Co-work
隐私政策 使用条款 支持

Privacy Policy

隐私政策

这份政策说明 Co-work 应用与官网会处理哪些信息、为什么需要这些信息、何时会交给服务商处理,以及你如何管理或删除数据。

中文 English
最后更新2026 年 7 月 16 日
联系邮箱 ify0222yfi@gmail.com
适用范围Co-work 应用、官网及相关后台服务
目录 适用范围 处理的信息 使用目的 服务商共享 保留与删除 你的选择 联系我们 English version

中文版

1. 适用范围与重要说明

本政策适用于 Co-work 的 macOS、iOS、iPadOS 应用、官方网站 cowork.chattcy.top,以及为聊天、Agent 任务、文件处理、图片生成、积分、订阅验证、产品分析和网站运行提供支持的后台服务。

Co-work 不是“所有数据仅保存在本机”的离线应用。 部分设置和工作状态会保存在设备上;当你使用 AI、Agent、同步、订阅或在线服务时,完成请求所需的内容和技术信息会发送至 Co-work 后台及相关服务商。

2. 我们处理的信息

具体类别取决于你使用的功能,可能包括:

  • 匿名账号与设备信息:设备生成的用户标识、内部用户 ID、访问令牌、会员状态、积分和使用计数,以及应用版本、Build、系统版本、语言、时区、设备类型和设备名称或昵称。设备名称可能包含你为设备设置的姓名或其他文字。
  • 聊天与助手内容:你提交的提示词、会话标题、消息历史、所选模型、助手上下文,以及为向你返回结果而生成或保存的回复。
  • Agent 与文件任务内容:任务指令、工作区范围、权限模式、文件路径、文件名、元数据、相关文件内容,以及所用工具的输入、输出和执行记录。只有在你选择文件、授权工作区或要求 Agent 处理相关内容时才会处理这些信息。Mac App Store 版本不开放 Shell、CLI 或自定义 MCP;官网下载版本在你授权后可能处理命令或自定义工具记录。
  • 上传和生成内容:你提交的图片、参考图片、文档或其他文件,以及图片生成提示词、尺寸、质量参数和生成结果。
  • 订阅与购买信息:Apple 商品标识、交易号、原始交易号、签名交易信息或回执、购买环境、到期信息和用于关联匿名账号的 app account token。我们不会收到你的完整银行卡信息。
  • 反馈与支持信息:你主动提交的反馈、支持请求、可选邮箱、问题分类、说明和附件,以及处理请求所需的账号和设备上下文。
  • 应用内产品与性能分析:Mac 版仅在你通过数据授权页同意后,处理启动、页面展示、按钮点击、付费流程、错误类型、请求耗时和稳定性等产品交互及性能信息,以及系统、版本、语言、时区等上下文;你可以在设置中撤回同意。当前 iOS/iPadOS 版还会通过 Firebase Analytics 处理应用实例标识、产品交互、性能与诊断上下文及由网络推断的粗略地区,用于功能分析和稳定性改善,不用于跨公司广告追踪。应用分析不上传聊天正文、用户输入、AI 回复、附件内容、文件名、文件路径或剪贴板内容。
  • 官网使用分析:仅在你通过网站隐私设置同意后,我们才会生成访客 ID 和会话 ID,并处理访问页面、来源页面、链接和控件点击、目标文字与链接地址、滚动深度、停留及活跃时长、屏幕和视口尺寸、浏览器语言、时区、User-Agent,以及 Cloudflare 提供的国家/地区/城市和数据中心信息。服务器使用仅由 Co-work 保存的密钥和当天日期为 IP 地址生成不可逆 HMAC 指纹,不把原始 IP 写入网站分析表。拒绝时不会创建分析标识或上传网站行为;你可通过页面右下角“隐私设置”随时停止。
  • 安全和服务元数据:请求时间、IP 地址、由 IP 或基础设施推断的粗略国家或地区、User-Agent、请求耗时、网络和请求元数据、限流、错误类型、风控及防滥用信息。
  • 本地设置:例如所选语言、模型、工作区、工作模式和权限偏好。这些设置通常保存在设备上,但在完成相关在线功能时可能随请求使用。

