← Free, open source, non-profit← 免费 · 开源 · 非盈利
Privacy隐私政策
This page is what the nanoMuse apps — the phone, the web and desktop apps, the dsh plugin — and nanoMuse Cloud do with your data. It is short because they do little with it. Where it matters, the one thing you decide is a switch: Settings → Data controls. The same text lives in the repository as docs/privacy.md, with its history.这一页说明 nanoMuse 的各端应用(手机、网页、桌面、dsh 插件)和 nanoMuse Cloud 怎样处理你的数据。它很短,因为它们对数据做的事不多。真正要你决定的只有一个开关:设置 → 数据控制。同样的文字也在仓库里的 docs/privacy.md,带修改历史。
Everything stays on your device一切都留在你的设备上
The agent runs inside the app — on the phone, in a Linux root file system in the app's private storage; on a computer, in the runtime you installed. Conversations, memory, files the agent writes, scheduled tasks, skills and settings are stored there and, where you mount them, in folders you chose. There is no analytics, no crash reporting to us and no telemetry of any kind. The only nanoMuse server is the optional relay described below, and the apps work fully without it.智能体就在应用里运行——手机上是 App 私有存储里的一个 Linux 根文件系统,电脑上是你安装的运行时。对话、记忆、它写的文件、定时任务、技能和设置都存在那里,以及你挂载的文件夹里。没有统计分析,没有发给我们的崩溃报告,没有任何形式的遥测。nanoMuse 唯一的服务器是下面说的可选中继,不用它应用也完整可用。
What leaves the device什么会离开设备
- Your model provider. Messages, attached images and tool results are sent to the model endpoint you configured (Alibaba Cloud Bailian, DeepSeek, OpenAI, OpenRouter, your own vLLM or Ollama, …), under that provider's terms, with the API key you entered. The key is stored on your device only.你的模型服务商。消息、附带的图片和工具结果会发到你配置的模型接口(阿里云百炼、DeepSeek、OpenAI、OpenRouter、你自己的 vLLM 或 Ollama……),按该服务商的条款、用你填的 API key。key 只存在你的设备上。
- nanoMuse Cloud, if you signed in. Sign in — free on the first screen (or Settings → nanoMuse Cloud) signs you up with a phone number or an e-mail address and a code, and the app then uses our relay as a model provider — free, ¥10 of model use per account (community members: no limit; each new person who signs up with your invite code adds ¥5 to your allowance and ¥5 to theirs), paid by the developer; nanoMuse is a non-profit community project and never charges. The relay forwards your messages to the model (Alibaba Cloud Model Studio). What it keeps about the account: a salted hash of your address, the address itself encrypted so the person running the relay can see whose account it is (the database file alone shows nothing), a masked hint such as
s***@example.com, the hash of the key issued to this device, the kind, model and token count of each request, your invite code with the ids of accounts that used it, and — so your devices wear the same one — the agent's name and look (which face; for one drawn in the avatar studio, its five small pictures). With each sign-in, request, timeline event and device it also records the network address the request came from and the client software (theUser-Agent: the Android app and its version, the runtime on Windows, macOS or Linux, a browser), and the account keeps its first and last address and when it was last seen — the person running the relay sees these on the operator's page, per account and per address, to tell one person on two accounts from two people on one address and to see a problem's shape. What it keeps of the conversations themselves is governed by two switches, described next. It does not receive your location: the apps never send it, and the relay does not look an address up. Signing out revokes the key; deleting the account removes all of it, addresses included. The relay's source is in the repository undercloud/, and docs/cloud.md says how to run your own. Nothing about the relay applies when you use your own key.nanoMuse Cloud(如果你登录了)。首屏的「登录——免费」(或「设置 → nanoMuse Cloud」)用手机号或邮箱加验证码注册,之后应用把我们的中继当作模型服务商——免费,每个账号 ¥10 的模型用量(社区成员不限;每有一位新用户用你的邀请码注册,你的额度 +¥5,对方也 +¥5),费用由开发者承担;nanoMuse 是非盈利的社区项目,永远不收费。中继把你的消息转发给模型(阿里云百炼)。