Privacy Policy
Last Updated: July 28, 2026At Regna Vita Studios, your privacy and data security are our highest priorities. This Privacy Policy outlines how we collect, use, and protect your information when you use our application, Chinese Forge, and our associated services.
1. Educational Data We Collect & Schema Processor Mapping
To provide you with a seamless and personalized learning experience, Chinese Forge collects specific data categories. We ensure all data is mapped strictly to the processors necessary for app functionality.
Supabase (Backend Core, Auth & Database)
We use Supabase as our secure backend provider. Data stored here includes:
- Identity & Account Profile Data: User UUID, Email Address, Preferred App Language, Selected HSK Levels, Daily Reading Counts, Last Active Timestamp, and Premium Scholar Status.
- Anonymous Account Migration: Temporary migration tokens used strictly to preserve guest study progress when converting an anonymous session to a permanent account.
- Spaced Repetition & Learning Progress Data: FSRS Algorithm Metrics (stability, difficulty, review state, next review date, last review date, and priority status flags), and Character Writing & Mastery Counters.
- Saved Reading Shelf Data: Article Bookmarks and Save Timestamps.
- Security Standard: All data handled by Supabase is encrypted in transit (TLS 1.3) and at rest (AES-256).
AWS Simple Email Service (SES via Supabase SMTP)
- Data Handled: User Email Addresses.
- Scope: Exclusively processed for non-marketing, transactional emails such as account verification codes, password resets, and critical system notices.
OAuth Providers (Google Sign-In & Sign in with Apple)
- Data Handled: Social Identifiers, Email Address, and Apple Relay Addresses (
@privaterelay.appleid.com). - Guarantee: Social authentication data is used strictly for identity verification and account creation. It is never sold or shared with advertising networks or data brokers.
RevenueCat (Subscription Engine)
- Data Handled: Anonymous App User ID, transaction receipts, active entitlements, and store region.
- Financial Disclaimer: Zero financial data (e.g., credit card numbers, billing addresses) touches Chinese Forge servers. All financial transactions are processed entirely and securely by the Apple App Store or Google Play Store.
Sentry.io (Crash & Error Diagnostics)
- Data Handled: Stack traces, OS versions, device hardware models, and app build numbers.
- Data Sanitization: We commit to active PII scrubbing. Passwords, authentication tokens, and private user notes are automatically stripped from payloads before diagnostic logging occurs.
On-Device Services (Speech & Recognition)
- Processing: Text-To-Speech (TTS) and digital ink stroke recognition (e.g., Google ML Kit) process user inputs directly on-device via secure OS-level APIs. We do not store raw audio recordings or handwriting stroke data on remote servers.
2. Mandatory In-App Account & Data Deletion (App Store Guideline 5.1.1)
You have full control over your data. If you wish to delete your account and all associated data, you may do so at any time directly within the Chinese Forge application.
Deletion Path: Navigate to Settings -> Account -> Delete Account.
Deletion Scope: Confirming account deletion will permanently purge all your cloud records across all our profile, learning, and reading databases. Additionally, any associated Apple or Google OAuth tokens will be permanently revoked within 30 days of the deletion request.
3. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or your data, please contact our support team at support@chineseforge.com.