Effective date: 24 June 2026 · Last updated: 20 July 2026
Quick summary. Talk with Mozart supports either a Free Key provided through
the App or your own Google Gemini API key, and requires no account.
It captures microphone audio only while a session is live and streams it directly to Google Gemini
using the key configured in the App. Transcripts,
history, glossary, reference context and TXT files you actively choose are stored or processed
on your iPhone or iPad and are not sent to any server we operate for user-data storage. When
you use features that require Google Gemini processing, the relevant audio, translated content,
summary content, glossary entries, referenced history excerpts, text hints or TXT file content
you choose may be sent directly to Google Gemini using the configured Free Key or your own API key.
We do not track you in the App Tracking Transparency sense, and we do not
request the IDFA.
1. Who we are
Talk with Mozart (the “App”) is published by furuCRM.
The App is a real-time speech translator that captures microphone audio, sends it to Google Gemini
Live API for translation, and displays the result back to you.
This policy describes what Talk with Mozart handles and how. By installing and using the App
you agree to this policy. The App does not require you to create an account. We do not operate
a backend that stores your audio, transcripts, translations, glossary, translation history,
reference context, selected TXT files or generated blog content. The App connects to our endpoints
for configuration, Free Key allocation and user-initiated AI content reports.
Data is only sent to Google Gemini after a Free Key or your own API key has been configured, you have
granted the necessary permissions and used the relevant feature — for example starting a translation
session, generating a summary, applying a glossary, selecting reference context or generating
blog content.
The only exception: if you actively tap the Report button on an AI-generated draft (see §3.13), a short
excerpt and your selected reason are sent to our
furuCRM support endpoint as an in-app flagging mechanism for AI-generated content, aligned
with Apple App Review Guidelines and content-safety best practices. This is a mechanism you
trigger yourself — nothing is sent automatically.
3. Data we handle, and how
3.1 Audio (microphone)
Captured only while a session is active. Capture stops the moment you tap End,
leave the screen, lose audio focus, or revoke the microphone permission in iOS Settings.
After you grant the microphone permission and actively start a translation session, audio
is streamed over a TLS-encrypted WebSocket to Google Gemini Live API under
your API key. We do not relay, log, or persist this audio on any server we operate.
Audio is never written to disk and is gated out while the App's text-to-speech is speaking,
to prevent echo loops.
3.2 Transcripts and translations
Stored on-device in Hive (transcripts box) plus a SQLite database
live_translate_history.db in the App's sandboxed Documents directory.
The App does not implement its own cloud synchronization. App-container data may be included
in an iOS device backup depending on your backup settings. Content selected in the iOS Share
sheet is handed to the destination you choose.
If you generate a summary, that session's text is sent using the key configured in the App to
Google Gemini (Flash model) to produce the summary. If you actively select a history excerpt,
transcript, translation or reference context to support translation or new content generation,
the selected content may be included in a prompt or system instruction sent to Google Gemini
using the key configured in the App. We do not send that content to any user-data storage server
we operate.
3.3 Glossary entries
Stored in the same on-device SQLite database. When importing CSV or selecting a TXT context
file, the App reads only the single file you select through the iOS document picker. We do
not request access to your full Photos library or all files.
When a glossary or user-selected reference context is configured, relevant entries may be
sent to Google Gemini using the key configured in the App — as part of the session's system
instruction, prompt, glossary “rewrite” pass, or context-based content generation.
Beyond Google Gemini for this feature's processing, we do not send your glossary to any other
third party.
3.4 Gemini API keys (Free Key and your own API key)
Stored via flutter_secure_storage in the iOS Keychain
(accessibility first_unlock_this_device — available only on this device after
the first unlock).
Your own API key: a key you enter is sent only in TLS requests directly to Google's API; we do not receive it.
Free Key: when you tap Try free, the App sends its app name,
platform and app version to our Free Key endpoint. Our Salesforce key pool returns a Gemini key
and allocation-record ID, which the App stores in Keychain. We manage the allocation record but
do not receive meeting content. Translation sessions using the Free Key are limited to five minutes each.
3.5 Sharing (iOS Share sheet)
Sharing a summary or translations happens through the standard iOS Share sheet
(share_plus) after you choose which sections to include. You pick the destination
each time; no server of ours is involved.
3.6 Peer-to-peer sharing — MultipeerConnectivity
On iOS, the Peer feature uses Apple's native MultipeerConnectivity
framework to discover nearby devices over Bluetooth and the local Wi-Fi network
(Bonjour service type _live-translate._tcp / _udp).
The only data sent over a peer connection is the live captions (original transcript) and
their translations you choose to share, plus control signals marking when a session starts
and ends, and your display name. No server is involved and we do not see this traffic.
Host / Viewer mode: one host device (with mic + Gemini access) can
broadcast captions and translations to nearby viewer devices. Viewer devices
do not need a Gemini API key. The user must explicitly pick "host" or
"viewer" at pairing time. Hosts advertise with a HOST:: name prefix and only
accept viewers they invite; viewers only request connections from HOST::
endpoints. No server is involved.
Display name: a user-set display name (up to 32 characters) configured
in Settings is shown to peers during pairing. If unset, the OS device name
(UIDevice.current.name) is used. The display name is stored only inside the
app sandbox (Hive box settings) and is never sent to our servers.
3.7 Analytics (Firebase Analytics)
Event names are not tied to a user account, for example app_opened,
screen_view, translate_session_started,
translate_session_ended, summary_generated, tts_toggled,
share_triggered, ui_language_changed, error_observed.
Firebase automatically attaches an app-instance ID, device model, iOS version, language and
country (from IP, approximate).
Per our configuration, Firebase Analytics does not use the IDFA and is not used to track
you across other companies' apps or websites within the meaning of Apple's App Tracking
Transparency.
3.8 Advertising (Google AdMob)
Only when a remote killswitch enables ads, the App shows AdMob native ads on Home, History,
and Summary, and an occasional interstitial after a session ends. Ads are never shown during
a live session.
Per our configuration, AdMob does not request the IDFA. We do not present an ATT prompt
because we do not use App data to track you across other companies' apps or websites.
Conversion attribution uses SKAdNetwork where applicable.
3.9 Ad attribution (Meta App Events SDK)
Solely to measure the performance of Meta advertising campaigns, the App sends a small
number of custom events (prefixed mwz_*) to the Meta App Events SDK.
Examples: mwz_onboarding_start, mwz_translation_session_start,
mwz_translation_session_60s, mwz_summary_generated,
mwz_action_items_generated, mwz_glossary_imported,
mwz_share_sent, mwz_api_key_saved.
Each event carries the event name, platform (iOS / Android), app version, and
coarse bucketed values (e.g. duration_bucket,
count_bucket, target_language_code) only.
