We take your personal information and privacy seriously and always follow the principles of lawfulness, data minimization, transparency, and security. This Privacy Policy (the “Policy”) explains how we collect, use, transmit, store, and protect your personal information, and how you can exercise your related rights.
This Policy applies to the “TXPodcast” (Chinese name: 甜心播客) products and services provided by Mianchi Tianxin Technology Co., Ltd. (渑池甜心科技有限公司, “we” or “us”), including the iOS and Android mobile apps, desktop apps, and any new product forms that emerge as technology evolves. By using TXPodcast, you acknowledge that you understand the personal-information practices described in this Policy; for non-essential information related to extended features, we will notify you separately and obtain the necessary authorization where required.
1. Types of Personal Information We Collect
1.1 Account Login and Security Verification
You can browse and listen to public podcast content without signing in. When you choose to sign in to use the vocabulary book, review, and cross-device sync features, TXPodcast supports SMS code and phone-number-plus-password login, as well as WeChat, Apple, and Google on supported platforms (see Section 1.6); phone linking is optional for third-party login. To complete registration, login, identity verification, session persistence, account protection, and troubleshooting, we may collect and process your
information relevant to your chosen method: phone number, SMS verification result, third-party user identifier and authorized name, email and avatar, securely processed credentials, user ID, login status, and device and network access logs
as necessary.
To keep your account and the service secure, a security check may be required during login or sensitive operations; during the check we may process verification results, IP address, and device and network access logs as necessary.
If you choose to set a nickname, avatar, or other profile information, we will store what you submit and use it for profile display. Avatar images are uploaded only after you actively pick them through the system photo picker and are used only for avatar display. Unless a feature explicitly displays it or you actively share it, we will not show your phone number to other users.
1.2 Listening and Learning Information
TXPodcast is designed for listening to podcasts and supporting language learning. To provide the core service, we process listening- and learning-related information generated as you use the app, including the shows you follow or favorite, playback progress and listening history, playback preferences (such as speed), information needed to display subtitles, dictionary lookup records, vocabulary-book content (words, source episodes, context sentences, timestamps), review records and schedules, and learning statistics such as streak days.
This information is used to provide resume playback, cross-device sync, word saving, spaced-repetition review scheduling, learning statistics, security auditing, and troubleshooting. We will not disclose your listening history or vocabulary book to unrelated parties, nor use them for third-party advertising.
1.3 Transcription, Dictionary, and Pronunciation Features
To support language learning, we generate subtitles for podcast episodes. This process only involves publicly available podcast audio and does not involve any of your personal audio or personal content.
When you use the dictionary lookup feature, the app sends the queried word and necessary context (such as the episode identifier, the context sentence, and your language preference) to our servers to return definitions and support adding the word to your vocabulary book.
Word pronunciation is generated locally by your device's system speech synthesis. No audio or text is uploaded to us or any third party for this feature.
1.4 Podcast Content and Third-Party Sources
Podcast shows in TXPodcast (including audio, artwork, and show notes) come from public RSS feeds published by their respective owners. When you browse or play such content, the app may request resources directly from the show's origin servers or their content delivery networks (CDNs), in which case your IP address and other network information is provided to those servers in the ordinary way of the Internet. These origin servers are not controlled by us, and their handling of information is governed by their own privacy policies.
1.5 Device, Operation, and Local Cache Information
To keep the product running properly, secure the service, optimize compatibility, and troubleshoot issues, we may collect or process necessary operational information, including your IP address, device model, operating-system version, app version, language, network status, API access logs, error logs, and security logs. We do not sell or rent your personal information for third-party marketing purposes.
The app may store login status, preferences, playback progress, audio and artwork caches (including audio cached while streaming), and other necessary caches locally on your device to improve loading speed and experience. Local caches of third-party podcast content may be used only for playback within this app: we recommend that you delete caches yourself in a timely manner or set up automatic cleanup, and you must not use such caches for any operation unrelated to this app. You can manage local data through in-app settings, system settings, clearing app data, or uninstalling the app.
1.6 Third-Party Login and SDKs
You may optionally sign in with or link WeChat, Apple, or Google without linking a phone number. WeChat authorization uses the WeChat Open Platform SDK and processes authorization codes, OpenID/UnionID, and the nickname and avatar you authorize. Apple provides identity credentials, a user identifier, and any available name and email, including a private relay email. Google login uses Google Sign-In SDK (google_sign_in) on iOS/Android and Google web authorization on Web/macOS. We process ID tokens, authorization codes, your Google user identifier, and the name, email, and avatar you authorize, requesting only openid, email, and profile scopes. Our authentication service securely handles credentials for login, account linking, profile display, and revocation. Listening history and vocabulary content are not sent to these sign-in providers. You can unlink accounts in Settings while retaining at least one login method available on your platform. Apart from the login SDKs’ own data processing, we do not add separate third-party analytics, event-tracking, or advertising SDKs.
