拍得扫描王 隐私政策
本政策基于拍得扫描王当前功能、权限和第三方服务编制。产品、SDK、权限或数据流发生实质变化时,我们将同步复核并更新本政策。
运营者: 南京宝銮信息科技有限公司
联系邮箱: zsw@baoluaninfo.com
联系电话: 13951741865
生效日期: 2026 年 8 月 4 日
最近更新日期: 2026 年 8 月 26 日
拍得扫描王(以下简称“本应用”)是一款由南京宝銮信息科技有限公司(以下简称“我们”)发布和运营的移动文档工具,提供文档扫描、导入、OCR 文字识别、PDF 编辑、文件整理、导出和分享功能。首次启动时,如您不同意本政策和用户服务协议,可以选择退出应用;拒绝单项系统权限只影响对应功能。
1. 我们处理的信息
本应用的核心文档处理默认在您的设备本地完成。我们不会因您仅使用扫描、本地 OCR、PDF 编辑、文件夹管理或本地导出功能而将文档内容上传至我们的服务器。仅当您主动启用“云端曲面校正”,或在 AI 工具中选择、拍摄内容并点击执行、提交或发送等明确命令时,本次选定内容才会通过我们的自有后端及下述服务进行网络处理;不会自动处理资料库中的其他文件。
| 信息或权限 | 使用场景 | 处理方式 |
|---|---|---|
| 相机画面 | 您点击文档扫描、证件扫描、底部扫描按钮或其他相机扫描入口后 | 用于拍摄文档、二维码或条码;授权后进入扫描页,拒绝后停留在来源页。 |
| 相册中的图片 | 您主动从相册导入图片,或主动保存导出图片到相册时 | 仅访问您选择导入或保存的内容。 |
| 本地文件及文件夹 | 您主动导入、导出、浏览或管理文档时 | 读取您选定的文件;Android 设备可能为兼容系统版本申请媒体/存储读取权限。 |
| 文档内容、OCR 文本和编辑结果 | 扫描、文字识别、PDF 处理、结构化导出、搜索和本地管理时 | 默认仅存于设备本地应用数据、您选择的本地目录或系统相册。OCR 主要使用设备端能力和本地 SDK 处理。 |
| 云端曲面校正图片 | 您在扫描设置中明确启用“云端曲面校正”,且扫描页需要曲面拉平时 | 当前裁剪页会通过我们的 HTTPS 签名代理发送至有道智云图片矫正服务,用于返回矫正后的图片。关闭该开关后继续使用本地处理。 |
| AI 工具所选内容、指令和上下文 | 您主动使用文字、公式、表格、手写、模板或题目识别、图像矫正、试卷手写擦除、文件转 Markdown、PDF 格式转换、文档分析、作文批改、拍照解题或 AI 辅导,并点击执行、提交或发送时 | 本次选定的图片、PDF、Office/文本文件、文件名、笔迹数据、必要提取文本,以及您输入的指令、问题、语言、年级、标题、要求或相关对话上下文,会通过 HTTPS 发送至我们的自有后端;后端按功能将必要内容提供给有道智云、百度智能云或阿里云 EduTutor 并返回结果。不使用这些工具时仍可使用本地扫描和本地处理。 |
| 文件名、文件路径、文件元数据 | 在资料库中显示、搜索、排序、导出和分享时 | 默认仅在设备本地保存和使用。 |
| 设备本地认证结果 | 您启用文档保护、指纹或面容认证时 | 调用系统生物识别能力,仅接收认证成功或失败结果;本应用不读取或保存您的指纹、面容模板等生物识别特征。 |
| 账号与安全信息 | 您使用匿名账号、手机号或 Apple 登录、设备管理、恢复码或人工恢复时 | 中国大陆 Android 会处理 E.164 格式手机号、加密后的密码、验证码或本机号码认证结果、匿名标识、安装标识、登录设备与会话信息、恢复码及人工恢复申请。中国大陆 App Store iOS 还会在您选择 Apple 登录时处理 Apple 身份令牌、授权码、随机数及 Apple 首次提供的可选邮箱、姓名,并可在手机号绑定或登录时通过阿里云融合认证处理必要认证信息。密码和恢复码不以明文日志记录。 |
| 订阅与交易状态 | 您查看订阅、购买、恢复购买或刷新权益时 | Google Play Android 和海外 App Store iOS 由应用商店及 RevenueCat 处理;中国大陆 App Store iOS 由 Apple App Store 和 RevenueCat 处理交易与订阅状态,并将后端账号的非手机号标识用于权益绑定;中国大陆 Android 由我们的订单服务及您选择的微信支付或支付宝处理。我们不读取或保存您的银行卡号、支付密码。 |
