“Rumi书摘 · 微信读书同步”(以下简称“本扩展”)由北京泽稳咨询顾问有限公司(以下简称“我们”)开发和运营。本政策说明本扩展如何处理、传输、存储和保护你的信息。
重要说明:本扩展不是微信读书官方工具。它只在你主动打开扩展侧栏或点击刷新时,读取当前微信读书阅读页面中属于你的“我的笔记”;只有在你主动点击同步后,所选书摘才会传输到 Rumi书摘。我们不读取、保存或上传微信读书 Cookie、登录凭据,也不解析或上传书籍正文。
一、我们处理哪些数据
| 数据 | 用途 | 存储位置 |
|---|---|---|
| 书名、作者、章节、你的书摘正文和“我的想法” | 在侧栏中展示,并在你点击同步后保存到你的 Rumi书摘账号 | 展示时在浏览器内处理;同步后存储于腾讯云 CloudBase |
| 六位配对码 | 将本扩展与正确的 Rumi书摘账号绑定 | 仅用于完成一次配对,不作为微信读书凭据保存 |
| Rumi书摘设备令牌、设备 ID、设备名称和平台类型 | 识别已绑定浏览器并授权同步请求 | 浏览器扩展本地存储;必要信息同步至 Rumi书摘服务端 |
| 已同步书摘的不可逆指纹 | 判断哪些书摘已同步,避免重复上传 | 浏览器扩展本地存储 |
| 必要的错误信息 | 在界面中提示失败原因、保障同步稳定 | 通常仅在当前会话中处理;服务端可能保留必要的运行日志 |
本扩展不会读取、保存或上传你的微信读书 Cookie、账号密码、支付信息、浏览历史、通讯录、位置、麦克风或摄像头数据,也不会采集书籍正文。
二、何时读取和上传
- 页面读取:仅当你在微信读书阅读页主动打开扩展侧栏或点击刷新时进行。
- 数据上传:仅当你主动点击“同步”并完成账号绑定后进行;本扩展不会在后台自动上传。
- 读取范围:内容脚本只在
https://weread.qq.com/web/reader/*页面运行,并只解析“我的笔记”相关页面节点。
三、浏览器权限说明
- storage:在本地保存设备标识、Rumi书摘设备令牌和已同步书摘指纹,使绑定状态和增量同步在浏览器重启后仍可使用。
- tabs:识别当前标签页是否为受支持的微信读书阅读页,并将读取请求发送到该标签页。
- sidePanel:在浏览器侧栏中展示当前书籍的书摘、绑定状态和同步结果。
- https://weread.qq.com/*:支持识别微信读书标签页;实际书摘解析脚本仅注入
/web/reader/*阅读页。 - Rumi书摘 CloudBase API 域名:仅用于设备绑定和你主动发起的书摘同步。
本扩展不包含远程代码执行,不会从服务器下载并执行脚本,也不会将权限用于广告、画像、信用评估或与核心功能无关的用途。
四、数据如何使用和共享
我们仅为提供设备绑定、书摘展示、增量同步、去重和故障排查使用上述数据。我们不会出售你的数据,不会将数据用于广告,不会进行跨站追踪,也不会将数据用于与本扩展单一用途无关的分析。
为提供云端同步,我们使用腾讯云 CloudBase(中国境内)处理和存储同步数据。除提供服务所必需、依法配合监管或经你另行明确同意外,我们不会向其他第三方提供你的数据。
五、存储期限与安全
- 本地设备令牌、设备 ID 和同步指纹会保留至你解绑、清除扩展数据或卸载扩展。
- 已同步书摘会保留至你在 Rumi书摘中删除相应内容或注销账号。
- 网络传输使用 HTTPS;服务端按设备令牌识别绑定关系,并按用户隔离数据。
请理解,任何互联网传输或电子存储方式都无法保证绝对安全,但我们会采取与风险相称的技术与管理措施保护数据。
六、你的选择与权利
- 你可以不点击同步,仅在本地查看扩展读取到的书摘。
- 你可以在扩展中解除绑定,或在浏览器扩展管理页清除本地存储、停用或卸载本扩展。
- 你可以在 Rumi书摘小程序中查阅、编辑、导出和删除自己的书摘。
- 你可以在 Rumi书摘小程序“我的 → 注销账号”中永久删除账号及其云端数据。
七、未成年人
本扩展主要面向成年用户,不面向不满 14 周岁的儿童提供服务。未成年人应在监护人指导下使用;不满 14 周岁的儿童应取得监护人明确同意后再使用本扩展或提供信息。
八、政策更新
当本扩展的数据处理方式发生实质变化时,我们会更新本政策并调整顶部的更新日期。必要时,我们会通过产品界面或商店更新说明提供提示。
九、联系我们
如对本政策或你的数据有疑问、意见或删除请求,请发送邮件至 zewenchuangxin@163.com,或通过 Rumi书摘小程序中的“我的 → 意见反馈”联系我们。
Privacy Policy for the Browser Extension
Rumi Highlights · WeRead Sync (the “Extension”) is developed and operated by Beijing Zewen Consulting Co., Ltd. (“we,” “us,” or “our”). This policy explains how the Extension handles, transfers, stores, and protects information.
