LYMO · PRIVACY
Privacy Policy
English
This policy explains how Lymo collects, uses, stores, and shares information when you use our music social service. Lymo does not sell personal information or use it for targeted advertising.
1. Information we process
- Account and identity. Your generated Lymo handle, display name, profile image, account timestamps, and the email address or provider identifier used to sign in. If you use Sign in with Apple, Apple may provide your name and either your email address or a private relay address, according to your choice.
- Authentication and security. Short-lived verification challenges, hashed device and network identifiers used for abuse prevention, session records, and encrypted provider authorization tokens where needed to maintain or revoke a linked login method.
- Music information. With your permission, Lymo reads selected Apple Music library metadata such as recently played tracks, playlists, artists, artwork references, and playback state. We store the music metadata you choose to sync or share so your profile and social features work.
- Social activity and content. Friend requests and friendships, listening activity, likes, playlists created in Lymo, private messages, shared song metadata, GIF or sticker references, and message read state.
- Contacts. If you choose Find from Contacts, email addresses are normalized and hashed on your device. Lymo sends up to 1,000 hashes to find discoverable accounts; it does not upload contact names or an unencrypted address-book copy.
- Technical information. Requests to our service may temporarily include IP address, timestamps, device or app information, and error details needed for security, reliability, and troubleshooting.
2. Why we use information
We use this information to create and secure your account; authenticate you; connect login methods; provide profiles, music sync, playback, friendships, messaging, reactions, and playlists; prevent abuse; troubleshoot failures; comply with legal obligations; and respond to support or privacy requests.
3. Who can see information
Your handle, display name, and profile image can appear in account search. Accepted friends can see the profile, music, and listening information exposed by Lymo's friend features. Direct messages are available to the conversation participants. Submitted text and images may also be processed for the safety checks you authorize, and authorized reviewers can access specifically reported evidence as described below. Blocking limits social visibility and contact between the pair. Friend pins are account-scoped preferences synchronized by Lymo.
4. Service providers and disclosures
Lymo relies on Apple for Sign in with Apple and Apple Music, Alibaba Cloud for application hosting and transactional email, and KLIPY for GIF and sticker search. With your separate permission, we send the text or image you submit (such as a display name, avatar, message, comment or shared playlist name/cover) to Alibaba Cloud/Qwen for automated safety checks. We do not send your contacts, sign-in credentials, whole conversation, account email address or listening history as part of that check. This permission is requested before the first check and may be withdrawn in Settings → Privacy & Safety. Withdrawing it prevents future checks; reading, reporting, blocking, support and account deletion remain available, while submitting content that requires checking is unavailable. Requests sent to these providers are limited to what is needed for the selected feature. We may also disclose information when required by law, to protect users and the service, or as part of a corporate transaction subject to appropriate safeguards. Providers that process Lymo user data are required to protect it consistently with this policy and applicable law.
Music AI. Lymo separately offers to enable AI summaries of your listening for accepted friends. After you choose Agree and enable, we send Alibaba Cloud/Qwen your display name, up to three representative song titles and artists, broad listening-count and time-of-day categories, and repeat-listening or sharing facts. Repeat insights use a smaller set of confirmed listening and sharing facts. We do not include your email, contacts, credentials, private messages, raw timestamps or other people's listening. Neither connecting Apple Music nor accepting the safety-check permission grants this music AI permission. You can choose Not now and continue using Lymo, or withdraw in Settings → Privacy & Safety. Withdrawal stops new generation and removes stored generated music copy; requests already sent cannot be recalled, but their results will not be stored or shared. Previously delivered offline copies on a friend's device may remain until refreshed.
