← Free, open source, non-profit← 免费 · 开源 · 非盈利

Privacy隐私政策

This page is what the nanoMuse apps — the phone, the web and desktop apps, the dsh plugin — and nanoMuse Cloud do with your data. It is short because they do little with it. Where it matters, the one thing you decide is a switch: Settings → Data controls. The same text lives in the repository as docs/privacy.md, with its history.这一页说明 nanoMuse 的各端应用(手机、网页、桌面、dsh 插件)和 nanoMuse Cloud 怎样处理你的数据。它很短,因为它们对数据做的事不多。真正要你决定的只有一个开关:设置 → 数据控制。同样的文字也在仓库里的 docs/privacy.md,带修改历史。

Everything stays on your device一切都留在你的设备上

The agent runs inside the app — on the phone, in a Linux root file system in the app's private storage; on a computer, in the runtime you installed. Conversations, memory, files the agent writes, scheduled tasks, skills and settings are stored there and, where you mount them, in folders you chose. There is no analytics, no crash reporting to us and no telemetry of any kind. The only nanoMuse server is the optional relay described below, and the apps work fully without it.智能体就在应用里运行——手机上是 App 私有存储里的一个 Linux 根文件系统,电脑上是你安装的运行时。对话、记忆、它写的文件、定时任务、技能和设置都存在那里,以及你挂载的文件夹里。没有统计分析,没有发给我们的崩溃报告,没有任何形式的遥测。nanoMuse 唯一的服务器是下面说的可选中继,不用它应用也完整可用。

What leaves the device什么会离开设备

Permissions权限

Each permission is asked for when a feature needs it and is used for that feature only: notifications for the agent's status and reminders; accessibility for operating other apps' screens, which is off until you turn it on; storage folders you mount; the microphone for voice input; contacts, calendar and location for the tools of the same names, each callable only after you granted them. Nothing is read in the background.每项权限都在功能需要时才申请,也只用于那个功能:通知用于智能体的状态和提醒;无障碍用于操作其他应用的屏幕,你打开之前一直是关的;存储用于你挂载的文件夹;麦克风用于语音输入;通讯录、日历和位置分别用于同名的工具,各自只在你授权后才能调用。后台不读取任何东西。

What the agent may do without asking智能体什么事可以不问就做

Before anything it cannot take back — deleting your files, sending a message or data out, paying — the agent stops and a card asks you, in the shell, in the browser and on the phone's screen alike. What you may remember from that card comes in three tiers, and Settings → Permissions → Remembered approvals lists everything you remembered, one line each, tap to revoke:凡是收不回来的事——删你的文件、把消息或数据发出去、付款——智能体都会停下来,在命令行、浏览器和手机屏幕上一样弹出一张卡片问你。卡片上可以记住的选择分三档,「设置 → 权限 → 已记住的批准」列出你记住的每一条,点一下即可撤销:

Passwords, verification codes and card numbers are never typed by the agent; those screens are handed to you. Anything alarming in a command (wiping a disk, force-pushing history, a download piped into a shell) is asked about every time and cannot be remembered. Nothing unlawful or harmful is done, however it is worded — the agent refuses and says why.密码、验证码和卡号永远不由智能体输入,那些界面会交还给你。命令里任何危险的内容(抹盘、强推历史、下载直接管道进 shell)每次都会询问,不能被记住。无论怎么措辞,违法或有害的事都不会做——智能体会拒绝并说明原因。

Feedback反馈

Bug reports go to GitHub Issues from Settings → Feedback; the report is pre-filled with the app version and the device model and nothing else. Do not paste API keys or private conversations into an issue.问题反馈从「设置 → 反馈」进入 GitHub Issues;报告会预填应用版本和设备型号,别的没有。不要把 API key 或私人对话贴进 issue。

Changes变更

This page changes when the apps' behaviour changes; the history is in the repository.应用的行为变了,这一页也会跟着变;修改历史在仓库里。

Open nanoMuse in the browser打开网页版 This page as Markdown本页的 Markdown 版