关于账号它保存:你的手机号/邮箱加盐后的哈希、加密保存的原文(这样运行中继的人能看出是谁的账号;单独拿到数据库文件什么也看不出)、打码后的提示如s***@example.com、发给这台设备的 key 的哈希、每次请求的类型、模型和 token 数、你的邀请码和用过它的账号 id,以及——为了让你的设备共用同一个——智能体的名字与形象(哪一张脸;形象工坊画的那种,是它的五张小图)。每次登录、每次请求、每条时间线动态和每台设备,它还会记下请求来自的网络地址和客户端软件(User-Agent:Android 应用及其版本、Windows / macOS / Linux 上的 runtime、浏览器),账号则保留首次和最近的地址以及最近出现的时间——运行中继的人在管理页上按账号、按地址看到这些,用来分辨「一个人两个账号」和「一个地址两个人」,以及看清问题出在哪。对话本身保存什么,由下面两条说的两个开关决定。它不接收你的位置:应用从不发送,中继也不去查地址对应的地方。退出登录会吊销 key;删除账号会删掉以上全部,地址也在内。中继的源码在仓库的cloud/下,docs/cloud.md 写了怎么自己搭一个。用自己的 key 时,关于中继的这一切都不适用。 - Data controls — “Help improve nanoMuse's AI models”. Settings → Data controls on every app holds one switch. While it is on, the relay keeps the text of your chats with the nanoMuse Cloud models to train the community's own open model: what you wrote, what the model answered, and the tool calls it chose, together with the model, the token counts, and the app's platform and language from the request headers. It does not keep the system prompt (your memory, SOUL and instructions), what tools returned, pictures, audio or clips — those are replaced by a marker — and the turns are tied to your account id only; exports for training carry no account id, address or hint. On cloud.nanomuse.cn the switch is on for accounts created from relay 0.9 on; accounts that existed before keep whatever they had chosen. The switch says so right next to it, and a relay you run yourself chooses with
IMPROVE_DEFAULT. Turn it off at any time — nothing more is kept from then on —, delete everything kept so far with one tap on the same page, and deleting the account deletes it too. Nothing about the allowance depends on this switch.数据控制——「帮助改进 nanoMuse 的 AI 模型」。每个端的「设置 → 数据控制」里只有一个开关。开启时,中继保存你与 nanoMuse Cloud 模型对话的文字,用来训练社区自己的开源模型:你写的、模型回答的、它选择调用的工具,连同模型、token 数,以及请求头里的应用平台和语言。不保存系统提示(你的记忆、SOUL 和指令)、工具返回的内容、图片、音频和视频——这些只留一个标记——保存的对话只和你的账号 id 关联;用于训练的导出不带账号 id、手机号/邮箱或提示。在 cloud.nanomuse.cn 上,中继 0.9 之后创建的账号这个开关默认开启;之前已有的账号保持原来的选择。开关旁边就写着这一点,自己搭的中继用IMPROVE_DEFAULT决定。随时可以关掉——之后不再保存——也可以在同一页上一键删除已保存的全部内容,删除账号同样会删掉它们。免费额度和这个开关无关。 - Synced conversations — on by default when you are signed in (relay 0.19 on). The text of your conversations is stored on nanoMuse Cloud so every device of your account shows the same chats. Files and images are not uploaded. Settings → Data controls turns it off and deletes what is stored; deleting a chat on one device deletes it on all of them. Nobody but your devices can read it; the operator sees counts, not text. What is stored, exactly: each conversation's title and which device started it, each message's role, text, time and device, and the names and sizes of attached files — never the files, never a picture, never what a tool returned. Chats addressed to another device, or run on this one for another, are not synced. The relay keeps at most 20,000 messages per account and cuts a message at 16 KB; docs/cloud.md has the details.已同步的对话——登录后默认开启(中继 0.19 起)。对话文字会保存在 nanoMuse Cloud,让你账号下的每台设备看到同样的聊天。文件和图片不会上传。「设置 → 数据控制」可以关掉并删除已保存的内容;在一台设备上删除聊天,所有设备都会删除。只有你的设备能读到它们;运维者看到的是数量,不是文字。具体保存什么:每个对话的标题和由哪台设备发起,每条消息的角色、文字、时间和设备,以及附件的名字和大小——从不保存文件本身、图片或工具返回的内容。交给另一台设备的聊天,以及本机替别的设备跑的聊天,不同步。中继每个账号最多保存 20,000 条消息,单条截到 16 KB;细节见 docs/cloud.md。
- The project site (nanomuse.cn), if you visit it. Its web server keeps an access log for seven days and then deletes it; a script turns it into counts per day — pages viewed, how many visitors, downloads per file, which sites linked here. A visitor is counted once a day through a hash of the address and browser string under a random salt made for that day and discarded after two; no address is stored beyond the week the raw log lives, nothing is shared with anyone, there are no cookies and no third-party analytics. The relay's own operator page shows counts of sign-ins and accounts per day, and the data-controls panel described above, from the same records — nothing more is collected for it.项目网站 nanomuse.cn(如果你访问它)。网站服务器保留七天访问日志,之后删除;一个脚本把它变成按天的计数——页面浏览、访客数、每个文件的下载数、来源站点。访客每天只计一次,用的是地址加浏览器标识在当天随机盐下的哈希,盐两天后丢弃;原始日志那一周之外不保存任何地址,不与任何人共享,没有 cookie,没有第三方统计。中继自己的管理页显示每天的登录数和账号数,以及上面说的数据控制面板,都来自同一批记录——不会为它多收集任何东西。
- The web, when the agent uses it. Web search, page fetches, the in-app browser, MCP servers and command-line tools reach the sites and services they are for. What the agent sends is what you asked it to do.智能体使用网络时。网页搜索、抓取页面、应用内浏览器、MCP 服务器和命令行工具会访问它们各自对应的网站和服务。智能体发出去的,就是你让它做的事。
- Update check. Settings → About (on the phone, Check for updates; the desktop app's tray; a
pipx/Docker runtime once every six hours,server.update_check = falseto stop it) asks the GitHub API for the latest release ofnano-muse/nanoMuse. Nothing is sent besides the request itself, and nothing is downloaded on its own.检查更新。「设置 → 关于」(手机上的「检查更新」;桌面版的托盘;pipx/Docker 运行时每六小时一次,server.update_check = false可关闭)向 GitHub API 询问nano-muse/nanoMuse的最新版本。除了这个请求本身什么也不发送,也不会自行下载任何东西。 - Backups. If you back up to a remote destination (SMB, WebDAV, SFTP, S3, FTP), the backup goes there, encrypted with the password you chose.备份。如果你备份到远程位置(SMB、WebDAV、SFTP、S3、FTP),备份会发到那里,用你选的密码加密。
Permissions权限
Each permission is asked for when a feature needs it and is used for that feature only: notifications for the agent's status and reminders; accessibility for operating other apps' screens, which is off until you turn it on; storage folders you mount; the microphone for voice input; contacts, calendar and location for the tools of the same names, each callable only after you granted them. Nothing is read in the background.每项权限都在功能需要时才申请,也只用于那个功能:通知用于智能体的状态和提醒;无障碍用于操作其他应用的屏幕,你打开之前一直是关的;存储用于你挂载的文件夹;麦克风用于语音输入;通讯录、日历和位置分别用于同名的工具,各自只在你授权后才能调用。后台不读取任何东西。
What the agent may do without asking智能体什么事可以不问就做
Before anything it cannot take back — deleting your files, sending a message or data out, paying — the agent stops and a card asks you, in the shell, in the browser and on the phone's screen alike. What you may remember from that card comes in three tiers, and Settings → Permissions → Remembered approvals lists everything you remembered, one line each, tap to revoke:凡是收不回来的事——删你的文件、把消息或数据发出去、付款——智能体都会停下来,在命令行、浏览器和手机屏幕上一样弹出一张卡片问你。卡片上可以记住的选择分三档,「设置 → 权限 → 已记住的批准」列出你记住的每一条,点一下即可撤销:
- Runs, then tells you — installing software. Never asks; the agent says so afterwards.先做,再告诉你——安装软件。从不询问,做完之后说一声。
- Asks first; you may remember it — deleting and sending. Allow for this chat or Always allow for X (one folder, one recipient, one site or app).先问,你可以记住——删除和发送。「本次对话允许」或「对 X 始终允许」(一个文件夹、一个收件人、一个网站或应用)。
- Highest: asks at the moment of paying, every time — buying, ordering, booking, trading, transferring. There is no “for this chat”. Remember and run next time in X exists, for one app or site only, and asks for your screen lock (fingerprint, face, PIN) before it takes; every payment that runs on it is said out loud in the chat.最高一档:付款那一刻每次都问——购买、下单、预订、交易、转账。没有「本次对话允许」。「记住,下次在 X 里直接执行」只针对一个应用或网站,执行前要先过屏幕锁(指纹、人脸、PIN);靠它执行的每一笔付款都会在聊天里明说。
Passwords, verification codes and card numbers are never typed by the agent; those screens are handed to you. Anything alarming in a command (wiping a disk, force-pushing history, a download piped into a shell) is asked about every time and cannot be remembered. Nothing unlawful or harmful is done, however it is worded — the agent refuses and says why.密码、验证码和卡号永远不由智能体输入,那些界面会交还给你。命令里任何危险的内容(抹盘、强推历史、下载直接管道进 shell)每次都会询问,不能被记住。无论怎么措辞,违法或有害的事都不会做——智能体会拒绝并说明原因。
Feedback反馈
Bug reports go to GitHub Issues from Settings → Feedback; the report is pre-filled with the app version and the device model and nothing else. Do not paste API keys or private conversations into an issue.问题反馈从「设置 → 反馈」进入 GitHub Issues;报告会预填应用版本和设备型号,别的没有。不要把 API key 或私人对话贴进 issue。
Changes变更
This page changes when the apps' behaviour changes; the history is in the repository.应用的行为变了,这一页也会跟着变;修改历史在仓库里。