Audio, transcripts, translations, summary text, glossary contents, your Gemini API
key, webhook URLs, and any personally identifying information are never included.
The current configuration runs with AdvertiserTrackingEnabled = false
and does not present the Apple App Tracking Transparency prompt. IDFA is not collected, and
Meta processes events in aggregate mode not linked to your identifier. If we enable ATT in a
future release, we will update this policy first and request your permission through the
standard iOS ATT dialog.
Solely to measure the performance of TikTok advertising campaigns, the App sends the
same custom events (mwz_* prefix) that it sends to the
Meta App Events SDK in parallel to the TikTok Business SDK. Event content and bucketing
rules are identical to §3.9. Audio, transcripts, translations, summary text,
glossary contents, your Gemini API key, webhook URLs, and any personally identifying
information are never included.
The TikTok Business SDK only activates when a TikTok App ID
issued by TikTok Events Manager is delivered via our remote configuration endpoint.
Because TikTok issues the App ID only after the app is live on the App Store, pre-launch
builds and builds where the ID is not yet configured always run in dormant mode
(no event delivery).
The current configuration does not present the Apple App Tracking Transparency
prompt and does not collect IDFA. TikTok processes events in aggregate mode not
linked to your identifier. If we enable ATT in a future release, we will update this
policy first.
On launch, the App fetches feature flags, frequency caps and ad-unit IDs from our
configuration endpoint via HTTPS GET. The request does not include audio, transcripts,
translations, glossary, translation history, your Gemini API key or any user-account
information. As with any HTTPS connection, the endpoint or network infrastructure may
receive standard technical information such as your IP address, but we do not use this
information to identify you or to join it with translation content.
3.12 TXT files, reference context and AI blog generation
Some features may let you enter text hints, select history excerpts, choose reference
context or attach a TXT file to help generate content, such as drafting a blog post or
improving translation quality.
When you tap the Write blog button on the summary screen, the session's
summary text + transcript are sent over HTTPS to Google Gemini (2.5 Flash model) under
the key configured in the App to draft a blog post. Anything you type in the optional
"Hint for the AI" field, and any TXT file content you selected, may be sent along too so
the model can adapt the tone, angle and background context.
When you actively select a TXT file through the iOS document picker, the App reads only
the file you selected. The TXT content may be used as context and sent to Google Gemini
using the key configured in the App together with the relevant prompt or content-generation
request.
The App does not automatically scan folders, does not access your full device storage,
does not store TXT file paths, does not keep a long-term SQLite/Hive copy of TXT content
after the operation completes, and does not send TXT files or their content to any
user-data storage server we operate, unless you actively save or share that content through
an App feature.
The draft is persisted on the device in the same SQLite database (the blog_draft
column of the meetings table) so re-opening the editor does NOT re-call Gemini —
this saves your API tokens. The App does not implement its own cloud sync for drafts, but they
may be included in an iOS device backup depending on your backup settings.
While you edit the draft, changes are auto-saved to local SQLite roughly 1 second after
your last keystroke. Persistence stays entirely on the device.
3.13 AI content reports
Aligned with Apple App Review Guidelines and content-safety best
practices for AI-generated content, the App provides a Report button on the
Blog editor so users can flag offensive output. When you actively tap it, the App
sends via HTTPS POST to our furuCRM support endpoint the following:
An excerpt of up to 190 characters of the AI content being reported
App name, version, target language, AI provider ("Google Gemini")
The request does NOT include: the full AI content, your Gemini API key, any account
information, contacts, location, or other translation content. Any field without data is
sent as the literal string "N/A".
Purpose: to align with Apple App Review Guidelines on user-flagging mechanisms for
AI-generated content, and to improve content safety by reviewing reports and tuning
prompts/filters.
Retention: reports are kept for up to 90 days in our furuCRM support system, after which
they are deleted. Reports are not shared with third parties outside the internal content
review system.
4. Mapping to the App Privacy Nutrition Label
Apple requires disclosure on the App Store product page. Our declarations map to the categories below.
Apple category
Collected?
Linked to user?
Used for tracking?
Purpose
User Content → Audio Data
Yes (audio is sent directly to Google Gemini using the configured Free Key or your own API key; we do not store audio on any server we operate)
No
No
App Functionality
User Content → Other User Content (transcripts, translations, glossary, summary content, text hints, referenced history, reference context and selected TXT content)
Yes (some content may be sent to Google Gemini when you use translation, summary, glossary, reference-context or blog-generation features; the remaining data is stored or processed on the device)
Diagnostics → Performance Data / Other Diagnostic Data
May be collected by Firebase, AdMob and Meta App Events for SDK operation, ad delivery, error diagnostics and performance measurement. We do not use a dedicated crash-reporting SDK.
Yes (only when you tap Report: a short AI-content excerpt, reason, optional notes and app version are sent)
Not linked
No
App Functionality
Photos or Videos
Yes (stored on-device for meeting-history functionality and not sent to us or third-party servers)
Not linked
No
App Functionality
Contact Info, Health, Financial, Browsing/Search History, Sensitive Info
No
—
No
—
5. App Tracking Transparency (ATT)
Per Apple's definition, "tracking" means linking user/device data collected from our app to
user/device data collected from other companies' apps or websites for targeted advertising or
data brokerage.
Talk with Mozart does not request the IDFA and does not share data with data
brokers. Under our current configuration we do not use Firebase Analytics or
Google AdMob, or Meta App Events to track you across other companies' apps or websites within
the meaning of Apple's App Tracking Transparency. Meta App Events is configured with
advertiser tracking disabled, does not collect the IDFA, and is not used for personalized
retargeting or cross-app/cross-site tracking. If in future we enable a feature that could be
considered tracking, we will request ATT permission before doing so.
6. Third-party services
Service
What it receives
Their policy
Google Gemini API (Live + Flash)
Microphone audio, glossary, system prompt, text to translate or summarize, referenced history, reference context, text hints, selected TXT file content, blog-generation requests and generated text. Sent directly to Google Gemini using the configured Free Key or your own API key after you use the relevant feature.
Event names not associated with an in-app account and containing no meeting content, plus app-instance ID, device model, iOS version and country (from IP).
Aggregate campaign-measurement events such as onboarding start, API-key screen view, translation session start, summary generated and share sent, plus platform and app version. We do not send audio, transcripts, translation text, Gemini API keys, glossary terms, webhook URLs or contact information. IDFA is not requested.
When a TikTok App ID is configured, TikTok may receive aggregate campaign events and SDK/network technical information. We do not send audio, transcripts, translation text, Gemini API keys or glossary terms.