Continuous listening sync. After Apple Music is connected, Lymo separately offers to keep your recent listening up to date while the app is closed. Agree and enable allows us to verify and store your encrypted Apple Music user authorization and use it on our server to request recent history from Apple, including listening on other devices on that Apple Music account. We use this metadata for your music profile and listening activity visible to accepted friends; we do not upload or distribute Apple Music audio files. Sync starts after this choice and runs automatically, normally between five-minute and daily checks, with backoff during failures. Two weeks without opening Lymo suspends collection but retains the encrypted authorization; opening Lymo can resume it while permission remains granted. The Apple Music connection card shows sync status and lets you stop it. Stopping sync deletes the server authorization without disconnecting playback or deleting existing listening records. Disconnecting Apple Music or deleting your Lymo account also removes the authorization. Existing connections require this explicit choice; an iOS music permission alone does not enable server collection.
5. Storage and international processing
Our production service is hosted in Singapore. If you use Lymo elsewhere, your information may therefore be transferred to and processed in Singapore and in locations where the providers above operate. We use access controls, encryption in transit, restricted credentials, and encryption for stored Apple authorization tokens. No internet service can guarantee absolute security.
6. Safety evidence, retention and deletion
A report contains the selected item or profile as it appeared when reported, the reason and optional explanation, and identifiers needed to investigate. It does not provide reviewers with your entire private conversation. Only authorized reviewers can access evidence. We record their moderation decisions and restrict access; the reported person is not shown the reporter’s identity. Closed reports and their associated evidence are removed after 90 days. Evidence supporting an active social restriction is retained for appeals and restoration; the 90-day period begins after the final restoration decision. Deleting an account removes its report identity, explanations, evidence, blocks and safety permission from the active service. If a restriction of another account is still active, we retain only an anonymous administrative decision record needed for appeal or restoration, without the deleted reporter’s identity or reported content. The restricted account’s own restriction reason remains until resolved.
We keep account and social information while your account is active, and keep authentication or operational records only as long as reasonably needed for the purposes described above. Short-lived sign-in challenges expire automatically. When you delete your account in Lymo, the account and associated profile, identities, sessions, friendships, music metadata, activities, playlists, reactions, and messages are deleted from the active service, except information we must retain for legal, security, fraud-prevention, or backup-integrity reasons. Residual backup copies are isolated and removed through the normal backup lifecycle. For Sign in with Apple, Lymo also attempts to revoke the associated Apple token.
Account deletion also queues removal of current, replaced and pending avatar files. Storage failures are retried without restoring your account. We retain only the minimal storage-prefix deletion marker needed to remove failed or late uploads; it contains no profile, email, image or usable login identity and is used solely for that cleanup. Permission decisions and stored music AI copy are removed with the account.
7. Your choices and rights
- Decline Contacts or Media Library permission in iOS Settings; core account access remains available, while the related feature may not work.
- Report inappropriate content, block users, view your report status, and grant or withdraw automated safety-check permission in Settings → Privacy & Safety. For concerns or appeals, contact hi@vividverse.fun.
- Enable or withdraw Music AI in Settings → Privacy & Safety, independently of safety checks. Enable or stop continuous listening sync on the Apple Music connection card. We remember refusals and withdrawals across your devices and do not ask again on every launch.
- Manage or unlink eligible sign-in methods under Settings → Login methods.
- Delete your account under Settings → Login methods → Delete account. Recent authentication and confirmation are required to protect against accidental deletion.
- Manage Sign in with Apple under Apple Account settings and manage Apple Music access in iOS Settings.
- Ask to access, correct, export, restrict, object to, or delete personal information where applicable law grants that right.
8. Children
Lymo is not directed to children under 13 or the minimum age required to consent to an online service in their location. If you believe a child has provided personal information without valid authorization, contact us so we can investigate and remove it.
9. Changes and contact
We may update this policy as Lymo changes. We will update the effective date and provide additional notice when required. For privacy questions or requests, email hi@vividverse.fun. You may also complain to the data-protection authority available in your jurisdiction.
