生效日期:2026 年 7 月 29 日 · Effective July 29, 2026
一句话:CanPhone 没有服务器,你的一切数据都只在你的设备上。
In one sentence: CanPhone has no servers. Everything stays on your device.
聊天记录、角色卡、世界书、你的个人设定,全部只保存在你的设备本地。 开发者不会收到这些内容,也没有任何技术途径读取它们。删除 App 即彻底删除全部数据。
Chats, character cards, world books and your profile are stored only on your device. The developer never receives them and has no way to read them. Deleting the app deletes everything.
你在设置中填写的第三方模型服务密钥只保存在设备本地, 仅在你发送消息时由你的设备直接发送给你自己选择的模型服务商。 它不经过任何由开发者运营的服务器 —— 因为不存在这样的服务器。
Your API key is stored locally and sent directly from your device to the model provider you chose. It never passes through any developer-operated server — none exists.
App 只会连接你自己配置的接口 —— 聊天、以及(可选的)生图、记忆检索、语音朗读。 没有数据统计、没有崩溃上报、没有广告、没有推送服务、没有更新检查。 图片文字识别(OCR)与你说话的语音转文字都在设备本地完成,不联网。 语音朗读默认用系统自带的声音(本地);只有当你主动填写了第三方语音服务, 要朗读的那段文字才会发给你选的那家。
The app connects only to endpoints you configured yourself — chat, and optionally image generation, memory retrieval and speech. No analytics, no crash reporting, no ads, no push service, no update checks. OCR and speech-to-text of your own voice run entirely on-device. Text-to-speech uses the system voice by default; only if you fill in a third-party speech service does the text to be spoken get sent to the provider you chose.
麦克风:只在你按住「说话」录语音条时使用。录音文件保存在你的设备上, 不会上传到任何地方 —— 包括开发者、也包括你配置的模型服务商。
语音识别:把你说的话转成文字发给角色。这一步调用的是 iOS 的
设备端识别(requiresOnDeviceRecognition),音频不离开这台手机;
你的设备如果不支持离线识别,App 会明确告诉你并退回用键盘输入,绝不改走云端识别。
相册 / 相机:只在你主动选择图片时打开(导入角色卡、换壁纸、换图标、发照片)。 App 不会读取你没有选中的任何照片,也不会上传相册内容。
Microphone is used only while you hold to record a voice note;
the recording stays on your device. Speech recognition runs on-device
(requiresOnDeviceRecognition) — audio never leaves the phone, and if your device
cannot do it offline the app says so and falls back to typing rather than switching to the cloud.
Photos / camera open only when you pick an image yourself; nothing is uploaded.
我们收集的数据:无。本页面(canphone 官网)为静态页面,仅作产品介绍与支持用途, 不设账号、不设 Cookie、不做访问统计。
Data we collect: none. This website is a static page for product information and support only — no accounts, no cookies, no analytics.
当你把消息发送给你配置的模型服务商(如 OpenAI、DeepSeek、Anthropic、Google 或任何兼容中转)时, 该请求受对方的隐私政策约束。请自行查阅你所选服务商的条款。
When you send messages to your chosen model provider, that request is governed by their privacy policy. Please review the terms of the provider you selected.
CanPhone 不面向 16 岁以下用户。
CanPhone is not directed at users under 16.
政策如有变更会更新本页面。由于 App 无法向你推送任何内容,重大变更只会随 App 更新说明告知。
Changes will be posted here. Since the app cannot push anything to you, material changes will be noted in App Store release notes.