| SDK 授权校验信息 | 应用启动后初始化 Genius Scan SDK 及刷新其授权状态时 | Genius Scan SDK 可能通过网络处理完成授权校验所必需的应用标识、应用版本、设备及网络技术信息和授权状态。该授权校验不包含您的扫描文件、相机画面、OCR 文本或文档内容。 |
| 安装实例级使用情况和应用活动 | Google Play Android 和 App Store iOS 经您在首次页允许后,或中国大陆 Android 在您同意本政策并进入应用后,用于统计首次打开、有效使用、留存、扫描/保存/导出完成情况和购买流程转化 | 通过与发行渠道匹配的分析服务处理,包括应用实例标识、设备和系统基本信息、应用版本、粗略地区及低基数业务事件。这些数据不等同于完全匿名数据;我们不会发送扫描件、文件、OCR 文本、文件名或文件路径。海外渠道选择“稍后设置”或任何渠道关闭分析均不影响核心功能。 |
2. 权限说明
我们仅在相关功能实际需要时申请权限。您可以拒绝非必要权限,但相应功能可能无法使用。
- 相机权限:仅在您点击文档扫描、证件扫描、底部扫描按钮或其他明确的相机扫描入口后申请,用于扫描文档、二维码和条码。中国大陆 Android 在系统权限框弹出时,通过页面顶部的用途蒙层同步说明“拍得扫描王将申请获取你的相机权限,用于拍摄文档进行扫描、提取文字等相关功能。扫描内容尽在本机处理和保存。”授权后进入扫描页并直接显示相机预览;拒绝后停留在来源页。通过无需相机的方式进入文档预览时,仅在您继续拍摄后申请;拒绝后关闭已打开的扫描页并返回来源页。只有您在系统权限框中明确点击拒绝或不允许时,中国大陆 Android 才自本次明确拒绝起 48 小时内不再次发起系统相机权限请求;关闭或取消系统权限框不视为拒绝,您下次主动点击扫描入口时仍会显示系统权限框。在 48 小时限制期间再次点击扫描入口时,本应用仅提示您可前往系统设置手动开启;如您在系统设置中将相机权限改为“每次使用时询问”,下一次主动点击扫描入口时会重新显示系统权限框。
- 照片权限:仅在您主动从相册导入图片或签名图片时申请。完整授权或“仅所选照片”授权后,本次导入自动继续,无需再次点击;普通 PDF 和文件选择不申请照片权限。
- 生物识别/设备凭据:仅在您启用文档保护或验证操作时调用系统认证。
- 网络权限:用于账号登录与恢复、Apple 登录、阿里云融合认证、设备会话、会员权益、微信/支付宝或应用商店及 RevenueCat 的购买与恢复购买、Genius Scan SDK 授权校验,以及按发行渠道和您的同意状态发送安装实例级使用事件;在您明确启用“云端曲面校正”,或选择/拍摄内容并点击 AI 工具的执行、提交或发送命令后,也用于把本次必要内容发送至自有后端和对应服务并接收结果。默认本地处理不会上传您的扫描文件、相机画面、OCR 文本或其他文档内容。
本应用可能查询设备是否安装了可供分享或导出的应用(例如即时通信、办公、云盘或 Obsidian),仅用于展示可用目标或发起您选择的系统跳转,不会因此读取这些应用中的内容。
3. 第三方服务、使用情况分析和信息共享
本应用使用以下服务支持订阅、账号认证、扫描、使用情况分析、云端曲面校正和 AI 工具,以及您主动选择的导出或分享功能。除您主动分享、打印或导出所选内容,明确启用云端曲面校正,或在 AI 工具中选择、拍摄内容并点击执行、提交或发送等明确命令外,我们不会向第三方提供您的文档内容。AI 工具当前以该功能页面中的执行命令作为本次网络处理动作,不承诺另行弹出第二次上传确认。海外发行包的首次确认页显示简要分析说明;中国大陆 Android 首次确认页不显示独立分析说明。
