Square Root Two
DOC · LEGAL — — : — —
DOC · PRIVACY-POLICYv2026.04 · public
EFFECTIVE 2026-04-26last revised · today
JURISDICTION SG · CNSingapore · Mainland China
CONTACT [email protected]response · 14 business days
Privacy Policy · how we handle your data 隐私政策 · 我们如何处理你的数据

Your frame, your
data, your call.
你的 画面、你的
数据、你说了算。

This policy explains what Square Root Two ("SR2", "we") collects when you visit sr2.tech, use Voola, or work with us on a production — and what we do not collect. Read it like documentation: terse, precise, no dark patterns. 本政策说明在你访问 sr2.tech、使用 Voola,或与我们合作拍摄项目时,平方根贰("SR2"、"我们")会收集什么、不会收集什么。请把它当作技术文档来读:精简、精确、不耍花样。
Document · 12 sections文档 · 共 12 节
DOC-ID · SR2-LEG-001
REV · 2026.04.26
◉ ACTIVE
SECTION · 01◉ ACTIVE

Overview — what this document is 概述 —— 这份文档是什么 概述

Square Root Two Pte. Ltd. is a Singapore-registered immersive video studio and the operator of Voola. This Privacy Policy applies to sr2.tech, voola.app, the Voola native apps, and any project we run with a client. It does not cover third-party sites we link to. 平方根贰(Square Root Two Pte. Ltd.)是一家在新加坡注册的沉浸式影像工作室,同时也是 Voola 的运营方。本隐私政策适用于 sr2.tech、voola.app、Voola 原生应用,以及我们与客户共同执行的拍摄项目。本政策不覆盖我们站点链接到的第三方网站。

If you only visit sr2.tech to look at our work, we collect almost nothing — see Section 6. If you sign in to Voola or shoot with us, we collect more, and we explain exactly what. 如果你只是访问 sr2.tech 浏览作品,我们几乎不收集任何信息 —— 详见第 6 节。如果你登录 Voola 或与我们一起拍摄,我们会收集更多信息,并在下文逐项说明。

SECTION · 02◉ ACTIVE

What we collect 我们 收集 什么

We group data into four buckets. Each bucket is collected only for the purposes listed in Section 3. 我们把数据分为四类,每一类都只用于第 3 节所列出的目的。

Account账号信息
Email · display name · region
Device设备信息
visionOS / iOS / browser version
Playback播放行为
video ID · timestamps · gaze-free heatmap
Production拍摄项目
contract scope · footage · on-set crew contacts
  • No biometrics.不收集生物特征。 We never capture eye-tracking gaze coordinates, hand-mesh, or face-mesh from Vision Pro. Apple does not expose these to apps, and we do not work around it.我们从不采集来自 Vision Pro 的眼动注视坐标、手部网格或面部网格。Apple 不向应用开放这些数据,我们也不会绕开。
  • No microphone, no camera.不调用麦克风、不调用摄像头。 Voola apps do not request mic or camera permission.Voola 应用不会请求麦克风或摄像头权限。
  • No third-party ad SDKs.不接入第三方广告 SDK。 No Meta Pixel, no Google Ads tag, no AppsFlyer-style attribution.没有 Meta Pixel、没有 Google Ads 跟踪、没有 AppsFlyer 类归因。
SECTION · 03◉ ACTIVE

How we use it 我们如何 使用 这些数据

  • Run the service: stream the right video to the right headset, sync multi-device playback during live events.运行服务:把正确的视频流推送到正确的头显,并在现场活动中同步多设备播放。
  • Quality: detect playback stalls, decode failures, and unsupported devices so we can fix the encode ladder.质量监测:识别卡顿、解码失败与不支持的设备,以便调整编码梯度。
  • Editorial: aggregate which moments people rewatch, so editors can tighten cuts. Aggregate only — never tied to a name.内容编辑:聚合分析哪些片段被反复观看,帮助剪辑师收紧节奏。仅聚合统计,绝不关联到具体个人。
  • Billing: invoice clients for production work and process Voola subscription payments.财务结算:向客户开具拍摄项目发票,并处理 Voola 订阅付款。
  • Legal: comply with Singapore PDPA, China PIPL, and any subpoena we cannot lawfully refuse.合规:遵守新加坡 PDPA、中国 PIPL,以及我们无法依法拒绝的传票。
We never我们绝不 sell personal data, train third-party AI models on your viewing history, or use playback data for ad targeting. 出售个人数据、用你的观看记录训练第三方 AI 模型,或用播放数据做广告定向。
SECTION · 04◉ ACTIVE

Voola playback data Voola 播放数据

When you watch a video on Voola, we store: the video ID, the device class (Vision Pro / Quest / web), play-start and play-end timestamps, and a low-resolution scrub heatmap (which seconds were skipped or rewatched). 当你在 Voola 上观看视频时,我们会记录:视频 ID、设备类别(Vision Pro / Quest / Web)、播放开始与结束时间戳,以及一份低精度的拖动热力图(哪些秒被跳过或重看)。

SECTION · 05◉ ACTIVE

Production footage & people on set 拍摄素材 与现场人员

If you appear in front of an SR2 camera as talent, crew, or background — your image is a recording, and a recording is personal data. 如果你出现在 SR2 镜头前,无论是演员、剧组成员还是背景人员,你的影像都是录制内容,而录制内容属于个人数据。