Important: The Extension is not an official WeRead product. It reads only your own notes shown on the current WeRead reader page, and only when you open the side panel or request a refresh. Data is sent to Ruminote only after you explicitly click Sync. We do not read, store, or upload WeRead cookies, login credentials, or book text.
1. Information handled
- Content you choose to sync: book title, author, chapter, your highlighted text, and your own comments.
- Pairing and device data: a one-time pairing code, Ruminote device token, device ID, device name, platform type, and binding time.
- Local synchronization state: irreversible fingerprints of items already synchronized, used to prevent duplicate uploads.
- Necessary error information: used to explain failures and maintain service reliability.
We do not collect WeRead cookies, passwords, payment information, general browsing history, contacts, location, microphone or camera data, or book text.
2. When processing occurs
- Page content is read only when you open the Extension side panel or click Refresh on a supported WeRead reader page.
- Content is uploaded only when you explicitly click Sync after pairing the Extension with your Ruminote account.
- The content script runs only on
https://weread.qq.com/web/reader/*and parses only the page elements representing your own notes. - The Extension does not upload data automatically in the background.
3. Permission purposes
- storage: retains the device identity, Ruminote device token, and synchronized-item fingerprints locally.
- tabs: identifies whether the active tab is a supported WeRead reader page and sends a parsing request to that tab.
- sidePanel: displays notes, pairing status, and synchronization results in the browser side panel.
- weread.qq.com host access: identifies WeRead tabs; content extraction is limited to
/web/reader/*. - Ruminote CloudBase API host access: performs device pairing and user-initiated synchronization.
4. Use, sharing, and sale of data
We use data solely to provide pairing, note display, incremental synchronization, deduplication, and troubleshooting. We do not sell data, use it for advertising, perform cross-site tracking, or use it for purposes unrelated to the Extension’s single purpose.
We use Tencent Cloud CloudBase, hosted in mainland China, to process and store synchronized content. We do not disclose data to other third parties except as necessary to provide the service, comply with law, or with your separate explicit consent.
5. Retention and security
Local device data remains until you unbind, clear extension storage, or uninstall the Extension. Synchronized content remains until you delete it or close your Ruminote account. Transfers use HTTPS, and server-side data is isolated by user and authenticated device token.
6. Your choices and rights
You may use the Extension for local viewing without syncing, unbind it, clear its local storage, disable or uninstall it, and view, export, edit, or delete synchronized content in Ruminote. You may permanently delete your account and cloud data from “Me → Delete account” in the Ruminote Mini Program.
7. Children
The Extension is intended primarily for adults and is not directed to children under 14. Minors should use it under guardian supervision, and children under 14 should obtain explicit guardian consent before using it or providing information.
8. Changes and contact
We may update this policy when our processing practices change. The date above will be revised, and material changes may also be announced in the product or release notes.
Questions or data requests: zewenchuangxin@163.com.