跳到主要内容
途域 PathRealm Team awareness
条款 Terms 隐私 Privacy

隐私与数据

隐私政策

生效日期:2026 年 9 月 4 日

本政策说明途域在提供团队位置感知、路线关系分析、消息和语音播报时会处理哪些信息、为何处理、与谁共享、保存多久,以及你可以如何控制这些信息。

精确位置属于敏感个人信息 途域的核心功能需要在活动期间处理精确位置,并可能将其展示给同一团队成员。请仅与可信任的成员组队,并在充分理解用途和影响后开启位置共享。

1. 适用范围与处理原则

本政策适用于途域 App、区域服务器、Bootstrap 配置服务和本网站。途域按照功能所必需的最小范围处理信息,不将个人信息用于与团队位置协作无关的广告画像。

本政策中的“团队”或“活动”是指通过邀请码进入的同一 PathRealm Session。团队成员之间的位置和消息可见性是产品的核心用途,而不是向公众公开。

2. 我们处理哪些信息

2.1 你主动提供的资料和偏好

  • 团队内显示名称。
  • 活动类型,例如骑行、摩托车、跑步或徒步。
  • 界面与播报语言、距离单位、自动播报和位置共享设置。
  • 创建或加入活动时使用的邀请码、服务区域及相关操作信息。

2.2 设备与服务身份信息

  • 随机生成的设备安装标识、设备凭据,以及团队成员和 Session 标识。
  • 成员角色、加入或退出状态、配置版本、请求标识和同步进度。
  • 网络请求通常附带的 IP 地址、请求时间、状态码、设备系统版本和必要的技术元数据。

途域当前不要求使用手机号、电子邮箱或社交账号注册普通 App 账号。

2.3 精确位置与运动信息

活动期间,在你授权定位并启用位置共享后,途域会处理经纬度、采集时间、水平精度,以及设备可提供时的速度、运动方向和海拔。App 可能在活动进行且获得后台定位权限时继续采集位置。

后端会根据近期位置计算轨迹、队伍、队长、成员归属、前后关系、路线距离、直线距离和其他队伍状态。这些推断结果也属于与你和团队活动有关的信息。

2.4 团队消息

发送团队消息时,我们会处理原始文字、发送者显示名称、发送与接收成员标识、语言和单位偏好,以及你选择附带时的发送位置快照。服务器还可能为不同接收者生成相对位置、距离和待播报文字。

语音通常由接收者设备根据服务器下发的文字在本地合成;途域不需要把你的语音录音上传到服务器。

2.5 诊断信息

App 诊断日志默认关闭。你主动开启后,日志可能记录功能事件、网络请求结果、耗时、设备和 App 版本、位置处理状态以及经过隐藏处理的请求或响应内容。凭据、邀请码、密码和授权信息会尽可能被遮盖,但日志仍可能包含位置或团队活动相关信息。

诊断日志先保存在设备本地,当前总量上限为约 10 MB;只有你主动执行发送操作时才上传。为定位特定问题或执行受控验收,服务器也可能在明确开启的诊断模式下临时保存指定活动的完整原始位置轨迹;该能力在正常部署中默认关闭。

2.6 网站数据

当前网站不包含广告、行为分析或第三方统计脚本。浏览器仅在本地保存中英文选择。网站服务器仍可能为安全和运行维护处理标准访问日志,例如 IP 地址、请求时间、页面地址、浏览器类型和响应状态。

3. 我们如何使用这些信息

  • 创建、加入、同步、退出和结束团队活动。
  • 在授权范围内向同一活动成员展示位置和队伍状态。
  • 计算路线关系、队伍、成员前后位置和距离。
  • 发送团队消息,生成并交付自动或手动语音播报文字。
  • 执行身份验证、幂等处理、权限控制、同步恢复和防止滥用。
  • 响应你的设置、删除、查询和支持请求。
  • 在诊断功能开启或你主动提供日志时排查故障、验证算法并改善稳定性。
  • 履行法律义务以及保护用户、团队成员、服务和公众的安全与合法权益。

4. 信息如何共享或向他人披露

4.1 同一团队成员

当位置共享开启时,同一活动成员可能看到你的显示名称、当前或近期位置、运动状态、轨迹展示和队伍关系。你发送的团队消息及可选位置附件会提供给相应团队成员,并可能在其设备上播报。请将邀请码仅提供给可信任的人。

