服务主体与联系方式 Controller and contact
本服务由海口心彩科技有限公司运营。有关隐私、授权撤回、账号删除或数据安全的问题,请发送邮件至 developer@acelinktennis.com。
AceLink Tennis is operated by Haikou Xincai Technology Co., Ltd. For privacy, consent withdrawal, account deletion, or data-security questions, contact developer@acelinktennis.com.
我们处理什么数据 What we collect
艾赛网球(AceLink Tennis)是一项把网球训练视频整理为动作报告和训练档案的服务。我们会处理你注册时提供的邮箱、昵称和邀请码;你选择上传的视频、动作类型、水平、拍摄角度、教练备注,以及由视频处理产生的报告、质量检查和训练记录。
We process the email, display name, and invitation code you use to register, plus the tennis videos and training details you choose to upload and the reports, quality checks, and practice records produced for your account.
注册时,我们还会保存你主动同意本政策和服务条款的状态、版本、时间及客户端来源,用于证明授权范围。密码仅以加盐哈希保存,不保存明文。
At registration, we also retain the consent status, policy versions, time, and client source needed to document your agreement. Passwords are stored only as salted hashes, never as plaintext.
我们如何使用数据 How we use it
- 提供视频上传、关键帧处理、动作报告和长期训练档案。
- 保障账户安全、防止滥用,并维护服务的可用性。
- 只有在获得球员或监护人明确授权,且经过教练标注与真实姿态验证后,才将去标识化片段用于评分校准。
- 只有在上传者另行主动勾选本地 AI 关键帧复核时,才将 3–4 张关键帧和必要动作信息交由 AceLink 管理的 Mac 使用本地模型处理;画面可能包含球员脸部与身体,不附账号名、邮箱或完整视频,不用于训练。不勾选仍可生成原报告。
- We use data to provide the service, keep accounts secure, prevent misuse, and improve score calibration only when an authorized, de-identified clip passes the stated review gates.
- Only after the uploader separately opts in are 3–4 keyframes and necessary stroke information processed by a local model on an AceLink-managed Mac. Frames may show faces and bodies; account names, email addresses, and full videos are not attached. This review does not train a model. The original report remains available without this consent.
球连、球友与球包 Community, players, and your tennis bag
使用球连时,我们保存你主动提交的动态文字、照片和视频、评论、点赞、关注与拉黑关系、举报及处理状态。发布内容按你选择的“公开”或“关注者”范围展示;没有关注者不会使内容自动变成公开。社区媒体与训练上传相互独立,不会因为发布动态而自动生成动作分析报告。
When you use Courtside, we store the posts, photos, videos, comments, likes, follow and block relationships, and reports you submit, with their moderation status. Posts follow your public or followers-only choice; having no followers does not make a post public. Community media is separate from training uploads and does not automatically create a motion-analysis report.
你可以主动填写城市、区域、常用球场、可约时间和自评水平,用于球友卡、同城浏览与约球。城市和区域属于粗略位置资料。我们不读取手机通讯录。请勿在公开资料中填写家庭住址或其他不想公开的具体位置。球友关系来自你在应用内的操作。
You may provide a city, district, usual court, availability, and self-assessed level for your player card, city browsing, and tennis invitations. City and district are coarse location data. We do not read your phone's address book. Avoid putting a home address or another sensitive exact location in public fields. Player relationships come from your actions within the app.
支持城市定位的 iOS 版本仅在你点击“定位当前城市”后申请使用期间的位置权限,默认接受大致位置,不申请后台定位,也不持续追踪。位置仅在设备内临时处理,经纬度取至小数点后两位后通过 Apple 的地理编码服务转换为城市;该转换需要网络,位置会交由 Apple 服务处理,不是完全离线处理。我们不将坐标、街道或完整地址发送到艾赛后端、诊断日志或公开动态。只有你核对并点击“查看同城”后,城市名才随已登录的同城查询发送到我们的服务,可能出现在常规请求日志中,按安全记录规则处理。本次浏览城市仅在当前账号的应用会话内记住,不更改公开资料、不自动为动态附加位置。你可手动输入城市、取消操作,或在 iOS 设置撤回权限;拒绝或定位失败不影响其他功能。
In iOS builds supporting city lookup, location permission is requested only after you tap “Locate current city”. Approximate location is accepted by default; there is no background location or continuous tracking. Coordinates are processed transiently on your device and rounded to two decimal places before Apple's network-based geocoding service resolves a city. Apple processes that lookup; it is not entirely offline. Coordinates, streets and full addresses are not sent to AceLink's backend, diagnostic logs or public posts. Only after you check the city and tap “Browse this city” is the city name sent with your authenticated local-feed query. It may appear in ordinary request logs and follows our security-record handling rules. The browse city is remembered only for the current account's app session; it does not change your public profile or attach a location to posts. You can enter a city manually, cancel, or revoke permission in iOS Settings. Denial or failure does not block other features.
