SECTION · 01◉ ACTIVE
Overview — what this document is
概述 —— 这份文档是什么
概述
Square Root Two Pte. Ltd. is a Singapore-registered immersive video studio and the operator of Voola. This Privacy Policy applies to sr2.tech, voola.app, the Voola native apps, and any project we run with a client. It does not cover third-party sites we link to.
平方根贰(Square Root Two Pte. Ltd.)是一家在新加坡注册的沉浸式影像工作室,同时也是 Voola 的运营方。本隐私政策适用于 sr2.tech、voola.app、Voola 原生应用,以及我们与客户共同执行的拍摄项目。本政策不覆盖我们站点链接到的第三方网站。
If you only visit sr2.tech to look at our work, we collect almost nothing — see Section 6. If you sign in to Voola or shoot with us, we collect more, and we explain exactly what.
如果你只是访问 sr2.tech 浏览作品,我们几乎不收集任何信息 —— 详见第 6 节。如果你登录 Voola 或与我们一起拍摄,我们会收集更多信息,并在下文逐项说明。
SECTION · 02◉ ACTIVE
What we collect
我们 收集 什么
We group data into four buckets. Each bucket is collected only for the purposes listed in Section 3.
我们把数据分为四类,每一类都只用于第 3 节所列出的目的。
Account账号信息
Email · display name · region
Device设备信息
visionOS / iOS / browser version
Playback播放行为
video ID · timestamps · gaze-free heatmap
Production拍摄项目
contract scope · footage · on-set crew contacts
- No biometrics.不收集生物特征。 We never capture eye-tracking gaze coordinates, hand-mesh, or face-mesh from Vision Pro. Apple does not expose these to apps, and we do not work around it.我们从不采集来自 Vision Pro 的眼动注视坐标、手部网格或面部网格。Apple 不向应用开放这些数据,我们也不会绕开。
- No microphone, no camera.不调用麦克风、不调用摄像头。 Voola apps do not request mic or camera permission.Voola 应用不会请求麦克风或摄像头权限。
- No third-party ad SDKs.不接入第三方广告 SDK。 No Meta Pixel, no Google Ads tag, no AppsFlyer-style attribution.没有 Meta Pixel、没有 Google Ads 跟踪、没有 AppsFlyer 类归因。
SECTION · 03◉ ACTIVE
How we use it
我们如何 使用 这些数据
- Run the service: stream the right video to the right headset, sync multi-device playback during live events.运行服务:把正确的视频流推送到正确的头显,并在现场活动中同步多设备播放。
- Quality: detect playback stalls, decode failures, and unsupported devices so we can fix the encode ladder.质量监测:识别卡顿、解码失败与不支持的设备,以便调整编码梯度。
- Editorial: aggregate which moments people rewatch, so editors can tighten cuts. Aggregate only — never tied to a name.内容编辑:聚合分析哪些片段被反复观看,帮助剪辑师收紧节奏。仅聚合统计,绝不关联到具体个人。
- Billing: invoice clients for production work and process Voola subscription payments.财务结算:向客户开具拍摄项目发票,并处理 Voola 订阅付款。
- Legal: comply with Singapore PDPA, China PIPL, and any subpoena we cannot lawfully refuse.合规:遵守新加坡 PDPA、中国 PIPL,以及我们无法依法拒绝的传票。
We never我们绝不
sell personal data, train third-party AI models on your viewing history, or use playback data for ad targeting.
出售个人数据、用你的观看记录训练第三方 AI 模型,或用播放数据做广告定向。
SECTION · 04◉ ACTIVE
Voola playback data
Voola 播放数据
When you watch a video on Voola, we store: the video ID, the device class (Vision Pro / Quest / web), play-start and play-end timestamps, and a low-resolution scrub heatmap (which seconds were skipped or rewatched).
当你在 Voola 上观看视频时,我们会记录:视频 ID、设备类别(Vision Pro / Quest / Web)、播放开始与结束时间戳,以及一份低精度的拖动热力图(哪些秒被跳过或重看)。
SECTION · 05◉ ACTIVE
Production footage & people on set
拍摄素材 与现场人员
If you appear in front of an SR2 camera as talent, crew, or background — your image is a recording, and a recording is personal data.
如果你出现在 SR2 镜头前,无论是演员、剧组成员还是背景人员,你的影像都是录制内容,而录制内容属于个人数据。
- Talent and key crew sign release forms before shooting. Releases name the project, the intended distribution, and the term.主要演员与核心剧组在开机前签署肖像/参与协议,协议中会明确项目名称、预期发行渠道与授权期限。
- Background extras in public locations are covered by location permits and signage on set.公共场所中的背景群众演员,由拍摄许可与现场告示牌覆盖。
- Raw footage lives on encrypted on-prem storage in ChengDu. We do not upload raw footage to general-purpose cloud drives.原始素材保存在成都的本地加密存储中,我们不会把原始素材上传到通用云盘。
- If you want to be removed from a not-yet-released cut, email [email protected] within 14 days of the shoot.如果你希望从尚未发行的成片中移除自己的画面,请在拍摄结束后 14 天内发送邮件至 [email protected]。
SECTION · 06◉ ACTIVE
Cookies & tracking
Cookie 与 追踪
sr2.tech sets one first-party cookie: sr2_lang — your language preference (EN / 中). That is the only cookie we set on the marketing site. We do not use Google Analytics, Hotjar, or any session-replay tool here.
sr2.tech 仅设置一个一方 Cookie:sr2_lang —— 用于记住你的语言选择(EN / 中)。这是我们在官网设置的唯一 Cookie。我们没有使用 Google Analytics、Hotjar 或任何会话回放工具。
Voola uses additional first-party cookies for sign-in (session token, CSRF token) and one self-hosted Plausible-style analytics endpoint that records page hits without cross-site identifiers.