简体中文
本政策说明您使用音乐社交服务 Lymo 时,我们如何收集、使用、存储和共享信息。Lymo 不出售个人信息,也不会将个人信息用于定向广告。
1. 我们处理的信息
- 账号与身份信息:系统生成的 Lymo 账号名、展示名称、头像、账号时间,以及用于登录的邮箱或第三方身份标识。使用“通过 Apple 登录”时,Apple 可能依照您的选择提供姓名、邮箱或隐私中继邮箱。
- 认证与安全信息:短期有效的验证码挑战、用于防止滥用的设备及网络标识哈希、会话记录,以及维护或撤销关联登录方式所需的加密授权令牌。
- 音乐信息:在获得授权后,Lymo 会读取部分 Apple Music 资料库元数据,例如最近播放、歌单、艺人、封面引用和播放状态。您选择同步或分享的音乐元数据会被存储,以提供个人主页和社交功能。
- 社交活动与内容:好友请求和好友关系、收听动态、点赞、在 Lymo 中创建的歌单、私信、分享的歌曲信息、GIF 或贴纸引用以及消息已读状态。
- 通讯录:仅当您主动选择“从通讯录查找”时,邮箱地址会在设备上规范化并计算哈希。Lymo 最多发送 1,000 个哈希用于匹配允许被发现的账号;不会上传联系人姓名或未加密的完整通讯录。
- 技术信息:服务请求可能临时包含 IP 地址、时间、设备或应用信息及错误详情,用于安全、稳定性和故障排查。
2. 使用目的
我们为创建和保护账号、身份认证、关联登录方式、提供主页、音乐同步与播放、好友、消息、反应和歌单功能、防止滥用、排查故障、履行法定义务以及响应客服或隐私请求而使用上述信息。
3. 信息可见范围
账号名、展示名称和头像可能出现在账号搜索中。已互相接受的好友可以看到 Lymo 好友功能中展示的主页、音乐和收听信息。私信对会话双方可见。提交的文字和图片也可能用于您授权的安全检查,获授权的审核人员可以访问下文说明的具体被举报证据。拉黑会限制双方的社交内容可见范围及联系能力。好友置顶是由 Lymo 同步的账号偏好。
4. 服务提供商与披露
Lymo 使用 Apple 提供“通过 Apple 登录”和 Apple Music,使用阿里云托管应用及发送事务邮件,并使用 KLIPY 提供 GIF 和贴纸搜索。经您单独同意后,我们会将您提交的文字或图片(例如昵称、头像、消息、评论或分享歌单的名称/封面)发送至阿里云/通义千问进行自动安全检查。此检查不会发送您的通讯录、登录凭据、完整会话、账号邮箱地址或收听历史。我们在首次检查前征求授权;您可以在“设置 → 隐私与安全”撤回。撤回后停止后续检查,阅读、举报、拉黑、支持和删除账号仍可使用,但无法提交需要检查的内容。向这些服务商发送的数据仅限于实现所选功能所必需的范围。我们也可能因法律要求、保护用户或服务安全,或在具备适当保障的公司交易中披露信息。处理 Lymo 用户数据的服务商应按照本政策和适用法律提供相应保护。
音乐 AI:Lymo 会单独邀请您开启面向已接受好友的听歌 AI 摘要。选择“同意并开启”后,我们向阿里云/通义千问发送您的展示名称、最多三首代表歌曲的名称和艺人、概括的收听次数与时段,以及重复收听或分享事实。重复收听短评使用更少的已确认收听与分享事实,不包含邮箱、通讯录、登录凭据、私信、原始时间戳或其他人的收听信息。连接 Apple Music 或同意安全检查,都不代表同意音乐 AI。您可以选择“暂不开启”并继续使用 Lymo,也可以在“设置 → 隐私与安全”撤回。撤回后停止新生成并删除已保存的音乐 AI 文案;已发给服务商的请求无法收回,但其结果不会被保存或分享。好友设备上已经收到的离线副本可能保留至刷新。
