Privacy Policy
1. Scope and Core Principles
This Privacy Policy applies to Attha software and related services provided by Shanghai Kaichen Era Technology Co., Ltd. (“we,” “us,” or “our”).
Attha lets you import or paste text and generate translations using on-device translation engines or third-party cloud translation services selected by you. We process information according to the principle of data minimization. Your source text, translations, document structure, translation history, and API credentials are stored on your device by default. We do not upload this content to our company servers for long-term storage.
When you actively select a cloud translation engine, source segments, context, document summaries, terminology, and request parameters necessary to complete the translation are sent to the third-party provider you selected. That provider processes the information under its own terms and privacy practices.
When you sign in or make a purchase, our business database retains the account, sign-in, purchase, and membership information necessary to provide those functions and meet legal obligations, and stores that information within mainland China. It does not store your documents, translations, or API credentials.
2. Information We Process
1. Documents and translation content: when you import a TXT, DOCX, SRT, or VTT file or paste text, Attha parses and stores the source content, document structure, translation task status, and translations on your device. You can delete the relevant documents and records in the Software.
2. API credentials: when you configure a third-party cloud translation service, API keys, access tokens, service regions, and other required credentials are stored in secure storage on your device. We do not store your API credentials on our company servers. Whether credentials migrate with a system backup depends on the operating system and its secure-storage mechanism.
3. Local settings and operational records: the Software stores your selected translation engine, languages, theme, concurrency settings, request policies, call history, and other preferences on your device to maintain functionality and help you review task status.
4. Login information: when you choose our passwordless email or phone verification-code sign-in, we process the email address or phone number, the temporary code you submit, IP address, locale, and request or verification status needed to send and verify the code, rate-limit requests, and prevent abuse. The verification challenge record stores a one-way hash of the code rather than the plaintext code. When you choose Apple, Google, WeChat, or another available OAuth channel, we may process the account identifier, email address, phone number, nickname, avatar, and necessary authentication information returned by that provider, depending on your authorization.
5. Purchase and platform information: when you purchase membership or another paid feature, we retain necessary information such as the order ID, purchase channel, product, status, validity period, refund, or cancellation status. The Apple App Store, Google Play, Microsoft Store, or another distribution platform processes payments under its own rules. We do not receive complete payment account details such as full bank card numbers.
6. Analytics and diagnostics: we may process app launches, feature usage frequency, page views, app version, device type, operating-system version, approximate region, anonymous identifiers, crash stacks, error codes, and network status to analyze product performance and fix stability issues. This information is not intended to include your documents, translations, clipboard content, or API credentials.
7. Device and session information: Attha uses a random, opaque Suite device identifier, creating one if none exists, and sends it, together with the device name, platform, and locale, to our servers when you sign in. Our servers generate session identifiers and record last-active time and revocation status. We use this information to authenticate and display or manage active devices, enforce device limits, let you revoke sessions, and protect account security. The Suite device identifier is not an advertising identifier.
8. Information you provide voluntarily: when you contact us by email, we process the email address, message, attachments, and diagnostic information you provide only to respond, troubleshoot, and comply with legal obligations. Do not send API keys or unrelated sensitive information in support messages.
3. Device Permissions
• Files or storage: used only when you actively import, drag, open, export, or save a file.
• Clipboard access: used only when you actively paste text or trigger a related action.
• Network access: used for sign-in, purchase verification, analytics, crash diagnostics, downloading on-device language resources, accessing the cloud translation service you select, opening help pages, checking for updates, or performing platform-required online functions.
Attha does not request microphone, camera, or precise location access for the purpose of providing its core translation functions.
4. On-Device Engines and Third-Party Services
Where supported, Attha can use Apple Translation or Google’s on-device translation technology. Language-resource downloads, availability, and on-device processing are subject to Apple, Google, and operating-system rules.
You may also configure professional machine-translation or large-language-model services, including Azure Translator, DeepL, Qwen, Tencent Hunyuan, Youdao Translation, Alibaba Cloud Machine Translation, OpenAI, Anthropic Claude, DeepSeek, Mistral, Doubao, and Zhipu GLM.
