隐私政策
本政策说明 Arko 官网(https://openarko.com)及其登录服务如何处理你在使用 Google 登录时提供的信息,以及桌面预览版如何在你的设备上处理数据。Arko 目前为定向邀请的开发预览。
运营者
本网站与登录服务由 Arko 产品提供。Arko 是面向开发者的桌面智能体协作空间。
【待运营方确认:运营主体的法定名称、注册地址。】本页不编造公司实体。
产品站点:https://openarko.com
我们收集哪些信息
Google 账号基本资料。登录时我们通过 Google OpenID Connect 请求 openid、email、profile 范围,读取电子邮箱、显示名称、头像 URL 与 Google 用户标识(sub)。我们不会收到、也不会在本站索取你的 Google 密码。我们不请求 Gmail、Drive、通讯录或其他 Google 内容权限。
设备与登录态。登录成功后,登录服务会设置一份签名的 HttpOnly 会话 Cookie(有效期最长 7 天),其中包含上述身份字段、会话标识与过期时间。OAuth 防重放票据仅保存在登录服务的进程内存中,不写入数据库。若你在桌面端完成登录,还会签发最长 7 天的桌面登录令牌,字段与会话相同。
浏览器偏好。官网会在你的浏览器 localStorage 中保存语言与主题,仅存在于本机。
你主动提交的内容。当前官网没有内容发布、文件上传或支付表单。Arko 桌面预览将项目索引与会话历史保存在你的计算机本地;当你在桌面端使用自行配置的第三方模型服务时,相关输入与上下文会发送给对应服务商,其中可能包含你提供或授权访问的代码。
运行日志。登录服务会记录请求路径与错误事件以便排障,不记录 Google 密码。
我们如何使用这些信息
确认你的身份,以便在定向邀请预览中显示账号并维持登录。
在 /account 展示你的邮箱、名称与头像。
在你连接桌面端时签发短期桌面登录令牌。
保护登录流程(过期、一次性票据、防重放)。
我们不出售个人信息,不将 Google 用户数据用于广告,也不将 Google 用户数据用于与提供或改进 Arko 登录无关的目的。Arko 对来自 Google API 的信息的使用遵守 Google API Services User Data Policy(含 Limited Use)。
存储位置与期限
官网静态页面由 Cloudflare Pages 在全球内容分发网络上托管。
登录 API 托管在 Railway 服务 portal-svc。当前实现没有独立的用户数据库;门户侧身份存在于签名 Cookie / 令牌中,直到你登出或过期。
【待运营方确认:登录 API 所在的具体数据中心区域。】
会话 Cookie:最长 7 天,或直到你在 /account 登出。桌面令牌:最长 7 天。内存中的一次性票据:仅在登录服务进程运行期间有效。桌面端本地数据:直到你在本机删除。浏览器语言/主题:直到你清除站点数据。
第三方
Google:用于 OpenID Connect 登录。
Cloudflare:托管并分发本网站。
Railway:托管登录 API。
你在桌面端自行配置的模型服务商:仅在你使用桌面端并向其发送请求时涉及,不属于本官网的 Google 登录流程。
如何删除数据或停止使用
在 https://openarko.com/account 登出,即可清除本站会话 Cookie。
在 Google 账号的第三方应用权限中撤销对 Arko 的访问。
当前预览没有持久化用户目录,也没有自助「注销账号」接口;登出并等待令牌过期后,门户不再持有你的登录身份。
桌面端保存在本机的项目索引与会话历史,请在你的计算机上自行删除。
如需协助确认删除或处理可能残留的运行日志,请通过官方联系渠道提出。【待运营方确认:官方联系邮箱。】现有站点已说明官方联系邮箱尚未公布,本政策不编造邮箱。
儿童
本预览面向开发者,不面向 13 岁以下儿童。我们不会故意收集儿童的个人信息。
政策变更
更新后的政策将发布在本页,并以页首更新日期为准。
如何联系我们
产品站点:https://openarko.com
【待运营方确认:官方联系邮箱与受理隐私请求的方式。】
使用条款见 https://openarko.com/terms。
Privacy Policy
This policy explains how the Arko website (https://openarko.com) and its sign-in service handle information when you use Google Sign-In, and how the desktop preview handles data on your device. Arko is currently an invite-only developer preview.
