Include technical information.” Nivrae does not automatically attach dream content, search/Recall content, screenshots, clipboard data, or full technical logs to feedback.

3. Cloud storage and account linkage

Nivrae currently uses Supabase for account and cloud dream storage. Cloud records are linked to your authenticated Nivrae account / user ID. Row Level Security is used so ordinary signed-in users can access only their own dream records.

4. Hidden Dreams

Hidden Dreams use a six-digit PIN, device-side secure storage for relevant sensitive state, and background re-locking. Hidden Dream content still syncs to Supabase and is not currently end-to-end encrypted.

5. Profile, Search, Patterns and Dream Recall

Archive Search, Dream Profile, Gentle Pattern Insights and Dream Recall currently use local/rule-based processing. The current release does not send dream content to a third-party large language model for these features. If third-party AI is added later, Nivrae will update its disclosure and obtain additional consent where required before sending relevant content.

6. Reminders and permissions

Dream reminders are designed as local notifications. Notification permission is requested only when you deliberately enable a reminder. Photo-library permission for saving a Share Card should be requested only when you explicitly choose Save Image.

7. Account deletion

You can initiate account deletion in Settings → Account → Delete Account. After the server confirms success, Nivrae deletes that account's cloud dream rows and authentication account, then clears related local account data. If remote deletion fails, the app should not claim deletion succeeded.

8. Advertising and tracking

Nivrae currently does not show ads, perform cross-app tracking, or use third-party advertising identifiers for tracking. If the production SDK set or data flows change, this policy and the App Store Privacy Label will be updated.

9. Policy updates

Nivrae may update this policy when its data practices materially change. Where a new data use requires additional consent, Nivrae will request it in the relevant flow.

Nivrae — kept after waking.