约球记录包括参与者、约定时间、球场、目标、回应及双方各自的见面反馈;接受邀请不等于实际打过球。约球记录和私信默认仅参与者可见,但授权工作人员可在处理安全问题、举报或服务请求所需的范围内访问。私信包含发送者、接收方、发送时间和正文,不是端到端加密通信。
Tennis invitations contain participants, the planned time, court, goal, response, and each participant's meeting feedback. Acceptance does not confirm a meeting. Invitations and private messages are visible to participants by default; authorized staff may access them as necessary for safety, reports, or support. Messages contain sender, recipient, time, and text and are not end-to-end encrypted.
收藏默认私密,不通知作者;原动态删除、隐藏或失去访问权限后,收藏不会继续提供原文。球包保存你填写的球拍、球线、磅数与单位、穿线日期和感受,默认仅自己可见;只有你主动公开的记录才会展示到球友卡或供动态关联,撤回公开后关联展示停止。
Saved posts are private and do not notify authors. A saved item does not preserve access to deleted, hidden, or inaccessible content. Your bag stores optional racket, string, tension and unit, stringing date, and personal notes. Records are private unless you publish them; withdrawing publication stops their linked display on player cards and posts.
服务安全与内部统计 Service security and internal measurement
为登录安全和防滥用,我们处理应用设备标识、设备与账号关联,以及 IP 和浏览器标识的哈希值;通知启用时还会处理账号关联的设备推送令牌。哈希处理不等于匿名化。
For account security and abuse prevention, we process app device identifiers, device-to-account links, and hashes of IP addresses and browser identifiers. When notifications are enabled, we also process account-linked push tokens. Hashing does not make these records anonymous.
为排查失败和了解服务是否真正有用,我们保存会话标识、App/系统版本、操作步骤、结果和错误代号。登录状态下,事件可带有由账号 ID 生成的稳定标识,因此属于可关联用户的数据。此类客户端事件不记录姓名、邮箱、密码、令牌、媒体地址、视频内容、错误原文或调用堆栈。
To diagnose failures and understand service use, we retain session identifiers, app/OS versions, action steps, outcomes, and error codes. Signed-in events may include a stable identifier derived from the account ID and are therefore linkable to a user. These client events do not contain names, email addresses, passwords, tokens, media URLs, video content, raw error messages, or stack traces.
社区内部汇总使用成功发布、评论和约球的参与者标识、时间及状态,衡量首次评论、邀请回应/接受和再次互动。不为这些指标采集私信正文、视频内容或精确位置;汇总仅供有权限的内部人员使用。这些是自有服务统计,不是跨应用广告追踪,也不是公开用户画像。
Internal community summaries use participant identifiers, timestamps, and states from successful posts, comments, and invitations to measure first comments, responses, acceptances, and repeat interactions. These metrics do not collect private-message text, video content, or precise location and are restricted to authorized staff. They are first-party service analytics, not cross-app advertising tracking or public user profiles.
视频与模型校准 Video and calibration
默认情况下,上传的视频只用于生成该球员的报告和训练档案。勾选“允许匿名片段用于校准评分”不会改变当前报告,也不会自动进入模型阈值。只有取得授权、教练完成标注并且真实姿态指标通过验证的片段,才可能进入去标识化校准池。
By default, a video is used only for that player’s report and archive. Optional calibration consent does not change the current report or automatically enter a model. A clip can enter a de-identified calibration pool only after consent, coach labeling, and verified pose evidence.
可选本地 AI 关键帧复核 Optional local AI keyframe review
本地 AI 复核是默认不勾选的独立授权,版本为 2026-09-08-local-v1;以往的 OpenAI 复核授权和样本校准授权不会自动授权本次处理。你在 App 上传一次即可,原报告先生成,复核完成后补充到同一份报告。我们保存此项同意的状态、版本、时间和范围,用于执行和核对授权。
This separate choice is unchecked by default and uses consent version 2026-09-08-local-v1. Previous OpenAI-review or sample-calibration consent does not authorize local review. Upload once in the App: the original report is produced first and the review is added to it later. We retain the consent status, version, time, and scope to enforce and document your choice.
模型仅查看抽样的 3–4 帧及必要动作信息,不代表查看过完整动作或准确识别了动作阶段。结果明确标记为 AI,未经校准,不是教练确认,也不认证技术进步或整体水平。此流程不用于训练模型或自动调整评分阈值。
The model sees only 3–4 sampled frames and necessary stroke information, not the full action or reliably identified action phases. Results are labeled as AI, remain uncalibrated, and do not certify coach confirmation, technical improvement, or overall ability. This workflow does not train a model or automatically adjust scoring thresholds.