持续收听同步:连接 Apple Music 后,Lymo 会单独邀请您在应用关闭时继续更新近期收听。选择“同意并开启”后,我们会验证并加密保存您的 Apple Music 用户授权,在服务端凭此向 Apple 获取近期收听,包括同一 Apple Music 账号在其他设备上的收听。这些元数据用于音乐主页及已接受好友可见的收听动态;我们不会上传或分发 Apple Music 音频文件。同步在您作出选择后自动运行,通常每五分钟至一天检查一次,故障时适当延后。两周未打开 Lymo 会暂停采集,但保留加密授权;在仍然同意的情况下,重新打开可恢复采集。Apple Music 连接卡会显示同步状态并提供停止入口。停止同步会删除服务端授权,不影响播放连接,也不会删除已有收听记录。断开 Apple Music 或删除 Lymo 账号同样会移除授权。已有连接也需要此次明确选择;iOS 音乐权限本身不会启用服务端采集。
5. 存储与跨境处理
生产服务托管于新加坡。如果您在其他地区使用 Lymo,信息可能被传输至新加坡,以及上述服务商运营所在地区处理。我们采用访问控制、传输加密、受限凭据,并对存储的 Apple 授权令牌加密。任何互联网服务都无法保证绝对安全。
6. 安全证据、保存与删除
举报包含被选中的内容或主页在举报时的快照、原因、选填说明及调查所需标识,不会向审核人员开放您的完整私聊。只有获授权的审核人员可以访问证据,我们记录其处理决定并限制访问;被举报人不会看到举报者身份。已结案举报及其相关证据在 90 天后删除。仍在生效的社交限制所依据的证据会保留,以支持申诉和恢复;恢复权限的最终决定作出后,开始计算 90 天期限。删除账号时,其举报身份、说明、证据、拉黑记录及安全检查授权会从在线服务中删除。如果对另一个账号的限制仍然生效,我们仅保留用于申诉或恢复的匿名管理决定记录,不保留已删除举报者的身份或被举报内容。受限账号自身的限制原因会保留至处理完成。
账号有效期间,我们会保存账号及社交信息;认证或运维记录仅在实现上述目的所合理需要的期限内保存。短期登录挑战会自动过期。您在 Lymo 内删除账号后,账号及相关主页、身份、会话、好友关系、音乐元数据、动态、歌单、反应和消息会从在线服务中删除;法律、安全、防欺诈或备份完整性要求保留的内容除外。备份中的残留副本会被隔离,并随正常备份周期删除。对于“通过 Apple 登录”,Lymo 还会尝试撤销相关 Apple 令牌。
删除账号也会安排清理当前头像、曾替换的头像和尚未完成的头像上传。存储故障会自动重试,不会恢复账号。为删除失败或迟到的上传,我们仅保留必要的存储前缀清理标记,不包含主页、邮箱、图片或可登录身份,也不会用于清理以外的目的。账号删除时,其授权选择和已保存的音乐 AI 文案也会删除。
7. 您的选择与权利
- 可以在 iOS 设置中拒绝通讯录或媒体资料库权限;账号核心功能仍可使用,但相关功能可能不可用。
- 可以在“设置 → 隐私与安全”举报不当内容、拉黑用户、查看举报状态,以及同意或撤回自动安全检查授权。如有问题或需要申诉,请联系 hi@vividverse.fun。
- 可以在“设置 → 隐私与安全”独立开启或撤回音乐 AI,在 Apple Music 连接卡开启或停止持续收听同步。拒绝或撤回会在您的设备间同步,不会每次启动都重复询问。
- 可以在“设置 → 登录方式”管理或解绑符合条件的登录方式。
- 可以在“设置 → 登录方式 → 删除账号”发起账号删除。为防止误删,需要近期重新认证并再次确认。
- 可以在 Apple 账号设置中管理“通过 Apple 登录”,并在 iOS 设置中管理 Apple Music 权限。
- 在适用法律规定的范围内,您可以请求访问、更正、导出、限制处理、提出异议或删除个人信息。
8. 未成年人
Lymo 不面向未满 13 周岁或所在地法律规定的网络服务最低同意年龄的儿童。如果您认为儿童在缺少有效授权的情况下提供了个人信息,请联系我们调查并删除。
9. 更新与联系
我们可能随 Lymo 的变化更新本政策,并更新生效日期;法律要求时会另行通知。如有隐私问题或请求,请发送邮件至 hi@vividverse.fun。您也可以向所在司法辖区有权受理的个人信息保护机构投诉。