4.2 基础设施和服务提供方

为运行服务,数据可能由提供服务器、存储、网络和安全能力的基础设施服务方按必要范围处理。我们要求相关处理仅用于提供和保护服务。

4.3 地图和设备定位服务

App 当前使用 MapTiler 提供地图样式和瓦片。加载地图时,MapTiler 可能收到 IP 地址、设备和网络请求信息,以及你正在查看的地图区域。设备定位由 Apple 等操作系统能力提供;相关处理也受其定位服务隐私说明约束。

4.4 法律、安全与权利保护

在法律法规要求、有效法律程序、安全事件处置、保护生命健康或维护用户和服务合法权益所合理必要的情况下,我们可能披露相关信息。

除获得你的授权、法律要求或提供核心服务所必需外,我们不会出售你的个人信息,也不会把精确位置提供给广告商。

5. 存储位置与保存期限

5.1 区域服务器与跨境传输

创建活动时选择的服务区域,或邀请码对应的区域,决定团队主要数据由哪个区域服务器处理。可用区域可能包括中国、亚洲、北美洲和欧洲。若你或团队成员在服务器区域之外使用服务,数据可能跨国家或地区传输。

5.2 实时位置与轨迹

正常模式下,服务器不保存无限增长的完整原始 GPS 历史。用于实时计算的位置、近期轨迹和算法工作状态采用有限窗口;当前配置通常会在成员最后一次有效更新约 15 分钟后自动过期。关闭共享时,服务会尝试清除对应的实时轨迹状态。

消息位置附件、团队事件、诊断日志或受控诊断模式中的原始位置可能采用不同的保存方式,不能由上述 15 分钟期限推断。

5.3 团队、成员和消息记录

Session、成员关系、加入退出事件、团队消息、位置附件和必要的幂等记录会保存在业务数据库中,以维持活动一致性、消息同步和故障恢复。当前版本尚未为所有历史 Session 记录提供统一的 App 内自动删除入口;我们会在实现功能、安全维护、争议处理和法律要求所必要的期间保留,并在不再需要时删除或匿名化。你可以通过下方邮箱提出删除请求。

5.4 本地数据和诊断日志

设备本地会保存凭据、当前活动状态、偏好、Bootstrap 缓存、待上传位置队列、同步进度和必要的播报防重复状态。数据通常保留到被业务流程确认并清理、你执行清除或退出操作,或卸载 App。

本地诊断日志可以由你随时清除。主动上传的诊断日志和受控服务器诊断文件会在排查、验证和安全审计所需要的期间保存;当前版本不承诺固定期限,你可以联系我们申请删除。

6. 信息安全

我们采用传输加密、设备凭据、团队与成员权限校验、受限服务器访问、日志敏感字段遮盖和有限实时轨迹窗口等措施降低未经授权访问、泄露、篡改和丢失的风险。

任何设备、网络、存储或软件都无法保证绝对安全。你应保护设备解锁凭据、邀请码和团队信息,并及时移除不应继续参与活动的成员。如果发现异常,请通过下方邮箱联系我们。

7. 你的选择与权利

  • 在 iOS 系统设置中选择定位权限范围、关闭精确位置或完全撤回定位权限。
  • 在 App 内开启或关闭位置共享和自动播报。
  • 退出活动;活动组织者可以结束活动。
  • 查看并清除设备本地诊断日志,决定是否向服务器发送。
  • 通过清除 App 数据或卸载 App 删除相应本地数据,但这不会自动删除服务器或其他团队成员设备上的数据。
  • 联系我们请求访问、更正、复制或删除相关个人信息,撤回同意,或对处理方式提出问题和投诉。

为避免删除他人数据,我们可能需要验证请求人与设备或团队成员身份。撤回授权不影响撤回前基于有效授权进行的处理。关闭必要权限后,相关功能可能无法使用。

8. 未成年人

未成年人应在监护人指导和同意下使用途域。监护人应特别注意精确位置会向同一团队成员展示,并确认团队成员可信、活动安排安全。如果你认为未成年人信息在未获适当同意的情况下被处理,请联系我们。

9. 本政策更新

我们可能因功能、数据处理、第三方服务、合规要求或法律变化更新本政策。更新版本会在本页面标明生效日期;重大变化会通过 App、网站公告或其他合理方式说明。

10. 联系我们

如需咨询、行使权利、申请删除或报告安全问题,请联系:

  • 开发者/运营者:杭州途域智行科技有限公司
  • 联系邮箱:xiaoqiang.dong@gmail.com

相关页面

返回首页 查看使用条款

Privacy & Data

Privacy Policy

Effective date: September 4, 2026

This Policy explains what information PathRealm processes to provide team location awareness, route relationship analysis, messaging, and spoken reports; why it is processed; who can receive it; how long it is retained; and how you can control it.

