Chính sách quyền riêng tư

Áp dụng cho ứng dụng Ganba và Hiyoko trên iOS và dịch vụ tại api.nihongoapps.com · Hiệu lực từ 25/09/2026

Tiếng ViệtEnglish

Tóm tắt: Chúng tôi chỉ thu thập dữ liệu cần để ứng dụng hoạt động: tài khoản đăng nhập (nếu bạn chọn đăng nhập), tiến độ học để đồng bộ giữa các thiết bị, trạng thái gói mua, sự kiện sử dụng, dữ liệu kỹ thuật và nội dung bạn gửi để được hỗ trợ. Chúng tôi không bán dữ liệu, không hiển thị quảng cáo, không theo dõi bạn qua ứng dụng hoặc trang web của bên khác, và không dùng SDK quảng cáo hay phân tích của bên thứ ba.

1. Ai chịu trách nhiệm

Nhà phát triển Ganba và Hiyoko (tên người bán hiển thị trên trang App Store của ứng dụng), gọi chung là "chúng tôi". Liên hệ về quyền riêng tư: [email protected].

2. Dữ liệu chúng tôi thu thập

LoạiChi tiếtMục đích
Tài khoản (tuỳ chọn)Khi đăng nhập bằng Apple hoặc Google: mã định danh người dùng do Apple/Google cấp và thông tin phiên đăng nhập. Máy chủ không lưu tên hoặc email từ token đăng nhập và không nhận mật khẩu. Trong Ganba, tên hiển thị bạn nhập trong hồ sơ được lưu riêng, gắn với tài khoản.Tạo tài khoản, hiển thị hồ sơ, khôi phục tiến độ trên thiết bị khác.
Tiến độ họcCâu đã làm, đáp án chọn, điểm ước tính, lịch ôn thẻ, cài đặt học, mục tiêu và ngày thi bạn nhập. Khi đồng bộ, dữ liệu gắn với tài khoản và mã thiết bị đồng bộ; Ganba còn đồng bộ ghi chú bạn viết trong sổ câu sai.Đồng bộ, tính điểm ước tính, lên kế hoạch ôn.
Mua hàngMã giao dịch, mã sản phẩm, trạng thái gói do Apple cung cấp. Chúng tôi không thấy thông tin thẻ thanh toán.Mở quyền lợi gói Pro, khôi phục mua hàng.
Số liệu sử dụngSự kiện trong ứng dụng (ví dụ: mở màn, hoàn thành bài), phiên bản ứng dụng, phiên bản iOS và mã cài đặt ngẫu nhiên. Các sự kiện có thể gắn với một lượt cài đặt; trong Ganba, mã lượt làm bài có thể liên kết với tiến độ đã đồng bộ vào tài khoản.Cải thiện nội dung và sản phẩm.
Báo lỗi và hỗ trợBáo lỗi nội dung bạn gửi, mô tả và phiên bản ứng dụng/nội dung. Nếu bạn gửi email hỗ trợ, chúng tôi nhận địa chỉ email người gửi và nội dung thư; nút liên hệ trong Ganba điền sẵn phiên bản app, iOS, loại máy và các gói nội dung để bạn kiểm tra trước khi gửi. Ganba cũng thu thập thời gian/kết quả cài gói nội dung và mã lỗi đăng nhập.Trả lời yêu cầu hỗ trợ, sửa nội dung và lỗi kỹ thuật.
Dữ liệu kỹ thuậtMáy chủ API giữ địa chỉ IP và mã cài đặt trong bộ nhớ để giới hạn tần suất. Nhật ký yêu cầu ghi đường dẫn API dạng mẫu, trạng thái, thời gian xử lý và số byte, không ghi IP, header hay nội dung yêu cầu. Nhật ký đăng nhập và bảo mật có thể chứa mã tài khoản.Bảo mật, chống lạm dụng, duy trì dịch vụ.

Bạn có thể dùng phần lớn ứng dụng mà không cần đăng nhập; khi đó tiến độ chỉ lưu trên thiết bị.

3. Chia sẻ dữ liệu

Chúng tôi không bán hay cho thuê dữ liệu. Dữ liệu chỉ đi qua các nhà cung cấp hạ tầng cần thiết, xử lý thay mặt chúng tôi:

Chúng tôi có thể cung cấp dữ liệu khi pháp luật yêu cầu.

4. Thời gian lưu

Tiến độ học, hồ sơ và tài khoản: đến khi bạn xoá tài khoản. Sự kiện sử dụng thô: 90 ngày; chi tiết từng câu trả lời: 180 ngày; điểm thi thật bạn gửi, báo lỗi và thông báo giao dịch từ Apple: 24 tháng. Số liệu tổng hợp được giữ để phân tích. Hồ sơ quyền lợi mua hàng và phản hồi huỷ gói được lưu riêng, không tự xoá khi xoá tài khoản. Thư hỗ trợ được xử lý riêng; bạn có thể yêu cầu xoá qua email hỗ trợ. Bản sao lưu cơ sở dữ liệu: xoay vòng tối đa khoảng 5 tuần.