- Apple App Store、Google Play 和 RevenueCat / purchases_flutter 10.4.2。RevenueCat 仅适用于 Google Play Android 和 App Store iOS(包括中国大陆 App Store iOS),用于购买、恢复购买、身份绑定、CustomerInfo 和权益同步。中国大陆 App Store iOS 会使用后端账号的非手机号标识绑定 RevenueCat 身份,并由后端权益状态控制会员访问;中国大陆 Android 不接入 RevenueCat、Google Play Billing 或 Amazon Appstore SDK。
- 微信支付和支付宝。适用于中国大陆 Android 固定期限会员套餐,当前使用微信支付 SDK 6.8.34 和支付宝 SDK 15.8.42。您选择支付方式后,应用将后台生成的签名支付参数交给相应客户端 SDK 发起支付;支付平台处理支付账户、交易和风控信息,并向我们的服务端回传交易结果。我们以服务端订单回调为准开通权益,不读取或保存支付密码。
- Google ML Kit。Android 和 iOS 按适用平台使用文字、二维码或条码识别组件在设备端完成 OCR 与条码识别,不向我们的服务器上传文档内容。该组件是核心识别能力,不属于广告、登录或定位 SDK。
- Genius Scan SDK 6.3.0。本应用使用 Genius Scan SDK 提供文档边缘检测、扫描和图像处理能力。应用启动后可能联网校验和刷新 SDK 授权状态,并处理完成校验所必需的应用标识、应用版本、设备及网络技术信息和授权状态。扫描文件、相机画面、OCR 文本和文档内容默认在设备本地处理,不会因 SDK 授权校验而上传。
- Apple 登录。适用于中国大陆 App Store iOS。仅在您主动选择 Apple 登录时,Apple 向应用提供身份令牌、授权码以及首次授权时可能提供的邮箱和姓名;我们使用这些信息创建或关联后端账号。Apple 对 Apple ID 和授权记录的处理遵循其政策。
- 阿里云融合认证及运营商组件。中国大陆 Android 和中国大陆 App Store iOS 按登录流程实际调用阿里云融合认证、短信认证或中国移动、中国联通、中国电信的本机号码认证能力,可能处理手机号或掩码手机号、认证结果、IP 地址、网络类型、运营商、SIM 状态、设备型号、操作系统和应用信息,用于认证与安全风控。
- 自有后端与有道智云 AI 服务。云端曲面校正和相关识别、转换、文档分析能力会先通过我们的 HTTPS 自有后端接收本次必要内容,再按功能提供给有道智云。输入可能包括裁剪页、图片、文档、文件名、笔迹数据、必要提取文本、指令和语言;本地扫描在不使用这些功能时仍然可用。
- 自有后端与百度智能云服务。作文批改、试卷批改、拍照解题及部分文档识别能力会通过我们的 HTTPS 自有后端向百度智能云提供本次选定图片、必要文本、年级、标题、要求或问题,用于识别、批改或返回答案与解析。
- 自有后端与阿里云 EduTutor。当您在 AI 辅导中选择图片、输入问题并点击发送时,我们的自有后端会向阿里云 EduTutor 提供本次图片、问题、年级及必要对话上下文,用于生成辅导答复;不会自动发送资料库中的其他内容。
- Google Firebase Analytics。适用于 Google Play Android 和 App Store iOS。在您明确允许后,用于统计安装实例级功能使用、应用活动、留存和产品转化。处理的信息包括应用实例标识、设备和系统基本信息、应用版本、粗略地区及本政策所述的低基数业务事件;这些数据不等同于完全匿名数据。本应用关闭广告标识、广告个性化、iOS IDFV 和设备端广告转化数据,不设置账号或 RevenueCat 用户 ID,也不会发送扫描件、文件、OCR 文本、文件名或文件路径。详细信息请参阅 Google Firebase 隐私与安全说明。
- Countly 使用情况分析。适用于中国大陆 Android。应用在您同意本政策并进入应用后,通过 Countly Flutter SDK 向我们在中国境内部署和运营的 Countly 服务发送 SDK 生成的应用实例标识、会话信息、设备和系统基本信息、应用版本、发行渠道及低基数功能事件,用于新增、活跃、启动、留存、版本和功能使用统计。我们关闭 Countly 的位置采集,不启用崩溃、用户资料、推送、反馈或远程配置功能。您可以随时在权限管理中关闭分析。不会发送手机号、扫描件、文件、OCR 文本、文件名或文件路径。
