← KNOWHY APPS

Effect Prompt Lab 隐私政策 / Privacy policy

更新日期 / Updated: 2026-10-07 · 版本 / Version: 0.6.1

维护者 / Maintainer: knowhy。主页 / Website: https://knowhy.net 。

本机功能与数据 / Local features and data

无需 API 即可预览 UI、调整参数、导出 HTML/CSS 或 PNG,以及组装双语提示词。项目没有账户系统、后端服务器、遥测或广告追踪;不读取网页内容、浏览历史或支付信息。

You can preview, adjust and export UI or PNGs and assemble bilingual prompts without an API. The project has no accounts, backend, telemetry or advertising trackers, and does not read web page content, browsing history or payment information.

UI 与静态设计草稿、最近 20 条视频提示词历史、界面语言以及供应商地址和模型保存在用户自己的 chrome.storage.local,不使用 Chrome 云同步。这些普通数据不加密。

UI/static design drafts, the last 20 video prompt entries, interface language, and provider URLs/models stay in the user's own chrome.storage.local. Chrome cloud sync is not used. These ordinary settings and drafts are not encrypted.

API Key 与本地加密 / API keys and local encryption

API Key 默认只保留在当前侧栏会话内存,不写入持久存储。用户如需长期保存,须设置至少 12 字符的保管密码:扩展在用户自己的设备上用 PBKDF2-SHA256(210,000 次迭代)派生 AES-GCM-256 密钥,使用随机盐和 IV,将加密副本保存到本地扩展存储。保管密码与派生密钥不保存,重开后须重新解锁;忘记密码后只能重新填写 API Key。锁定清除当前供应商会话 Key;清除同时删除其加密副本。旧版明文 Key 会转为当前会话使用并从持久设置中移除,界面提示用户重新设置加密保存。

API keys remain in side-panel session memory by default, without persistent storage. To retain a key, the user supplies a passphrase of at least 12 characters. On the user's own device, PBKDF2-SHA256 (210,000 iterations) derives an AES-GCM-256 encryption key; randomized salt and IV protect the encrypted copy in local extension storage. Neither the passphrase nor the derived encryption key is saved. Reopening requires unlocking; a forgotten passphrase requires re-entering the API key. Lock removes the current provider's session key; Clear also removes its encrypted copy. Legacy plaintext keys are moved to session memory and removed from persistent settings, with a notice to configure encrypted storage again.

用户 Key、保管密码及加密副本不上传至项目、开发者电脑、GitHub、云同步或项目服务器,也不进入导出代码、提示词、草稿、历史或日志。

User API keys, passphrases and encrypted copies are not uploaded to the project, developer computers, GitHub, cloud sync or project servers, and are not included in exports, prompts, drafts, history or logs.

用户主动调用 API / User-initiated API calls

仅用户点击测试连接、UI AI 调参、静态 AI 设计或提示词润色时,扩展才向用户配置的 HTTPS 供应商直接发送请求。Key 放在认证请求头;测试查询模型,UI 调参发送需求和当前 UI 参数,静态设计发送描述和展示文字,润色发送组装的双语提示词。请求不会经由项目服务器中转。供应商会收到这些数据;其保存和处理规则依照其隐私政策。请使用可信 API 地址。第三方 API 可能收费。

Only explicit connection tests, UI AI adjustment, static AI design or prompt polish send requests directly to the user's selected HTTPS provider. Keys are placed in authentication headers. Connection tests query models; UI design sends the brief and current UI parameters; static design sends the brief and display text; polish sends assembled bilingual prompts. There is no project-server relay. Your provider receives this data and handles it according to its own policy. Use a trusted API URL. Third-party API charges may apply.

权限、删除与外部链接 / Permissions, deletion and links

sidePanel 用于显示工具;storage 用于本地配置、草稿及历史。可选 HTTPS 主机权限只在用户主动调用所选供应商时,按该供应商域名申请;扩展不向浏览页面注入脚本,不远程下载执行代码。

sidePanel displays the tool; storage stores local settings, drafts and history. Optional HTTPS host permission is requested for the selected provider's domain on explicit API actions. The extension does not inject scripts into browsing pages or download and execute remote code.

历史可以逐条删除;当前供应商 Key 可以清除。卸载扩展会清除其扩展本地存储。已经下载到文件系统的导出文件由用户自行管理。素材库与赞助链接只在用户点击后打开,项目不读取对方页面或跟踪访问。赞助入口打开 Ko-fi 公开主页,不传递 API Key、设计内容或设置,不嵌入支付、不接收支付回调、不收集打赏记录。第三方平台依照自身政策处理访问及支付信息;所有扩展功能免费使用。

History entries and provider keys can be deleted through the interface. Uninstalling removes extension local storage. Downloaded export files remain under the user's control. Reference and support links open only on user clicks; the project does not read those sites or track visits. The support link opens the public Ko-fi page without passing API keys, designs or settings. The extension does not embed payments, receive payment callbacks or collect donation records. The third-party platform handles visits and payments under its own policies. All extension features remain free.

项目网站 / Project website

KNOWHY APPS 网站不收集 API Key,不提供在线 AI 请求,没有分析脚本或广告。浏览器仅保存界面语言与主题偏好,在线演示的输入不上传。页面与下载由 Cloudflare 托管;托管服务会处理提供网站所必需的网络请求信息,如 IP 地址和请求日志,依照其政策处理。

The KNOWHY APPS website does not collect API keys, perform online AI requests, or include analytics scripts or advertisements. Only language and theme preferences are saved in your browser; demo input is not uploaded. Cloudflare hosts the pages and downloads and processes request information needed to serve the site, such as IP addresses and request logs, under its own policy. See Cloudflare privacy policy.

联系与支持 / Contact and support

使用与支持 / Help and support · knowhy on Ko-fi。反馈时请勿提供 API Key、密码或个人敏感资料。Please do not share API keys, passwords or sensitive personal information in reports.