Skip to content
微信公众号
庭记开发者微信公众号

Harry Chu

获取最新更新教程与交流

Android 版隐私政策

版本:1.6 | 生效日期:2026-08-28
Version: 1.6 | Effective Date: 2026-08-28

其他平台隐私协议 / Other Platforms Privacy Policy

本页仅适用于 Android 客户端。如果您使用的是 iPhone 或 Mac 版庭记,请查看对应版本的隐私协议: This page applies to the Android client only. If you use CourtNote on iPhone or Mac, please refer to the corresponding privacy policy:


引言 / Introduction

庭记(CourtNote)(以下简称“本应用”或“我们”)重视用户隐私与数据安全。本政策适用于您使用庭记 Android 客户端时的全部功能;iOS 与 macOS 客户端另有对应政策,二者的功能与权限范围并不相同。我们遵循中国大陆法律(包括但不限于《个人信息保护法》《数据安全法》《网络安全法》)以及 Google Play 用户数据政策的披露要求。

一句话概括: 本应用不自建服务器、不提供账号、不提供云同步;您的案件、日程、保全期限、文档和备份默认只保存在您的设备上。

CourtNote (the "App", "we", "us") values user privacy and data security. This policy applies to all features of the CourtNote Android client; the iOS and macOS clients have their own policies and differ in features and permissions. We follow the laws of Mainland China (including but not limited to the Personal Information Protection Law, the Data Security Law, and the Cybersecurity Law) and disclosure requirements under Google Play user data policies.

In one sentence: the App operates no server of its own, provides no account system and no cloud sync; your cases, schedules, preservation deadlines, documents, and backups stay on your device by default.


一、我们处理的数据类型 / I. Types of Data We Process

1. 文档与图片(本地)

您扫描或导入的文档图片、生成的 PDF 文件默认保存在设备本地沙盒,不上传至我们的服务器。

Documents and Images (Local)

Document images you scan or import and generated PDF files are stored in your device sandbox by default and are not uploaded to our servers.

2. 应用数据(本地)

案件信息、日程、保全期限、提醒设置、偏好设置、首次使用状态,以及用于统计免水印导出额度的本地计数,默认保存在设备本地。

App Data (Local)

Case data, schedules, preservation deadlines, reminder settings, preferences, first-run status, and the local counter used for the watermark-free export quota are stored locally on your device by default.

3. 本地备份(用户主动创建)

新建备份以密码加密的 .cnbackup 文件保存到您选择的位置,本应用不会自动上传;应用仍可恢复旧版明文 ZIP 备份。

Local Backup (User-Initiated)

New backups are password-encrypted .cnbackup files saved to a location you choose. The App never uploads them automatically, and it can still restore legacy plaintext ZIP backups.

4. 本机文字识别结果(用户主动触发)

当您使用传票识别预填日程,或对文档执行文字提取时,应用会在设备端使用 ML Kit 文字识别处理您选定的图片或 PDF。识别结果用于预填日程字段或展示给您复制,不会发送至我们的服务器。

On-Device Text Recognition Results (User-Initiated)

When you use summons recognition to prefill a schedule or extract text from a document, the App processes the file you selected on device with ML Kit. Results are used to prefill schedule fields or shown for you to copy, and are not sent to our servers.

5. 反馈邮件(用户主动发送)

如果您使用反馈页发送邮件,邮件会包含您填写的反馈内容,以及 Android 版本、设备厂商和设备型号等页面展示的设备信息。

Feedback Email (User-Initiated)

If you send feedback via the feedback page, the email includes your message and displayed device details such as Android version, device manufacturer, and model.

