HSApp Production Backup 隐私说明
中文
本说明描述此备份工具对 Google 用户数据的使用。
- 访问范围:使用 Google drive.file 授权,访问本工具创建或由所有者明确选定供本工具使用的文件。工具核对 Google 账号身份、云盘剩余容量、指定文件夹和文件的所有者、权限、大小及校验信息。未取得有效授权或私有权限核对失败时,工具拒绝继续。
- 用途:只为创建、读回核对和恢复私有加密备份,以及识别失败或过期备份。工具不会出售这些数据,也不用于广告或用户画像。
- 存储:数据库、附件、恢复配置和备份清单内容在上传前加密。运行时间、运行结果、文件大小、校验摘要与备份文件标识等状态元数据保存在私有文件夹中;状态记录经过认证,部分元数据不加密。恢复密钥和解锁口令须另外保管,不通过该公开网站提供。
- 服务处理:Google Drive 存储私有备份及核对元数据。配置完成后,GitHub Actions 执行云端备份和健康检查;相应访问凭据须以其秘密配置机制保护。数据库及附件的源服务为 Supabase。说明网站仅承载公开说明。不得在公开日志、邮件正文或网页中写入凭据或原始员工数据。
- 撤销与保留:所有者可在 Google 账号中撤销此工具的访问授权;后续云盘访问及自动备份随之停止。撤销授权不会自动删除已经存储的备份。保留或清理应由所有者依既定保留政策和恢复需要处理;正式工资和审计历史不会由此工具自动删除。
- 联系:有关数据使用、访问撤销或保留的请求,请联系 HSConsApp@gmail.com。本说明应随实际数据处理方式更新。
Privacy Notice
This notice describes how HSApp Production Backup uses Google user data.
- Access: The tool requests the Google drive.file scope for files it creates or files the owner explicitly selects for its use. It checks Google account identity, available Drive capacity, and ownership, permissions, size and verification details of the designated folder and files. It refuses to proceed without valid authorisation and verified private access.
- Purpose: Data is used only to create, read back, verify and recover private encrypted backups, and identify failed or expired backups. The tool does not sell this data or use it for advertising or profiling.
- Storage: Database, attachment, recovery-configuration and manifest content is encrypted before upload. Run times, results, file sizes, checksums and backup identifiers are held in the private folder; run records are authenticated and some metadata is not encrypted. Recovery keys and unlocking phrases must be kept separately and are not available from this website.
- Processing: Google Drive holds the private backups and verification metadata. Once configured, GitHub Actions runs cloud backups and health checks; access credentials must be protected through its secret configuration mechanisms. Supabase supplies the source database and attachments. The notice website carries public explanatory content only. Credentials and original employee data must not be placed in public logs, email bodies or webpages.
- Revocation and retention: The owner may revoke the tool's access in their Google account. Subsequent Drive access and automated backups then stop. Revoking access does not automatically delete existing backups. The owner manages retention and cleanup under the applicable retention policy and recovery needs. The tool does not automatically delete formal payroll or audit history.
- Contact HSConsApp@gmail.com for questions about data use, revocation or retention. This notice must be updated when actual processing changes.