MochiNote

Riêng tư, rõ ràng,
do bạn kiểm soát.

Privacy policy · Chính sách quyền riêng tư

← Trở về trang chủ

Tiếng Việt

1. Phạm vi

Chính sách này áp dụng cho tiện ích Chrome, web app và các trang Sticky được chia sẻ của MochiNote.

2. Dữ liệu được xử lý

MochiNote xử lý nội dung Sticky, nhiệm vụ, thư mục, thẻ, tùy chọn giao diện và dữ liệu tài khoản cần thiết để đăng nhập, đồng bộ. Nội dung trang chỉ được lưu khi bạn chủ động dùng tính năng ghi/capture.

3. Lưu trữ và đồng bộ

Dữ liệu khách được lưu trên thiết bị. Khi đăng nhập, dữ liệu bạn chọn đồng bộ được gửi tới Supabase. Ảnh trong Sticky được lưu riêng tư trên R2 và chỉ truy cập bằng URL ký ngắn hạn.

4. Chia sẻ bằng QR

Link chia sẻ là link bí mật không liệt kê công khai. Trang xem chỉ hiển thị tiêu đề, nội dung đã làm sạch, thẻ, màu/pattern, nguồn và thời gian cập nhật; không hiển thị thư mục, lời nhắc hay danh tính chủ sở hữu. Trang luôn đọc bản cloud mới nhất khi tải lại.

5. Quyền kiểm soát

Bạn có thể tạo lại QR để link cũ mất hiệu lực hoặc thu hồi link bất cứ lúc nào. Xóa hoặc đưa Sticky vào Thùng rác cũng thu hồi link; khôi phục không tự bật lại link cũ.

6. Bảo mật

MochiNote dùng kiểm soát truy cập theo chủ sở hữu, kết nối HTTPS, token chia sẻ có chữ ký và URL ảnh hết hạn. Người có link vẫn có thể xem và chuyển tiếp nội dung, vì vậy đừng chia sẻ dữ liệu nhạy cảm.

7. Bên thứ ba

MochiNote dùng Supabase cho xác thực/cơ sở dữ liệu và Cloudflare R2/Worker cho ảnh. Trang Sticky công khai không chạy analytics hay script quảng cáo bên thứ ba.

8. Xóa dữ liệu

Bạn có thể xóa nội dung trong ứng dụng và thu hồi mọi link đã chia sẻ. Dữ liệu có thể còn trong bản sao lưu vận hành trong một khoảng thời gian giới hạn trước khi được luân chuyển.

9. Liên hệ và thay đổi

Chính sách có thể được cập nhật khi sản phẩm thay đổi. Ngày hiệu lực hiện tại: 09/08/2026.

English

1. Scope

This policy applies to the MochiNote Chrome extension, web app, and shared Sticky pages.

2. Data we process

MochiNote processes Sticky content, tasks, folders, tags, appearance settings, and account data required for sign-in and sync. Page content is saved only when you actively use a note or capture feature.

3. Storage and sync

Guest data stays on your device. After sign-in, data you choose to sync is sent to Supabase. Sticky images remain private in R2 and are accessed through short-lived signed URLs.

4. QR sharing

A share URL is an unlisted secret link. The viewer exposes only the title, sanitized content, tags, paper appearance, source, and update time; it excludes folders, reminders, and owner identity. Reloading reads the latest cloud-synced version.

5. Your controls

You can regenerate a QR to invalidate the previous URL or revoke access at any time. Deleting or trashing a Sticky also revokes its link, and restoring it does not reactivate the old URL.

6. Security

MochiNote uses owner-scoped access controls, HTTPS, signed share tokens, and expiring image URLs. Anyone with a share link can view and forward it, so do not use it for sensitive information.

7. Service providers

MochiNote uses Supabase for authentication/database services and Cloudflare R2/Workers for images. Shared Sticky pages contain no analytics or third-party advertising scripts.

8. Deletion

You can delete content in the app and revoke shared links. Data may remain in operational backups for a limited rotation period.

9. Contact and changes

This policy may be updated as the product changes. Effective date: August 9, 2026.