Privacy Policy
Version: 1.1 · Updated: October 6, 2026
This policy applies to foxstore.ai, the Fox Store desktop client, CLI, and commercial licensing services. It explains what information we process, why, where it goes, and your rights. Third-party app platforms, payment services, and your selected AI services have their own privacy rules.
1. Data controller and contact
Fox Store's operator and the personal-information processor (data controller) described here is Yi Ruiwen, operating in an individual capacity in mainland China. “We” in this policy means Yi Ruiwen.
For order, license, device, and support information we process, contact our privacy and customer-support email: [email protected]. The client requires no Fox Store registration, and purchases do not require a software login account.
2. Local data and transfers you initiate
Provider API Keys, certificates and private keys, packages, and release records are primarily stored on your device. When you upload, publish, or query data, the client and CLI send authentication and business data to the platforms you choose as needed. These operations do not mean handing your private keys and packages to Fox Store's commercial license server.
- Packages, store materials, and screenshots are sent to the corresponding app platforms according to your actions.
- When using object storage, files are sent to the storage service you configure.
- When using the AI assistant or app checks, messages and app materials needed for the current task are sent to your configured model service. See the desktop feature guide for the transmission scope and functionality. Installing the software does not automatically send AI requests when you do not use those features.
- Screenshots, logs, and attachments you voluntarily submit to support may contain business information. Remove keys, tokens, and unrelated personal information first.
“Local first” therefore does not mean every feature is completely offline or that no data is ever sent to third parties.
3. Information we process and its purposes
| Category | Information and sources | Purpose |
|---|---|---|
| Orders and payment notifications | Purchase email, order identifiers, amount, currency, payment, renewal and refund status, and related transaction-event fields from checkout and Waffo Pancake notifications | Reconciliation, license delivery, renewal, refunds, and disputes |
| Licenses and devices | License identifiers, Key-verification digests, device digests, device names, platforms, activation and validation times | License identification, device-limit accounting, abuse prevention, and support |
| Temporary delivery | Encrypted unclaimed license Keys, checkout requests, and claim-credential verification information | Secure license delivery on the payment result page |
| Network and security | Request IP addresses, times, paths, statuses, and necessary error information; infrastructure may log browser or client information | Website and API delivery, rate limiting, troubleshooting, and security audits |
| Support communications | Contact email, issue descriptions, order numbers, and attachments you voluntarily provide | Responding to inquiries and handling refund, security, and privacy requests |
We do not store full card numbers or card security codes as Fox Store license data, nor ask you to provide them to support. Card details are processed by Waffo Pancake checkout and the relevant payment institutions.
4. Grounds for processing
Provisioning and maintaining purchased licenses, verifying payments, and providing after-sales support are necessary to perform our service agreement with you. Statutory accounting, tax, and regulatory requirements are handled under the corresponding legal obligations. Where permitted by applicable law, system security and abuse prevention rely on necessary legitimate interests. Optional features or other processing that legally requires consent rely on your choice or consent. You may stop using those features or contact us to withdraw consent; withdrawal does not affect prior lawful processing.
5. Recipients and cross-border processing
Waffo Pancake handles checkout and payment-related processing and supplies notifications needed for delivery, reconciliation, and support. You can review its privacy information when paying. Infrastructure providers for the website, license API, and support may also process necessary information to deliver those services.
App platforms you actively connect, such as Apple, Google, and Huawei, and your AI and object-storage services receive data according to your actions and process it under their own rules. Confirm that these services suit your business and data requirements before use.
We do not sell personal information or share purchase or license information for cross-site targeted advertising. Necessary information may be disclosed when lawfully responding to competent authorities, handling disputes, or with your separate consent.
Third-party platforms and payment services may process data outside your region. Locations depend on the chosen services and their infrastructure. Cross-border processing subject to legal restrictions must meet applicable notice, consent, and other safeguards. Contact support to learn about recipients relevant to your order or license.
6. Browser storage and website features
The website uses necessary browser storage to support functionality. For example, payment result pages keep claim credentials in the current browser session so queries can continue after a refresh; interface preferences may be stored locally. Do not leave a claim page open on a shared device. Close the session and clear site data after use if appropriate.
The website currently includes no advertising trackers or third-party visitor-analytics scripts in its code. Payment checkout is a third-party page whose cookies and fraud controls follow its own notices. Browsers may restrict or clear storage, but this can affect result-page queries or interface preferences.
7. Retention and deletion
- Claim credentials and encrypted Keys: claim credentials are valid for 24 hours after the checkout request is created. The server runs hourly cleanup to remove encrypted unclaimed Keys older than this limit. Digests needed for license validation and order information are not deleted with that ciphertext. This limit applies only to claiming on the result page; activation within 24 hours is not required. Cleaning up ciphertext does not invalidate a license already claimed.
- Orders, payment events, and license records: retained to provide services during the license term and for necessary financial, support, fraud-prevention, and dispute handling afterward. The current system does not automatically delete these records at license expiry. You may request deletion; we will explain what must legally be retained and why.
- Support records and operational logs: retained as necessary for issue handling, security troubleshooting, and legal obligations. Specific periods depend on progress, log rotation, and applicable retention duties.
- Local data: managed by you on your device. Uninstalling does not necessarily delete all user data or backups. The AI conversation's current runtime session clears on restart; reports you actively save and exported files remain under your management.
We review the need for retention against each processing purpose. Information that cannot legally be deleted immediately will have its use restricted and will be deleted or de-identified when retention obligations end.
8. Security measures
Public interfaces use HTTPS. License validation uses keyed digests and signatures. To support initial delivery, full license Keys are briefly stored encrypted; this differs from the validation digests retained long term. Protect Keys and claim credentials, and do not publish result-page links.
We reduce risk through access controls, log redaction, and similar measures, but cannot guarantee absolute security for any networked system. If a security incident affects personal-information rights, we will take remedial and notification measures under applicable law.
9. Your rights
To the extent provided by applicable law, you may request information about processing, access or copies of personal information, correction, deletion, restriction or objection to processing, withdrawal of consent, and portable data copies. You may also complain to relevant regulators.
Contact [email protected], specifying the request type and an order number that can be used for verification. We perform necessary identity checks and generally reply within 30 days; if a longer period is legally needed, we explain why. Do not send full Keys or card information. Deleting data necessary for delivery or licensing may prevent us from continuing those services. Deletion requests do not override statutory retention obligations.
10. Minors and service communications
This product is intended for developers and organizations authorized to manage apps and enter transaction and license agreements; it does not target children. Users lacking the required legal capacity should have purchases and data authorization handled by a guardian or authorized representative. If you discover that a child has submitted information without necessary consent, contact support.
Purchase confirmations, bills, and responses to security and privacy requests are necessary service communications. If we later conduct marketing communications requiring consent, we will request it separately and provide an opt-out. Purchasing a license is not automatic consent to advertising.
11. Policy updates
Updates will be dated on this page. Material changes to processing purposes, information categories, recipients, or similar matters will be explained through website notices or available contact channels. Where renewed consent is legally required, we will request it separately.
Related policies: Terms of Service · Refund Policy · Contact support