3. 我们如何使用这些信息

  • 创建和维护匿名应用账号,并保存会员、积分和功能状态。
  • 提供 AI 对话、Agent、文件处理、图片生成、工具调用和会话同步。
  • 验证购买、恢复订阅、处理续订状态并提供对应权益。
  • 分析产品和官网的使用情况,改善功能、性能、稳定性和付费流程。
  • 排查故障、限制滥用、保护账号和服务安全。
  • 回复支持、隐私和数据删除请求。

4. 与服务商共享

我们只在提供相应功能所必需的范围内向以下类别的接收方提供信息:

  • AI 模型及处理服务商:你发送的提示词、所选文件或图片、必要上下文和任务参数会先经过 Co-work 后台,并可能由 API 中转服务 Kie.ai(NEXUSAI SERVICES LLC)及你所选模型对应的 Anthropic、OpenAI、Google 或 DeepSeek 接收,用于生成回复、联网搜索、图片或 Agent 结果。Kie.ai 的公开隐私政策和使用条款也可能适用于其处理活动。
  • Apple:用于应用内购买、订阅管理、交易验证和订阅状态通知。
  • 基础设施服务商:用于应用托管、数据库、文件存储、内容传输、网站运行、安全和故障排查。
  • 法律或安全要求:在适用法律、合法程序或保护用户和服务安全所必要时披露有限信息。

你可以决定是否发送每次 AI 请求,以及是否授予 Agent 提出的文件或联网工具权限;官网下载版本还可能请求命令或自定义工具权限。如果你不希望内容交给 AI 处理服务商,请不要提交该内容或授权相关任务。Co-work 不出售个人信息,也不使用收集的信息进行跨公司广告追踪。

我们会审查服务商的数据保护和安全安排,并根据适用合同、条款及法律要求限制其处理范围。第三方的具体保存期限、跨境位置和服务改进规则可能不同;请阅读上述条款,不要提交完成任务不需要的敏感内容。

5. 数据保存、保留与删除

  • 设备本地可能保存设置、工作区状态和部分会话或任务快照。
  • 后台可能保存会话、消息、Agent 任务、生成记录、会员和积分状态,以提供同步、连续会话和服务功能。
  • 我们会在提供服务、处理支持、维护安全和订阅记录、解决争议及履行法律义务所合理需要的时间内保留数据。
  • 交易、反欺诈、安全和法律记录可能在其他数据删除后继续保留有限期限。
  • 如果删除时仍有 Apple 订阅,为允许你在新匿名账号中恢复有效权益,我们仅保留原始交易号和 app account token 的不可逆 HMAC 指纹。该指纹不包含原始交易号、聊天、任务或文件内容;完成恢复后会标记为已使用。
  • 你可以在应用“设置 > 账号”中发起删除匿名账号及其关联后台数据。删除会清除应用账号、会话、消息、Agent 记录、积分和本地应用缓存,且无法撤销;不会删除你工作区中的文件。

如删除入口无法使用,或你需要数据访问协助,请发送邮件至 ify0222yfi@gmail.com。 为便于定位数据,请提供应用中可见的匿名用户或设备标识;请不要发送密码、完整支付卡信息、私钥或不必要的敏感文件。

6. 你的选择与控制

  • 你可以不提交不希望 AI 或 Agent 处理的文字、图片、文件或目录。
  • 你可以拒绝 Agent 请求的文件或联网工具权限;官网下载版本还可以拒绝命令或自定义工具权限。部分功能因此可能无法完成。
  • 你可以在应用设置中删除会话,或发起完整的匿名账号及关联数据删除。
  • 你可以清除浏览器的本地存储来重置官网访客 ID;网站仍可能生成新的访客 ID 和会话 ID。
  • Apple 订阅可在 Apple 订阅设置 中管理或取消。

7. 安全与跨境处理

我们采用合理的技术和管理措施保护所处理的信息,但任何系统都无法保证绝对安全。请不要提交完成任务并不需要的高度敏感信息。由于基础设施、AI 或支付服务商的所在地不同,你的信息可能在你所在国家或地区之外被处理。