Who operates Arko
This website and the sign-in service are provided as the Arko product. Arko is a desktop AI workspace for developers.
[To be confirmed by the operator: legal entity name and registered address.] This page does not invent a company entity.
Product site: https://openarko.com
Information we collect
Google account basic profile. When you sign in we request the Google OpenID Connect scopes openid, email, and profile, and read your email address, display name, profile photo URL, and Google user identifier (sub). We never receive your Google password and this site never asks for it. We do not request Gmail, Drive, Contacts, or other Google content scopes.
Device and sign-in state. After a successful sign-in, the sign-in service sets a signed HttpOnly session cookie (up to 7 days) containing those identity fields, a session identifier, and an expiry. One-time OAuth replay-protection tickets are held only in the sign-in service process memory and are not written to a database. If you complete desktop sign-in, we also issue a desktop token (up to 7 days) with the same identity fields.
Browser preferences. This website stores language and theme in your browser localStorage, on this device only.
Content you submit. The website currently has no publishing, file-upload, or payment forms. The Arko desktop preview stores project indexes and chat history on your computer. When you use third-party model providers that you configure in the desktop app, relevant input and context are sent to those providers and may include code you supply or authorize Arko to access.
Operational logs. The sign-in service records request paths and error events for reliability. It does not record your Google password.
How we use this information
To confirm your identity so we can show your account in this invite-only preview and keep you signed in.
To display your email, name, and avatar on /account.
To issue a short-lived desktop sign-in token when you connect the desktop app.
To protect the sign-in flow (expiry, one-time tickets, replay protection).
We do not sell personal information, we do not use Google user data for advertising, and we do not use Google user data for purposes unrelated to providing or improving Arko sign-in. Arko's use of information received from Google APIs complies with the Google API Services User Data Policy, including the Limited Use requirements.
Storage location and retention
The website is hosted on Cloudflare Pages and delivered through a global content delivery network.
The sign-in API is hosted on the Railway service portal-svc. The current implementation has no separate user database; portal identity lives in signed cookies/tokens until you sign out or they expire.
[To be confirmed by the operator: the specific data-center region of the sign-in API.]
Session cookie: up to 7 days, or until you sign out at /account. Desktop token: up to 7 days. In-memory one-time tickets: only while the sign-in process is running. Desktop local data: until you delete it on your computer. Browser language/theme: until you clear site data.
Third parties
Google: OpenID Connect sign-in.
Cloudflare: hosts and delivers this website.
Railway: hosts the sign-in API.
Model providers you configure in the desktop app: only if you use the desktop app and send requests to them. They are not part of this website's Google sign-in flow.
How to delete data or stop using Arko
Sign out at https://openarko.com/account to clear the website session cookie.
Revoke Arko access in your Google Account under third-party app permissions.
This preview has no persistent user directory and no self-service account-deletion API. After you sign out and tokens expire, the portal no longer holds your sign-in identity.
Delete project indexes and chat history stored by the desktop app on your computer yourself.
If you need help confirming deletion or handling residual operational logs, use the official contact channel. [To be confirmed by the operator: official contact email.] The existing site already states that the official contact email has not been published; this policy does not invent one.
Children
This preview is intended for developers and is not directed at children under 13. We do not knowingly collect personal information from children.
Changes
Updated policy text will be posted on this page. The date at the top of the page is controlling.
How to contact us
Product site: https://openarko.com
[To be confirmed by the operator: official contact email and how privacy requests are handled.]
Terms of service: https://openarko.com/terms