- 系统分享、打印和“保存到相册/下载”。仅在您主动确认后,本应用才会将您选定的文件交给系统分享面板、打印服务或您选择的目标应用。目标应用对信息的处理由其自身政策约束。
- Obsidian。当您主动选择导出到 Obsidian 时,本应用会通过 Obsidian URL Scheme 将您选定的文本内容和文件名交给 Obsidian,以创建或追加笔记。后续处理由 Obsidian 及您选择的库位置决定。
中国大陆 Android 不接入广告 SDK,也不打包 Google 登录、Google 定位或 Google Mobile Ads;本应用不提供基于文档内容的广告定向,也不将您的扫描件、OCR 文本或本地文件出售给第三方。
4. 存储、保留与删除
- 文档、缩略图、OCR 文本、文件夹、设置及部分任务信息通常保存在设备本地。您可以在应用内删除文件、文件夹或本地账户数据;也可以卸载应用清除应用私有目录中的数据。
- 导出到系统下载目录、相册、第三方应用或外部笔记库的副本,不会因您在本应用内删除原件而自动删除,请您在相应位置自行管理。
- 临时预览和导出缓存会在功能完成后或按应用维护策略清理;不应将本应用作为唯一备份方式。
- 自有后端接收的 AI 输入不作为用户文档存储;在完成请求、异步任务和必要安全日志处理后按最短必要期限删除或清理。拍照解题任务状态和文本结果缓存最长 10 分钟;阿里云 EduTutor 临时图片通常在服务调用完成后撤销,异常情况下的兜底有效期最长 10 分钟。
- 发送至有道智云、百度智能云或阿里云 EduTutor 的数据及其任务结果,按对应服务的适用政策和服务规则处理。其中有道 PDF 格式转换任务及结果按其接口说明保留 7 天。删除本地文件不会自动删除第三方服务端记录。
- 订阅记录由应用商店和 RevenueCat 按其各自保留规则保存。若您需要处理该等信息,请通过其提供的渠道行使权利。
- Firebase Analytics 数据由 Google 按 Firebase/Google Analytics 的适用保留设置处理。您在应用内撤回同意后,本设备会停止后续分析采集并重置本设备的 Firebase 分析数据;已汇总或依法需要保留的数据按 Google 的规则处理。
- 中国大陆 Countly 分析原始事件最长保留 180 天,日/版本/留存等聚合数据最长保留 3 年。您撤回同意后,本设备立即停止后续采集并清除相应的待发送数据;已接收数据按上述期限、法定义务和去标识化汇总规则处理。
- 中国大陆 Android 和中国大陆 App Store iOS 的账号、登录设备、会话及恢复信息通常保存至账号注销或账号服务不再需要时。确认注销后立即注销,不设冷静期;我们会删除或匿名化不再需要的服务端账号信息,法律要求保留的交易、财税、安全或争议记录除外。注销应用账号不会自动删除 Apple App Store、Google Play 或 RevenueCat 按其规则保存的交易和订阅记录。
- 账号注销时,应用同时删除本设备应用沙盒内由 Smart Scan 管理的文档、缩略图、OCR 结果和缓存;另行导出到下载目录、相册或第三方应用的副本需自行删除。
5. 您的权利和选择
您可以:
- 在系统设置中授予、拒绝或撤回相机、照片/媒体及生物识别相关授权;
- 在应用内删除本地文档、OCR 结果、文件夹和本地设置;
- 通过应用商店管理、取消或恢复订阅;
- Google Play Android 和 App Store iOS 可在首次全屏确认页允许分析或选择“稍后设置”;中国大陆 Android 在您同意本政策并进入应用后默认开启 Countly 分析。所有渠道均可在“我的/账号 - 系统设置 - 更多设置 - 权限管理”中关闭或重新开启分析;同意本政策前、选择“稍后设置”后和关闭后不发送新的分析事件;
- 通过上述联系邮箱提出访问、更正、删除、撤回同意、复制或解释个人信息处理规则等请求。
为保护您的数据安全,我们可能在处理请求前验证您的身份。对于仅存在于您设备本地且我们无法访问的数据,您可直接在设备或应用中完成删除和管理。我们将在收到请求后及时处理,并原则上在 15 个工作日内答复;情况复杂或法律另有规定的,将说明原因。