8. 儿童隐私

Co-work 不是专门面向 13 岁以下儿童的服务,我们不会故意收集 13 岁以下儿童的个人信息。如果你认为儿童向我们提供了个人信息,请联系我们处理。

9. 政策更新

我们可能根据产品、服务商或法律要求更新本政策。更新后会修改页面顶部的“最后更新”日期;重大变化会在适当位置提供额外提示。

10. 联系我们

隐私问题、数据访问或删除请求,请发送邮件至 ify0222yfi@gmail.com。 一般产品与订阅问题请查看支持页面。

English version

1. Scope and important notice

This policy applies to the Co-work apps for macOS, iOS, and iPadOS, the website at cowork.chattcy.top, and the backend services that support chat, Agent tasks, file processing, image generation, points, subscription verification, product analytics, and website operation.

Co-work is not an offline app where all data stays only on your device. Some settings and work state are stored locally. When you use AI, Agent, sync, subscription, or other online features, content and technical information needed to complete the request are sent to Co-work's backend and relevant service providers.

2. Information we process

The categories depend on the features you use and may include:

  • Anonymous account and device data: a device-generated user identifier, internal user ID, access tokens, membership status, points, usage counters, app version and build, OS version, language, time zone, device type, and the device name or nickname. A device name may contain a name or other text you assigned to the device.
  • Chat and assistant content: prompts, conversation titles, message history, selected model, assistant context, and responses generated or stored to provide the service.
  • Agent and file-task content: task instructions, workspace scope, permission mode, file paths, file names, metadata, relevant file content, and tool inputs, outputs, and execution records. This data is processed when you select content, authorize a workspace, or ask the Agent to work with it. The Mac App Store edition does not expose Shell, CLI, or custom MCP tools; after permission, the direct-download edition may additionally process command or custom-tool records.
  • Uploaded and generated content: images, reference images, documents or other files you submit, plus image-generation prompts, size and quality settings, and generated results.
  • Subscription and purchase data: Apple product IDs, transaction IDs, original transaction IDs, signed transaction information or receipts, environment, expiration information, and an app account token used to associate the purchase with an anonymous account. We do not receive your full payment-card details.
  • Feedback and support information: feedback, support requests, optional email address, issue category, description, attachments, and the account and device context needed to handle the request.
  • In-app product and performance analytics: on Mac, only after you consent on the data screen, we process app start, views, clicks, paywall steps, purchase outcomes, normalized errors, request timing, and reliability information with app, OS, language, and time-zone context; you may withdraw consent in Settings. The current iOS/iPadOS edition also uses Firebase Analytics to process an app-instance identifier, product interaction, performance and diagnostic context, and coarse region inferred from the network for feature analysis and reliability improvements, not cross-company advertising tracking. App analytics excludes chat text, user prompts, AI responses, attachment content, file names, file paths, and clipboard content.
  • Website analytics: only after you agree through the website privacy control, we generate visitor and session IDs and process pages and referrers, link and control clicks, target text and destinations, scroll depth, elapsed and active time, screen and viewport size, browser language, time zone, User-Agent, and Cloudflare-provided country, region, city, and data-center information. The server uses a Co-work-only secret and the current date to create an irreversible HMAC fingerprint of the IP address; it does not write the raw IP to the website analytics table. If you decline, no analytics identifier is created and no website activity is uploaded. You can stop analytics at any time through “Privacy settings” in the lower-right corner.
  • Security and service metadata: request times, IP address, coarse country or region inferred from IP or infrastructure, User-Agent, request timing, network and request metadata, rate-limit events, normalized errors, fraud prevention, and abuse-prevention data.
  • Local settings: selected language, model, workspace, work mode, and permission preferences. These are usually stored on your device but may be used with an online request when required by the feature.

3. How we use information

  • Create and maintain an anonymous in-app account and its membership, points, and feature state.
  • Provide AI chat, Agent, file-processing, image-generation, tool-use, and conversation-sync features.
  • Verify purchases, restore subscriptions, process renewal status, and provide purchased benefits.
  • Understand product and website use and improve features, performance, reliability, and purchase flows.
  • Troubleshoot failures, limit abuse, and protect accounts and service security.
  • Respond to support, privacy, and deletion requests.

