隐私政策
最后更新:2026 年 9 月 27 日
本政策说明日理万机在提供账户、OAuth、电脑绑定、远程任务和诊断服务时如何处理数据。日理万机只控制你本人拥有或明确获准管理的电脑。
1. 我们处理的数据
- 账户数据:邮箱、显示名称、密码哈希、登录与安全状态。
- OAuth 与连接数据:AI 客户端名称、授权范围、令牌及授权记录、连接时间和最后活动时间。
- 电脑数据:设备名称或备注、设备标识、客户端版本、在线状态、最近心跳、IP 地址及粗略网络位置。
- 任务与诊断数据:你明确要求执行远程操作时,服务会处理完成该操作所必要的工具参数、文件路径或内容、Shell 命令、结果、状态和错误。任务结果与必要审计记录可能按服务需要保留。
- AI 动作状态:为判断 AI 是否仍在工作及定位系统故障,云端仅临时缓存最近 20 条脱敏动作状态。默认不保存命令正文、文件路径正文、文件内容、Token、截图、键盘输入或 AI 对话正文。
- 详细日志偏好:详细日志默认关闭。开启后,动作状态可附带参数字段名、参数类型、字符串长度和集合数量等诊断元数据,但仍不保存上述敏感正文。
- 偏好与通知数据:语言、隐私开关、通知设置以及邮件告警所需的信息。
2. 使用目的
我们使用这些数据来认证账户和设备、完成 OAuth 授权、把命令安全地下发到指定电脑、返回任务结果、显示文字进度、诊断连接故障、防止重复执行和滥用,以及发送你启用的服务通知。
3. 共享对象
我们不会出售个人数据。为提供服务,数据可能由 Cloudflare 等基础设施服务商处理;你选择连接的 AI 平台会收到完成请求所必要的工具结果;启用邮件通知时,邮件服务商会处理收件地址和邮件内容。除提供服务、遵守法律或保护账户安全所必需外,我们不会向其他第三方披露。
4. 存储与保留
授权码的可用期为 5 分钟,访问令牌为 1 小时,刷新令牌最长为 30 天。账户、设备、任务和审计记录通常在账户有效期间保留,并可为安全调查、故障诊断、争议处理和法律义务继续保留必要时间。过期凭据不再可用于访问,但相关安全记录可能保留到系统清理或法定保留期结束。
电脑上的完整本地文件默认留在电脑上;只有在你明确要求读取、写入、搜索或执行相关操作时,必要内容才会通过服务传输并可能出现在任务记录或结果中。
5. 你的选择
- AI 获取电脑列表、账户配置和连接诊断时,公网 IP 默认隐藏;你可以在安全设置中主动开启“允许 AI 查看公网 IP”。
- 你可以自行开启或关闭详细日志。关闭时,云端动作缓存中的详细诊断元数据会被清除。
- 你可以撤销 AI 连接、解绑电脑、停用桌面客户端或关闭通知。
- 你可以要求查询、更正或删除账户相关数据。某些记录可能因安全、争议或法律义务无法立即删除。
- 如需处理隐私请求,请联系 admin@riliwanji.app。
6. 安全与跨境处理
我们将 AI OAuth 身份与设备令牌分离,使用加密传输、令牌哈希、命令幂等和审计记录降低风险。互联网服务无法保证绝对安全。基础设施可能在你所在国家或地区以外处理数据。
7. 政策更新
如果数据处理方式发生重要变化,我们会更新本页面和“最后更新”日期。
Privacy Policy
Last updated: September 27, 2026
This policy explains how 日理万机 processes data to provide accounts, OAuth authorization, computer pairing, remote tasks, and diagnostics. Use the service only with computers you own or are explicitly authorized to manage.
1. Data we process
- Account data: email address, display name, password hash, and sign-in or security status.
- OAuth and connection data: AI client name, granted scopes, tokens and authorization records, connection times, and last activity.
- Computer data: device name or remark, device identifier, client version, online status, recent heartbeat, IP address, and approximate network location.
- Task and diagnostic data: when you explicitly request a remote operation, the service processes the tool parameters, file paths or content, shell commands, results, status, and errors necessary to complete it. Task results and necessary audit records may be retained as required by the service.
- AI action state: to determine whether an AI is still working and diagnose system faults, the cloud temporarily caches only the latest 20 redacted action states. By default, these do not contain command text, file-path text, file contents, tokens, screenshots, keyboard input, or AI conversation text.
- Detailed logging preference: detailed logging is off by default. When enabled, action states may include diagnostic metadata such as parameter names, parameter types, string lengths, and collection sizes, while the sensitive content above remains excluded.
- Preferences and notifications: language, privacy controls, notification settings, and information required for enabled email alerts.
2. Why we use data
We use data to authenticate accounts and devices, complete OAuth authorization, route commands to the selected computer, return results, show text-only progress, diagnose failures, prevent duplicate execution and abuse, and send enabled service notifications.
3. Sharing
We do not sell personal data. Cloudflare and other infrastructure providers may process data to operate the service. The AI platform you connect receives tool results needed to fulfill your request. Email providers process the recipient address and message content when alerts are enabled. We otherwise disclose data only when required to provide the service, comply with law, or protect account security.
4. Retention
Authorization codes are usable for 5 minutes, access tokens for 1 hour, and refresh tokens for up to 30 days. Account, device, task, and audit records are generally retained while the account is active and as needed for security, diagnostics, disputes, and legal obligations. Expired credentials cannot be used for access, although related security records may remain until cleanup or the applicable retention period ends.
Complete local files remain on your computer by default. Necessary content is transmitted only when you explicitly request a related read, write, search, or execution operation, and it may appear in task records or results.
5. Your controls
Public IP addresses are hidden by default when an AI requests the computer list, account configuration, or connection diagnostics. You may explicitly enable AI access to public IP information in Security Settings. Detailed logging is also optional and off by default; disabling it clears detailed diagnostic metadata from the cloud action cache. You can revoke AI connections, unbind computers, disable the desktop client, or turn off notifications. To request access, correction, or deletion, contact admin@riliwanji.app. Some records may need to be retained for security, disputes, or legal obligations.
6. Security and international processing
We separate AI OAuth identity from device tokens and use encrypted transport, token hashing, command idempotency, and audit records. No internet service can guarantee absolute security. Infrastructure may process data outside your country or region.
7. Changes
Material changes will be reflected on this page and in the “Last updated” date.