6. 安全措施
我们采取合理措施减少未经授权的访问、使用、披露或丢失风险,包括尽量采用本地处理、使用系统权限控制、在启用文档保护时使用设备认证,以及限制不必要的数据传输。但请理解,任何系统都无法保证绝对安全。请妥善保管设备解锁方式、应用内设置的密码和导出文件。
7. 未成年人
本应用并非专为未成年人设计。未成年人应在监护人同意和指导下使用。若您认为未成年人未经监护人同意向我们提供了需要由我们处理的个人信息,请通过上述渠道联系我们。
8. 政策更新
当功能、权限、第三方服务或适用规则发生重大变化时,我们会更新本政策,并在应用内、应用商店页面或其他适当位置提示。更新后继续使用本应用,即表示您已阅读更新后的政策;法律要求另行取得同意的除外。
9. 联系我们
如对本政策或个人信息处理有疑问、意见或投诉,请联系:
- 运营者:南京宝銮信息科技有限公司
- 邮箱:zsw@baoluaninfo.com
- 联系电话:13951741865
- 建议邮件主题:“拍得扫描王隐私请求”“拍得扫描王数据删除”或“拍得扫描王购买支持”
为帮助我们定位问题,您可以提供设备型号、操作系统版本、拍得扫描王版本和问题发生页面。请勿在邮件中提供完整银行卡信息、支付密码或与请求无关的敏感文档内容。
© 2026 南京宝銮信息科技有限公司
PaceScan Privacy Policy
This policy reflects PaceScan's current permissions, features, and third-party services. We review it when material product, SDK, permission, or data-flow changes occur.
Operator: Nanjing Baoluan Information Technology Co., Ltd.
Email: zsw@baoluaninfo.com
Phone: 13951741865
Effective date: August 4, 2026
Last updated: August 26, 2026
PaceScan is a mobile document utility operated by Nanjing Baoluan Information Technology Co., Ltd. It provides document scanning, import, OCR, PDF editing, file organization, export, and sharing. This policy explains how information is handled and how your privacy is protected.
1. Information We Process
Core document processing is performed locally on your device by default. Merely using scanning, local OCR, PDF editing, folder management, or local export does not upload document content to our servers. Selected content is processed over the network only after you enable Cloud Curve Correction or select or capture content in an AI tool and tap an explicit Run, Submit, or Send command. The selected content then passes through our first-party backend and the services described below; other library files are not processed automatically.