4. Sharing with service providers

We disclose information only as needed to provide the relevant feature:

  • AI model and processing providers: prompts, selected files or images, necessary context, and task parameters first pass through Co-work's backend and may be received by the API gateway Kie.ai (NEXUSAI SERVICES LLC) and Anthropic, OpenAI, Google, or DeepSeek for the model you select, to generate chat, web-search, image, or Agent results. Kie.ai's public Privacy Policy and Terms of Use may also apply to its processing.
  • Apple: for In-App Purchase, subscription management, transaction verification, and subscription-status notifications.
  • Infrastructure providers: for application hosting, databases, file storage, content delivery, website operation, security, and troubleshooting.
  • Legal and safety disclosures: limited information when required by applicable law or valid legal process, or when necessary to protect users and the service.

You decide whether to submit each AI request and whether to grant file or network-tool permissions requested by the Agent; the direct-download edition may also request command or custom-tool permissions. If you do not want content sent to AI processing providers, do not submit that content or authorize the related task. Co-work does not sell personal information or use collected information for cross-company advertising tracking.

We review providers' data-protection and security arrangements and limit processing through applicable contracts, terms, and legal requirements. Third-party retention periods, processing locations, and service-improvement rules may differ. Review the terms above and do not submit sensitive content that is unnecessary for the task.

5. Storage, retention, and deletion

  • Your device may store settings, workspace state, and some conversation or task snapshots.
  • The backend may store conversations, messages, Agent tasks, generation records, membership, and points state to provide sync, continuity, and service functionality.
  • We retain data for as long as reasonably necessary to provide the service, handle support, maintain security and subscription records, resolve disputes, and meet legal obligations.
  • Transaction, anti-fraud, security, and legally required records may remain for a limited period after other data is deleted.
  • If an Apple subscription is still active when you delete the account, we retain only irreversible HMAC fingerprints of the original transaction ID and app account token so you can restore the entitlement to a new anonymous account. The fingerprint contains no raw transaction ID, chat, task, or file content and is marked as used after restoration.
  • You may initiate deletion of your anonymous account and associated backend data in App Settings > Account. Deletion clears the app account, conversations, messages, Agent records, points, and local app cache and cannot be undone. It does not delete files in your workspace.

If the in-app deletion control is unavailable, or you need data-access assistance, email ify0222yfi@gmail.com. Include the anonymous user or device identifier shown in the app so we can locate the data. Do not send passwords, full payment-card details, private keys, or unnecessary sensitive files.

6. Your choices and controls

  • Do not submit text, images, files, or folders that you do not want AI or Agent services to process.
  • You may deny file or network-tool permissions requested by the Agent; in the direct-download edition, you may also deny command or custom-tool permissions. The related feature may then be unable to complete.
  • Delete conversations where available, or initiate full anonymous-account and associated-data deletion in App Settings.
  • You may clear browser local storage to reset the website visitor ID; a new visitor and session ID may be generated on a later visit.
  • Manage or cancel Apple subscriptions in Apple subscription settings.

7. Security and international processing

We use reasonable technical and organizational safeguards, but no system can guarantee absolute security. Do not submit highly sensitive information that is not necessary for the task. Because infrastructure, AI, and payment providers may operate in different locations, information may be processed outside your country or region.

8. Children's privacy

Co-work is not directed specifically to children under 13, and we do not knowingly collect personal information from children under 13. Contact us if you believe a child has provided personal information.

9. Changes to this policy

We may update this policy as the product, service providers, or legal requirements change. We will revise the “Last updated” date above and provide additional notice where appropriate for material changes.

10. Contact us

For privacy, access, or deletion requests, email ify0222yfi@gmail.com. For product and subscription help, visit the Support page.

Co-work为 Mac 打造的 AI Agent 工作台
隐私政策 使用条款 支持

© 2026 Co-work. All rights reserved.