On iOS, the Google Sign-In SDK may also process user identifiers, IP addresses, device identifiers, and SDK-related usage data for authentication, security, and service analytics. An IP address may be used to estimate the device’s general location for fraud prevention. This SDK processing does not mean that we send listening history, lookup records, or vocabulary content to Google. See
Google’s Sign-In SDK data disclosure and
Google’s Privacy Policy.
When you unlink or delete this app account, we remove its third-party links and attempt to revoke Apple and Google authorization. If revocation cannot be completed, we provide manual instructions and ask you to acknowledge them. Identity links still used by other apps remain; unused third-party identity links are removed. This device temporarily stores a credential limited to recovering an interrupted deletion, and removes it after acknowledgment and local cleanup.
1.6.1 Google User Data: Processing, Retention, and Deletion
Google account information is processed by the authentication service and app services that we operate, for identity verification, account linking, profile display, and account security. We host and operate our authentication service ourselves. Infrastructure providers for hosting, storage, and network delivery process relevant data only as necessary to provide those services. Google processes sign-in authorization and revocation requests; its SDK processing is described above. We do not provide Google account information or authorization credentials to advertisers or data brokers.
We do not provide Google account information or authorization credentials to podcast origin servers as content-request parameters. If the app uses an avatar URL supplied by Google, loading that image sends the necessary network request to the image-hosting server.
We request only the basic openid, email, and profile scopes, not access to Gmail messages, Google Drive files, contacts, or calendars. We do not sell Google user data or use it for targeted advertising, credit assessment, or developing, improving, or training generalized or non-personalized AI or machine-learning models. We do not use Google Workspace API data to train such models. We do not automatically attach account information or authorization credentials obtained through Google sign-in to requests to third-party AI services. Content you actively enter is handled as described for the corresponding features in this Policy.
While your Google sign-in or link remains active and the information is needed to provide account features, we retain your Google user identifier and the authorized basic profile information returned by Google. Authorization codes and ID tokens are used to complete authentication. If Google returns an available refresh token, our authentication service stores it for this app’s authorization management and subsequent revocation. We protect this data with HTTPS encryption in transit and service access controls; authorization credentials are not displayed to other users.
Unlinking Google in Settings removes this app’s Google link and its stored authorization credentials and attempts to revoke Google authorization. It does not automatically delete the app account, app data, or the nickname and avatar previously used for app display; you can edit these in your profile or request deletion. You can delete this app account from the in-app Edit Profile page, or contact
service@tianxin.tech to ask about or request deletion of personal information. Deleting this app account does not delete your shared Tianxin sign-in account; identity information and authorizations still used by other apps remain. We remove third-party identity links that are no longer used by any app. You can use the same email address to ask about or request deletion of any remaining shared account information. Backups and necessary logs follow the retention principles in Section 6.
You can also remove this app’s authorization through
Google Account third-party connections. Removing a connection at Google does not delete app data we have already stored; use the in-app deletion option or contact email above to request deletion. If automatic Google revocation cannot be completed, we provide manual instructions. Acknowledging that notice confirms that you have read it and does not mean Google authorization has been successfully revoked.
2. APIs and System Capabilities Used by Features
When you use TXPodcast features, the app may process related information through necessary service APIs or system capabilities. The scenarios involving personal-information collection or system privacy permissions are as follows:
| Feature or Capability |
Personal Information Involved |
Purpose and Scenario |
Notes |
| Login and account authorization |
Phone number, login status, user ID, authentication results, login and authorization logs |
Phone, WeChat, Apple and Google login and linking, SMS verification, session management, and account security |
Used only for login, account authorization, and service security |
| Security check |
Verification results, IP address, device and network access logs |
Pre-login security checks, preventing automated abuse, and protecting accounts |
Processed only when a security check is required for login or sensitive operations |
| System photo library |
Avatar images you actively pick |
Setting your profile avatar |
Processed via the system picker only when you actively change your avatar |
| System notifications and media controls |
Playback state, notification permission status |
Playback controls on the lock screen, notification area, and control center |
Used only for playback-control display |
| System microphone |
Voice audio, device permission status |
Read-aloud and pronunciation-practice learning features |
Not yet enabled in the current version; when enabled later, the app will request microphone permission with an explanation before use, and will process audio only after you actively use the feature and grant permission |
3. How We Use Your Personal Information
We use, store, and process your information only to the extent necessary to provide phone-number login, account authorization, podcast subscription and playback, progress sync, subtitles and dictionary lookup, the vocabulary book and review, version compatibility, troubleshooting, and system security, and to fulfill our legal obligations.
We take reasonable precautions to protect your personal information from unauthorized access, disclosure, use, alteration, damage, or loss. Technically, we use access control, encrypted transmission, security auditing, rate limiting, and monitoring; organizationally, we improve security and privacy protection through policies and permission controls. Please understand that no security measure is entirely risk-free.
We do not use your listening history, lookup records, or vocabulary book for third-party advertising, and, apart from the login SDK processing described in Section 1.6, we do not send your behavioral data to third-party analytics platforms. If additional advertising, analytics, crash reporting, or third-party marketing capabilities are added later, we will update this Policy before launch and fulfill notification and authorization obligations as required by law.