Config (always fetched on launch): only a static app-identifier query + standard HTTPS technical info (IP). Does not receive audio/transcripts/translations/glossary/history/Gemini key/account info. Free Key (when you tap Try free): receives app name, platform and app version, and returns a Gemini key plus allocation ID. It does not receive meeting content. AI content reports (only when you tap Report): receives ≤190-char excerpt + reason + notes + app version. See §3.13.
Covered by this policy.
iOS Share sheet (optional, user-initiated)
Only the text you choose to share; you pick the destination.
Your chosen destination's terms.
7. Advertising
Native ads on Home, History, and Summary; interstitials
only after a translation session has ended. No banners, no app-open ads, no ads during live capture.
We do not operate a consent-management platform. Because we do not request the IDFA and do
not use App data for tracking within the meaning of ATT, ads are configured for a non-tracking
posture. Depending on your region, ads may be served as non-personalized ads or limited ads
according to Google AdMob's configuration and applicable law, and additional consent choices
may be requested where required. You can limit ad personalization
in iOS Settings → Privacy & Security → Apple Advertising / Tracking.
Children. The App is not directed to children and is not intended to serve ads to minors.
8. iOS permissions
Info.plist key
Purpose
NSMicrophoneUsageDescription
Capture the microphone for real-time translation.
NSCameraUsageDescription
Let you capture slides or meeting materials during a live session and save them to meeting history.
NSPhotoLibraryUsageDescription
Let you attach an existing photo to meeting history, or select a file through the document picker when iOS routes that source through Photos.
NSBluetoothAlwaysUsageDescription
Discover nearby devices for MultipeerConnectivity peer sharing.
Browse and advertise the _live-translate._tcp/_udp Bonjour service for peer pairing on the local Wi-Fi network.
The App does not request the following sensitive permissions:
Contacts, Calendar, Reminders, Health, HomeKit, Motion, Location, Speech Recognition, or
Tracking (ATT). (Speech recognition is done remotely by Gemini, not by Apple's on-device
SFSpeechRecognizer. Glossary CSV import and TXT context import read only the single file you select
via the document picker.)
Camera (NSCameraUsageDescription): the App accesses the camera
only when you tap the camera icon inside a live translation session to capture a
slide from an ongoing presentation. Captured images are saved to app-scoped storage on your
device (photos/<meetingId>/) and attached to that meeting's history entry.
Captured photos are never uploaded to our servers, Google Gemini, Firebase, AdMob,
or Meta, and are never shared with any third party. You can delete individual photos or an entire meeting
at any time from the History screen; uninstalling the App removes every photo from the
device.
Photo Library (NSPhotoLibraryUsageDescription): the App does
not automatically open, scan or upload your Photo Library. If you actively pick the
“Photos” source inside the iOS document picker to import a glossary or TXT context
file, or if you long-press the camera icon during a live session to attach an existing
photo to the current meeting, iOS may show the corresponding permission dialog. The App
only processes the file you select and does not access your full Photo Library. Only if you
actively share through the iOS Share sheet is the selected content handed to the destination
you choose.
9. Data retention and deletion
On-device data is kept until you delete it inside the App or uninstall.
The App does not implement its own cloud-sync service, but app-container data may be included
in an iOS device backup depending on your backup settings. Keychain items are managed by iOS
and may remain after uninstall; clear the key in the App first when needed.
There is no account. Uninstalling removes app-container data. We do not store
meeting content, but Free Key allocation records, AI content reports and standard server access
logs may remain for the periods necessary for their stated purposes.
Firebase Analytics data is retained for the default 14-month period, then
automatically purged.
AdMob follows Google's retention policies.
Meta App Events data follows Meta's retention policies and data controls.
We do not use Meta App Events data to store audio, transcripts, translations, glossary terms,
Gemini API keys, selected TXT content, or directly identifying personal information.
TikTok Business Events follows TikTok's retention policies and data controls.
AI content reports are retained for up to 90 days.
Free Key allocation records are retained as needed for key-pool operation,
abuse prevention and support. Contact us regarding deletion.
Google Gemini retention follows the Google terms applicable to your Google
account when using your own API key, or to the Google project behind the Free Key we provide.
10. Your rights (GDPR, CCPA)
Consent to AI data sharing — on first launch, an in-app onboarding
screen explicitly discloses what data is sent to Google Gemini, who receives it, and for what
purpose. Translation features are locked until you tap the “I Agree” button.
This consent is captured in-app and is separate from this Privacy Policy.
Withdraw AI consent — Settings → “AI Data Sharing”
→ “Revoke consent” revokes consent in one tap. Revocation also clears your
Gemini API key from the device — without a key, no data can be sent to Gemini.
Alternatively, Settings → API Key → Clear has the same effect (clearing the key
automatically revokes AI consent).
Access — meeting content is primarily on your device and viewable via History, Glossary
and Settings. Contact us regarding analytics, advertising, Free Key allocation or AI-report data
within our control.
Delete — remove individual sessions and glossary entries, or all data
(iOS Settings → General → iPhone Storage → Talk with Mozart → Delete App).
Opt out of analytics — currently, uninstalling the App stops future analytics events.
We may add an in-app analytics control in Settings in a future version.
Limit ad personalization via iOS Settings → Privacy & Security.
EEA/UK residents may file a complaint with their Data Protection Authority.
California residents retain rights to know, delete, correct, opt out of sale
or sharing, and non-discrimination under CCPA/CPRA. We do not sell personal information.
Transfers to advertising and attribution providers are described in Sections 3 and 6.
Exercise applicable opt-out rights through iOS or provider controls, or contact us.
11. Children's privacy
Talk with Mozart is not directed to children and is not designed specifically for children under
13 or the minimum age required by applicable law in your region. We do not knowingly collect
personal data from children. If you believe a child has provided personal data to the App,
please contact us so we can help address or delete data within our control.
12. Security
All network requests use HTTPS / TLS 1.2 or higher. NSAllowsArbitraryLoads is not enabled.
Your Gemini API key is stored in the iOS Keychain through flutter_secure_storage.
Transcripts and history live in the App's sandboxed container, isolated from other apps by iOS.
We do not operate a backend that centrally stores users' audio, transcripts, translations,
glossary, translation history, reference context, selected TXT files, generated blog content
or Gemini API key, so there is no central database holding
such content on our side.
13. International data transfers
Data may be processed by Google LLC and its sub-processors, including in the United States.
Google relies on Standard Contractual Clauses and the EU–US Data Privacy Framework where applicable.
14. Policy changes and contact information
We may update this Policy when we add new features or when applicable law changes. We will
notify you of material changes through an in-app notice or on the Apple App Store product page.