Precise location is sensitive personal information PathRealm's core features require precise location during an activity and may show it to members of the same team. Join only with people you trust, and enable sharing only after you understand its purpose and impact.

1. Scope and Principles

This Policy applies to the PathRealm App, regional servers, Bootstrap configuration service, and this website. PathRealm processes information within the minimum scope necessary for its functions and does not use personal information for advertising profiles unrelated to team location coordination.

“Team” or “activity” means the same PathRealm Session entered through an invite code. Location and message visibility among team members is a core product purpose, not public disclosure.

2. Information We Process

2.1 Information and preferences you provide

  • Your display name within a team.
  • Activity type, such as cycling, motorcycling, running, or hiking.
  • Interface and spoken language, distance unit, automatic report, and location-sharing settings.
  • Invite code, service region, and related operation details used to create or join an activity.

2.2 Device and service identity

  • A randomly generated device-installation identifier and credential, plus member and Session identifiers.
  • Member role, join or leave state, configuration versions, request identifiers, and synchronization progress.
  • Technical metadata ordinarily associated with network requests, such as IP address, request time, status code, operating-system version, and necessary device information.

PathRealm currently does not require a phone number, email address, or social account to register an ordinary App account.

2.3 Precise location and motion data

During an activity, after you grant location permission and enable sharing, PathRealm processes latitude, longitude, capture time, horizontal accuracy, and—when supplied by the device—speed, direction of travel, and altitude. The App may continue to collect location in the background while an activity is active and the relevant permission is granted.

The backend derives recent tracks, teams, team leaders, member assignment, relative order, route distance, direct distance, and other team state. These inferences are also information related to you and the activity.

2.4 Team messages

When you send a team message, we process the original text, sender display name, sender and recipient identifiers, language and unit preferences, and—if you choose to attach it—a location snapshot. The server may also generate recipient-specific relative location, distance, and spoken text.

Speech is ordinarily synthesized locally on the recipient's device from server-delivered text; PathRealm does not need to upload a recording of your voice.

2.5 Diagnostics

App diagnostic logging is off by default. If you enable it, logs may contain feature events, network outcomes, timing, device and App versions, location-processing state, and redacted request or response content. Credentials, invite codes, passwords, and authorization values are redacted where possible, but logs may still contain location or team-activity information.

Logs are first stored locally with a current total limit of approximately 10 MB and are uploaded only when you actively send them. For specific troubleshooting or controlled acceptance, a server diagnostic mode may temporarily retain the complete raw location track of a designated activity. This capability is disabled by default in normal deployment.

2.6 Website data

This website currently contains no advertising, behavioral analytics, or third-party statistics scripts. Your browser stores only the Chinese/English selection locally. Website infrastructure may still process standard access-log data for security and operations, including IP address, request time, page address, browser type, and response status.

3. How We Use Information

  • To create, join, synchronize, leave, and end team activities.
  • To show location and team state to members of the same activity within the authorized scope.
  • To calculate route relationships, teams, relative member position, and distance.
  • To send team messages and generate and deliver text for automatic or manual spoken reports.
  • To authenticate devices, enforce permissions, process operations idempotently, restore synchronization, and prevent abuse.
  • To respond to settings, deletion, access, and support requests.
  • To troubleshoot problems, verify algorithms, and improve reliability when diagnostics are enabled or you provide logs.
  • To comply with law and protect the safety and lawful interests of users, teammates, the service, and the public.

4. How Information Is Shared or Disclosed

4.1 Members of the same team

While location sharing is enabled, other members of the activity may see your display name, current or recent position, motion state, displayed track, and team relationships. Team messages and optional location attachments are delivered to the relevant teammates and may be spoken on their devices. Share invite codes only with people you trust.