| Information or permission | When used | How it is handled |
|---|---|---|
| Camera | When you scan documents, QR codes, or barcodes | Camera frames are read to perform scanning. Generated files are stored locally. |
| Photos | When you import selected images or save exported images | Only content you select for import or saving is accessed. |
| Local files and folders | When you import, export, browse, or manage documents | Selected files are read. Older Android versions may require media or storage access for compatibility. |
| Documents, OCR text, and edits | For scanning, OCR, PDF processing, structured export, search, and local management | Stored locally in app data, a location you select, or the system photo library. OCR primarily uses on-device capabilities and local SDKs. |
| Cloud curve-correction image | When you explicitly enable Cloud Curve Correction and a scan page requires dewarping | The current cropped page is sent through our HTTPS signing proxy to Youdao Zhiyun Image Correction to return a corrected image. Disabling the option keeps processing local. |
| Content, instructions, and context selected for AI tools | When you use recognition, correction, conversion, document analysis, essay correction, photo problem solving, or AI tutoring and tap Run, Submit, or Send | The selected image, PDF, Office/text file, file name, stroke data, necessary extracted text, and any instruction, question, language, grade, title, requirement, or relevant conversation context are sent over HTTPS to our first-party backend. The backend provides only the content required by the selected feature to Youdao Zhiyun, Baidu AI Cloud, or Alibaba Cloud EduTutor and returns the result. Local scanning remains available without these tools. |
| File names, paths, and metadata | For display, search, sorting, export, and sharing | Stored and used locally by default. |
| Local authentication result | When document protection or biometric authentication is enabled | Only success or failure is received. We do not access or store biometric templates. |
| Account and security information | When using anonymous accounts, phone or Apple login, device management, recovery codes, or manual recovery | Mainland Android processes an E.164 phone number, password hash, phone-verification result, anonymous and installation identifiers, device sessions, recovery codes, and recovery applications. For mainland China App Store iOS, Sign in with Apple provides an identity token, authorization code, nonce, and any email or name Apple makes available on first authorization; Alibaba Cloud Fusion Authentication may process the information required for phone binding or login. Passwords and recovery codes are not written to plaintext logs. |
| Subscription and transaction status | When viewing, purchasing, restoring, or refreshing entitlements | Google Play Android and overseas App Store iOS use the app store and RevenueCat. Mainland China App Store iOS uses Apple App Store and RevenueCat and binds entitlements to a non-phone backend account identifier. Mainland Android uses our order service and the selected WeChat Pay or Alipay service. We do not read or store payment-card numbers or payment passwords. |
| SDK license verification information | When Genius Scan SDK initializes and refreshes its license after app launch | The SDK may process application identifiers, app version, device and network technical information, and license status required for verification. Scans, camera frames, OCR text, and document content are not included. |
| Notification content | When you allow task, OCR, export, or reminder notifications | Displayed locally by the system and may include a file name. |
| Installation-level usage and app activity | For Google Play Android and App Store iOS, after you allow analytics on the first-run screen; for mainland China Android, after you accept this policy and enter the app. Used to measure first opens, valid usage, retention, scan/save/export completion, and purchase-funnel conversion. | Processed by the analytics service associated with the distribution channel. This includes an app-instance identifier, basic device and operating-system information, app version, coarse region, and low-cardinality product events. This data is not fully anonymous. We do not send scans, files, OCR text, file names, or file paths. Choosing Set up later on international builds or disabling analytics on any build does not affect core features. |
2. Permissions
Permissions are requested only when required for a related feature. Refusing an optional permission may prevent that feature from working.
- Camera: scanning documents, QR codes, and barcodes.
- Photos, media, and storage: importing selected content and saving exports at your direction.
- Notifications: local task, OCR, export, and reminder notices.
- Biometrics or device credentials: system authentication for document protection.
- Network: account login and recovery, Sign in with Apple, Alibaba Cloud Fusion Authentication, device sessions, membership entitlements, WeChat Pay, Alipay, app-store and RevenueCat subscription operations, Genius Scan SDK license verification, and analytics events according to the distribution channel and your consent status. After you enable Cloud Curve Correction or select or capture content and tap an AI tool's Run, Submit, or Send command, it is also used to send the required content to our first-party backend and the applicable service and receive the result. Default local processing does not upload scans, camera frames, OCR text, or document content.
The app may query whether compatible sharing or export applications are installed solely to display available targets or perform a system handoff. It does not read content from those applications.