  • Talent and key crew sign release forms before shooting. Releases name the project, the intended distribution, and the term.主要演员与核心剧组在开机前签署肖像/参与协议,协议中会明确项目名称、预期发行渠道与授权期限。
  • Background extras in public locations are covered by location permits and signage on set.公共场所中的背景群众演员,由拍摄许可与现场告示牌覆盖。
  • Raw footage lives on encrypted on-prem storage in ChengDu. We do not upload raw footage to general-purpose cloud drives.原始素材保存在成都的本地加密存储中,我们不会把原始素材上传到通用云盘。
  • If you want to be removed from a not-yet-released cut, email [email protected] within 14 days of the shoot.如果你希望从尚未发行的成片中移除自己的画面,请在拍摄结束后 14 天内发送邮件至 [email protected]
SECTION · 06◉ ACTIVE

Cookies & tracking Cookie 与 追踪

sr2.tech sets one first-party cookie: sr2_lang — your language preference (EN / 中). That is the only cookie we set on the marketing site. We do not use Google Analytics, Hotjar, or any session-replay tool here. sr2.tech 仅设置一个一方 Cookie:sr2_lang —— 用于记住你的语言选择(EN / 中)。这是我们在官网设置的唯一 Cookie。我们没有使用 Google Analytics、Hotjar 或任何会话回放工具。

Voola uses additional first-party cookies for sign-in (session token, CSRF token) and one self-hosted Plausible-style analytics endpoint that records page hits without cross-site identifiers. Voola 使用额外的一方 Cookie 实现登录(会话令牌、CSRF 令牌),并使用一个自建的 Plausible 风格分析端点,用于记录页面访问,但不涉及跨站标识符。

SECTION · 07◉ ACTIVE

Sharing & vendors 共享与 供应商

We share data with a small set of vendors who run parts of our infrastructure. Each is contractually bound to use data only for our service. 我们与一小批供应商共享数据,由他们承担部分基础设施。每一家都通过合同约定,仅可将数据用于服务我们。

CDN · Edge
Cloudflare (US / global)
Object storage
Backblaze B2 (US-West)
SECTION · 08◉ ACTIVE

Retention windows 保留 期限

  • Account:账号: kept while your account exists. 30 days after deletion request, hard-deleted from primary DB and backups.账号存续期间一直保留。删除申请后 30 天内,从主数据库与备份中硬删除。
  • Playback logs:播放日志: 90 days at row level, then aggregated and the row dropped.行级数据保留 90 天,之后聚合并删除原始行。
  • Production raw footage:拍摄原始素材: retention defined per contract — typically 24 months from delivery, then archived or destroyed per the client's instruction.按合同约定 —— 通常自交付起保留 24 个月,之后按客户指示归档或销毁。
  • Billing & tax records:财务与税务记录: 7 years, as required by Singapore law.7 年,依新加坡法律要求保留。
SECTION · 09◉ ACTIVE

Security — what we actually do 安全 —— 我们实际做了什么

  • TLS 1.3 everywhere; HSTS preloaded for sr2.tech and voola.app.所有传输均使用 TLS 1.3;sr2.tech 与 voola.app 已加入 HSTS preload 列表。
  • Object storage and primary DB encrypted at rest with AES-256.对象存储与主数据库静态使用 AES-256 加密。
  • Production raw footage on on-prem RAID, air-gapped from the public internet, mirrored to one offline LTO set per project.拍摄原始素材保存在与公网物理隔离的本地 RAID 上,每个项目额外制作一份离线 LTO 备份。
  • Hardware-key-only access (FIDO2) for engineering and ops staff.工程与运维人员仅可通过硬件密钥(FIDO2)登录。
  • Quarterly third-party penetration test on Voola backend.Voola 后端每季度进行一次第三方渗透测试。

No system is unbreakable. If we discover a breach affecting your data, we will notify you within 72 hours of confirmation, in line with PDPA and PIPL. 没有系统是绝对安全的。一旦确认存在影响你数据的安全事件,我们将在确认后 72 小时内通知你,符合 PDPA 与 PIPL 要求。

SECTION · 10◉ ACTIVE

Your rights 你的 权利

Regardless of where you live, you can ask us to: 无论你身处何地,你都可以要求我们:

  • Show you a copy of the personal data we hold on you.向你提供我们持有的个人数据副本。
  • Correct anything that is wrong.更正任何错误的信息。
  • Delete your account and the data attached to it (subject to the legal retention windows in Section 8).删除你的账号及其关联数据(受第 8 节中法定保留期限的限制)。
  • Export your Voola playback history as JSON.以 JSON 格式导出你的 Voola 观看历史。
  • Object to specific uses (e.g., aggregate editorial analytics) — we will honour the objection unless service breaks without it.对特定用途(例如聚合的编辑分析)提出异议 —— 除非该用途缺失会导致服务中断,否则我们将尊重你的反对意见。

Send requests to [email protected]. We respond within 14 business days. 请将请求发送至 [email protected],我们将在 14 个工作日内回复。

SECTION · 11◉ ACTIVE

Children 未成年人

Voola is rated 12+ on the App Store and is not directed at children under 13. We do not knowingly collect personal data from anyone under 13. If you believe a minor has signed up, contact us and we will remove the account. Voola 在 App Store 的分级为 12+,不面向 13 岁以下儿童。我们不会故意收集 13 岁以下用户的个人数据。如你认为有未成年人注册了账号,请联系我们,我们将删除该账号。

SECTION · 12◉ ACTIVE

Changes & how to reach us 变更 与联系方式

We will update this policy when our practices change. Material changes get an in-product banner and an email at least 14 days before they take effect. The version stamp at the top of this page is authoritative. 当我们的做法发生变化时,我们将更新本政策。重大变更将通过应用内横幅与邮件提前至少 14 天通知。本页顶部的版本戳为准。

Questions? Write us. 有问题?写信给我们。

A real human reads every privacy email. Expect a reply in under 14 business days, usually faster. 每一封隐私相关邮件都由真人阅读。我们承诺在 14 个工作日内回复,通常更快。