If you have any privacy-related questions or concerns, please contact our development team at:
Ngày hiệu lực: 24/06/2026 · Cập nhật lần cuối: 20/07/2026
Tóm tắt nhanh. Talk with Mozart hỗ trợ Free Key do Ứng dụng cung cấp hoặc
Google Gemini API key của riêng bạn, và không yêu cầu tài khoản.
Ứng dụng chỉ ghi mic khi phiên đang chạy và truyền âm thanh trực tiếp đến Google Gemini bằng key đã cấu hình. Bản ghi, lịch sử,
từ điển, ngữ cảnh tham chiếu và các tệp TXT bạn chủ động chọn được lưu hoặc xử lý trên
iPhone/iPad của bạn và không được gửi tới máy chủ lưu trữ dữ liệu người dùng của chúng tôi.
Khi bạn sử dụng các tính năng cần xử lý bởi Google Gemini, âm thanh, nội dung phiên dịch,
nội dung tóm tắt, từ điển, đoạn lịch sử tham chiếu, gợi ý văn bản hoặc nội dung tệp TXT bạn
chọn có thể được gửi trực tiếp tới Google Gemini bằng Free Key hoặc API key của riêng bạn đã cấu hình.
Chúng tôi không theo dõi bạn theo nghĩa App Tracking Transparency và không yêu cầu IDFA.
1. Chúng tôi là ai
Talk with Mozart (“Ứng dụng”) được phát hành bởi furuCRM.
Ứng dụng là trình dịch giọng nói thời gian thực: ghi âm thanh từ mic, gửi đến Google Gemini Live API
để dịch và hiển thị kết quả.
Chính sách này mô tả những gì Talk with Mozart xử lý và cách thức. Khi cài đặt và sử dụng
Ứng dụng, bạn đồng ý với chính sách này. Ứng dụng không yêu cầu tạo tài khoản. Chúng tôi không
vận hành backend để lưu trữ âm thanh, bản ghi, bản dịch, từ điển, lịch sử dịch, ngữ cảnh tham chiếu,
tệp TXT bạn chọn hoặc nội dung tạo blog. Ứng dụng kết nối tới endpoint của chúng tôi để lấy cấu hình,
cấp Free Key và nhận báo cáo nội dung AI do người dùng chủ động gửi.
Dữ liệu chỉ được gửi tới Google Gemini sau khi Free Key hoặc API key của riêng bạn đã được cấu hình, bạn cấp quyền
cần thiết và sử dụng tính năng tương ứng, chẳng hạn bắt đầu phiên dịch, tạo tóm tắt, áp dụng
từ điển, chọn ngữ cảnh tham chiếu hoặc tạo nội dung blog.
Ngoại lệ duy nhất: nếu bạn chủ động bấm nút Báo cáo trên một bản nháp do AI sinh ra (xem §3.13), một trích
đoạn ngắn cùng lý do bạn chọn sẽ được gửi tới endpoint
hỗ trợ furuCRM như một cơ chế in-app flagging cho nội dung AI, phù hợp với Apple App Review
Guidelines và best practices về content safety. Đây là cơ chế bạn chủ động trigger, không tự động.
3. Dữ liệu chúng tôi xử lý, và bằng cách nào
3.1 Âm thanh (mic)
Chỉ ghi khi phiên đang hoạt động. Việc ghi dừng ngay khi bạn chạm Kết thúc, rời
màn hình, mất audio focus, hoặc thu hồi quyền mic trong Cài đặt iOS.
Sau khi bạn cấp quyền mic và chủ động bắt đầu phiên dịch, âm thanh được truyền qua WebSocket
mã hóa TLS đến Google Gemini Live API bằng key đã cấu hình. Chúng
tôi không trung chuyển, ghi log hay lưu âm thanh trên bất kỳ máy chủ nào do chúng tôi vận hành.
Âm thanh không bao giờ ghi xuống đĩa và bị khóa khi TTS (đọc to) đang phát, để chống echo loop.
3.2 Bản ghi và bản dịch
Lưu trên thiết bị trong Hive (box transcripts) và SQLite database
live_translate_history.db trong thư mục Documents đã sandbox của Ứng dụng.
Ứng dụng không tự triển khai đồng bộ đám mây. Dữ liệu trong app container có thể nằm trong
bản sao lưu thiết bị iOS tùy cài đặt backup. Nội dung bạn chọn trong Share sheet được chuyển tới đích bạn chọn.
Khi bạn tạo tóm tắt, văn bản của phiên đó được gửi bằng key đã cấu hình tới Google
Gemini (mô hình Flash) để tạo bản tóm tắt. Nếu bạn chủ động chọn một đoạn lịch sử, bản ghi,
bản dịch hoặc ngữ cảnh tham chiếu để hỗ trợ phiên dịch hoặc tạo nội dung mới, nội dung bạn
chọn có thể được đưa vào prompt hoặc system instruction gửi tới Google Gemini bằng
key đã cấu hình. Chúng tôi không gửi các nội dung này tới máy chủ lưu trữ dữ liệu
người dùng của chúng tôi.
3.3 Từ điển
Lưu trong cùng SQLite database trên thiết bị. Khi nhập từ CSV hoặc chọn tệp ngữ cảnh TXT,
ứng dụng chỉ đọc đúng tệp bạn chọn qua bộ chọn tài liệu (document picker) của iOS. Ứng dụng
không yêu cầu quyền truy cập toàn bộ Ảnh hay toàn bộ Tệp của bạn.
Khi có từ điển hoặc ngữ cảnh tham chiếu do bạn chọn, các mục liên quan có thể được gửi tới
Google Gemini bằng key đã cấu hình — như một phần system instruction, prompt của phiên,
bước “rewrite” áp dụng từ điển, hoặc bước tạo nội dung dựa trên ngữ cảnh. Ngoài
Google Gemini cho mục đích xử lý tính năng này, chúng tôi không gửi từ điển của bạn tới bên
thứ ba nào khác.
3.4 Gemini API key (Free Key và API key của riêng bạn)
Lưu qua flutter_secure_storage vào iOS Keychain
(accessibility first_unlock_this_device — chỉ khả dụng trên thiết bị này sau lần
mở khóa đầu tiên).
API key của riêng bạn: key bạn nhập chỉ được gửi trong yêu cầu TLS trực tiếp đến API của Google; chúng tôi không nhận key này.
Free Key: khi bạn bấm Dùng thử miễn phí, Ứng dụng gửi tên app,
nền tảng và phiên bản app tới Free Key endpoint. Salesforce key pool trả về Gemini key và ID
bản ghi cấp phát; Ứng dụng lưu cả hai trong Keychain. Chúng tôi quản lý bản ghi cấp phát nhưng
không nhận nội dung cuộc họp. Mỗi phiên dịch dùng Free Key được giới hạn năm phút.