3. Third-Party Services, First-Party Analytics, and Sharing
The following services support subscriptions, account authentication, scanning, usage analytics, cloud curve correction, AI tools, and user-initiated export or sharing. Document content is provided to another service only when you choose to share, print, or export selected content, enable Cloud Curve Correction, or select or capture content in an AI tool and tap an explicit Run, Submit, or Send command. The current AI flow treats that feature command as the network-processing action and does not promise a second upload prompt. International first-run screens show a concise analytics notice; mainland China Android does not show a separate analytics notice.
- Apple App Store, Google Play, and RevenueCat. RevenueCat applies to Google Play Android and App Store iOS, including mainland China App Store iOS. They process store transaction information, subscription status, app or device identifiers, and technical logs under their own policies. Mainland China App Store iOS binds a non-phone backend account identifier to RevenueCat and uses backend entitlement status to control membership access. Mainland Android does not include RevenueCat, Google Play Billing, or Amazon Appstore SDK.
- WeChat Pay and Alipay. They process payment-account, transaction, and risk-control information for mainland Android fixed-term plans. The app passes signed server-generated payment parameters to the selected SDK, and our server grants entitlement only after verified order settlement. We do not read or store payment passwords.
- Google ML Kit. Android and iOS use the applicable on-device text, QR-code, or barcode components. Document content is not uploaded to our servers for this local recognition.
- Genius Scan SDK. It provides document-edge detection, scanning, and image processing. It may connect to verify and refresh its license using the technical information needed for that purpose. Document content remains on device by default and is not uploaded for license verification.
- Sign in with Apple. This applies to mainland China App Store iOS only when you choose it. Apple provides an identity token, authorization code, and any email or name available on first authorization so that we can create or link the backend account.
- Alibaba Cloud Fusion Authentication and carrier components. Mainland Android and mainland China App Store iOS use the Alibaba Cloud Fusion Authentication, SMS, or China Mobile, China Unicom, and China Telecom local-number capability actually selected by the login flow. It may process a phone or masked phone number, authentication result, IP address, network type, carrier and SIM status, device model, operating system, and app information for authentication and security risk control.
- First-party backend and Youdao Zhiyun AI services. Cloud curve correction and applicable recognition, conversion, and document-analysis features send the required content through our HTTPS first-party backend before it is provided to Youdao. Inputs may include the cropped page, image, document, file name, stroke data, necessary extracted text, instruction, and language.
- First-party backend and Baidu AI Cloud. Essay correction, exam correction, photo problem solving, and some document-recognition features may provide the selected image, necessary text, grade, title, requirement, or question through our HTTPS first-party backend to Baidu for recognition, grading, answers, or explanations.
- First-party backend and Alibaba Cloud EduTutor. When you select images, enter a question, and tap Send in AI tutoring, our first-party backend provides the selected images, question, grade, and necessary conversation context to Alibaba Cloud EduTutor to generate the tutoring response. Other library content is not sent automatically.
- Google Firebase Analytics. This applies to Google Play Android and App Store iOS. After your explicit permission, it measures installation-level feature usage, app activity, retention, and product conversion. Information includes an app-instance identifier, basic device and operating-system information, app version, coarse region, and the low-cardinality product events described in this policy. This data is not fully anonymous. The app disables advertising identifiers, ad personalization, iOS IDFV collection, and on-device ads conversion data; it does not set an account or RevenueCat user ID. We do not send scans, files, OCR text, file names, or file paths. See Google's Firebase privacy and security information.
- Countly usage analytics. This applies to mainland China Android. After you accept this policy and enter the app, the Countly Flutter SDK sends an SDK-generated app-instance identifier, session information, basic device and operating-system information, app version, distribution channel, and low-cardinality feature events to a Countly service deployed and operated by us in mainland China. Location collection is disabled, and the app does not enable Countly crash reporting, user profiles, push, feedback, or remote configuration. You may disable analytics at any time under Permissions. It does not send phone numbers, scans, files, OCR text, file names, or file paths.
- System sharing, printing, Photos, and Downloads. Selected files are handed to the system service or target application only after your action. The recipient's own privacy policy applies.
