QoMi

QoMi Privacy Policy

1.5 · 2026-08-24T08:35:20+00:00

QoMi Privacy Policy Version 1.5 This Policy explains how the QoMi Operator collects, uses, stores, shares, and protects data when you use the service. The Operator is identified on the App Store product page and through the in-app Customer Service channel. This Policy covers the QoMi iOS and Android apps, APIs, messaging services, operations console, and service providers processing data for QoMi. 1. Data we process Account information includes the registration phone number, numeric QoMi code, nickname, avatar, language, account status, security settings, legal-consent status, and signed-in session information. Content and social data includes friendships, group membership and roles, private and group messages, official messages, images, video, files, voice messages, replies, reactions, group announcements, moments, comments, likes, reports, blocks, and Customer Service conversations. Content is processed to deliver it, synchronize history, resolve reports, and provide features you request. Call data can include caller and recipient, media type, status, timestamps, duration, room identifiers, and technical signaling. When cloud calling is enabled, audio and video are transmitted through an RTC provider to establish the call. QoMi does not claim to record call content unless a separate recording feature is introduced with clear notice and any required consent. Device and technical data can include device identifier, platform, manufacturer, model, app and build version, locale, push token, IP address, user agent, connection times, error logs, security events, and request identifiers. This supports authentication, synchronization, notification delivery, fraud prevention, and diagnosis. Points and linking data includes QM balances and append-only ledger entries, activity rewards, reward-packet claims, redemption history when available, the QoMi point-password state with only a one-way hash, two-factor status, and one third-party-account record per configured platform category containing platform, account identifier, and display name. The QoMi point password confirms a link. QoMi never asks for or stores the third-party platform login password. QM is not money, and a linked account is not a bank or withdrawal account. 2. How data is collected You provide data when registering, editing a profile, sending content, joining an activity, linking an account, contacting support, or reporting a violation. Data is also generated when a device connects, receives notifications, synchronizes messages, or uses a feature. Other users can provide information involving you when they message you, add you to a group, mention you, or report relevant content. 3. Why we use data We use data to create and secure accounts; provide, synchronize, and recover messages; operate groups, moments, QR features, calls, and support; deliver notifications; record platform rewards; verify linked records; detect spam, fraud, abuse, and technical failures; enforce community rules; handle reports and complaints; comply with law; and measure service reliability. QoMi does not sell personal data and does not use private-message content to build behavioral advertising profiles. 4. Device permissions QoMi requests permissions only when needed: camera for photos, video, or QR scanning; photo library for choosing or saving media; microphone for voice messages or calls; and notifications for messages and calls. Location is accessed only after you tap Use current location to fill the region and address in your profile. The result is placed in the form for your confirmation; QoMi does not retain coordinates, track location in the background, or use location for advertising. You can change permissions in system settings. Where technically possible, declining a permission affects only the related feature. QoMi does not access contacts unless a clearly identified feature, appropriate notice, and required consent are introduced. 5. Sharing and processors Data is shared only as needed with providers of hosting, databases, content delivery, security monitoring, notification delivery such as Apple Push Notification service or Firebase Cloud Messaging, and RTC services such as Alibaba Cloud International when enabled. Processors must follow contractual restrictions, designated purposes, and protections equivalent to this Policy. Data may be disclosed to comply with a valid legal request, protect users, or investigate fraud and safety incidents. Providers are not permitted to use QoMi data for their independent advertising. 6. International processing Infrastructure or service providers may process data in a country different from yours. The Operator applies contractual, technical, and organizational safeguards appropriate to applicable law. Actual provider configuration and App Store privacy disclosures must be updated when data practices change. 7. Retention and deletion Data is retained only as long as reasonably needed to provide the service and for the purposes above. Messages and content are retained according to the history offered by the service until deleted, expired, or associated with a deleted account, unless preservation is needed for a report, dispute, fraud prevention, safety, or law. Expired tokens and sessions are revoked; security logs are retained for a reasonable period; unauthenticated support sessions expire after inactivity and are deleted or anonymized according to the published operational retention period. You can initiate deletion of the entire account at Me → Account and Security → Delete Account. After verification and confirmation, QoMi deletes or anonymizes profile data and associated content, including user-generated content, except data that must be retained for law, fraud prevention, safety, disputes, or append-only ledger integrity. Temporary deactivation is not used as a substitute for your deletion request. 8. Security QoMi uses role-based access, encryption in transit, one-way password hashing, optional two-factor authentication, audit logs, rate limits, database transactions, and server-side authorization. No system is completely secure. Use a strong password, never share verification codes, and report suspicious activity. 9. Your choices and rights You can view and edit your nickname, avatar, language, and notification preferences; manage passwords and two-factor settings; download or delete content where a feature permits; block users; report content; ask Customer Service to correct or unlink a third-party account; and initiate account deletion. Depending on applicable law, you may request access, correction, deletion, restriction, objection, portability, or information about processing. We may verify identity before fulfilling a request. 10. Children, changes, and contact QoMi does not knowingly process children’s data unlawfully. A parent or guardian who believes a child provided data inappropriately can contact us for action. If this Policy changes materially, QoMi will display the new version and request renewed consent where required. For privacy questions, rights requests, complaints, or security reports, use Me → Contact Customer Service. A public Privacy Policy URL and Operator contact information must also be provided on the App Store product page and kept consistent with actual data practices.