3.5 Chia sẻ (Share sheet của iOS)
Việc chia sẻ tóm tắt hoặc bản dịch được thực hiện qua Share sheet chuẩn của iOS
(share_plus) sau khi bạn chọn các phần muốn đưa vào. Bạn chọn đích đến mỗi lần;
không có máy chủ nào của chúng tôi can dự.
3.6 Chia sẻ ngang hàng — MultipeerConnectivity
Trên iOS, tính năng Peer dùng framework MultipeerConnectivity (native)
của Apple để phát hiện thiết bị gần qua Bluetooth và Wi-Fi cục bộ
(Bonjour service type _live-translate._tcp / _udp).
Dữ liệu gửi qua kết nối peer chỉ gồm: phụ đề trực tiếp (bản gốc) và bản dịch bạn chọn chia sẻ,
cùng tín hiệu điều khiển đánh dấu lúc bắt đầu/kết thúc phiên, và tên hiển thị của bạn.
Không máy chủ nào can dự và chúng tôi không thấy lưu lượng này.
Chế độ Host / Viewer: một máy host (có mic + truy cập Gemini) có thể
broadcast phụ đề và bản dịch tới các máy viewer gần. Máy viewer
không cần Gemini API key. Người dùng phải chọn rõ vai trò "host" hoặc
"viewer" khi pair. Máy host advertise với tiền tố HOST:: trong tên peer
và chỉ chấp nhận các viewer được mời; máy viewer chỉ gửi yêu cầu kết nối tới các
endpoint có tiền tố HOST::. Không máy chủ nào can dự.
Tên hiển thị: tên hiển thị tùy chỉnh (tối đa 32 ký tự) trong Cài đặt
sẽ hiển thị cho các peer khi pair. Nếu chưa đặt, tên thiết bị OS
(UIDevice.current.name) được dùng làm mặc định. Tên hiển thị chỉ lưu trong
sandbox của ứng dụng (Hive box settings) và không gửi tới máy chủ của chúng tôi.
3.7 Phân tích (Firebase Analytics)
Tên sự kiện không gắn với tài khoản người dùng, ví dụ app_opened,
screen_view, translate_session_started,
translate_session_ended, summary_generated,
tts_toggled, share_triggered, ui_language_changed,
error_observed. Firebase tự gắn app-instance ID, model thiết bị, phiên bản iOS,
ngôn ngữ, quốc gia (từ IP, ước chừng).
Theo cấu hình của chúng tôi, Firebase Analytics không sử dụng IDFA và không được dùng để
theo dõi bạn xuyên các ứng dụng hoặc website của công ty khác theo định nghĩa App Tracking
Transparency của Apple.
3.8 Quảng cáo (Google AdMob)
Chỉ khi killswitch từ xa bật quảng cáo, Ứng dụng mới hiển thị AdMob native trên Home/Lịch sử/Tóm tắt
và thi thoảng interstitial sau khi kết thúc phiên. Không bao giờ hiển thị trong phiên live.
Theo cấu hình của chúng tôi, AdMob không yêu cầu IDFA. Chúng tôi không hiển thị ATT prompt
vì chúng tôi không sử dụng dữ liệu của Ứng dụng để theo dõi người dùng xuyên các ứng dụng
hoặc website của công ty khác. Quy gán chuyển đổi được thực hiện qua SKAdNetwork
khi áp dụng.
3.9 Attribution quảng cáo (Meta App Events SDK)
Chỉ nhằm mục đích đo hiệu quả chiến dịch quảng cáo Meta, Ứng dụng gửi một vài custom event
(prefix mwz_*) đến Meta App Events SDK. Ví dụ:
mwz_onboarding_start, mwz_translation_session_start,
mwz_translation_session_60s, mwz_summary_generated,
mwz_action_items_generated, mwz_glossary_imported,
mwz_share_sent, mwz_api_key_saved.
Mỗi event chỉ chứa tên event, platform (iOS / Android), phiên bản app và các
giá trị bucketed thô (VD: duration_bucket,
count_bucket, target_language_code).
Âm thanh, bản ghi, bản dịch, nội dung tóm tắt, nội dung từ điển, Gemini API key,
URL webhook và bất kỳ thông tin cá nhân nào đều KHÔNG được gửi kèm.
Cấu hình hiện tại chạy với AdvertiserTrackingEnabled = false và không
hiển thị ATT prompt của Apple. IDFA không được thu thập, Meta xử lý event ở chế độ tổng
hợp không liên kết với định danh của bạn. Nếu bật ATT ở bản phát hành sau, chúng tôi sẽ
cập nhật chính sách này trước và yêu cầu bạn đồng ý qua hộp thoại ATT tiêu chuẩn của iOS.
Chỉ nhằm mục đích đo hiệu quả chiến dịch quảng cáo TikTok, Ứng dụng gửi cùng
những custom event (prefix mwz_*) mà nó gửi đến Meta App Events SDK
song song sang TikTok Business SDK. Nội dung event và quy tắc bucketing giống hệt §3.9.
Âm thanh, bản ghi, bản dịch, nội dung tóm tắt, nội dung từ điển, Gemini API key,
URL webhook và bất kỳ thông tin cá nhân nào đều KHÔNG được gửi kèm.
TikTok Business SDK chỉ được kích hoạt khi TikTok App ID
do TikTok Events Manager cấp được phân phối qua endpoint cấu hình từ xa của chúng tôi.
Vì TikTok chỉ cấp App ID sau khi ứng dụng đã lên App Store, các bản build trước khi ra mắt
và các bản chưa được cấu hình ID luôn chạy ở chế độ ngủ (không gửi event).
Cấu hình hiện tại không hiển thị App Tracking Transparency prompt của Apple
và không thu thập IDFA. TikTok xử lý event ở chế độ tổng hợp không liên kết với định danh
của bạn. Nếu bật ATT ở bản phát hành sau, chúng tôi sẽ cập nhật chính sách này trước.
Khi khởi động, Ứng dụng lấy feature flag, giới hạn tần suất và ad-unit ID từ endpoint cấu hình
của chúng tôi qua HTTPS GET. Yêu cầu không bao gồm âm thanh, bản ghi, bản dịch, từ điển, lịch
sử dịch, Gemini API key hoặc thông tin tài khoản người dùng. Như mọi kết nối HTTPS thông
thường, endpoint hoặc hạ tầng mạng có thể nhận thông tin kỹ thuật tiêu chuẩn như địa chỉ IP,
nhưng chúng tôi không dùng thông tin này để định danh người dùng hoặc kết hợp với nội dung dịch.