6. 权限相关数据 / Permission-Related Data

  • Google Play Services 文档扫描器:仅在您主动扫描时采集并校正文档图片,应用本身不声明相机权限。

  • 系统照片选择器:仅在您主动选择图片时导入或识别;本应用不请求完整相册的读取或写入权限。

  • 日历:在您授权并开启系统日历同步后使用,读写范围限于由庭记创建并带有庭记标识的事件(详见第六条第 2 项)。

  • 通知与精确提醒:在您授权并开启提醒后,用于在本机发送开庭、出差等日程提醒和保全到期提醒;设备重启后应用会在本机重建这些提醒计划。提醒完全在设备端触发,不经过我们的服务器。

  • Google Play Services document scanner: collects and corrects document images only when you actively scan; the App itself does not declare camera permission.

  • System photo picker: imports or recognizes only the images you actively select; the App does not request full photo library read or write access.

  • Calendar: used after your authorization once system calendar sync is enabled. Read and write access is limited to events created by CourtNote and marked as such (see Section VI.2).

  • Notifications and exact alarms: used, after your authorization and reminder opt-in, to deliver hearing, travel, and preservation-deadline reminders on the device. After a restart the App rebuilds the reminder plan locally. Reminders fire entirely on device and never pass through our servers.

7. 桌面小组件(可选)

如果您把庭记日程小组件添加到桌面,小组件会读取本地日程数据并把近期日程渲染在桌面上;数据不离开设备,但可能被能看到您桌面的人看到。

Home Screen Widget (Optional)

If you add the CourtNote schedule widget, it reads local schedule data and renders upcoming entries on your home screen. The data never leaves the device, but it may be visible to anyone who can see your screen.

8. 诊断与日志(本地)

为便于排查故障,应用可能通过 Android 系统日志(Logcat)记录有限的运行信息,这些信息保留在设备上,不会自动上传。

Diagnostics and Logs (Local)

The App may record limited runtime information through the Android system log (Logcat). That information stays on your device and is never uploaded automatically.


1. 目的 / Purposes

实现文档扫描与校正、PDF 生成、本机文字识别与传票预填、案件与日程管理、保全期限跟踪与提醒、本地备份与恢复、数据完整性检查、系统日历同步、桌面小组件展示、会员购买状态校验和用户支持。

To provide document scanning and correction, PDF generation, on-device text recognition and summons prefill, case and schedule management, preservation-deadline tracking and reminders, local backup and restore, data integrity checks, system calendar sync, home screen widget display, membership status verification, and user support.

2. 法律依据 / Legal Bases

您的同意、履行与您之间的服务关系,以及适用法律允许的必要处理。

Your consent, performance of services to you, and necessary processing as permitted by applicable laws.


三、存储、保留与安全 / III. Storage, Retention, and Security

1. 本地存储 / Local Storage

文档与核心应用数据主要保存在设备本地沙盒中。

Documents and core app data are primarily stored in your device sandbox.

2. 本地加密 / Local Encryption

日程与保全记录中的备注、案件自定义字段等敏感文本,在写入本地数据库前使用 Android Keystore 中的密钥以 AES-256-GCM 加密;该密钥由系统托管,不导出、不随备份文件迁移。

Sensitive text such as schedule and preservation notes and custom case fields is encrypted with an Android Keystore key using AES-256-GCM before it is written to the local database. The key is managed by the system, is never exported, and does not travel with backup files.

3. 备份加密 / Backup Encryption

新建本地备份使用由您设置的密码经 PBKDF2-HMAC-SHA256 派生密钥,并以 AES-256-GCM 加密。备份密码不会保存在应用或我们的任何系统中,遗忘后开发者无法找回或重置,请离线妥善保管。

New local backups derive a key from the password you set using PBKDF2-HMAC-SHA256 and are encrypted with AES-256-GCM. The backup password is never stored in the App or in any of our systems and cannot be recovered or reset by the developer, so please keep it safe offline.

4. 反馈邮件 / Feedback Emails

您主动发送的反馈邮件将由您的邮件服务商和我们的支持邮箱处理,用于定位问题和回复支持请求。

Feedback emails you send are handled by your email provider and our support mailbox for troubleshooting and support responses.