Voola 使用额外的一方 Cookie 实现登录(会话令牌、CSRF 令牌),并使用一个自建的 Plausible 风格分析端点,用于记录页面访问,但不涉及跨站标识符。
SECTION · 07◉ ACTIVE
Sharing & vendors
共享与 供应商
We share data with a small set of vendors who run parts of our infrastructure. Each is contractually bound to use data only for our service.
我们与一小批供应商共享数据,由他们承担部分基础设施。每一家都通过合同约定,仅可将数据用于服务我们。
CDN · Edge
Cloudflare (US / global)
Object storage
Backblaze B2 (US-West)
SECTION · 08◉ ACTIVE
Retention windows
保留 期限
- Account:账号: kept while your account exists. 30 days after deletion request, hard-deleted from primary DB and backups.账号存续期间一直保留。删除申请后 30 天内,从主数据库与备份中硬删除。
- Playback logs:播放日志: 90 days at row level, then aggregated and the row dropped.行级数据保留 90 天,之后聚合并删除原始行。
- Production raw footage:拍摄原始素材: retention defined per contract — typically 24 months from delivery, then archived or destroyed per the client's instruction.按合同约定 —— 通常自交付起保留 24 个月,之后按客户指示归档或销毁。
- Billing & tax records:财务与税务记录: 7 years, as required by Singapore law.7 年,依新加坡法律要求保留。
SECTION · 09◉ ACTIVE
Security — what we actually do
安全 —— 我们实际做了什么
- TLS 1.3 everywhere; HSTS preloaded for sr2.tech and voola.app.所有传输均使用 TLS 1.3;sr2.tech 与 voola.app 已加入 HSTS preload 列表。
- Object storage and primary DB encrypted at rest with AES-256.对象存储与主数据库静态使用 AES-256 加密。
- Production raw footage on on-prem RAID, air-gapped from the public internet, mirrored to one offline LTO set per project.拍摄原始素材保存在与公网物理隔离的本地 RAID 上,每个项目额外制作一份离线 LTO 备份。
- Hardware-key-only access (FIDO2) for engineering and ops staff.工程与运维人员仅可通过硬件密钥(FIDO2)登录。
- Quarterly third-party penetration test on Voola backend.Voola 后端每季度进行一次第三方渗透测试。
No system is unbreakable. If we discover a breach affecting your data, we will notify you within 72 hours of confirmation, in line with PDPA and PIPL.
没有系统是绝对安全的。一旦确认存在影响你数据的安全事件,我们将在确认后 72 小时内通知你,符合 PDPA 与 PIPL 要求。
SECTION · 10◉ ACTIVE
Your rights
你的 权利
Regardless of where you live, you can ask us to:
无论你身处何地,你都可以要求我们:
- Show you a copy of the personal data we hold on you.向你提供我们持有的个人数据副本。
- Correct anything that is wrong.更正任何错误的信息。
- Delete your account and the data attached to it (subject to the legal retention windows in Section 8).删除你的账号及其关联数据(受第 8 节中法定保留期限的限制)。
- Export your Voola playback history as JSON.以 JSON 格式导出你的 Voola 观看历史。
- Object to specific uses (e.g., aggregate editorial analytics) — we will honour the objection unless service breaks without it.对特定用途(例如聚合的编辑分析)提出异议 —— 除非该用途缺失会导致服务中断,否则我们将尊重你的反对意见。
Send requests to [email protected]. We respond within 14 business days.
请将请求发送至 [email protected],我们将在 14 个工作日内回复。
SECTION · 11◉ ACTIVE
Children
未成年人
Voola is rated 12+ on the App Store and is not directed at children under 13. We do not knowingly collect personal data from anyone under 13. If you believe a minor has signed up, contact us and we will remove the account.
Voola 在 App Store 的分级为 12+,不面向 13 岁以下儿童。我们不会故意收集 13 岁以下用户的个人数据。如你认为有未成年人注册了账号,请联系我们,我们将删除该账号。
SECTION · 12◉ ACTIVE
Changes & how to reach us
变更 与联系方式
We will update this policy when our practices change. Material changes get an in-product banner and an email at least 14 days before they take effect. The version stamp at the top of this page is authoritative.
当我们的做法发生变化时,我们将更新本政策。重大变更将通过应用内横幅与邮件提前至少 14 天通知。本页顶部的版本戳为准。