- Obsidian. When selected, the app uses the Obsidian URL scheme to provide selected text and a file name for creating or appending a note.
The app contains no advertising SDK, does not use document content for ad targeting, and does not sell scans, OCR text, or local files.
4. Storage, Retention, and Deletion
- Documents, thumbnails, OCR text, folders, settings, and some task information are normally stored locally. You may delete them in the app or remove private app data by uninstalling.
- Copies exported to Downloads, Photos, another app, or an external note vault are not automatically removed when the original is deleted.
- Temporary preview and export caches are cleared after use or under app maintenance policies. Do not treat the app as your only backup.
- AI inputs received by our first-party backend are not stored as user document storage. They are deleted or cleared after the request, asynchronous task, and necessary security-log processing under the shortest necessary period. Photo Problem Solving task status and text results are cached for up to 10 minutes. Alibaba Cloud EduTutor temporary images are normally revoked after the provider call, with a fallback validity of up to 10 minutes.
- Data sent to Youdao Zhiyun, Baidu AI Cloud, or Alibaba Cloud EduTutor and their task results are handled under the applicable provider policies and service rules. Youdao's PDF-conversion documentation states that conversion tasks and results are retained for seven days. Deleting the local file does not automatically delete third-party server records.
- App stores and RevenueCat retain subscription records under their own rules.
- Google retains Firebase Analytics data under the applicable Firebase/Google Analytics retention settings. After you withdraw consent in the app, this device stops subsequent analytics collection and resets its local Firebase analytics data. Aggregated data or data that must be retained by law is handled under Google's rules.
- Mainland Countly raw analytics events are retained for up to 180 days; daily, version, retention, and other aggregates are retained for up to three years. Withdrawal stops future collection immediately and clears the corresponding pending data on this device.
- Mainland Android and mainland China App Store iOS account, signed-in device, session, and recovery information is normally retained until account deletion or until it is no longer needed for account services. Account deletion is immediate with no cooling-off period, after which unneeded server-side account information is deleted or anonymized except for transaction, tax, security, or dispute records that law requires us to retain. Deleting the app account does not automatically delete transaction or subscription records retained by Apple App Store, Google Play, or RevenueCat under their rules.
- On account deletion, the app also removes Smart Scan-managed documents, thumbnails, OCR results, and caches from its local sandbox. Copies exported to Downloads, Photos, or other apps must be deleted separately.
5. Your Rights and Choices
You may manage permissions in system settings, delete local documents and settings in the app, and manage subscriptions through the app store. Google Play Android and App Store iOS let you allow analytics or choose Set up later on the first-run screen. Mainland China Android enables Countly analytics after you accept this policy and enter the app. All distributions let you disable or re-enable analytics under My/Account - System Settings - More Settings - Permissions. No new analytics events are sent before policy acceptance, after choosing Set up later, or after analytics is disabled. You may also contact us to request access, correction, deletion, withdrawal of consent, a copy, or an explanation of processing rules. Locally stored data inaccessible to us can be managed directly on your device.
6. Security
We use reasonable safeguards including local processing, system permission controls, device authentication for protected documents, and limiting unnecessary transfers. No system can guarantee absolute security; protect your device credentials, app passwords, and exported files.
7. Children
The app is not designed specifically for children. Minors should use it with a guardian's consent and guidance.
8. Policy Updates
We may update this policy when features, permissions, third-party services, or applicable requirements materially change. Where appropriate, notice will be provided in the app, store listing, or another reasonable channel.
9. Contact Us
- Operator: Nanjing Baoluan Information Technology Co., Ltd.
- Email: zsw@baoluaninfo.com
- Phone: 13951741865
- Suggested subjects: “PaceScan Privacy Request,” “PaceScan Data Deletion,” or “PaceScan Purchase Support.”
You may include your device model, operating-system version, PaceScan version, and affected screen. Do not send full card details, payment passwords, or unrelated sensitive documents.
© 2026 Nanjing Baoluan Information Technology Co., Ltd. All rights reserved.