← Vetta

Privacy Policy / 隐私政策

Last updated / 最后更新:2026-08-24

Operator / 运营主体:Vetta · support@vettaquant.com

This policy explains what Vetta collects, why it is used, and how payment and research access data are handled. 本政策说明 Vetta 收集哪些数据、用途,以及如何处理支付与研究访问数据。

1. Data we collect / 收集的数据

Account data includes your name, email address, password hash, role, language preference, and account timestamps. We never store your plaintext password. 账户数据包括姓名、邮箱、密码哈希、角色、语言偏好和账户时间信息;我们不保存明文密码。

Billing records include Stripe customer/subscription/price identifiers and retained legacy PayPal identifiers, normalized payment status, paid-through dates, checkout-attempt metadata, event identifiers, and SHA-256 audit hashes. Vetta does not receive or store your full card number, payment password, or bank login. 账单记录包括 Stripe 客户/订阅/价格 ID、保留的旧 PayPal ID、标准化支付状态、已付日期、checkout 元数据、事件 ID 和 SHA-256 审计哈希。Vetta 不接收或保存完整卡号、支付密码或银行登录信息。

Technical data may include security logs, IP address, user agent, request timestamps, and error diagnostics needed to prevent abuse and operate the service. 技术数据可能包括安全日志、IP、浏览器标识、请求时间和用于防滥用及运维的错误诊断。

2. Why we use data / 使用目的

We use data to authenticate users, provide entitled content, process and reconcile subscriptions, prevent fraud, secure the service, answer support requests, comply with legal obligations, and improve reliability. 数据用于身份验证、提供有权限的内容、处理和核对订阅、防欺诈、保障安全、处理支持请求、履行法律义务及提升可靠性。

3. Providers and disclosures / 服务商与披露

Necessary data may be processed by Stripe for new payments, PayPal for retained legacy billing, the hosting/database provider for service operation, and email or support providers when those features are used. We do not sell personal information. 新付款所需数据可能由 Stripe 处理,保留的旧账单可能由 PayPal 处理;托管/数据库服务商及实际启用的邮件或客服服务商也可能处理必要数据。我们不出售个人信息。

We may disclose information when required by law, to protect users or the service, or in a business transfer subject to appropriate safeguards. 如法律要求、为保护用户或服务,或在有适当保障的业务转移中,我们可能披露信息。

4. Retention and security / 保留与安全

Account and subscription records are retained while needed to provide the service and satisfy tax, accounting, fraud-prevention, dispute, and legal obligations. Security logs are retained only as reasonably necessary. 账户和订阅记录会在提供服务及履行税务、会计、防欺诈、争议和法律义务所需期间保留;安全日志仅在合理必要期限内保留。

We use server-side authorization, password hashing, signed sessions, database constraints, webhook verification, and restricted secret handling. No system is perfectly secure, and we cannot promise absolute security. 我们采用服务端授权、密码哈希、签名会话、数据库约束、Webhook 验证和受限密钥处理;但任何系统都无法保证绝对安全。

5. Your choices and rights / 你的选择与权利

Depending on your location, you may request access, correction, deletion, restriction, portability, or objection. Some billing and audit records may need to be retained by law or for dispute prevention. 依所在地法律,你可请求访问、更正、删除、限制、可携带或反对处理;部分账单与审计记录可能因法律或争议防范需要保留。

You can cancel subscription renewal from the subscription page. The verified privacy/support contact will be published on the live site before paid checkout is enabled. 你可在订阅页取消续费;正式开启付费前,已核验的隐私/客服联系方式会在网站公布。

6. Marketing attribution / 营销归因

When you arrive from a campaign link or a known platform such as X, Reddit, YouTube, or a search engine, Vetta may store a short-lived first-touch cookie (30 days) that keeps only a normalized source identifier and the landing path. No full referrer, query string, tracking pixel, fingerprint, or advertising identifier is collected. 当你通过带参数的活动链接或 X、Reddit、YouTube、搜索引擎等已知平台访问时,Vetta 可能保存一个 30 天的首触 Cookie,其中仅含标准化来源标识与落地路径;不收集完整来源地址、查询串、跟踪像素、指纹或广告标识。

That bounded identifier may be attached to a new account once at creation and used only as an aggregated, server-side funnel signal to understand which channels bring signups and conversions. It is never used for pricing, entitlement, or billing authority, and no personal row is exported. 该受限标识只会在创建账户时记录一次,并仅用于服务端聚合漏斗分析;绝不用于定价、权限或计费,也不会导出任何个人明细。

You can clear cookies in your browser at any time. Existing accounts are never re-labeled retroactively. 你可随时在浏览器清除 Cookie;既有账户不会被追溯标记。