3.12 Tệp TXT, ngữ cảnh tham chiếu và tạo nội dung blog
Một số tính năng có thể cho phép bạn nhập gợi ý văn bản, chọn đoạn lịch sử, chọn ngữ cảnh
tham chiếu hoặc đính kèm tệp TXT để hỗ trợ tạo nội dung, ví dụ tạo bản nháp blog hoặc cải
thiện chất lượng phiên dịch.
Khi bạn bấm nút Viết bài blog trên màn hình tóm tắt, văn bản tóm tắt + transcript
của phiên đó được gửi qua HTTPS tới Google Gemini (mô hình 2.5 Flash) bằng key đã cấu hình
để sinh ra bản nháp blog. Tùy chọn bạn nhập trong field "Gợi ý cho AI" và nội dung tệp TXT
bạn chọn cũng có thể được gửi kèm để điều hướng phong cách viết, góc nhìn và ngữ cảnh nền.
Khi bạn chủ động chọn tệp TXT qua bộ chọn tài liệu của iOS, Ứng dụng chỉ đọc tệp bạn đã chọn.
Nội dung tệp TXT có thể được dùng làm ngữ cảnh và được gửi tới Google Gemini bằng
key đã cấu hình cùng với prompt hoặc yêu cầu tạo nội dung tương ứng.
Ứng dụng không tự động quét thư mục, không truy cập toàn bộ bộ nhớ thiết bị, không lưu đường
dẫn tệp TXT, không lưu bản sao nội dung TXT lâu dài vào SQLite/Hive sau khi thao tác hoàn tất,
và không gửi tệp TXT hoặc nội dung tệp TXT tới máy chủ lưu trữ dữ liệu người dùng của chúng tôi,
trừ khi bạn chủ động lưu hoặc chia sẻ nội dung đó thông qua một tính năng của Ứng dụng.
Bản nháp blog được lưu trên thiết bị trong cùng SQLite database (cột blog_draft
của bảng meetings) để lần sau mở lại không phải gọi Gemini sinh lại — tiết kiệm
token. Ứng dụng không tự đồng bộ bản nháp lên đám mây, nhưng bản nháp có thể nằm trong bản sao
lưu thiết bị iOS tùy cài đặt backup.
Khi bạn chỉnh sửa bản nháp, thay đổi được auto-save vào SQLite local mỗi 1 giây sau lần gõ
cuối, hoàn toàn trên thiết bị.
3.13 Báo cáo nội dung AI
Phù hợp với Apple App Review Guidelines và best practices về content
safety cho nội dung AI, Ứng dụng cung cấp nút Báo cáo trên màn hình Viết blog
để user flag nội dung không phù hợp. Khi bạn chủ động bấm nút này, Ứng dụng gửi
qua HTTPS POST tới endpoint hỗ trợ furuCRM các thông tin sau:
Trích đoạn tối đa 190 ký tự của nội dung AI bị báo cáo
Lý do bạn chọn (Không phù hợp / Xúc phạm / Thiếu chính xác / Spam / Khác)
Ghi chú tuỳ chọn bạn nhập (tối đa 500 ký tự)
Tên app, phiên bản, ngôn ngữ đích, nhà cung cấp AI ("Google Gemini")
Yêu cầu KHÔNG bao gồm: full nội dung AI, Gemini API key, thông tin tài khoản, danh sách
contact, vị trí, hay nội dung dịch khác. Mọi field không có dữ liệu được gửi giá trị
"N/A".
Mục đích: phù hợp với Apple App Review Guidelines về cơ chế user-flagging cho nội dung AI;
cải thiện content safety bằng cách review báo cáo và điều chỉnh prompt/filter.
Retention: báo cáo được lưu tối đa 90 ngày trong hệ thống hỗ trợ của furuCRM, sau đó tự xoá.
Báo cáo không được chia sẻ với bên thứ ba ngoài hệ thống nội bộ review nội dung.
4. Ánh xạ tới App Privacy Nutrition Label
Apple yêu cầu khai báo trên trang sản phẩm App Store. Các khai báo của chúng tôi ánh xạ tới các danh mục dưới đây.
Danh mục Apple
Thu thập?
Liên kết người dùng?
Dùng để theo dõi?
Mục đích
User Content → Audio Data
Có (âm thanh được gửi trực tiếp tới Google Gemini bằng Free Key hoặc API key của riêng bạn đã cấu hình; chúng tôi không lưu âm thanh trên máy chủ của mình)
Không
Không
App Functionality
User Content → Other User Content (bản ghi, bản dịch, từ điển, nội dung tóm tắt, gợi ý văn bản, đoạn lịch sử tham chiếu, ngữ cảnh tham chiếu và nội dung tệp TXT bạn chọn)
Có (một số nội dung có thể được gửi tới Google Gemini khi bạn dùng tính năng dịch, tóm tắt, áp dụng từ điển, chọn ngữ cảnh tham chiếu hoặc tạo nội dung blog; dữ liệu còn lại được lưu hoặc xử lý trên thiết bị)
Diagnostics → Performance Data / Other Diagnostic Data
Có thể được Firebase, AdMob và Meta App Events thu thập để vận hành SDK, phân phối quảng cáo, chẩn đoán lỗi và đo hiệu năng. Chúng tôi không dùng SDK crash-reporting riêng.
Có (chỉ khi bạn bấm Báo cáo: gửi trích đoạn ngắn của nội dung AI, lý do, ghi chú tùy chọn và app version)
Không liên kết
Không
App Functionality
Photos or Videos
Có (lưu trên thiết bị cho chức năng lịch sử cuộc họp và không gửi tới chúng tôi hoặc server bên thứ ba)
Không liên kết
Không
App Functionality
Contact Info, Health, Financial, Browsing/Search History, Sensitive Info
Không
—
Không
—
5. App Tracking Transparency (ATT)
Theo định nghĩa của Apple, "theo dõi" nghĩa là liên kết dữ liệu người dùng/thiết bị thu từ
ứng dụng của chúng tôi với dữ liệu thu từ ứng dụng/web của công ty khác để phục vụ quảng cáo
nhắm mục tiêu hoặc môi giới dữ liệu.
Talk with Mozart không yêu cầu IDFA và không chia sẻ dữ liệu với data broker.
Theo cấu hình hiện tại, chúng tôi không sử dụng Firebase Analytics, Google AdMob hoặc Meta App Events
để theo dõi người dùng xuyên các ứng dụng hoặc website của công ty khác theo định nghĩa App Tracking
Transparency của Apple. Meta App Events được cấu hình tắt advertiser tracking, không thu thập IDFA
và không được dùng cho retargeting cá nhân hóa hoặc tracking xuyên ứng dụng/website. Nếu trong tương lai
chúng tôi bật tính năng có thể được coi là tracking, chúng tôi sẽ xin quyền ATT trước khi thực hiện.