4.2 Infrastructure providers

Providers of server, storage, network, and security infrastructure may process information within the scope necessary to operate the service. We require such processing to be used only to provide and protect the service.

4.3 Maps and device location services

The App currently uses MapTiler for map styles and tiles. When a map is loaded, MapTiler may receive the IP address, device and network request information, and the map area being viewed. Device positioning is provided through operating-system capabilities such as Apple's and is also governed by the provider's Location Services privacy notice.

4.4 Law, safety, and protection of rights

We may disclose relevant information where reasonably necessary to comply with law or valid legal process, respond to a security incident, protect life and health, or protect the lawful rights of users and the service.

Except with your authorization, as required by law, or as necessary for the core service, we do not sell personal information or provide precise location to advertisers.

5. Storage Location and Retention

5.1 Regional servers and international transfer

The service region selected when an activity is created, or associated with its invite code, determines the regional server that principally processes team data. Available regions may include China, Asia, North America, and Europe. If you or a teammate uses the service outside the server region, data may be transmitted across national or regional borders.

5.2 Live location and tracks

In normal mode, the server does not retain an indefinitely growing complete raw GPS history. Location, recent tracks, and algorithm working state used for live processing have bounded windows; under the current configuration, they ordinarily expire about 15 minutes after the member's last valid update. The service attempts to clear corresponding live-track state when sharing is disabled.

Message location attachments, team events, diagnostic logs, and raw location retained during controlled diagnostic mode have separate retention behavior and are not governed by that 15-minute period.

5.3 Team, member, and message records

Session records, membership, join and leave events, team messages, location attachments, and necessary idempotency records are stored in the business database to maintain activity consistency, message synchronization, and recovery. The current version does not yet offer a single in-App automatic deletion control for every historical Session record. We retain these records while necessary for functionality, security, dispute handling, and legal obligations, and delete or anonymize them when no longer needed. You may request deletion by email.

5.4 Local data and diagnostics

The device stores credentials, current activity state, preferences, Bootstrap cache, queued location awaiting upload, sync progress, and necessary replay-protection state. Data is ordinarily retained until the relevant workflow confirms and removes it, you clear or leave the activity, or you uninstall the App.

You may clear local diagnostic logs at any time. Uploaded logs and controlled server diagnostic files are retained as needed for troubleshooting, verification, and security review. The current version does not promise a fixed period; you may contact us to request deletion.

6. Security

We use measures such as encryption in transit, device credentials, team and member permission checks, restricted server access, redaction of sensitive log fields, and bounded live-track windows to reduce the risk of unauthorized access, disclosure, alteration, or loss.

No device, network, storage method, or software is absolutely secure. Protect your device unlock credentials, invite codes, and team information, and remove members who should no longer participate. Contact us if you discover suspicious activity.

7. Your Choices and Rights

  • Choose the scope of location permission in iOS Settings, disable Precise Location, or revoke location permission entirely.
  • Enable or disable location sharing and automatic spoken reports in the App.
  • Leave an activity; an organizer may end the activity.
  • Review and clear local diagnostic logs and decide whether to send them to the server.
  • Clear App data or uninstall the App to remove corresponding local data. This does not automatically delete server data or copies on teammates' devices.
  • Contact us to request access, correction, a copy, or deletion of relevant personal information; withdraw consent; or ask questions and submit complaints.

We may need to verify that a request comes from the relevant device or team member so that we do not delete another person's information. Withdrawal does not affect processing lawfully completed before withdrawal. Features that require withdrawn permissions may stop working.

8. Minors

Minors should use PathRealm only with a guardian's guidance and consent. Guardians should pay particular attention to the fact that precise location is shown to teammates, confirm that team members are trusted, and assess activity safety. Contact us if you believe a minor's information has been processed without appropriate consent.

9. Updates to This Policy

We may update this Policy because of changes to features, data processing, third-party services, compliance requirements, or law. The effective date will be shown on this page, and material changes will be explained through the App, a website notice, or other reasonable means.

10. Contact Us

For questions, rights requests, deletion requests, or security reports, contact:

  • Developer / Operator: Hangzhou Tuyu Zhixing Technology Co., Ltd
  • Email: xiaoqiang.dong@gmail.com

Related Pages

Home Read Terms of Use
© 2026 PathRealm xiaoqiang.dong@gmail.com