Vanzi Cam Privacy Policy

Revision: 2026-07-30-001

Effective date: 2026-07-30 (China Standard Time, UTC+08:00)
Developer/Controller: Qinghua Wang
Contact: xuhuan2026@foxmail.com

This policy explains how Vanzi Cam (“Vanzi”) handles information when you use its on-device camera and editing tools, purchases, and cloud AI features.

1. Information We Process

  • Purchase and service information: necessary Apple transaction identifiers, purchase-wallet association identifiers, subscription/trial/lifetime entitlements, AI top-ups, credit settlement records, and an internal service identifier. These support entitlements, purchase restoration, fraud prevention, and audits; they are not a public account.
  • Cloud AI content: input images used for sample-reference generation, sample import/re-analysis, and viewpoint reconstruction; uncut grids, individual samples, raw provider outputs, and final outputs; prompts, raw model text, parsed JSON, validated results, validation errors, model/configuration information, timing, and related diagnostics.
  • Device and operational information: request IDs, error types, and necessary app/system version data. Runtime logs are designed not to contain prompts, model content, image content, signed URLs, secrets, or credentials.
  • Feedback: text, optional contact email, device information, and attachments you choose to submit.
  • Filter sharing: when you explicitly create a share, Vanzi uploads the .vfilter package and an original/effect comparison preview rendered from a built-in standard image. The package may contain the filter recipe and embedded LUT or reference image. These private objects are kept until the duration you select expires or you stop sharing, then deleted; a photo you choose only for the share poster stays on-device and is not uploaded as the management preview.

Ordinary capture, editing, filters, AI composition, and AI cropping mainly run on-device. Your system photo library is not automatically uploaded by those on-device features.

2. How We Use Information

We use this information to provide AI generation and analysis, deliver the current result, manage purchases and credits, troubleshoot failures, secure the service, resolve disputes, and analyze feature quality. AI diagnostic archives are not used to train our models or third-party models and are not used for advertising or cross-app/website tracking.

3. AI Diagnostic Archives and Storage

Cloud AI images are stored in a private Tencent Cloud COS bucket, and structured records are stored in PostgreSQL. Formal archives are retained indefinitely by default until you request deletion or an administrator manually deletes them. They are separate from short-lived runtime logs and are not a user-facing cloud library, cross-device sync service, or long-term download service.

The client can normally download generated results through a short-lived authorized link for about 900 seconds. Expiry stops later client downloads but does not delete the diagnostic archive. Signed URLs are not stored in the database, and images are not exposed through permanent public links.

To support disaster recovery, the production PostgreSQL business database is automatically backed up once a day to a separate, access-restricted private COS bucket. The most recent 30 successful daily backups are normally retained (approximately 30 days); a backup created immediately before a database schema migration is normally retained for 30 days. Closed production runtime log files are retained locally for up to 14 days and in the private archive for 30 days. Administrative audit records are normally retained in PostgreSQL for 365 days and are included in database backups. Staging data and logs are not placed in this production archive.

4. Third-Party Processing

To perform necessary image analysis or generation, a third-party AI provider may read required images through a private, short-lived COS URL issued for that specific call and return model results. We transmit only information needed for the feature; the provider's subsequent processing is governed by its terms and data policies. Apple processes IAP payments, and we do not receive full payment-card details. We do not sell personal information.

5. System Permissions

Camera access supports capture; microphone access is used only for Live Photos with sound; photo-library access supports selecting and saving images; location-while-in-use can add a place to a photo; motion and fitness support device-orientation guidance. You can manage permissions in system settings.

6. Retention, Deletion, and Your Choices

On-device photos and the local sample library remain under device and system control. AI diagnostic archives are retained indefinitely by default. You may request access, a copy, correction, deletion, or withdrawal of consent by email and provide the service identifier shown in the app for verification; withdrawal does not affect prior lawful processing. After verification, we will delete related AI inputs, outputs, prompts, model responses, and diagnostic results. Minimal transaction or billing tombstones required by law, fraud prevention, or settlement may remain. Deletion does not remove copies you saved to Photos, Files, or iCloud.

If service data is restored from an earlier disaster-recovery backup, verified deletion requests received after that backup are re-applied before the restored production service resumes. A restricted backup copy may therefore persist until its normal rotation expires, unless law requires otherwise.

7. Security and Children

We use private storage, short-lived authorization, transport protection, access controls, least privilege, and administrative auditing, but no online transmission or storage is absolutely secure. The service is not directed to children below the age required by applicable law. A guardian who believes a child's information was collected may contact us.

8. Policy Updates

For material changes, we publish a new version and use Vanzi's existing agreement-consent flow to obtain explicit agreement before continued use of affected services.

9. Contact and Governing Law

For privacy questions or requests, contact xuhuan2026@foxmail.com. This policy is governed by the laws of the People's Republic of China.