Privacy

Privacy Policy

Vistill is designed to work without a Vistill account or advertising. This policy explains the limited information used to provide purchases, restore access, answer support requests, and protect the service.

English

1. Who operates Vistill

Vistill is operated by the developer identified on the App Store or Google Play listing from which you download the app (referred to in this policy as “Vistill,” “we,” or “us”). You can contact us at support@vistill.app.

2. No Vistill account in version 1.0

Vistill 1.0 does not require a Vistill account. Subscriptions and one-time scene purchases are associated with the App Store or Google Play account used for the purchase. Apple and Google process payment details under their own privacy policies. Vistill does not receive your complete credit-card number.

3. Information we process

Purchase and entitlement information

To sell, validate, restore, and revoke digital purchases, we and our service providers process information such as the store, product ID, purchase and expiration times, entitlement state, transaction or receipt evidence, an anonymous RevenueCat App User ID, and related subscription events.

RevenueCat validates store receipts and maintains purchase history. Vistill’s commerce service receives signed RevenueCat events. It stores a privacy-minimized audit record in a private Supabase database; customer, alias, and transaction identifiers in that audit record are cryptographically hashed where retained.

Preferences stored on your device

Your current scene, time of day, sound preference, display timer, onboarding state, and similar settings are normally stored only on your device. We do not receive them as analytics.

Support communications

If you email support, we receive the email address, message, attachments, and any device or transaction details you choose to include. Please do not send payment-card numbers or unrelated sensitive information.

Google Play review access

The Android submission may include an access-code screen used by Google Play reviewers. A submitted code is sent over HTTPS to Vistill’s commerce service solely to verify review access. It is not used to create a customer purchase or advertising profile. The hosting provider may process ordinary network security information such as an IP address for delivery, abuse prevention, and logs.

4. Why we use this information

  • Provide Premium and individually purchased scenes.
  • Restore purchases and keep entitlements accurate.
  • Prevent fraud, duplicate events, and abusive access attempts.
  • Handle cancellations, refunds, expirations, and store notices.
  • Answer support and privacy requests.
  • Meet legal, accounting, security, and store obligations.

5. Service providers and international processing

Vistill uses Apple App Store / StoreKit, Google Play Billing, RevenueCat, Render, and Supabase. These providers process limited information on our behalf or under their own terms and may process it in countries other than your own. We do not sell personal data, show third-party ads, or use purchase information to track you across other companies’ apps and websites for advertising.

6. Retention and security

Device preferences remain until you reset the app, clear its data, or uninstall it. Support messages are kept only as long as reasonably needed to resolve the request, maintain a support history, and meet legal obligations. Purchase audit records are kept while needed to maintain entitlements and comply with refund, accounting, anti-fraud, security, and legal requirements, then deleted or de-identified where appropriate.

We use HTTPS, signed webhook verification, minimal access, private database schemas, identifier hashing, and other reasonable safeguards. No method of storage or transmission can be guaranteed completely secure.

7. Your choices and requests

Manage or cancel subscriptions in your App Store or Google Play account. Use “Restore purchases” inside Vistill to refresh eligible purchases on the same platform.

To request access, correction, or deletion of information controlled by Vistill, email support@vistill.app with the subject “Privacy request.” Because version 1.0 has no Vistill account, we may need limited store transaction information to locate the correct anonymous record. Some records may be retained or de-identified where required for legal, security, fraud-prevention, or transaction-integrity purposes.

8. Children

Vistill is not directed to children and does not knowingly request personal information from children. If you believe a child has sent information to support, contact us so we can review and delete it where appropriate.

9. Changes

We may update this policy when Vistill’s features, providers, or legal obligations change. The effective date at the top identifies the current version.

繁體中文

1. Vistill 的營運者

Vistill 由您下載 App 時,App Store 或 Google Play 商店頁面所列的開發者 營運(本政策中稱為「Vistill」或「我們」)。您可透過 support@vistill.app 聯絡我們。

2. 1.0 版不需要 Vistill 帳號

Vistill 1.0 不要求建立 Vistill 帳號。訂閱與單景購買會連結至購買時 使用的 App Store 或 Google Play 帳號。Apple 與 Google 依各自的隱私 政策處理付款資料;Vistill 不會取得您的完整信用卡號。

3. 我們處理的資訊

購買與權益資訊

為了銷售、驗證、恢復或撤銷數位購買,我們與服務供應商會處理商店、 商品 ID、購買與到期時間、權益狀態、交易或收據證明、匿名 RevenueCat App User ID,以及相關訂閱事件。

RevenueCat 負責驗證商店收據與維護購買紀錄。Vistill 的商務服務接收 RevenueCat 簽章事件,並在私有 Supabase 資料庫中保存最小化的稽核 紀錄;其中保留的客戶、別名及交易識別碼會以密碼學雜湊處理。

裝置上的偏好設定

目前場景、時段、聲音偏好、顯示計時、onboarding 狀態及類似設定, 通常只保存在您的裝置上;我們不會將這些設定作為分析資料接收。

客服通訊

當您寄信給客服時,我們會收到電子郵件地址、訊息、附件,以及您主動 提供的裝置或交易資訊。請不要寄送完整付款卡號或與問題無關的敏感資料。

Google Play 審查存取

Android 送審版本可能包含供 Google Play 審查人員使用的存取碼畫面。 輸入的代碼會經 HTTPS 傳送至 Vistill 商務服務,只用於驗證審查存取, 不會建立顧客購買或廣告檔案。主機供應商可能為傳輸、防濫用與安全記錄 處理 IP 位址等一般網路資訊。

4. 使用目的

  • 提供 Premium 與個別購買的場景。
  • 恢復購買並維持權益正確。
  • 防止詐欺、重複事件與濫用存取。
  • 處理取消、退款、到期與商店通知。
  • 回覆客服與隱私權利申請。
  • 履行法律、會計、安全與商店義務。

5. 服務供應商與跨境處理

Vistill 使用 Apple App Store/StoreKit、Google Play Billing、 RevenueCat、Render 與 Supabase。這些服務可能代表我們或依各自條款, 在您所在地以外的國家處理有限資訊。我們不出售個人資料、不顯示第三方 廣告,也不使用購買資訊跨其他公司的 App 或網站進行廣告追蹤。

6. 保存與安全

裝置偏好會保存至您重設 App、清除資料或解除安裝為止。客服訊息只在 解決問題、維持合理客服紀錄及履行法律義務所需期間保存。購買稽核紀錄 會在維持權益及履行退款、會計、防詐、安全與法律要求所需期間保存, 之後依情況刪除或去識別化。

我們採用 HTTPS、簽章 webhook 驗證、最小權限、私有資料庫 schema、 識別碼雜湊及其他合理防護措施;但任何儲存或傳輸方式都無法保證絕對安全。

7. 您的選擇與申請

您可在 App Store 或 Google Play 帳號管理或取消訂閱,並可在 Vistill 內使用「Restore purchases」更新同平台符合資格的購買。

如需申請存取、更正或刪除由 Vistill 控制的資訊,請以「Privacy request」為主旨寄信至 support@vistill.app。由於 1.0 沒有 Vistill 帳號,我們可能需要有限的商店交易資訊,才能 找到正確的匿名紀錄。基於法律、安全、防詐或交易完整性要求,部分紀錄 可能需要保留或去識別化。

8. 兒童

Vistill 並非為兒童設計,也不會明知而要求兒童提供個人資訊。若您認為 兒童已將資訊寄給客服,請聯絡我們,以便視情況檢視並刪除。

9. 政策更新

當 Vistill 功能、服務供應商或法律義務變更時,我們可能更新本政策。 頁面頂端的生效日期代表目前版本。