5. Xoá tài khoản và quyền của bạn

Trong Ganba: tab Tôi → Tài khoản → Xoá tài khoản. Khi yêu cầu thành công, tài khoản, hồ sơ, dữ liệu đồng bộ và phiên đăng nhập của ứng dụng đó bị xoá khỏi cơ sở dữ liệu chính. Hồ sơ quyền lợi mua hàng được bỏ liên kết tài khoản nhưng vẫn có thể giữ mã giao dịch và thông tin do Apple cung cấp; xoá tài khoản không tự huỷ gói mua, xoá báo lỗi, sự kiện sử dụng hoặc thư hỗ trợ đã gửi. Các dữ liệu này được xử lý theo mục 4. Với tài khoản Apple, chúng tôi yêu cầu thu hồi mã uỷ quyền; nếu Apple chưa phản hồi, token đã mã hoá được giữ trong hàng đợi để thử lại. Bản sao lưu cũ tự hết hạn trong khoảng 5 tuần. Bạn cũng có thể yêu cầu truy cập, sửa hoặc xoá dữ liệu qua email hỗ trợ. Nếu bạn gỡ quyền "Đăng nhập bằng Apple" cho ứng dụng trong Cài đặt, tài khoản sẽ bị xoá sau 30 ngày nếu bạn không đăng nhập lại.

6. Trẻ em

Ứng dụng không hướng tới trẻ em dưới 13 tuổi và chúng tôi không cố ý thu thập dữ liệu của trẻ em dưới 13 tuổi.

7. Bảo mật

Dữ liệu truyền qua HTTPS; khoá bí mật lưu tách biệt; mã phiên trên thiết bị lưu trong Keychain của iOS.

8. Thay đổi

Khi chính sách thay đổi đáng kể, chúng tôi cập nhật ngày hiệu lực ở đầu trang và thông báo trong ứng dụng.

Privacy Policy

Applies to the Ganba and Hiyoko iOS apps and the service at api.nihongoapps.com · Effective 25 September 2026

Summary: We collect only what the apps need to work: your sign-in account (if you choose to sign in), learning progress for cross-device sync, subscription status, usage events, technical data and information you submit for support. We do not sell data, show no ads, do not track you across other companies' apps or websites, and use no third-party advertising or analytics SDKs.

1. Controller

The developer of Ganba and Hiyoko (the seller name shown on the apps' App Store pages). Contact: [email protected].

2. Data we collect

Account (optional): the user identifier issued by Apple or Google and sign-in session information. Our server does not retain names or email addresses from sign-in tokens and never receives your password. Ganba separately stores the display name you enter in your profile, linked to your account. Learning progress: answers, estimated scores, review schedule, study settings, goals and exam date; synced data is associated with your account and a sync device identifier. Ganba also syncs notes you write in the mistake notebook. Purchases: transaction and product identifiers and status from Apple; we never see payment card details. Usage events: in-app events, app and iOS version, and a random install identifier. Events can be associated with an installation; in Ganba, an attempt identifier can link answer events to account-synced progress. Reports and support: content reports, descriptions and app/content versions you submit. If you send support email, we receive your sender email address and message; Ganba pre-fills app and iOS versions, device model and content packs for you to review before sending. Ganba also collects content-pack installation time/result and sign-in error codes. Technical: our API server keeps IP addresses and install identifiers in memory for rate limiting. Request logs contain the API route pattern, status, processing time and byte count, not IP addresses, headers or request bodies. Sign-in and security logs may contain account identifiers. Most features work without signing in; progress then stays on your device.

3. Sharing

We do not sell or rent data. Processors acting on our behalf: Apple and Google (sign-in; Apple processes payments), Cloudflare (content delivery, protection, file and backup storage), and our server hosting provider in Vietnam. We may disclose data where required by law.

4. Retention

Account, profile and synced progress: until you delete your account. Raw usage events: 90 days; per-answer details: 180 days; real exam scores you submit, error reports and Apple transaction notifications: 24 months. Aggregated statistics are retained for analysis. Purchase entitlement records and cancellation feedback are stored separately and are not automatically deleted with your account. Support correspondence is handled separately; you may request its deletion by emailing support. Database backups rotate out within about 5 weeks.

5. Account deletion and your rights

In Ganba: Me → Account → Delete account. Once the request succeeds, your account, profile, synced data and sign-in sessions for that app are deleted from the primary database. Purchase entitlement records are detached from the account but may retain transaction identifiers and information supplied by Apple; account deletion does not automatically cancel purchases or delete previously submitted reports, usage events or support correspondence. These records are handled as described in section 4. For Apple accounts, we request revocation of the authorization; if Apple does not respond, an encrypted token is retained in a queue for retries. Old backups expire within about 5 weeks. You may request access, correction or deletion by email. If you revoke "Sign in with Apple" for the app in Settings, the account is deleted after 30 days unless you sign in again.

6. Children

The apps are not directed to children under 13, and we do not knowingly collect data from children under 13.

7. Security

Data is transmitted over HTTPS; secrets are stored separately; session tokens on device are kept in the iOS Keychain.

8. Changes

We will update the effective date above and notify you in the app of material changes.