6. Dịch vụ bên thứ ba
Dịch vụ
Nhận gì
Chính sách của họ
Google Gemini API (Live + Flash)
Âm thanh mic, từ điển, system prompt, văn bản cần dịch hoặc tóm tắt, đoạn lịch sử tham chiếu, ngữ cảnh tham chiếu, gợi ý văn bản, nội dung tệp TXT bạn chọn, yêu cầu tạo nội dung blog và văn bản sinh ra. Dữ liệu được gửi trực tiếp tới Google Gemini bằng Free Key hoặc API key của riêng bạn đã cấu hình sau khi bạn dùng tính năng liên quan.
Tên sự kiện không gắn với tài khoản trong app và không chứa nội dung cuộc họp, cùng app-instance ID, model thiết bị, phiên bản iOS và quốc gia (từ IP).
Các sự kiện tổng hợp để đo campaign như bắt đầu onboarding, xem màn hình API key, bắt đầu phiên dịch, tạo tóm tắt và chia sẻ, kèm nền tảng và app version. Chúng tôi không gửi âm thanh, bản ghi, nội dung bản dịch, Gemini API key, thuật ngữ trong từ điển, webhook URL hoặc thông tin liên hệ. Không yêu cầu IDFA.
Khi TikTok App ID được cấu hình, TikTok có thể nhận event campaign tổng hợp và thông tin kỹ thuật SDK/mạng. Chúng tôi không gửi âm thanh, bản ghi, nội dung bản dịch, Gemini API key hoặc thuật ngữ từ điển.
Config (luôn fetch khi mở app): chỉ nhận query định danh ứng dụng tĩnh + IP HTTPS chuẩn. Không nhận audio/bản ghi/bản dịch/từ điển/lịch sử/Gemini key/tài khoản. Free Key (khi bạn bấm Dùng thử miễn phí): nhận tên app, nền tảng và phiên bản app, sau đó trả Gemini key cùng ID cấp phát. Không nhận nội dung cuộc họp. Báo cáo nội dung AI (chỉ khi bạn bấm Báo cáo): nhận trích đoạn ≤190 ký tự + lý do + ghi chú + app version. Xem §3.13.
Thuộc phạm vi chính sách này.
Share sheet iOS (tùy chọn, do người dùng kích hoạt)
Chỉ văn bản bạn chọn chia sẻ; bạn chọn đích đến.
Điều khoản của đích bạn chọn.
7. Quảng cáo
Native ads trên Home, Lịch sử, Tóm tắt; interstitials chỉ
sau khi phiên dịch kết thúc. Không banner, không app-open ad, không quảng cáo lúc ghi live.
Chúng tôi không vận hành nền tảng quản lý đồng ý (CMP). Vì chúng tôi không yêu cầu IDFA và
không sử dụng dữ liệu của Ứng dụng cho tracking theo định nghĩa ATT, quảng cáo được cấu hình
theo hướng không tracking. Tùy khu vực, luật áp dụng và cấu hình của Google AdMob, quảng cáo
có thể được phân phối dưới dạng non-personalized ads hoặc limited ads, hoặc có thể yêu cầu
lựa chọn đồng ý bổ sung nếu cần thiết. Bạn có
thể giới hạn cá nhân hóa quảng cáo trong
Cài đặt iOS → Quyền riêng tư & Bảo mật → Quảng cáo / Theo dõi của Apple.
Trẻ em. Ứng dụng không hướng đến trẻ em và không chủ đích hiển thị quảng cáo cho người chưa đủ tuổi.
8. Quyền iOS
Khóa Info.plist
Mục đích
NSMicrophoneUsageDescription
Ghi mic cho dịch thời gian thực.
NSCameraUsageDescription
Cho phép bạn chụp slide hoặc tài liệu cuộc họp trong phiên live và lưu vào lịch sử cuộc họp.
NSPhotoLibraryUsageDescription
Cho phép bạn gắn ảnh có sẵn vào lịch sử cuộc họp, hoặc chọn file qua document picker khi iOS định tuyến nguồn đó qua Ảnh.
NSBluetoothAlwaysUsageDescription
Phát hiện thiết bị gần cho MultipeerConnectivity peer sharing.
Duyệt và quảng bá dịch vụ Bonjour _live-translate._tcp/_udp trên Wi-Fi cục bộ để ghép peer.
Ứng dụng không yêu cầu các quyền nhạy cảm sau: Danh bạ, Lịch, Nhắc nhở,
Sức khỏe, HomeKit, Chuyển động, Vị trí, Nhận dạng giọng nói, hay Theo dõi (ATT).
(Nhận dạng giọng nói được Gemini xử lý ở xa, không dùng SFSpeechRecognizer tại thiết bị
của Apple. Nhập từ điển CSV và nhập ngữ cảnh TXT chỉ đọc đúng tệp bạn chọn qua document picker.)
Camera (NSCameraUsageDescription): Ứng dụng chỉ truy cập camera
khi bạn chủ động chạm biểu tượng máy ảnh trong phiên dịch đang chạy để chụp lại slide
đang trình chiếu. Ảnh chụp được lưu vào bộ nhớ riêng của ứng dụng trên máy
(photos/<meetingId>/) và đính kèm vào mục lịch sử của cuộc họp đó.
Ảnh KHÔNG được gửi lên máy chủ của chúng tôi, Google Gemini, Firebase, AdMob, Meta và KHÔNG chia sẻ
với bên thứ ba nào. Bạn có thể xóa từng ảnh hoặc cả cuộc họp bất kỳ lúc nào trong
màn hình Lịch sử; gỡ ứng dụng sẽ xóa toàn bộ ảnh khỏi thiết bị.
Thư viện ảnh (NSPhotoLibraryUsageDescription): Ứng dụng không tự
động mở, quét hoặc tải lên Thư viện ảnh của bạn. Nếu bạn chủ động chọn nguồn “Ảnh”
trong bộ chọn tài liệu của iOS để nhập tệp từ điển hoặc tệp ngữ cảnh TXT, hoặc nếu bạn nhấn
giữ biểu tượng máy ảnh trong phiên dịch để đính kèm một ảnh có sẵn vào cuộc họp, iOS có thể
hiển thị hộp thoại quyền liên quan. Ứng dụng chỉ xử lý tệp bạn chọn và không truy cập toàn
bộ Thư viện ảnh. Chỉ khi bạn chủ động chia sẻ qua Share sheet của iOS, nội dung được chọn mới
được chuyển tới đích bạn chọn.
9. Lưu giữ và xóa dữ liệu
Dữ liệu trên thiết bị được giữ cho đến khi bạn xóa trong Ứng dụng hoặc gỡ cài đặt.