When you select a cloud service, source content and context are sent directly to that provider. The provider may record IP addresses, account information, request content, usage, and diagnostics, and may process or store data outside mainland China. You decide whether to use a cloud service, which service to use, and which documents to send. Before submitting documents containing personal information, trade secrets, or other sensitive content, confirm that you have the right to process and transmit the content and review the provider’s privacy policy.
5. Sharing, Transfer, and Disclosure
We do not sell your personal information, use your documents or API credentials for advertising profiles, or use them to train our own models.
To provide sign-in, verification-code delivery, purchase verification, analytics, crash diagnostics, and technical support, we may share only the information necessary for those functions with Apple, Google, WeChat, email or SMS delivery providers, app stores or payment channels, and analytics, diagnostics, or technical-service providers. Email or SMS delivery providers receive the email address or phone number and verification code necessary to deliver that code. When you use your own API credentials, translation content is sent directly to the cloud provider you selected. If a merger, division, acquisition, or asset transfer involves personal information, we will provide notice as required by law and require the recipient to continue complying with applicable data-protection obligations.
On supported platforms, the opaque Suite device identifier is stored in shared secure storage and may be reused by other KaiChen Era Suite apps. It is sent to our servers for sign-in and session management, but is not provided to third parties for advertising.
We may disclose relevant information where required by law, in response to lawful requests from administrative or judicial authorities, or where necessary to protect the lawful rights and interests of users, the Company, or the public.
6. Retention and Deletion
Documents, translations, history, and settings remain on your device until you delete them in the Software or operating system, clear app data, or uninstall the Software. Operating-system backups, recycle bins, or sync mechanisms may retain copies for the period specified by their rules.
API credentials remain in platform secure storage until you delete them in Attha. Signing out or deleting your Attha account does not by itself delete them. Secure-storage behavior on uninstall varies by operating system: entries may be removed immediately or may survive uninstall and remain after reinstall. To ensure deletion, remove API credentials in Attha before signing out, deleting your account, or uninstalling the Software.
Account, sign-in, purchase, membership, device, and session information is stored within mainland China and retained only for the period necessary to provide the service and meet legal requirements. Analytics and crash-diagnostic information is retained only as long as necessary for analysis and diagnostics, and is then deleted or anonymized.
The local opaque Suite device identifier is separate from authentication tokens and API credentials and intentionally remains after sign-out and account deletion. Where platform secure storage supports it, it also survives reinstall and may be reused by supported KaiChen Era Suite apps for stable device and session recognition and account security.
Information you provide through support channels is retained only as long as necessary to handle the request, resolve disputes, and meet legal obligations, after which it is deleted or anonymized.
Third-party providers determine their own retention periods under their privacy policies and your account settings. We cannot delete data on their behalf; you may exercise your rights directly with the relevant provider.
7. Security
We use reasonable measures such as device secure storage, database encryption, access controls, and encrypted transmission. You are responsible for safeguarding your device, system account, and API credentials and should revoke any exposed key promptly. No technical measure can guarantee absolute security. If a security incident may affect your rights, we will take remedial and notification measures as required by law.
8. Your Rights
You can view, export, or delete local documents and translation records in the Software and modify or delete API credentials. Subject to applicable law, you may also request access to, a copy, correction, or deletion of your personal information, close your account, withdraw consent, or request an explanation of our processing rules. You may use the account-deletion function in the Software or contact support@kaichenera.com.
If information has been sent to a third-party provider selected by you, submit your request through that provider’s channels.
9. Minors
Attha is not directed specifically to children under the age of 14. Minors should use the Software with guardian consent and supervision and should not submit personal information or sensitive content they are not authorized to process. If we discover that we have processed a child’s personal information without appropriate guardian consent, we will delete it or take other necessary measures as required by law.
10. Updates to this Policy
We may update this Policy due to changes in laws, platform requirements, or product functions. For material changes, we will provide notice through the Software, website, or another appropriate method. The updated Policy takes effect on the effective date stated on this page.
11. Contact Us
Operator: Shanghai Kaichen Era Technology Co., Ltd.
Email: support@kaichenera.com.
Contact us at the address above with questions, comments, or complaints about this Policy or personal-information protection.