5. 保留期限 / Retention

本地数据在您设备存在期间保留;您可以随时删除文档、案件、日程、保全记录并清理缓存。反馈邮件按支持处理和必要留档周期保存。

Local data is retained while it exists on your device. You can delete documents, cases, schedules, and preservation records, and clear caches, at any time. Feedback emails are retained according to support handling and necessary record-keeping periods.

6. 安全措施 / Security Measures

本应用依赖 Android 系统沙盒、文件系统加密和运行时权限机制,并对上述敏感字段和备份文件做额外加密。建议您为设备设置锁屏密码或生物识别,并妥善保管备份文件与备份密码。

The App relies on Android sandboxing, file-system encryption, and runtime permission controls, and adds the encryption described above for sensitive fields and backups. We recommend enabling a screen lock or biometric protection, and handling backup files and passwords with care.


四、共享与第三方服务 / IV. Sharing and Third-Party Services

  1. 我们不出售、出租您的个人信息与文档,也不会把案件、日程、保全记录、文档上传至我们的服务器。

    We do not sell or rent your personal information or documents, and we do not upload your case, schedule, preservation, or document data to our servers.

  2. 本应用集成 Google Play Services 文档扫描器和 ML Kit OCR。图片处理和 OCR 输入输出在设备端完成,不会把您的图片或识别文本发送给 Google 或我们的服务器。

    The App integrates Google Play Services document scanner and ML Kit OCR. Image processing and OCR input/output are performed on-device and are not sent to Google or our servers.

  3. 根据 Google ML Kit 说明,ML Kit / Google Play Services 可能为诊断、使用分析、模型或组件更新、防滥用目的向 Google 发送设备信息、应用信息、性能指标、API 配置、输入/输出大小、功能版本、事件类型和错误码等指标,并通过 HTTPS 传输。

    According to Google ML Kit disclosures, ML Kit / Google Play Services may send metrics to Google for diagnostics, usage analytics, model/component updates, and anti-abuse, including device/app info, performance metrics, API configuration, input/output size, feature versions, event types, and error codes, over HTTPS.

  4. 本应用使用 Google Play Billing 处理会员购买。付款、订阅和订单信息由 Google Play 按其规则处理,本应用仅接收购买状态以解锁相应功能。

    The App uses Google Play Billing for membership purchases. Payment, subscription, and order information is handled by Google Play under its policies, while the App only receives purchase status to unlock features.

  5. 当您主动导出或分享 PDF、日程图片、日程文本或备份文件时,相关内容由 Android 系统分享面板交给您选择的目标应用(如邮件、即时通讯、云盘)。该目标应用如何处理这些内容,适用其自身的隐私政策,不在本政策的控制范围内。

    When you export or share a PDF, schedule image, schedule text, or backup file, the Android share sheet passes that content to the app you choose (email, messaging, cloud storage, and so on). How that app handles the content is governed by its own privacy policy and is outside the scope of this policy.


五、跨境传输 / V. Cross-Border Transfers

本应用不自建服务器,不主动跨境传输您的案件、日程、保全记录、文档或备份。Google Play Services、ML Kit、Google Play Billing 或您选择的邮件、分享目标服务,可能按其服务规则处理必要的诊断、购买或反馈相关数据。

The App does not operate its own servers and does not proactively transfer your case, schedule, preservation, document, or backup data across borders. Google Play Services, ML Kit, Google Play Billing, or the email and share-target services you choose may process necessary diagnostic, purchase, or feedback-related data under their own service rules.


六、您的权利与数据删除请求 / VI. Your Rights and Data Deletion Requests

  1. 访问、更正、导出与删除 / Access, Correction, Export, and Deletion:您可以在应用内查看、编辑、导出和删除文档/PDF、案件、日程和保全记录,并在设置中清理缓存与临时文件。

    You can view, edit, export, and delete documents/PDFs, cases, schedules, and preservation records in the App, and clear caches and temporary files in settings.