Ứng dụng không tự triển khai dịch vụ đồng bộ đám mây, nhưng dữ liệu trong app container có thể
nằm trong bản sao lưu thiết bị iOS tùy cài đặt backup. Keychain do iOS quản lý và có thể còn lại
sau khi gỡ app; hãy xóa key trong Ứng dụng trước khi gỡ nếu cần.
Không có tài khoản. Gỡ app xóa dữ liệu trong app container. Chúng tôi không lưu
nội dung cuộc họp, nhưng bản ghi cấp phát Free Key, báo cáo nội dung AI và access log máy chủ
tiêu chuẩn có thể được giữ trong thời hạn cần thiết cho mục đích đã nêu.
Dữ liệu Firebase Analytics được giữ trong thời hạn mặc định 14 tháng, sau đó tự động xóa.
AdMob tuân theo chính sách lưu giữ của Google.
Dữ liệu Meta App Events tuân theo chính sách lưu giữ và cơ chế kiểm soát dữ liệu của Meta.
Chúng tôi không dùng dữ liệu Meta App Events để lưu trữ âm thanh, bản ghi, bản dịch, thuật ngữ trong từ điển,
Gemini API key, nội dung TXT đã chọn hoặc thông tin định danh cá nhân trực tiếp.
Dữ liệu TikTok Business Events tuân theo chính sách lưu giữ và cơ chế kiểm soát của TikTok.
Báo cáo nội dung AI được giữ tối đa 90 ngày.
Bản ghi cấp phát Free Key được giữ khi cần cho vận hành key pool, chống lạm dụng
và hỗ trợ. Hãy liên hệ chúng tôi về yêu cầu xóa.
Việc lưu giữ Google Gemini tuân theo điều khoản Google áp dụng cho tài khoản
Google của bạn khi dùng API key riêng, hoặc project Google đứng sau Free Key chúng tôi cung cấp.
10. Quyền của bạn (GDPR, CCPA)
Đồng ý chia sẻ dữ liệu với AI — ngay lần khởi động đầu tiên, Ứng dụng
hiển thị một màn hình onboarding chuyên biệt cho biết rõ dữ liệu nào được gửi đến Google Gemini,
ai nhận và mục đích gì. Tính năng dịch chỉ được kích hoạt sau khi bạn tap nút “Tôi đồng ý”.
Sự đồng ý này được ghi nhận trực tiếp trong Ứng dụng, không phải trong Chính sách quyền riêng tư này.
Rút lại đồng ý AI — Cài đặt → “Chia sẻ dữ liệu AI”
→ “Rút lại đồng ý” rút lại đồng ý chỉ trong 1 tap. Việc rút lại cũng đồng thời
xóa Gemini API key khỏi thiết bị — không có key, không có dữ liệu nào có thể gửi đến Gemini.
Cách khác: Cài đặt → API Key → Xóa (xóa key cũng tự động rút lại đồng ý AI).
Truy cập — nội dung cuộc họp chủ yếu nằm trên thiết bị và xem được qua Lịch sử, Từ điển,
Cài đặt. Hãy liên hệ chúng tôi về dữ liệu analytics, advertising, cấp phát Free Key hoặc báo cáo AI
thuộc phạm vi chúng tôi kiểm soát.
Xóa — xóa từng phiên, mục từ điển, hoặc toàn bộ dữ liệu
(Cài đặt iOS → Cài đặt chung → Dung lượng iPhone → Talk with Mozart → Xóa Ứng dụng).
Từ chối phân tích — hiện tại, bạn có thể dừng việc gửi sự kiện phân tích trong tương lai
bằng cách gỡ cài đặt Ứng dụng. Chúng tôi có thể bổ sung tùy chọn kiểm soát phân tích trực tiếp
trong phần Cài đặt của Ứng dụng ở các phiên bản sau.
Giới hạn cá nhân hóa quảng cáo qua Cài đặt iOS → Quyền riêng tư & Bảo mật.
Cư dân EEA/UK có thể nộp khiếu nại với Cơ quan Bảo vệ Dữ liệu của họ.
Cư dân California có quyền biết, xóa, sửa, từ chối bán hoặc chia sẻ và
không bị phân biệt đối xử theo CCPA/CPRA. Chúng tôi không bán thông tin cá nhân. Việc chuyển
dữ liệu tới nhà cung cấp quảng cáo và attribution được mô tả tại Mục 3 và 6. Bạn có thể thực
hiện quyền opt-out áp dụng qua Cài đặt iOS, công cụ của nhà cung cấp hoặc liên hệ chúng tôi.
11. Quyền riêng tư của trẻ em
Talk with Mozart không hướng đến trẻ em và không được thiết kế dành riêng cho trẻ em dưới 13 tuổi
hoặc độ tuổi tối thiểu theo luật áp dụng tại khu vực của bạn. Chúng tôi không cố ý thu thập dữ
liệu cá nhân từ trẻ em. Nếu bạn tin rằng trẻ em đã cung cấp dữ liệu cá nhân cho Ứng dụng, vui
lòng liên hệ chúng tôi để được hỗ trợ xử lý hoặc xóa dữ liệu trong phạm vi chúng tôi kiểm soát.
12. Bảo mật
Mọi yêu cầu mạng dùng HTTPS / TLS 1.2 trở lên. NSAllowsArbitraryLoads không được bật.
Gemini API key đã cấu hình được lưu trong iOS Keychain qua flutter_secure_storage.
Bản ghi và lịch sử sống trong container sandbox của Ứng dụng, cách ly với các app khác bởi iOS.
Chúng tôi không vận hành backend để tập trung lưu trữ âm thanh, bản ghi, bản dịch, từ điển,
lịch sử dịch, ngữ cảnh tham chiếu, tệp TXT bạn chọn, nội dung tạo blog hoặc Gemini API key của
người dùng, nên không có cơ sở dữ liệu trung tâm chứa
các nội dung này ở phía chúng tôi.
13. Truyền dữ liệu quốc tế
Dữ liệu có thể được Google LLC và các nhà thầu phụ xử lý, bao gồm tại Hoa Kỳ. Google dựa vào
Điều khoản Hợp đồng Tiêu chuẩn và Khung Bảo mật Dữ liệu EU–Mỹ khi áp dụng.
14. Thay đổi chính sách và thông tin liên hệ
Chúng tôi có thể cập nhật Chính sách này khi bổ sung tính năng mới hoặc khi pháp luật áp dụng
có thay đổi. Mọi thay đổi quan trọng sẽ được thông báo thông qua thông báo trong ứng dụng hoặc
trên trang niêm yết tại Apple App Store.
Nếu bạn có bất kỳ câu hỏi hoặc thắc mắc nào liên quan đến quyền riêng tư, vui lòng liên hệ với
nhóm phát triển của chúng tôi tại: