中文
一句話總結:哈波蜜是一款眾包的蔬食餐廳地圖。你的位置只在查詢當下使用、不上傳也不儲存;帳號只透過 Apple 或 Google 登入,我們從不接觸你的密碼;你提交的餐廳回報會與帳號關聯保存,那是協作資料的一部分。本 App 沒有廣告、沒有第三方分析或追蹤 SDK。
一、我們蒐集的資料
- 位置資訊:在你授權後,用來把地圖定位到你附近、查詢周邊的蔬食餐廳。位置僅在你使用當下用於查詢,不會上傳或儲存於我們的伺服器,也不會用來追蹤你的行蹤。你可隨時在系統設定關閉定位權限;拒絕定位仍然可以使用地圖,只是需要自己移動視野。
- 帳號資訊:登入方式只有 Sign in with Apple 與 Google 登入,兩者都是標準 OAuth。本 App 沒有帳號密碼欄位,也從不接觸你的密碼。我們透過後端服務(Supabase Auth)保存的是你的電子郵件位址與該登入方式的識別資訊,用於辨識你的貢獻與投票身分。
若你使用 Sign in with Apple 並選擇「隱藏我的電子郵件」,我們收到的會是 Apple 產生的轉發位址(@privaterelay.appleid.com),而不是你真正的信箱。
- 回報/投票資料:你對餐廳提交的回報(新增、分類更正、「已歇業」等)與你投下的票會與你的帳號關聯後保存,用於群眾協作改善資料正確性,並用來分辨「兩個人同意」與「同一個人投兩次」。
- 購買紀錄:若你購買會員等級,我們保存 Apple 提供的交易識別碼與購買的產品代號,以及你目前的會員等級。付款完全由 Apple 處理,開發者不會收到也無法存取你的信用卡或付款資訊。保存交易識別碼是為了避免同一筆交易被重複兌換。
我們不會蒐集照片、精準行蹤軌跡或廣告識別碼。本 App 不含廣告,也未內嵌第三方分析或追蹤 SDK。
二、資料如何使用
你的資料僅用於:顯示蔬食餐廳、支援會員協作更正資料、確保投票來自不同的人、以及改善資料品質。我們不會將你的資料用於廣告,也不會販售或出租給第三方。
三、第三方服務與資料來源
- Supabase(PostgreSQL 資料庫與帳號服務,資料存放於 AWS 東京區域)——帳號、回報、投票、購買紀錄都保存在這裡。
- Apple——Sign in with Apple 的身分驗證,以及 App 內購買的付款處理。
- Google——Google 登入的身分驗證。
- 餐廳基礎資料來源包含 OpenStreetMap 與政府開放資料,其後由使用者持續增補與更正。
四、資料保存與刪除
你可隨時在 App 內的「設定 → 刪除帳號」刪除自己的帳號,系統會一併移除你的所有回報紀錄,此動作無法復原。
若你的帳號連結了 Google,刪除時我們會一併嘗試撤銷該 Google 授權。Apple 端的授權則需要你自行移除:iOS「設定 → 你的名字 → 密碼與安全性 → 使用 Apple 帳號登入的 App」。這是刻意的取捨而非疏漏——你看得到的後果是:刪除帳號後若再次用 Apple 登入,系統不會重新詢問「分享或隱藏我的電子郵件」,而會沿用你上次的選擇。
五、兒童隱私
本 App 並非針對兒童設計,我們不會刻意蒐集兒童的個人資料。
六、政策變更
我們可能不時更新本政策,更新後將於本頁面公布最新版本與更新日期。
七、聯絡我們
若對本政策有任何疑問,請來信:shinren.pan@gmail.com · 支援與常見問題
English
In one sentence: HerbMeet is a crowdsourced vegetarian restaurant map. Your location is used only for the search you are making — it is never uploaded or stored. Accounts exist only through Apple or Google sign-in, so we never handle your password. Reports you submit are stored against your account, because that is what collaborative data is. There are no ads and no third-party analytics or tracking SDKs.
1. What we collect
- Location: with your permission, to center the map near you and search for vegetarian places around you. It is used only for the search you are making and is not uploaded to or stored on our servers, nor used to track your movements. You can revoke the permission anytime in system settings; the map still works without it, you just move the view yourself.
- Account information: the only sign-in methods are Sign in with Apple and Google Sign-In, both standard OAuth. The app has no password field and never handles your password. Through our backend (Supabase Auth) we retain your email address and the identifier for that sign-in method, used to attribute your contributions and votes.
If you use Sign in with Apple and choose "Hide My Email", what we receive is Apple's relay address (@privaterelay.appleid.com), not your real inbox.
- Reports and votes: what you submit about a restaurant (additions, tag corrections, closure reports) and the votes you cast are stored against your account — to improve the data collaboratively, and to tell "two people agreed" apart from "one person voted twice".
- Purchase records: if you buy a member level, we store the transaction identifier supplied by Apple, the product identifier, and your current level. Payment is handled entirely by Apple; the developer never receives or has access to your card or payment details. The transaction identifier is kept so the same purchase cannot be redeemed twice.
We do not collect photos, precise movement history, or advertising identifiers. The app carries no ads and embeds no third-party analytics or tracking SDK.
2. How data is used
Your data is used only to: show vegetarian restaurants, let members collaboratively correct the data, ensure votes come from distinct people, and improve data quality. We do not use your data for advertising, and do not sell or rent it to anyone.
3. Third parties and data sources
- Supabase (PostgreSQL database and auth service, hosted in the AWS Tokyo region) — accounts, reports, votes and purchase records are stored here.
- Apple — identity verification for Sign in with Apple, and payment processing for in-app purchases.
- Google — identity verification for Google Sign-In.
- Base restaurant data originates from OpenStreetMap and government open data, and is extended and corrected by users from there on.
4. Retention and deletion
You can delete your account anytime under Settings → Delete Account in the app. This removes your account together with all of your reports, and cannot be undone.
If your account is linked to Google, deletion also attempts to revoke that Google grant. The Apple grant has to be removed by you, under iOS Settings → your name → Sign-In & Security → Sign in with Apple. This is a deliberate trade-off rather than an oversight — the consequence you can see is that after deleting your account and signing in with Apple again, you are not asked again whether to share or hide your email; your previous choice is reused.
5. Children
This app is not directed at children, and we do not knowingly collect personal data from them.
6. Changes to this policy
We may update this policy from time to time. The current version and its update date are published on this page.
7. Contact
Questions about this policy? Email shinren.pan@gmail.com · Support & FAQ