你可以在自己原报告的 AI 复核区撤销这次授权,停止后续取帧与处理,并拒收这次任务后续的新结果;已生成的原报告不因此删除。撤销不能使已经发生的处理变成未发生,账号和报告删除仍按下述规则办理。旧版 OpenAI 复核记录继续标明原处理方式,不会因本次授权自动重新发送历史素材。
You can revoke this consent in the AI-review section of your own original report. This stops subsequent frame retrieval and processing and rejects further results for the task; it does not delete the original report. Withdrawal cannot undo processing already performed. Account and report deletion follow the rules below. Historical OpenAI reviews retain their original attribution and are not automatically resubmitted under this new consent.
存储、共享与保留 Storage, sharing, and retention
我们使用受访问控制的云端基础设施提供账号、视频处理、报告和备份服务。我们不会出售训练视频,也不用于跨应用广告追踪。只有履行服务所必需的云服务提供方、你主动授权的教练,以及法律要求的接收方可以在必要范围内访问相关数据,并须遵守与本政策相当的数据保护要求。
普通训练视频和报告原则上随账号档案保留;未授权进入 Beta 数据集的普通媒体在存储保护需要时可能提前清理。已授权且处于 active 状态的 Beta 原片不会被自动清理,会保留至账号删除或授权撤回。账号删除会立即移除在线账号、会话、媒体和报告;只读备份中的副本不再用于日常服务,并在最长 35 天的备份轮换期内过期。依法必须保留的去标识化结算记录除外。
We use access-controlled cloud providers for accounts, media processing, reports, and backups. We do not sell training videos or use them for cross-app advertising. Ordinary media may be pruned earlier when storage protection requires it. An active, consented Beta original is protected from automatic cleanup until account deletion or consent withdrawal. Deletion removes active account data immediately; inaccessible backup copies expire within the 35-day backup rotation, except de-identified records that must be retained by law.
本地 AI 复核的临时关键帧在 AceLink 管理的 Mac 上处理,任务完成后清理;异常退出时,残留可能需等待任务过期或下次服务启动再清理。复核结果回传到 App 原报告,按该报告的保存和删除规则管理;自动任务不进入本机手动测试历史。服务处理位置可能在用户所在地区之外,“本地模型”指推理在该受管理设备上运行,不表示在用户自己的手机或特定国家、地区处理。
Temporary local-review frames are processed on an AceLink-managed Mac and cleaned up after the task. After an abnormal shutdown, cleanup may wait for task expiry or the next service start. Results return to the original App report and follow its retention and deletion rules; automatic tasks do not enter the Mac's manual-test history. Processing may occur outside your region. “Local model” means inference on that managed device, not on your phone or necessarily in a particular country or region.
社区内容另按发布范围向相应球友提供;私信、收藏和未公开球包不因此公开。当前账号删除流程会移除关联社区记录,但部分设备安全记录与客户端诊断事件未纳入同一次即时清理,不应理解为所有日志会立即消失。客户端事件有保留期清理机制;如需查询或删除残留记录,可通过下方联系方式提出请求。
Community content is also shared with the audience you select, without making private messages, saved posts, or unpublished bag records public. Account deletion removes associated community records, but some device-security records and client diagnostic events are not included in the same immediate cleanup. Do not assume all logs disappear immediately. Client events have a retention-based cleanup mechanism; contact us below to request access to or deletion of residual records.
安全与跨境处理 Security and processing locations
视频播放链接采用权限校验和短期签名,传输使用 HTTPS。服务基础设施或技术供应商可能位于用户所在地区之外;我们仅为提供服务而进行必要处理,并通过访问控制、最小权限和合同义务保护数据。
Video access uses authorization checks and short-lived signed links, and network transfer uses HTTPS. Service infrastructure may process data outside the user’s region only as needed to provide the service, subject to access controls and provider obligations.
未成年人 Children and teens
若视频中的球员未达到其所在地要求的独立同意年龄,请由家长或法定监护人注册、授权上传和决定是否参与匿名校准。教练或球馆代传时,必须先取得球员或监护人的明确许可。
If a player is below the age of independent consent where they live, a parent or legal guardian must authorize registration, upload, and any optional calibration use.
你的控制权 Your choices
登录后可在“我的 - 账号与数据”中查看本政策、服务条款并永久删除账户。删除不可撤销。网页端删除入口和处理范围见账号删除说明;逐项数据、系统权限及第三方组件见信息与权限清单。
After signing in, open My → Account & data to permanently delete the account. The same web-accessible path and deletion scope are documented on the account deletion page.
艾赛网球(AceLink Tennis)的动作报告用于训练参考,不构成医疗、康复或伤病诊断建议。