4. Sharing, Transfer, and Public Disclosure
4.1 Necessary Processing with Service Providers
To provide login and account authorization, security checks, data storage, API access, and security protection, we may provide necessary information to, or entrust its processing to, relevant service providers within the minimum necessary scope. We require such providers to handle personal information in accordance with laws and regulations, this Policy, and reasonable security standards, and not to use it for purposes unrelated to the service.
4.2 Necessary Requests to Podcast Origin Servers
As described in Section 1.4, when playing or loading third-party podcast content, the app may make network requests directly to the relevant public origin servers or their CDNs. Only the network information necessary to load the content is transmitted; we do not provide your phone number, user ID, vocabulary book, or other account data to origin servers.
4.3 Disclosure Required by Law or for Safety
In general, we do not transfer or publicly disclose your personal information to any company, organization, or individual. However, where required by laws and regulations, requested by administrative or judicial authorities in accordance with the law, or necessary to protect the life and property of you or others, to safeguard the legitimate rights and interests of the platform and its users, or to handle security incidents or disputes, we may share, transfer, or disclose relevant information in accordance with the law.
If TXPodcast undergoes a merger, acquisition, reorganization, asset transfer, bankruptcy, or similar transaction, your personal information may be transferred as part of the transaction. In that case, we will take reasonable measures within the scope required by law and notify you of the change where appropriate.
5. Your Rights
You may, in accordance with the law, access, correct, copy, or delete your personal information, withdraw granted permissions, delete your account, or ask us to explain our personal-information practices. You can make requests through the relevant in-app entry points, system permission settings, or the contact information at the end of this Policy. To protect your account, we may ask you to verify your identity before handling your request.
You can delete vocabulary-book entries directly in the app. For account information such as your phone number, nickname, and avatar, and for cloud data such as listening history and review progress, you can query, correct, or delete it through product features or by contacting us. The in-app “Edit Profile” page provides an account-deletion entry; after deletion we will delete or anonymize the related personal information in accordance with the law.
For information stored locally on your device (such as audio caches and preferences), you can manage it through in-app settings, system settings, clearing app data, or uninstalling the app.
6. Data Retention, Transfer, and Deletion
We retain your personal information only for as long as necessary to provide the service, depending on the business scenario; where laws and regulations impose mandatory retention requirements, we will extend retention accordingly. Retention periods for accounts, listening history, the vocabulary book, review records, and necessary logs are determined by service provision, dispute resolution, security auditing, and legal requirements.
After you delete words, clear listening history, or delete your account, we will delete or anonymize the related information within a reasonable period; however, due to backups, auditing, security, dispute resolution, or mandatory legal requirements, some copies may not be immediately and completely removed from backup systems.
Where the service involves providing personal information across borders, we will take necessary protective measures as required by applicable law and, where needed, fulfill legal obligations such as notification, consent, assessment, certification, or standard contracts.
7. Permissions
TXPodcast may request system permissions such as network access, notifications, photo library, or microphone depending on the feature. The current core features require network access; lock-screen and notification-area playback controls require notification-related capabilities; changing your avatar requires photo-library access; the microphone permission is reserved for read-aloud and pronunciation-practice learning features, which are not yet enabled in the current version — when enabled, the app will request your authorization before use. You can manage these permissions in system settings; disabling a permission may affect the corresponding feature but will not affect unrelated features.
8. Protection of Minors
TXPodcast provides a minors mode. If you are a minor, please use the service with the consent and guidance of your guardian. If a guardian finds that a minor has provided personal information to us without consent, they may contact us via the contact information at the end of this Policy, and we will handle it in accordance with the law.
9. Updates to This Policy
To provide better services and keep improving the product as the business evolves, this Policy may be updated from time to time. However, without your explicit consent, we will not materially reduce the rights you are entitled to under this Policy. After an update, we will inform you of the changes through website announcements, page prompts, in-app notifications, or other appropriate means. Please check for the latest version in a timely manner.
10. Governing Law
The formation, effectiveness, interpretation, amendment, supplementation, termination, enforcement, and dispute resolution of this Privacy Policy are governed by the laws of the People's Republic of China; where the law has no relevant provisions, general international commercial practice and/or industry practice shall be referred to. If any provision of this Privacy Policy is deemed abolished, invalid, or unenforceable, that provision shall be deemed severable and shall not affect the validity and enforceability of the remaining provisions.
Disputes arising from this Policy shall first be resolved through friendly negotiation between the platform and you; if negotiation fails within 60 days from the date the dispute arises, either party may submit the dispute to the Mianchi Arbitration Commission for arbitration under its then-effective rules, with Chinese as the language of arbitration. The arbitral award is final and binding on all parties.
11. Contact Us
If you have any questions, comments, or suggestions about this Privacy Policy or your personal information, you can contact us at service@tianxin.tech. In general, we will reply within fifteen business days.