  2. 系统日历中的镜像事件 / Mirror Events in the System Calendar:开启系统日历同步后,庭记只写入自己创建的事件,并且只读取带有庭记标识的事件;本应用不会读取或导入您的其他个人日历事件。当您在庭记中删除日程时,应用会尽力删除对应的镜像事件;如果您直接清除应用数据或卸载应用,此前写入系统日历的事件不会自动消失,需要您在系统日历中自行删除。

    Once system calendar sync is enabled, CourtNote writes only its own events and reads back only events carrying the CourtNote marker; it never reads or imports your other personal calendar events. Deleting a schedule in CourtNote also attempts to delete its mirror event. However, clearing app data or uninstalling the App does not remove events already written to the system calendar, so please delete those in your calendar app.

  3. 撤回同意 / Withdrawing Consent:您可以在系统设置中随时关闭或撤回日历、通知权限,也可以在应用设置中关闭系统日历同步,或把桌面小组件从桌面移除。

    You can revoke calendar and notification permissions in system settings at any time, turn off system calendar sync in app settings, or remove the widget from your home screen.

  4. 数据可携带 / Data Portability:您可以通过导出 PDF 或创建加密的 .cnbackup 本地备份,自行保存或迁移数据副本。

    You can export PDFs or create an encrypted .cnbackup backup to keep or migrate a copy of your data.

  5. 支持记录删除请求 / Support Record Deletion Request:如需请求删除由我们持有的支持或反馈记录,请发送邮件至 support@courtnote.app,标题建议写明 CourtNote Android data deletion request,并说明用于联系支持的邮箱、反馈大致日期和希望删除的记录类型。请不要在删除请求中附加新的案件材料、证件图片或其他敏感文件。

    To request deletion of support or feedback records held by us, email support@courtnote.app with the subject CourtNote Android data deletion request, and include the email address used to contact support, the approximate feedback date, and the record type you want deleted. Please do not attach new case files, identity documents, or other sensitive files.

  6. 处理时限与保留 / Response Time and Retention:我们通常在收到请求后 30 天内回复确认,并删除或匿名化相应的支持/反馈记录;但出于法律合规、防滥用、安全、争议处理或必要留档原因必须保留的数据,可能会在必要期限内继续保留。

    We normally confirm within 30 days of receiving a request and then delete or anonymize the relevant support or feedback records, unless retention is required for legal compliance, security, abuse prevention, dispute handling, or necessary recordkeeping.

  7. 第三方交易记录 / Third-Party Transaction Records:Google Play 购买、退款、订阅和付款记录由 Google Play 管理,请通过 Google Play 订单、订阅或付款支持渠道处理;取消订阅本身不会删除设备上的数据。

    Google Play purchase, refund, subscription, and payment records are managed by Google Play. Please use Google Play order, subscription, or payment support channels for those records. Cancelling a subscription does not delete any data on your device.

  8. 独立删除说明页 / Dedicated Deletion Page:设备本地保存的文档、案件、日程、保全记录、备份和缓存由您控制,完整删除步骤见 https://courtnote.app/data-deletion

    Documents, cases, schedules, preservation records, backups, and caches stored on your device stay under your control. Full deletion guidance is available at https://courtnote.app/data-deletion.


七、未成年人保护 / VII. Protection of Minors

本应用面向法律从业者等成年专业用户,不以未成年人为主要对象,也不会有意收集未成年人的个人信息。如未满 14 周岁的未成年人需要使用,请在监护人同意与指导下进行。

The App is aimed at adult professional users such as legal practitioners, is not directed at minors, and does not knowingly collect personal information from minors. Anyone under 14 should use it only with the consent and guidance of a guardian.


八、政策更新 / VIII. Policy Updates

我们可能因产品功能或法律政策变化更新本政策。重大变更将通过应用内“设置—法律与隐私”页面、本页面或 Google Play 更新说明提示。

We may update this policy as features or legal requirements change. Material changes will be announced on the in-app Settings → Legal & Privacy page, on this page, or in Google Play release notes.


九、联系我们 / IX. Contact Us

ICP备案:苏ICP备2025197811号-1A